Vulnerability Assessment Analyst
2 weeks ago
Vulnerability Assessment Analyst - Senior
Location: Ashburn, VA
Type: Full-time, On-site
Salary Range: $106,000 - $136,000 per year
JOB DESCRIPTION
Critical Solutions is seeking a Senior Vulnerability Assessment Analyst to support our federal customer in Ashburn, VA.
PRIMARY ROLES AND RESPONSIBILITIES:
- Lead the Vulnerability Analysis function of the overall Vulnerability Assessment Team, working with the Vulnerability Management function and Penetration Testing function under a unified Vulnerability Assessment Lead
- Create and publish security-related alerts, bulletins, advisories, and notifications to all Agency's components based on identified software and hardware vulnerabilities and monitor for compliance
- Continuously research emerging threats to the environment in order to disseminate the information to all stakeholders, immediately assess the known environment for presence of the vulnerability, and work with the NOSC, Enterprise VAT, and enterprise networking teams to proactively block exploitation within the Agency's environment
- Conduct scheduled and ad-hoc vulnerability/compliance scanning
- Create and maintain scans in support of continuous scanning requirements for various FISMA systems
- Employ ad-hoc or emergency vulnerability/compliance scanning to support targeted incident investigation, escalation, and emergency response to security events in accordance with documented procedures
- Coordinate with NOSC cybersecurity leadership and FISMA system ISSOs and system owners to explain findings, provide recommendations on mitigations, and advocate for mitigation of vulnerabilities
- Track and trend vulnerabilities for HQ NOSC to assess and depict risk posture
- Correlate CISA KVEs and incorporate into NOSC scanning as applicable
- Conduct, operate, and maintain vulnerability/compliance assessments and the resulting data and reports
- Conduct Host-based and Network Vulnerability Assessments
- Conduct Database Vulnerability Assessments
- Conduct Web-based Vulnerability Assessments
- Author and maintain SOPs and runbooks
- Other duties as assigned
BASIC QUALIFICATIONS:
- Must be US Citizen and and must be able to obtain and maintain an Entry on Duty (EOD) clearance
- Bachelors' degree from an accredited college in IT, cybersecurity, computer science, or related field, or equivalent experience/combined education, with 12 years of professional experience; or a Masters' degree with 10-13 years of professional experience
- At least six years of direct experience in vulnerability assessment/management
- Familiar with the management, operational, and technical aspects of IT Security in a complex environment.
- Experience working with industry-standard cybersecurity methodologies and processes
- Advanced knowledge of TCP/IP protocols
- Experience configuring and implementing various technical security solutions,
- Substantial experience managing vulnerability/compliance scans using Tenable Nessus and/or Security Center
- Expert in Nessus Manager
- Expert in Tenable.io
PREFERRED QUALIFICATIONS:
- Experience working in cyber operations, particularly for a federal government customer
- Experience supporting large and diverse cybersecurity environments
- Moderate proficiency in Splunk
- Familiarity with Swimlane
- Familiar with basic functions of Axonius
- Understanding of MITRE ATT&CK and various attack and defense methodologies
- Expertise in Linux and Windows operating systems
- Experience with supporting ATO audits, FISMA compliance, and other ISSO functions
ADDITIONAL INFORMATION:
Clearance Requirement: US CITIZENSHIP IS REQUIRED. In addition, selected candidate must undergo background investigation (BI) and finger printing by the federal agency and successfully pass the preceding to qualify for the position.
CRITICAL SOLUTIONS PAY AND BENEFITS:
Salary range $106,000 - $136,000. The salary range for this position represent the typical salary range for this job level and this does not guarantee a specific salary. Compensation is based upon multiple factors such as responsibilities of the job, education, experience, knowledge, skills, certifications, and other requirements.
BENEFIT SNAPSHOT: 100% premium coverage for Medical, Dental, Vision, and Life Insurance, Supplemental Insurance, 401K matching, Flexible Time Off (PTO/Holidays), Higher Education/Training Reimbursement, and more.
-
Vulnerability Assessment Team Lead
1 week ago
Ashburn, VA, United States ManTech Full timeMANTECH seeks a motivated, career and customer-oriented Vulnerability Assessment (VA) Team Lead to join our team in Ashburn, VA . The ultimate purpose of this role is to provide the disciplined leadership and structural organization necessary to rapidly implement critical, high-impact security solutions that directly protect the Nation's digital borders...
-
Vulnerability Assessment Team Lead
2 weeks ago
Ashburn, VA, United States ManTech Full timeMANTECH seeks a motivated, career and customer-oriented Vulnerability Assessment (VA) Team Lead to join our team in Ashburn, VA . The ultimate purpose of this role is to provide the disciplined leadership and structural organization necessary to rapidly implement critical, high-impact security solutions that directly protect the Nation's digital borders...
-
Vulnerability Assessment Team Lead
7 days ago
Ashburn, VA, United States ManTech International Corporation Full timeDescription & Requirements Transform the future of federal services with MANTECH! Join a vibrant, energetic team committed to enhancing national security and public services through innovative tech. Since 1968, we’ve partnered with Federal Civilian sectors to deliver impactful solutions. Engage in exciting projects in Digital Transformation, Cybersecurity,...
-
Vulnerability Assessment Team Lead
2 weeks ago
Ashburn, VA, United States ManTech International Corporation Full timeDescription & Requirements Transform the future of federal services with MANTECH! Join a vibrant, energetic team committed to enhancing national security and public services through innovative tech. Since 1968, we’ve partnered with Federal Civilian sectors to deliver impactful solutions. Engage in exciting projects in Digital Transformation, Cybersecurity,...
-
??Assessment & Authorization (A&A) Analyst?
2 weeks ago
Ashburn, VA, United States Leidos Full timeDescription Department of Homeland Security (DHS), Customs and Border Protection (CBP) Security Operations Center (SOC) is a US Government program responsible to prevent, identify, contain and eradicate cyber threats to CBP networks through monitoring, intrusion detection and protective security services to CBP information systems including local area...
-
Cyber Threat Intel Analyst
2 weeks ago
Ashburn, VA, United States Leidos Full timeDescription The U.S. Department of Homeland Security (DHS), Customs and Border Protection (CBP) Security Operations Center (SOC) is a U.S. Government program responsible to prevent, identify, contain and eradicate cyber threats to CBP networks through monitoring, intrusion detection and protective security services to CBP information systems including local...
-
Sr Cybersecurity Analyst SOCIncident Response
2 weeks ago
Ashburn, VA, United States Visa Full timeJob Description Information security is an integral part of Visa's corporate culture. It is essential to maintain our position as an industry leader in electronic payments, which is why Visa has made it a priority to create top-tier security operations and incident response teams to defend the company against evolving cyber threats. If you would like to join...
-
Ashburn, VA, United States Visa Full timeCompany Description Visa is a world leader in payments and technology, with over 259 billion payments transactions flowing safely between consumers, merchants, financial institutions, and government entities in more than 200 countries and territories each year. Our mission is to connect the world through the most innovative, convenient, reliable, and secure...
-
ISSO
2 weeks ago
Ashburn, VA, United States iQuasar Full timeCentrifuge LLC is seeking to fill a ISSO for one of our federal customers. Centrifuge LLC is headquartered in Reston, Virginia. Be a part of an award-winning, small business specializing in IT Consulting. We value our team members and their contributions, and to show our appreciation, we are proud to offer a comprehensive and competitive benefits package to...
-
Cyber Security Engineer
6 days ago
Ashburn, VA, United States Marathon TS Full timeMarathon TS is looking to hire Cyber Security Engineers to work a newly awarded contract supporting the Department of Homeland Security (Client) Customs and Border Protection. The Cybersecurity Engineer/Information System Security Officer (ISSO) will be responsible for ensuring the security and integrity of the IT infrastructure and systems within the U.S....