Vulnerability Assessment Analyst

2 weeks ago


Ashburn, VA, United States Critical Solutions Full time

Vulnerability Assessment Analyst - Senior

Location: Ashburn, VA
Type: Full-time, On-site
Salary Range: $106,000 - $136,000 per year

JOB DESCRIPTION

Critical Solutions is seeking a Senior Vulnerability Assessment Analyst to support our federal customer in Ashburn, VA.

PRIMARY ROLES AND RESPONSIBILITIES:

  • Lead the Vulnerability Analysis function of the overall Vulnerability Assessment Team, working with the Vulnerability Management function and Penetration Testing function under a unified Vulnerability Assessment Lead
  • Create and publish security-related alerts, bulletins, advisories, and notifications to all Agency's components based on identified software and hardware vulnerabilities and monitor for compliance
  • Continuously research emerging threats to the environment in order to disseminate the information to all stakeholders, immediately assess the known environment for presence of the vulnerability, and work with the NOSC, Enterprise VAT, and enterprise networking teams to proactively block exploitation within the Agency's environment
  • Conduct scheduled and ad-hoc vulnerability/compliance scanning
  • Create and maintain scans in support of continuous scanning requirements for various FISMA systems
  • Employ ad-hoc or emergency vulnerability/compliance scanning to support targeted incident investigation, escalation, and emergency response to security events in accordance with documented procedures
  • Coordinate with NOSC cybersecurity leadership and FISMA system ISSOs and system owners to explain findings, provide recommendations on mitigations, and advocate for mitigation of vulnerabilities
  • Track and trend vulnerabilities for HQ NOSC to assess and depict risk posture
  • Correlate CISA KVEs and incorporate into NOSC scanning as applicable
  • Conduct, operate, and maintain vulnerability/compliance assessments and the resulting data and reports
  • Conduct Host-based and Network Vulnerability Assessments
  • Conduct Database Vulnerability Assessments
  • Conduct Web-based Vulnerability Assessments
  • Author and maintain SOPs and runbooks
  • Other duties as assigned

BASIC QUALIFICATIONS:

  • Must be US Citizen and and must be able to obtain and maintain an Entry on Duty (EOD) clearance
  • Bachelors' degree from an accredited college in IT, cybersecurity, computer science, or related field, or equivalent experience/combined education, with 12 years of professional experience; or a Masters' degree with 10-13 years of professional experience
  • At least six years of direct experience in vulnerability assessment/management
  • Familiar with the management, operational, and technical aspects of IT Security in a complex environment.
  • Experience working with industry-standard cybersecurity methodologies and processes
  • Advanced knowledge of TCP/IP protocols
  • Experience configuring and implementing various technical security solutions,
  • Substantial experience managing vulnerability/compliance scans using Tenable Nessus and/or Security Center
  • Expert in Nessus Manager
  • Expert in Tenable.io

PREFERRED QUALIFICATIONS:

  • Experience working in cyber operations, particularly for a federal government customer
  • Experience supporting large and diverse cybersecurity environments
  • Moderate proficiency in Splunk
  • Familiarity with Swimlane
  • Familiar with basic functions of Axonius
  • Understanding of MITRE ATT&CK and various attack and defense methodologies
  • Expertise in Linux and Windows operating systems
  • Experience with supporting ATO audits, FISMA compliance, and other ISSO functions

ADDITIONAL INFORMATION:

Clearance Requirement: US CITIZENSHIP IS REQUIRED. In addition, selected candidate must undergo background investigation (BI) and finger printing by the federal agency and successfully pass the preceding to qualify for the position.

CRITICAL SOLUTIONS PAY AND BENEFITS:

Salary range $106,000 - $136,000. The salary range for this position represent the typical salary range for this job level and this does not guarantee a specific salary. Compensation is based upon multiple factors such as responsibilities of the job, education, experience, knowledge, skills, certifications, and other requirements.

BENEFIT SNAPSHOT: 100% premium coverage for Medical, Dental, Vision, and Life Insurance, Supplemental Insurance, 401K matching, Flexible Time Off (PTO/Holidays), Higher Education/Training Reimbursement, and more.



  • Ashburn, VA, United States ManTech Full time

    MANTECH seeks a motivated, career and customer-oriented Vulnerability Assessment (VA) Team Lead to join our team in Ashburn, VA . The ultimate purpose of this role is to provide the disciplined leadership and structural organization necessary to rapidly implement critical, high-impact security solutions that directly protect the Nation's digital borders...


  • Ashburn, VA, United States ManTech Full time

    MANTECH seeks a motivated, career and customer-oriented Vulnerability Assessment (VA) Team Lead to join our team in Ashburn, VA . The ultimate purpose of this role is to provide the disciplined leadership and structural organization necessary to rapidly implement critical, high-impact security solutions that directly protect the Nation's digital borders...


  • Ashburn, VA, United States ManTech International Corporation Full time

    Description & Requirements Transform the future of federal services with MANTECH! Join a vibrant, energetic team committed to enhancing national security and public services through innovative tech. Since 1968, we’ve partnered with Federal Civilian sectors to deliver impactful solutions. Engage in exciting projects in Digital Transformation, Cybersecurity,...


  • Ashburn, VA, United States ManTech International Corporation Full time

    Description & Requirements Transform the future of federal services with MANTECH! Join a vibrant, energetic team committed to enhancing national security and public services through innovative tech. Since 1968, we’ve partnered with Federal Civilian sectors to deliver impactful solutions. Engage in exciting projects in Digital Transformation, Cybersecurity,...


  • Ashburn, VA, United States Leidos Full time

    Description Department of Homeland Security (DHS), Customs and Border Protection (CBP) Security Operations Center (SOC) is a US Government program responsible to prevent, identify, contain and eradicate cyber threats to CBP networks through monitoring, intrusion detection and protective security services to CBP information systems including local area...


  • Ashburn, VA, United States Leidos Full time

    Description The U.S. Department of Homeland Security (DHS), Customs and Border Protection (CBP) Security Operations Center (SOC) is a U.S. Government program responsible to prevent, identify, contain and eradicate cyber threats to CBP networks through monitoring, intrusion detection and protective security services to CBP information systems including local...


  • Ashburn, VA, United States Visa Full time

    Job Description Information security is an integral part of Visa's corporate culture. It is essential to maintain our position as an industry leader in electronic payments, which is why Visa has made it a priority to create top-tier security operations and incident response teams to defend the company against evolving cyber threats. If you would like to join...


  • Ashburn, VA, United States Visa Full time

    Company Description Visa is a world leader in payments and technology, with over 259 billion payments transactions flowing safely between consumers, merchants, financial institutions, and government entities in more than 200 countries and territories each year. Our mission is to connect the world through the most innovative, convenient, reliable, and secure...

  • ISSO

    2 weeks ago


    Ashburn, VA, United States iQuasar Full time

    Centrifuge LLC is seeking to fill a ISSO for one of our federal customers. Centrifuge LLC is headquartered in Reston, Virginia. Be a part of an award-winning, small business specializing in IT Consulting. We value our team members and their contributions, and to show our appreciation, we are proud to offer a comprehensive and competitive benefits package to...


  • Ashburn, VA, United States Marathon TS Full time

    Marathon TS is looking to hire Cyber Security Engineers to work a newly awarded contract supporting the Department of Homeland Security (Client) Customs and Border Protection. The Cybersecurity Engineer/Information System Security Officer (ISSO) will be responsible for ensuring the security and integrity of the IT infrastructure and systems within the U.S....