121 vulnerability analyst jobs at 71 companies in Greenbelt, MD
1mo
Save
Mark Applied
Hide
1mo
Cybersecurity Vulnerability Analyst
Washington, District of Columbia, United States
RemoteFull Time
Covington & Burling: Global law firm providing legal and regulatory counseling services.
3+ YOE3+ years vulnerability analysis (or 5+ years infosec) with hands-on scanner experience, knowledge of CVEs and risk frameworks, strong analysis and communication skills, and US export-control eligibility.
Sentry Construction: Provides general contracting and comprehensive property maintenance services.
Perform vulnerability assessments, track and remediate findings, analyze vulnerability and STIG data, prioritize remediation, and apply cybersecurity and privacy principles for NGA systems.
Booz Allen HamiltonNYSE: BAH: Consulting and technology services for government and commercial clients
4+ YOERequires 4+ years in vulnerability analysis, 2+ years administering Windows and UNIX, cloud security experience, vulnerability tools, networking knowledge, and ability to obtain Secret clearance.
Tenable Cloud Security, Tenable Security Center, AWS, Microsoft Azure, Google Cloud Platform, Nessus, Qualys, Splunk, OWASP, TCP, IP, UDP, HTTP, HTTPS, SSH, DNS, Windows, UNIX
DigiFlight: Provides cybersecurity, aerospace, and systems engineering for government agencies.
4+ YOERequires security clearance, a relevant computer science or engineering degree, and 4–10 years of relevant experience in vulnerability analysis, penetration testing, computer forensics, or related cybersecurity fields.
Joint Cyber Analysis Course (JCAC), Undergraduate Cyber Training (UCT), Network Warfare Bridge Course (NWBC), Intermediate Network Warfare Training (INWT)
Themis Insight: Provides technical consulting and data analytics for national security.
5+ YOERequires TS/SCI with polygraph, relevant degree, and vulnerability analysis, penetration testing, or computer forensics experience. Level 2 or 3 experience and Information Assurance certification may be required.
Arizona or North Carolina or Texas or Virginia or Plano or Raleigh or Reston or Richardson or Tempe
OnsiteFull Time
InfosysNYSE: INFY: Provides IT consulting, software development, and business outsourcing services.
Bachelor's degree or equivalent experience; expertise in vulnerability governance, risk assessment, compliance monitoring, reporting, workflow documentation, remediation tracking, and technical writing. US work authorization required.
The Swift Group: Providing engineering and cybersecurity services for national security missions.
2+ YOEPerform vulnerability assessments and security analysis of systems, networks, hardware and software; recommend mitigations. Requires OS/network knowledge, risk analysis skills, and active TS/SCI with Polygraph and U.S. citizenship.
SkyePoint Decisions: Provider of cybersecurity, infrastructure, and IT development services.
5+ YOEBachelor's in relevant field, U.S. citizenship, Public Trust eligibility, 5+ years cybersecurity/vulnerability management experience in federal environments, POA&M and remediation tracking experience, strong analytical and communication skills.
Peraton: National security and mission-critical government technology services provider.
5+ YOEBachelor's plus 5+ years, master's plus 3+ years, or PhD with relevant experience; active Secret clearance and IAT Level II certification. Requires penetration testing, web exploitation, vulnerability assessment, and security framework expertise.
HackerOne Triage, Kali Linux, Burp Suite, MITRE ATT&CK, CVSS, NIST, Open Web Application Security Project (OWASP), Hack-The-Box, HTML, CSS, SQL, PowerShell, Bash, Python, Perl
TIME Systems: Provider of technology, engineering, and management solutions for federal agencies.
4+ YOE4+ years cybersecurity/systems experience with ≥1 year in vulnerability management using Tenable/Nessus/ACAS, active DoD Secret clearance, CompTIA Security+ CE, knowledge of RMF, DISA STIGs, SCAP, NIST SP 800-53, and strong reporting and communication skills.
Tenable SecurityCenter, Nessus, Assured Compliance Assessment Solution (ACAS), SCAP Compliance Checker (SCC), eMASS, HBSS, PowerShell, Nessus API, Microsoft Windows Server, Red Hat Enterprise Linux (RHEL), VMware, Active Directory
M2 Technology Group: Providing specialized cybersecurity and engineering services for government agencies.
4+ YOESenior-level vulnerability analyst to perform assessments, threat/pen tests, forensic/system analysis, interface with mission partners, respond to RFIs; requires active security clearance with appropriate polygraph and advanced technical degree/experience.
RealmOne: Provides advanced technology services for national security agencies.
4+ YOEIdentify and analyze system vulnerabilities and attacks, exploit captured media, conduct incident investigations, perform vulnerability analysis/penetration testing/forensics, and produce reports and briefings; active security clearance with polygraph required.
GRVTY: Develops defense technology, cyber, and intelligence software solutions.
4+ YOERequires a relevant degree and experience, red team experience, vulnerability analysis, network analysis, anomaly detection, incident investigation, and computer security expertise. Information assurance certification may be required.
Weeghman & Briggs: Provides specialized intelligence analysis and cybersecurity services to government agencies.
Active TS/SCI with Polygraph, experience supporting government or DoD programs, vulnerability analysis/penetration testing/forensics experience, strong written and verbal communication, ability to exploit captured media and investigate security incidents.
cFocus Software: Provides cybersecurity compliance and enterprise IT services for government.
5+ YOEActive Public Trust, BS in CS/IT or related,5+ years cybersecurity experience including 3+ in vulnerability management, hands-on Tenable Nessus/Qualys/Microsoft Defender, knowledge of NIST/FISMA/POA&M, strong writing and communication.
Tenable Nessus, Qualys, Microsoft Defender, CSAM, ServiceNow
Booz Allen HamiltonNYSE: BAH: Provides technology and management consulting services to diverse organizations.
4+ YOERequires 4+ years in vulnerability analysis, 2+ years of Windows and UNIX administration, cloud security experience, Tenable tools, networking knowledge, and ability to obtain Secret clearance.
Microsoft Internet Explorer, Google Chrome, Mozilla Firefox, Microsoft Edge, Apple Safari, Opera Browser, Blackberry Browser, AWS, Azure, Google Cloud Platform, Tenable Cloud Security, Tenable Security Center, Nessus, Qualys, Splunk, TCP, IP, UDP, HTTP, HTTPS, SSH, DNS, OWASP
Absolute Business Solutions Corp: Provides technology and intelligence services to the US government.
5+ YOEBachelor's degree in a technical discipline and Security+ CE or equivalent IAT Level II certification, or qualifying master's degree or 5 years of relevant experience. Requires DoD experience and English proficiency.
Assured Compliance Assessment Solution (ACAS), Tenable Security Center, Nessus, Microsoft Endpoint Configuration Manager (MECM), SCCM, NIPRNet, SIPRNet, NIST, DISA STIGs, SRGs, RMF, POA&Ms, IAVMs, TCNOs, TASKORDs
Peraton: Provides advanced technology and mission support for government agencies.
0+ YOEActive Secret clearance, IAT Level II (Security+ preferred), Bachelor's+5 or Master’s+3 (PhD acceptable), pentesting and web exploitation experience, familiarity with MITRE ATT&CK/CVSS/NIST, and scripting experience.