112 vulnerability analyst jobs at 65 companies in Silver Spring, MD
4w
Save
Mark Applied
Hide
4w
Cybersecurity Vulnerability Analyst
Washington, District of Columbia, United States
RemoteFull Time
Covington & Burling: Global law firm providing legal and regulatory counseling services.
3+ YOE3+ years vulnerability analysis (or 5+ years infosec) with hands-on scanner experience, knowledge of CVEs and risk frameworks, strong analysis and communication skills, and US export-control eligibility.
Sentry Construction: Provides general contracting and comprehensive property maintenance services.
Perform vulnerability assessments, track and remediate findings, analyze vulnerability and STIG data, prioritize remediation, and apply cybersecurity and privacy principles for NGA systems.
The Swift Group: Providing engineering and cybersecurity services for national security missions.
2+ YOEPerform vulnerability assessments and security analysis of systems, networks, hardware and software; recommend mitigations. Requires OS/network knowledge, risk analysis skills, and active TS/SCI with Polygraph and U.S. citizenship.
SkyePoint Decisions: Provider of cybersecurity, infrastructure, and IT development services.
5+ YOEBachelor's in relevant field, U.S. citizenship, Public Trust eligibility, 5+ years cybersecurity/vulnerability management experience in federal environments, POA&M and remediation tracking experience, strong analytical and communication skills.
Peraton: National security and mission-critical government technology services provider.
5+ YOEBachelor's plus 5+ years, master's plus 3+ years, or PhD with relevant experience; active Secret clearance and IAT Level II certification. Requires penetration testing, web exploitation, vulnerability assessment, and security framework expertise.
HackerOne Triage, Kali Linux, Burp Suite, MITRE ATT&CK, CVSS, NIST, Open Web Application Security Project (OWASP), Hack-The-Box, HTML, CSS, SQL, PowerShell, Bash, Python, Perl
M2 Technology Group: Providing specialized cybersecurity and engineering services for government agencies.
4+ YOESenior-level vulnerability analyst to perform assessments, threat/pen tests, forensic/system analysis, interface with mission partners, respond to RFIs; requires active security clearance with appropriate polygraph and advanced technical degree/experience.
RealmOne: Provides advanced technology services for national security agencies.
4+ YOEIdentify and analyze system vulnerabilities and attacks, exploit captured media, conduct incident investigations, perform vulnerability analysis/penetration testing/forensics, and produce reports and briefings; active security clearance with polygraph required.
Themis Insight: Provides technical consulting and data analytics for national security.
11+ YOETS/SCI with Polygraph; Bachelor’s degree in CS or related field plus 11 years experience, or Master’s plus 9 years, or Doctoral plus 7 years; relevant vulnerability analysis experience.
Weeghman & Briggs: Provides specialized intelligence analysis and cybersecurity services to government agencies.
Active TS/SCI with Polygraph, experience supporting government or DoD programs, vulnerability analysis/penetration testing/forensics experience, strong written and verbal communication, ability to exploit captured media and investigate security incidents.
cFocus Software: Provides cybersecurity compliance and enterprise IT services for government.
5+ YOEActive Public Trust, BS in CS/IT or related,5+ years cybersecurity experience including 3+ in vulnerability management, hands-on Tenable Nessus/Qualys/Microsoft Defender, knowledge of NIST/FISMA/POA&M, strong writing and communication.
Tenable Nessus, Qualys, Microsoft Defender, CSAM, ServiceNow
Peraton: Provides advanced technology and mission support for government agencies.
0+ YOEActive Secret clearance, IAT Level II (Security+ preferred), Bachelor's+5 or Master’s+3 (PhD acceptable), pentesting and web exploitation experience, familiarity with MITRE ATT&CK/CVSS/NIST, and scripting experience.
Booz Allen HamiltonNYSE: BAH: Provides technology and management consulting services to diverse organizations.
5+ YOE5+ years supporting vulnerability management or cyber risk operations, experience with ServiceNow, evaluating exceptions/deferrals, translating technical findings to risk decisions; HS diploma/GED and U.S. citizenship required.
SOSi: Provides technology and mission solutions for national security.
3+ YOE3–5 years security experience performing vulnerability assessments and scanning across OS, databases, web apps and cloud; troubleshooting scan tools; automation and ISVM experience; Bachelor's degree; Secret clearance eligible.
Information System Vulnerability Management (ISVM)
Markon Solutions: Provides professional program and engineering services to federal agencies.
11+ YOETS/SCI with active polygraph, Bachelor's degree plus 11+ years in cybersecurity, red/blue/purple team experience, MITRE ATT&CK/NIST/ISO knowledge, Python automation, strong analytical and writing skills, willingness to travel OCONUS.
Markon: Delivers management and technical consulting services to federal agencies.
11+ YOETS/SCI with poly, Bachelor's +11 years in cybersecurity, experience with Red/Blue/Purple team assessments, network analysis, MITRE ATT&CK, NIST/ISO 27001, Python automation, technical writing, and willingness to travel OCONUS.