120 vulnerability analyst jobs at 68 companies in Springfield, VA

3w
Save
Mark Applied
Hide
Cybersecurity Vulnerability Analyst
Washington, District of Columbia, United States
RemoteFull Time
Covington & Burling
Covington & Burling: Global law firm providing legal and regulatory counseling services.
3+ YOE3+ years vulnerability analysis (or 5+ years infosec) with hands-on scanner experience, knowledge of CVEs and risk frameworks, strong analysis and communication skills, and US export-control eligibility.
CMDB, OCTAVE
3w
Save
Mark Applied
Hide
Vulnerability Analyst II
Washington, District of Columbia, United States
$110k-$137k/yr OnsiteFull Time
Koniag Government Services
Koniag Government Services: Providing technical and professional services to federal agencies.
3+ YOEBachelor's in CS/IT/Cybersecurity, 3+ years vulnerability management experience, public trust eligible, hands-on with Tenable/Qualys, CVSS, CIS/DISA baselines, strong communication and reporting skills.
Tenable Nessus, Tenable.io, Qualys, CVSS, CISA KEV, NVD, US-CERT, CIS Benchmarks, DISA STIGs, OWASP Top 10, Burp Suite, OWASP ZAP, Python, PowerShell, AWS, Azure, GCP, CDM
3d
Save
Mark Applied
Hide
VULNERABILITY ASSESSMENT ANALYST
Springfield, Virginia, United States
OnsiteFull Time
Sentry Construction
Sentry Construction: Provides general contracting and comprehensive property maintenance services.
Perform vulnerability assessments, track and remediate findings, analyze vulnerability and STIG data, prioritize remediation, and apply cybersecurity and privacy principles for NGA systems.
Nessus, ACAS, Tenable, Tableau
3w
Save
Mark Applied
Hide
Vulnerability Assessment Analyst
Columbia, Maryland, United States
$143k-$171k/yr OnsiteFull Time
Accenture Federal Services
Accenture Federal ServicesNYSE: ACN: Provides technology and consulting services to U.S. federal agencies.
2+ YOE2+ years performing vulnerability scans, risk assessment, RMF support, eMASS/STIG/POA&M/ATO activities, security documentation, incident response familiarity, and reporting to leadership.
eMASS, Risk Management Framework (RMF), STIG
3w
Save
Mark Applied
Hide
System Vulnerability Analyst
Annapolis Junction, Maryland, United States
$50k-$290k/yr OnsiteFull Time
The Swift Group: Providing engineering and cybersecurity services for national security missions.
2+ YOEPerform vulnerability assessments and security analysis of systems, networks, hardware and software; recommend mitigations. Requires OS/network knowledge, risk analysis skills, and active TS/SCI with Polygraph and U.S. citizenship.
4d
Save
Mark Applied
Hide
Vulnerability Management Analyst
Bethesda, Maryland, United States
$110k-$130k/yr RemoteFull Time
SkyePoint Decisions
SkyePoint Decisions: Provider of cybersecurity, infrastructure, and IT development services.
5+ YOEBachelor's in relevant field, U.S. citizenship, Public Trust eligibility, 5+ years cybersecurity/vulnerability management experience in federal environments, POA&M and remediation tracking experience, strong analytical and communication skills.
NIST RMF (SP 800-37), NIST SP 800-53 Rev. 5, FISMA, FedRAMP, CISA Known Exploited Vulnerabilities (KEV), CDM
2mo
Save
Mark Applied
Hide
Mid-Senior System Vulnerability Analyst
Fort Meade, Maryland, United States
$135k-$240k/yr OnsiteFull Time
M2 Technology Group
M2 Technology Group: Providing specialized cybersecurity and engineering services for government agencies.
4+ YOESenior-level vulnerability analyst to perform assessments, threat/pen tests, forensic/system analysis, interface with mission partners, respond to RFIs; requires active security clearance with appropriate polygraph and advanced technical degree/experience.
2mo
Save
Mark Applied
Hide
System Vulnerability Analyst 3
Annapolis Junction, Maryland, United States
OnsiteFull Time
RealmOne
RealmOne: Provides advanced technology services for national security agencies.
4+ YOEIdentify and analyze system vulnerabilities and attacks, exploit captured media, conduct incident investigations, perform vulnerability analysis/penetration testing/forensics, and produce reports and briefings; active security clearance with polygraph required.
3mo
Save
Mark Applied
Hide
Sr. System Vulnerability Analyst
Fort Meade, Maryland, United States
OnsiteFull Time
Themis Insight
Themis Insight: Provides technical consulting and data analytics for national security.
11+ YOETS/SCI with Polygraph; Bachelor’s degree in CS or related field plus 11 years experience, or Master’s plus 9 years, or Doctoral plus 7 years; relevant vulnerability analysis experience.
6d
Save
Mark Applied
Hide
System Vulnerability Analyst 3
Annapolis Junction, Maryland, United States
$153k-$202k/yr OnsiteFull Time
Weeghman & Briggs
Weeghman & Briggs: Provides specialized intelligence analysis and cybersecurity services to government agencies.
Active TS/SCI with Polygraph, experience supporting government or DoD programs, vulnerability analysis/penetration testing/forensics experience, strong written and verbal communication, ability to exploit captured media and investigate security incidents.
1mo
Save
Mark Applied
Hide
Enterprise Cybersecurity Vulnerability Risk Analyst
McLean, Virginia, United States
$99k-$225k/yr HybridFull Time
Booz Allen Hamilton
Booz Allen HamiltonNYSE: BAH: Consulting and technology services for government and commercial clients
5+ YOE5+ years supporting cybersecurity operations or vulnerability management; experience managing vulnerability lifecycles, evaluating exceptions/deferrals, assessing mitigating controls, ServiceNow workflow use, HS diploma or GED.
ServiceNow, ServiceNow Vulnerability Response, Integrated Risk Management, ITSM, CMDB, AWS, Azure, Google Cloud Platform
1w
Save
Mark Applied
Hide
DFC - Vulnerability Management Analyst
Washington, District of Columbia, United States
RemoteFull Time
cFocus Software
cFocus Software: Provides cybersecurity compliance and enterprise IT services for government.
5+ YOEActive Public Trust, BS in CS/IT or related,5+ years cybersecurity experience including 3+ in vulnerability management, hands-on Tenable Nessus/Qualys/Microsoft Defender, knowledge of NIST/FISMA/POA&M, strong writing and communication.
Tenable Nessus, Qualys, Microsoft Defender, CSAM, ServiceNow
2mo
Save
Mark Applied
Hide
Vulnerability Management Analyst
Chantilly or Arlington
$70k-$85k/yr HybridFull Time
DANE
DANE: Provides IT services and software development to federal agencies.
1+ YOE1–3 years in cybersecurity operations; hands-on Tenable/Nessus; Power BI/Excel; experience with iPost, ServiceNow, Jira; DoD Secret clearance.
Tenable/Nessus, Power BI, Excel, iPost, ServiceNow, Jira, SharePoint, CA ServiceDesk, POA&M
1mo
Save
Mark Applied
Hide
Enterprise Cybersecurity Vulnerability Risk Analyst
McLean, Virginia, United States
$99k-$225k/yr OnsiteFull Time
Booz Allen Hamilton
Booz Allen HamiltonNYSE: BAH: Provides technology and management consulting services to diverse organizations.
5+ YOE5+ years supporting vulnerability management or cyber risk operations, experience with ServiceNow, evaluating exceptions/deferrals, translating technical findings to risk decisions; HS diploma/GED and U.S. citizenship required.
ServiceNow, ServiceNow Vulnerability Response, Integrated Risk Management, ITSM, CMDB, AWS, Azure, Google Cloud Platform, Cloud Security Posture Management (CSPM)
1w
Save
Mark Applied
Hide
Senior Risk and Vulnerability Analyst
Chandler or Washington
$104k-$166k/yr OnsiteFull Time
Peraton
Peraton: National security and mission-critical government technology services provider.
8+ YOE8+ years in security operations or vulnerability management; Bachelor in Cybersecurity/IT (or 4 years additional experience); hands-on vulnerability scanning, cloud compliance, ISVM, API scanning; Secret clearance and U.S. citizenship required.
ISVM, DHS 4300A, NIST SP 800-115, CISA BOD 23-01
1w
Save
Mark Applied
Hide
Vulnerability Assessment Analyst - Intermediate (VA, Springfield)
Springfield, Virginia, United States
OnsiteFull Time
RiVidium
RiVidium: Provides cybersecurity software and IT services to federal agencies.
Bachelors degree, active TS/SCI clearance, IAT/IAM Level 2, skills in vulnerability scanning, penetration testing, risk assessment, log review, and familiarity with enclave/cyber defense policy.
Snort, nmap
6d
Save
Mark Applied
Hide
Senior Risk and Vulnerability Analyst
Chandler or Washington
$104k-$166k/yr OnsiteFull Time
Peraton
Peraton: Provides advanced technology and mission support for government agencies.
8+ YOEBachelor's in Cybersecurity/IT (or 4 years' extra experience), 8+ years in security operations/vulnerability management (reduced with advanced degrees), hands-on ISVM and API scanning experience, automation and compliance familiarity, U.S. citizenship.
ISVM, API scanning
2mo
Save
Mark Applied
Hide
Risk and Vulnerability Analyst II
Washington, District of Columbia, United States
HybridFull Time
SOSi
SOSi: Provides technology and mission solutions for national security.
3+ YOE3–5 years security experience performing vulnerability assessments and scanning across OS, databases, web apps and cloud; troubleshooting scan tools; automation and ISVM experience; Bachelor's degree; Secret clearance eligible.
Information System Vulnerability Management (ISVM)
6d
Save
Mark Applied
Hide
Systems Vulnerability Analyst 4
Fort Meade, Maryland, United States
$195k-$205k/yr OnsiteFull Time
Markon Solutions
Markon Solutions: Provides professional program and engineering services to federal agencies.
11+ YOETS/SCI with active polygraph, Bachelor's degree plus 11+ years in cybersecurity, red/blue/purple team experience, MITRE ATT&CK/NIST/ISO knowledge, Python automation, strong analytical and writing skills, willingness to travel OCONUS.
Python, MITRE ATT&CK, NIST, ISO 27001
6d
Save
Mark Applied
Hide
Systems Vulnerability Analyst 4
Fort Meade, Maryland, United States
$195k-$205k/yr OnsiteFull Time
Markon
Markon: Delivers management and technical consulting services to federal agencies.
11+ YOETS/SCI with poly, Bachelor's +11 years in cybersecurity, experience with Red/Blue/Purple team assessments, network analysis, MITRE ATT&CK, NIST/ISO 27001, Python automation, technical writing, and willingness to travel OCONUS.
Python, MITRE ATT&CK, NIST, ISO 27001