45 vulnerability engineer jobs at 20 companies in Hagerstown, MD
1w
Save
Mark Applied
Hide
1w
Senior Vulnerability Research Engineer
United States or Centreville or Chantilly or Herndon
$148k-$267k/yrHybridFull Time
ParsonsNYSE: PSN: Provides engineering and technology services for infrastructure and defense.
10+ YOEBachelor's degree and 10+ years related experience (master's may substitute), 10+ years programming (Python,C,C++), 5+ years vulnerability research, ability to obtain TS/SCI, U.S. citizenship required.
Python, C, C++, x86, ARM, MIPS, Windows, Linux, CI / CD Pipelines, Git
Redhorse: Delivering data insights and technology solutions to government agencies.
7+ YOEActive TS/SCI clearance and 7+ years vulnerability research, reverse engineering, exploit development, programming (C,C++,Java,JavaScript), and mobile malware analysis for iOS/Android.
C, C++, Java, JavaScript, IDA Pro, OllyDbg, Windbg, Windows, Linux/Unix
ManTech: Provides technology solutions for defense and intelligence agencies.
4+ YOEBachelor's plus 4+ years (or HS plus 8+ years), experience in vulnerability research, exploit development, reverse engineering; proficiency in C/C++, Python, Assembly; active Secret clearance.
Two Six Technologies: Develops cybersecurity and data systems for national security missions.
Lead vulnerability research on embedded systems; expert in C/C++ and Python, reverse engineering, firmware analysis, emulation, fuzzing, and mentoring junior staff. Active Top Secret clearance required or eligible.
GrammaTech: A cybersecurity delivering advanced security solutions and vulnerability research for government customers.
4+ YOEAdvanced degree and relevant cybersecurity experience required; proficiency in C/C++, Python, ISA, Linux, reverse engineering, decompilers, vulnerability research tools, and debuggers. Active TS/SCI clearance with polygraph required in Maryland.
Nightwing: Provides advanced cyber and intelligence solutions for national security.
5+ YOETS/SCI with polygraph, 5+ years C/C++ on Unix/Linux, Android/iOS mobile development, mobile vulnerability assessment, reverse engineering, degree in a technical discipline.
REDLattice: Provides advanced cybersecurity software and vulnerability research services.
Experience deploying and managing LLMs in offline environments, supporting cybersecurity and vulnerability research, building APIs and tooling, strong systems integration skills, active TS/SCI or ability to obtain polygraph.
US citizen with Secret clearance; experience with RMF/ATO on NIPR/SIPR, vulnerability scanning, security documentation (SSP, POA&M, SCTM); IAM Level I (or ability to obtain).
Northrop GrummanNYSE: NOC: Designs and manufactures advanced aerospace and defense systems.
2+ YOEActive TS/SCI clearance and U.S. citizenship required; minimum ~2 years Cyber/SSE experience; experience with RMF, DISA STIG/HBSS/ACAS or Tenable NESSUS, vulnerability scanning, Windows/Red Hat, cloud, SIEM, Fortify; BS/MS in engineering preferred.
Risk Management Framework (RMF), DISA Host Based Security System (HBSS), Endpoint Security Suite (ESS), DISA Automated Security Compliance Assessment Solution (ACAS), Tenable NESSUS, DISA Security Technical Implementation Guide (STIG), Fortify, SIEM, Windows, Red Hat, Docker
Institute for Building Technology and Safety: Provides professional building code and community development services.
Extensive Microsoft systems engineering, networking, systems administration, troubleshooting, cybersecurity compliance, security controls, vulnerability remediation, and technical documentation experience.
Microsoft Active Directory, Microsoft 365, Microsoft Exchange, Microsoft Windows Server, SOC 2, CMMC 2.0, NIST
IBMNew York Stock Exchange: IBM: Global technology providing enterprise software, cloud, and consulting.
4+ YOEBachelor's degree required; ~4+ years security or related engineering experience; experience with incident response, vulnerability remediation, cloud and IaC, scripting and automation; strong communication and problem-solving; must be authorized to work without visa sponsorship.
Peraton: Provides advanced technology and mission support for government agencies.
10+ YOELead security engineering for complex information systems, support RMF A&A, DISA STIG compliance, SIEM log analysis, vulnerability assessment, and work in SCIF with TS/SCI clearance.
Splunk, ACAS, DISA STIGs, STIG Viewer, Xacta, AWS, Google Cloud, Cloudtrail, Cloudwatch, Openshift, Antible, Linux
Ardent Principles: Provides specialized technology and program management services to government agencies.
Active TS/SCI with Full Scope Polygraph, 3+ years experience, proficient in JavaScript-capable technologies, applies security patches and vulnerability assessments, supports application accreditation, SCRUM experience.
JavaScript, Java, ASP.NET, Perl, PHP, Ruby on Rails, Flex, Silverlight, Google Earth Plugin
Peraton: National security and mission-critical government technology services provider.
10+ YOEU.S. citizen able to obtain/maintain Public Trust. Advanced information systems security engineering expertise, vulnerability assessment and continuous monitoring experience, strong risk management and secure configuration skills; degree plus 10–16 years of related experience depending on education.
GDITNYSE: GD: Delivers IT and mission services to government agencies.
3+ YOETS/SCI with poly required, US citizenship, 3+ years cloud experience, AWS and DevOps skills, scripting with Java/Python, EMR not mentioned, ability to design/deploy cloud systems and resolve vulnerabilities.
Lockheed MartinNYSE: LMT: Designs and manufactures global security and aerospace systems.
TS/SCI w/Poly required. Requires DoD 8570/8140 certification, RMF accreditation experience, knowledge of DoD cybersecurity policies, and experience with vulnerability assessment and cyber test/evaluation.
WalmartNYSE: WMT: Multinational retail operating discount stores and supermarkets.
4+ YOEBachelor's degree and 4 years of incident response experience, or 6 years of related experience. Requires cyber incident response, malware analysis, threat intelligence, vulnerability assessment, and cloud security expertise.
CACI InternationalNYSE: CACI: Provides information technology and engineering services for government agencies.
10+ YOEActive TS/SCI eligibility, 10+ years ISSE/ISSO experience, RMF/IATT/ATO experience, people leadership, bachelor's in CS/Cybersecurity/IT/Engineering (or equivalent), DoD 8570/8140 IA/SAE Level III (e.g., CISSP), hands-on Linux/Unix, and experience with A&A and vulnerability tools.