28 vulnerability management analyst jobs at 23 companies in Forestville, MD

1mo
Save
Mark Applied
Hide
Vulnerability Management Analyst
Joint Base Andrews, Maryland, United States
OnsiteFull Time
TIME Systems
TIME Systems: Service-disabled veteran-owned IT, cybersecurity, engineering, and management consulting contractor serving government, corporate, and nonprofit clients.
4+ YOE4+ years cybersecurity/systems experience with ≥1 year in vulnerability management using Tenable/Nessus/ACAS, active DoD Secret clearance, CompTIA Security+ CE, knowledge of RMF, DISA STIGs, SCAP, NIST SP 800-53, and strong reporting and communication skills.
Tenable SecurityCenter, Nessus, Assured Compliance Assessment Solution (ACAS), SCAP Compliance Checker (SCC), eMASS, HBSS, PowerShell, Nessus API, Microsoft Windows Server, Red Hat Enterprise Linux (RHEL), VMware, Active Directory
2w
Save
Mark Applied
Hide
Vulnerability Management Analyst
Arizona or North Carolina or Texas or Virginia or Plano or Raleigh or Reston or Richardson or Tempe
OnsiteFull Time
Infosys
InfosysNYSE: INFY: Global leader in next-generation digital services and consulting.
Bachelor's degree or equivalent experience; expertise in vulnerability governance, risk assessment, compliance monitoring, reporting, workflow documentation, remediation tracking, and technical writing. US work authorization required.
Microsoft Excel, PowerPoint
3mo
Save
Mark Applied
Hide
Vulnerability Management Analyst
Chantilly or Arlington
$70k-$85k/yr HybridFull Time
DANE, LLC
DANE, LLC: Woman-owned IT services providing software development and professional support services to the U.S. federal government.
1+ YOE1–3 years in cybersecurity operations; hands-on Tenable/Nessus; Power BI/Excel; experience with iPost, ServiceNow, Jira; DoD Secret clearance.
Tenable/Nessus, Power BI, Excel, iPost, ServiceNow, Jira, SharePoint, CA ServiceDesk, POA&M
2w
Save
Mark Applied
Hide
Vulnerability Management Analyst
Arlington, Virginia, United States
$90k-$155k/yr OnsiteFull Time
Absolute Business Solutions Corp
Absolute Business Solutions Corp: Delivering Technology Enabled Solutions to Continuously Advance Intelligence
5+ YOEBachelor's degree in a technical discipline and Security+ CE or equivalent IAT Level II certification, or qualifying master's degree or 5 years of relevant experience. Requires DoD experience and English proficiency.
Assured Compliance Assessment Solution (ACAS), Tenable Security Center, Nessus, Microsoft Endpoint Configuration Manager (MECM), SCCM, NIPRNet, SIPRNet, NIST, DISA STIGs, SRGs, RMF, POA&Ms, IAVMs, TCNOs, TASKORDs
3d
Save
Mark Applied
Hide
VULNERABILITY MGMT ANALYST
Falls Church, Virginia, United States
$90k-$120k/yr OnsiteFull Time
Areté
Areté: Employee-owned science and engineering developing sensing products and software for U.S. defense, intelligence, and commercial customers.
3+ YOERequires active Top Secret clearance, 3+ years in systems or vulnerability administration, Windows Server and Red Hat Linux expertise, scanning and patch management experience, and scripting skills. Security+ CE required within 120 days.
Rapid7, Tenable Security Center, Nessus, Qualys, PDQ Deploy, Microsoft System Center Configuration Manager (SCCM), Microsoft Endpoint Configuration Manager (MECM), Microsoft Windows Server Update Services (WSUS), YUM, DNF, Red Hat Satellite, PowerShell, Bash, Python, DISA STIGs, SCAP Compliance Checker, NIST 800-53, NIST 800-171, Risk Management Framework (RMF), Software Bill of Materials (SBOM), Microsoft AZ-800/801, Microsoft MD-102, GIAC GCED/GEVA, CCNA, Network+, CySA+, RHCSA
1d
Save
Mark Applied
Hide
Sr Cyber Security Vulnerability Management Analyst
Baltimore or Houston or Houston
$123k-$137k/yr HybridFull Time
Constellation Energy Generation, LLC
Constellation Energy Generation, LLC: Private U.S. power generator and energy supplier serving wholesale, retail, commercial, public-sector, and residential customers.
5+ YOEBachelor's in Information Systems and 5 years' experience, or 9 years without a degree; 2 years in Agile, application security, or DevOps; expertise in vulnerability assessment, cloud, DevSecOps, and security tools.
Microsoft Azure, Google Cloud Platform (GCP), Amazon Web Services (AWS), Docker, Kubernetes, Chef, Terraform, Jenkins, GitHub, TeamCity, Fortify, ShiftLeft, Checkmarx, Invicti, WhiteSource, Jira, ServiceNow, GitLab, Bitbucket, Unix, SAST, DAST, IAST, SCA, OSA, CI/CD, DevOps, SCADA, ICS, Distribution Automation, Smart Grid, DMS, ECS, SDL, Active Directory, SQL, LDAP, Microsoft SharePoint, Cisco, IDS/IPS, SSL, TLS, IPSec, APIs, Azure AD, Agile
1mo
Save
Mark Applied
Hide
Senior Risk and Vulnerability Analyst
Chandler or Washington
$104k-$166k/yr OnsiteFull Time
Peraton
Peraton: Provider of mission-critical national security technologies and services.
8+ YOE8+ years in security operations or vulnerability management; Bachelor in Cybersecurity/IT (or 4 years additional experience); hands-on vulnerability scanning, cloud compliance, ISVM, API scanning; Secret clearance and U.S. citizenship required.
ISVM, DHS 4300A, NIST SP 800-115, CISA BOD 23-01
1mo
Save
Mark Applied
Hide
Senior Risk and Vulnerability Analyst
Chandler or Washington
$104k-$166k/yr OnsiteFull Time
Peraton
Peraton: Provider of mission-critical national security technologies and services.
8+ YOEBachelor's in Cybersecurity/IT (or 4 years' extra experience), 8+ years in security operations/vulnerability management (reduced with advanced degrees), hands-on ISVM and API scanning experience, automation and compliance familiarity, U.S. citizenship.
ISVM, API scanning
3mo
Save
Mark Applied
Hide
Cybersecurity Analyst (Vulnerability Management & Continuous Monitoring)
Oakton, Virginia, United States
OnsiteFull Time
Chenega MIOS
Chenega MIOS: Alaska Native-owned shared-services organization supporting federal, defense, intelligence, and commercial customers through specialized operating companies.
5+ YOEHigh school diploma; 5+ years DoD RMF cybersecurity experience; strong ACAS/STIG/IAVA/IAVM experience; TS/SCI with Gold or eligibility; Security+ or equivalent.
ACAS, Nessus, Tenable.sc, STIG, STIG Viewer, SCAP Compliance Checker (SCC), Evaluate-STIG, eMASS, Xacta, Trellix, MDE, Splunk, Elastic, PowerShell, Python
21h
Save
Mark Applied
Hide
SR ANALYST
Springfield or Falls Church
OnsiteContract
Creative Information Technology
Creative Information Technology: Industrial automation systems integrator providing custom control hardware, software, networking, and maintenance to commercial and government customers.
8+ YOEOver 8 years of relevant security experience with large-scale IT and database systems, plus expertise in federal security compliance, vulnerability remediation, contingency planning, and technical documentation.
DASC, Automated Biometric Identification System (IDENT)
2mo
Save
Mark Applied
Hide
Cybersecurity Analyst I
Manassas, Virginia, United States
$85k-$110k/yr OnsiteFull Time
AMERICAN SYSTEMS
AMERICAN SYSTEMS: Government services contractor delivering IT and engineering solutions.
1+ YOEU.S. citizen with active Secret clearance (Top Secret/SCI desired), 1+ year cybersecurity analyst experience, familiarity with Splunk/ACAS/Nessus/Qualys, strong incident response and vulnerability management skills, and relevant security certifications (CompTIA Security+, CASP, or CISSP).
Splunk, Syslog, ACAS, Nessus, Qualys, ESS Trellix, Defender, AWS, Azure
3w
Save
Mark Applied
Hide
Cybersecurity Analyst
Annapolis Junction, Maryland, United States
OnsiteFull Time
Maximus
MaximusNYSE: MMS: Government services and health administration partner for public programs.
7+ YOERequires active Secret clearance, US citizenship, 7+ years in cybersecurity, and 4+ years managing POA&Ms, federal security frameworks, vulnerability and risk management. Daily onsite work and 24x7x365 on-call availability required.
NIST 800-53, Risk Management Framework (RMF), Federal Information Security Modernization Act (FISMA), antivirus software, vulnerability scanners, access control, endpoint protection, Public Key Infrastructure (PKI), Security Information and Event Management (SIEM), Data Loss Prevention (DLP)
1mo
Save
Mark Applied
Hide
Security Analyst III
Reston, Virginia, United States
$41-$53/hr OnsiteFull Time
Bowman
BowmanNASDAQ: BWMN: National engineering services and infrastructure consulting firm.
5+ YOE5+ years cybersecurity experience, familiarity with incident investigation, vulnerability management, cloud and Microsoft security technologies; bachelor’s degree or equivalent experience; preferred Security+/CySA+/CISSP/GIAC.
CrowdStrike, Microsoft Defender, Microsoft Sentinel, SIEM, EDR
1mo
Save
Mark Applied
Hide
Cybersecurity Analyst Expert
McLean, Virginia, United States
OnsiteFull Time
Pueo Business Solutions
Pueo Business Solutions: Pueo is a privately held national-security cybersecurity serving defense, intelligence, homeland-security, and federal customers.
Bachelor's degree in related field, IAT Level II/III certification per DoD 8570/8140, Top Secret clearance with SCI eligibility, knowledge of RMF/NIST, vulnerability and POA&M management.
Xacta, STIG Viewer, ACAS, Prisma, Splunk, Trellix (HBSS)
2mo
Save
Mark Applied
Hide
UAS Security Analyst
Washington, District of Columbia, United States
$50k-$175k/yr OnsiteFull Time
A3 Technology, Inc.
A3 Technology, Inc.: Private professional-services contractor providing system engineering, IT, aviation, and financial-management support to federal agencies.
2+ YOEExperience in security analysis, risk assessment, or related analytical role; strong security principles, controls, and vulnerability management; ability to communicate findings clearly; strong written/verbal communication; ability to work independently and collaboratively.
2mo
Save
Mark Applied
Hide
IT Security Operations Analyst
Washington, District of Columbia, United States
HybridFull Time
Terrestris
Terrestris: Service-disabled veteran-owned firm providing government management and IT services.
2+ YOEAuthorization to work in the U.S. without sponsorship, ability to obtain Public Trust clearance, minimum 2 years patching and vulnerability management experience; CompTIA Security+ may substitute for 1 year of experience.
Enterprise Lifecycle Management Services (ELMS), Microsoft Endpoint Configuration Manager (MECM)
2mo
Save
Mark Applied
Hide
Senior Information Security Analyst
Washington or Atlanta or Austin or Baltimore or Chicago or Virginia
$94k-$131k/yr HybridFull Time
DLA Piper
DLA Piper: A global law firm providing comprehensive legal and business services.
7+ YOE7+ years in cybersecurity, Bachelor's in Information Security/Cybersecurity required, professional certs (e.g., CISSP, GIAC, SANS) preferred, SIEM/EDR/IDS/IPS and vendor tool experience, incident response and vulnerability management expertise.
Security Incident and Event Management (SIEM), Endpoint Detection and Response (EDR), Intrusion Detection/Prevention Systems (IDS/IPS), Microsoft Defender, CrowdStrike, Palo Alto Networks, malware sandbox, DNS, Active Directory, Exchange
3d
Save
Mark Applied
Hide
Senior Staff GRC Analyst - Strategic Account Partner
Vancouver or New York City or Washington or London or Galway or Budapest or Munich or Bengaluru or Singapore or Sydney
HybridFull Time
Diligent
Diligent: Private GRC SaaS providing governance, risk, compliance, audit, and ESG software to boards and organizational leaders.
5+ YOERequires 5+ years in security GRC, customer assurance, consulting, or IT audit; hands-on audit leadership; deep SOC 2 and ISO 27001 knowledge; technical cloud, identity, encryption, logging, and vulnerability management expertise.
SOC 2, ISO 27001, NIST CSF, GDPR, HIPAA, DORA, cloud architecture, encryption, identity, logging, vulnerability management, trust center platforms, AI-assisted assurance tooling, large language models, AI
1mo
Save
Mark Applied
Hide
Senior Information Security Analyst
Patuxent River, Maryland, United States
OnsiteFull Time
Tharros
Tharros: Private cybersecurity and vulnerability-research contractor serving U.S. federal government and defense agencies.
10+ YOEActive TS/SCI eligibility, 10+ years IA experience, IAT Level III, RMF and vulnerability assessment experience, ability to lead teams and coordinate cyber risk and authorization activities.
1d
Save
Mark Applied
Hide
Cyber Technical Analyst - TS/SCI w/Polygraph
Herndon, Virginia, United States
$170k-$230k/yr OnsiteFull Time
General Dynamics Information Technology
General Dynamics Information TechnologyNew York Stock Exchange: GD: Provider of enterprise IT services and defense solutions.
Bachelor's degree or equivalent education, certifications, training, or experience; 8+ years of related experience; A&A process expertise, vulnerability management, security controls, and U.S. citizenship required.
Artificial Intelligence (AI), cloud, cyber, Body of Evidence (BoE), CVE, NIST 800-53a, Risk Management Framework