11 vulnerability management analyst jobs at 9 companies in Joppatowne, MD
1mo
Save
Mark Applied
Hide
1mo
Vulnerability Management Analyst
Joint Base Andrews, Maryland, United States
OnsiteFull Time
TIME Systems: Provider of technology, engineering, and management solutions for federal agencies.
4+ YOE4+ years cybersecurity/systems experience with ≥1 year in vulnerability management using Tenable/Nessus/ACAS, active DoD Secret clearance, CompTIA Security+ CE, knowledge of RMF, DISA STIGs, SCAP, NIST SP 800-53, and strong reporting and communication skills.
Tenable SecurityCenter, Nessus, Assured Compliance Assessment Solution (ACAS), SCAP Compliance Checker (SCC), eMASS, HBSS, PowerShell, Nessus API, Microsoft Windows Server, Red Hat Enterprise Linux (RHEL), VMware, Active Directory
MaximusNYSE: MMS: Provides government health and human services program administration.
7+ YOERequires active Secret clearance, US citizenship, 7+ years in cybersecurity, and 4+ years managing POA&Ms, federal security frameworks, vulnerability and risk management. Daily onsite work and 24x7x365 on-call availability required.
NIST 800-53, Risk Management Framework (RMF), Federal Information Security Modernization Act (FISMA), antivirus software, vulnerability scanners, access control, endpoint protection, Public Key Infrastructure (PKI), Security Information and Event Management (SIEM), Data Loss Prevention (DLP)
Washington or Atlanta or Austin or Baltimore or Chicago or Virginia
$94k-$131k/yrHybridFull Time
DLA Piper: Global law firm providing comprehensive legal and business services.
7+ YOE7+ years in cybersecurity, Bachelor's in Information Security/Cybersecurity required, professional certs (e.g., CISSP, GIAC, SANS) preferred, SIEM/EDR/IDS/IPS and vendor tool experience, incident response and vulnerability management expertise.
Security Incident and Event Management (SIEM), Endpoint Detection and Response (EDR), Intrusion Detection/Prevention Systems (IDS/IPS), Microsoft Defender, CrowdStrike, Palo Alto Networks, malware sandbox, DNS, Active Directory, Exchange
TIME Systems: Provider of technology, engineering, and management solutions for federal agencies.
Bachelor's degree in a technical discipline or equivalent experience, Secret clearance, Security+ CE or higher, and knowledge of ACAS, endpoint security, STIG, RMF, vulnerability management, and incident response.
Peraton: Provides advanced technology and mission support for government agencies.
7+ YOEUS citizen with active TS and ability to obtain/maintain SCI; 7+ years relevant experience (varies by degree); expertise in network architecture, PACOM threat environment, and on-site vulnerability assessment; willingness for frequent OCONUS travel and SCIF work.
APV: Provides information technology and consulting services to government agencies.
8+ YOEBachelor's degree preferred, 8–10 years of federal cybersecurity experience, end-to-end ATO leadership, NIST and FISMA expertise, SIEM and vulnerability scanning experience, cloud security, U.S. citizenship, and DHS Public Trust eligibility.
Splunk, AWS Security Hub, Microsoft Sentinel, Nessus, Qualys, AWS GovCloud, Microsoft Azure Government, Microsoft SharePoint, REST, SOAP, SFTP, ETL, ELT, iPaaS, DevSecOps, NIST SP 800-37, NIST SP 800-53, NIST SP 800-218, FIPS 140-2, FIPS 140-3, FedRAMP, FISMA, CDM, TIC 3.0, SORN, NFC EmpowHR, USA Staffing, FedTalent, OPM eOPF, OPM Retirement Services Online, webTA, BENEFEDS, TSP, OMB M-22-09
Staff Mult Fnc Info Sys Analyst- TS/SCI W/Poly - Littleton, CO
Littleton or Denver or Bethesda
$118k-$219k/yrOnsiteFull Time
Lockheed MartinNYSE: LMT: Designs and manufactures advanced aerospace, defense, and security systems.
5+ YOEActive TS/SCI clearance with CI Poly, U.S. citizenship, Security+ certification, and 5+ years administering Linux and Windows servers. Requires DISA STIG, security hardening, virtualization, vulnerability remediation, and configuration management experience.
Windows Server, Linux, Microsoft Windows, Red Hat Enterprise Linux (RHEL), VMware, Hyper-V, Nessus, Trellix, Windows Server Update Services (WSUS), YUM, Microsoft System Center Configuration Manager (SCCM), Splunk, Assured Compliance Assessment Solution (ACAS), Security Content Automation Protocol (SCAP), Host-Based Security System (HBSS), Active Directory, NetApp, EMC, Ansible, Perl, Bash, PowerShell, Shell Scripting
Anne Arundel County: Providing essential public services and infrastructure to county residents.
6+ YOEFour-year degree in a related field, six years of systems analysis and design experience, five years of hands-on cybersecurity experience, and two years each in vulnerability management, incident response, and endpoint detection and response.
Endpoint Detection and Response, vulnerability management platform, incident tickets
Tata Consultancy ServicesNational Stock Exchange of India: TCS: Global provider of IT services, consulting, and business solutions.
4+ YOE4–10 years in information security with hands-on vulnerability and patch management experience, familiarity with Qualys/Tenable/Rapid7, RCA, automation, metrics and reporting.