28 vulnerability management engineer jobs at 18 companies in Aberdeen, MD
2mo
Save
Mark Applied
Hide
2mo
Vulnerability Researcher
Annapolis Junction, Maryland, United States
OnsiteFull Time
Intelliforce: Provides engineering and technical solutions for the intelligence community.
12+ YOETop Secret clearance with polygraph required; US citizen; degree and experience as listed; vulnerability research and reverse engineering experience.
Navstar: Provides IT and cybersecurity solutions to the intelligence community.
7+ YOEActive TS/SCI with Polygraph; 7+ years position-specific vulnerability research and reverse engineering experience; proficiency with IDA Pro, Ghidra, Binary Ninja, GDB, WinDBG, Python, C/C++, and low-level OS internals.
IDA Pro, Ghidra, Radare, Binary Ninja, Microsoft Sysinternals, GDB, WinDBG, Python, C, C++, Assembly
ManTech: Provides technology solutions for defense and intelligence agencies.
7+ YOECurrent active TS/SCI with poly required; 7+ years position-specific experience; experience in vulnerability research and reverse engineering (IDA Pro, Ghidra, Binary Ninja, Radare, SysInternals, GDB, WinDBG); proficiency in Python, C/C++, Assembly; CNO capability development experience.
Lead Vulnerability Researcher ($285k+/year + Sign-On Bonus)
Linthicum, Maryland, United States
$285k-$300k/yrOnsiteFull Time
Two Six Technologies: Develops cybersecurity and data systems for national security missions.
4+ YOERequires a relevant degree and 4–10 years of experience, C/C++, Python, ISA, Linux, decompilers, fuzzers, debuggers, reverse engineering, and active TS/SCI clearance with polygraph.
NetSage: Delivering specialized cyber services to the U.S. federal government.
9+ YOE6+ MgmtTS/SCI with polygraph; 9+ years relevant experience (or B.S.+11 years, M.S.+9 years, or 15 years without degree); 6+ years systems engineering leadership; vulnerability assessment and Zero Trust experience.
Markon Solutions: Provides professional program and engineering services to federal agencies.
15+ YOE6+ MgmtBachelor's degree in STEM and 15+ years of systems engineering experience, including 6+ years leading teams; TS/SCI with polygraph, Zero Trust, cybersecurity assessment, vulnerability assessment, IV&V, and secure architecture experience required.
Zero Trust, Offensive Cyber Operations (OCO), Defensive Cyber Operations (DCO), Independent Verification and Validation (IV&V), Performance Work Statements (PWS), NIST SP 800-160, INCOSE
ASRC Federal: Provides engineering and IT services to federal government agencies.
5+ YOE5–7 years vulnerability management experience, hands-on Tenable ACAS suite experience, active Secret clearance, 8570 IAM/IAT Level I certification (or examples), and bachelor’s in cybersecurity/IS or equivalent.
TAIT: Designs and manufactures staging, automation, and show control systems.
12+ YOE12+ years in information security with hands-on experience implementing enterprise security controls across identity, endpoint, network, cloud, vulnerability management, logging, and incident response.
Cogent People: A government consulting and technology services firm delivering secure, scalable digital solutions for federal and commercial programs.
8+ YOEU.S. work-authorized (citizen/PR/EAD) with 3 of last 5 years residency, Public Trust eligible, 8+ years information security experience, bachelor's or equivalent, knowledge of FISMA/FedRAMP/CMS, vulnerability management, and DevSecOps.
Specialized Infrastructure Services - ISSO Support Systems Engineer
Laurel or Jessup
$176k-$282k/yrOnsiteFull Time
Peraton: National security and mission-critical government technology services provider.
15+ YOEProvide ISSO support for information systems: maintain ATO, manage POA&Ms, vulnerability and account management, develop SSPs, perform security assessments, use XACTA; TS/SCI with polygraph and DoD8570 IAT Level 2+ required; ~15 years systems engineering experience.
Gormat: Provides cybersecurity and systems engineering services to government defense agencies
10+ YOETS/SCI with polygraph required. Degree in system engineering or related field with 10+ years (Master's) or 12+ years (Bachelor's) experience. Experience with C/C++, Python, Assembly, reverse engineering, and vulnerability analysis.
Peraton: Provides advanced technology and mission support for government agencies.
10+ YOEU.S. citizenship and ability to obtain/maintain Public Trust; 10+ years cybersecurity experience (degree/experience tradeoffs provided); expertise in security engineering, vulnerability assessment, continuous monitoring, risk management, and compliance with NIST/RMF/FISMA.
NIST SP 800-53, FISMA, RMF, CI/CD, Zero Trust, NAS
Senior Information Systems Security Engineer (ISSE)
Annapolis Junction, Maryland, United States
$150k-$210k/yrOnsiteFull Time
Amatriot Group: Provides IT consulting and mission-critical technology support services.
Design and implement enterprise security architecture, perform security engineering across SDLC, manage vulnerability programs, support incident response, and mentor junior staff. Active TS/SCI and DoD IAT Level III required.
NIST RMF, DoD STIGs, CIS benchmarks, Tenable Nessus, ACAS, Qualys, Splunk Enterprise, PowerShell, Bash, Python, Trellix ePO On-Prem, CyberArk, VMware vSphere, GitLab, Microsoft Windows Server, Red Hat Enterprise Linux, Ubuntu Linux, Ansible, AWS, Azure, Kubernetes
CACI InternationalNYSE: CACI: Provides information technology and engineering services for government agencies.
Active TS/SCI with polygraph, strong analytics development background, proficiency in Python, experience with system authorization, RMF, and vulnerability management; multi-year technical experience as specified by education.
CACINYSE: CACI: Provides information technology and professional services to government clients.
Active TS/SCI with Polygraph; strong analytics development background; proficiency in Python; experience with RMF, system authorization, and vulnerability management (e.g., Nessus); 4+ years experience typical depending on degree.
Markon: Provides professional services and management consulting for government agencies.
15+ YOE6+ MgmtBachelor's degree in STEM and 15+ years of systems engineering experience, including 6+ years leading teams; TS/SCI with polygraph, Zero Trust, cybersecurity assessment, vulnerability assessment, IV&V, and technical leadership experience required.
NIST SP 800-160, INCOSE, Performance Work Statements (PWS), Independent Verification and Validation (IV&V)
Tata Consultancy ServicesNational Stock Exchange of India: TCS: Global provider of IT services, consulting, and business solutions.
4+ YOE4–10 years in information security with hands-on vulnerability and patch management experience, familiarity with Qualys/Tenable/Rapid7, RCA, automation, metrics and reporting.
Lockheed MartinNYSE: LMT: Designs and manufactures global security and aerospace systems.
5+ YOEActive TS/SCI and US citizenship required; bachelor\u0002s degree in cybersecurity/IT/CS/engineering or equivalent experience; 5+ years cybersecurity experience preferred; experience with frameworks, vulnerability management, incident response, SIEM, endpoint security; professional certs (CISSP, CISM, Security+, CASP+).