141 vulnerability management engineer jobs at 86 companies in McLean, VA

1w
Save
Mark Applied
Hide
Vulnerability Management Engineer
Bethesda, Maryland, United States
HybridFull Time
Digital Global Connectors
Digital Global Connectors: Provides cybersecurity, engineering, and compliance services to federal agencies.
4+ YOEBachelor's degree, 4+ years vulnerability management experience, experience with Tenable/Qualys/Rapid7/Microsoft tools, RMF/NIST SP 800-53 familiarity, U.S. citizenship and ability to obtain Tier 2 Public Trust.
Tenable Security Center, Nessus Manager, Nessus Professional, Nessus Agents, Microsoft Defender Vulnerability Management, Qualys VMDR, Rapid7 InsightVM, Microsoft Defender for Cloud, AWS Inspector, Azure Security Center, Security Content Automation Protocol (SCAP), Microsoft Office Suite, ServiceNow, Jira
1mo
Save
Mark Applied
Hide
Staff Security Engineer – Vulnerability Management
Seattle or Palo Alto or Dallas or Bethesda or Washington
$110k-$230k/yr HybridFull Time
GEICO
GEICO: Provides vehicle and property insurance services to consumers.
8+ YOE8+ years in cybersecurity/security engineering; deep vulnerability management, cloud/containers experience; strong Python/Go/Java scripting, SQL, automation, offensive security, and ability to influence technical stakeholders.
Python, Go, Java, SQL, CI/CD, DevSecOps, SIEM, SOAR
1d
Save
Mark Applied
Hide
Vulnerability Engineer
Washington, District of Columbia, United States
$100k-$130k/yr HybridFull Time
BDR Solutions
BDR Solutions: Provider of IT, engineering, and consulting for federal agencies.
7+ YOEUS citizen with active Top Secret clearance, 7+ years managing Windows servers and vulnerability remediation, bachelor's in networking/cybersecurity, proficiency with AD, SQL Server, SCCM, Nessus and BigFix, scripting (PowerShell, Python, Azure/AWS CLI).
Tenable Nessus, BigFix, Microsoft Active Directory, SQL Server, System Center Configuration Manager (SCCM), PowerShell, Azure CLI, AWS CLI, Python, VBScript, Microsoft Excel, Microsoft PowerPoint, Microsoft Visio, Microsoft Word, Ansible
1mo
Save
Mark Applied
Hide
Vulnerability Management Lead
Washington or United States
RemoteFull Time
Valiant Solutions
Valiant Solutions: Provides cybersecurity and IT services to federal government agencies.
6+ YOEU.S. citizen with 6+ years cybersecurity experience, OS and networking knowledge, Tenable/AquaSec/CDM experience, GCIH/CISSP/CISM/CRISC certification, POA&M and dashboarding experience, and ability to coordinate across security and engineering teams.
Tenable ONE, Nessus, Tenable.io, AquaSec, CDM, ServiceNow, SIEM, AWS GovCloud
2mo
Save
Mark Applied
Hide
Vulnerability Researcher
Annapolis Junction, Maryland, United States
OnsiteFull Time
Intelliforce
Intelliforce: Provides engineering and technical solutions for the intelligence community.
12+ YOETop Secret clearance with polygraph required; US citizen; degree and experience as listed; vulnerability research and reverse engineering experience.
IDA Pro, Ghidra, Radare, Binary Ninja, SysInternals, GDB, WinDBG, Python, C, C++, Assembly
1d
Save
Mark Applied
Hide
Principal Vulnerability Researcher
Herndon, Virginia, United States
$181k-$289k/yr OnsiteFull Time
Two Six Technologies
Two Six Technologies: Develops cybersecurity and data systems for national security missions.
Lead vulnerability research on embedded systems; expert in C/C++ and Python, reverse engineering, firmware analysis, emulation, fuzzing, and mentoring junior staff. Active Top Secret clearance required or eligible.
C, C++, Python, Linux, IDA Pro, Binary Ninja, Ghidra, QEMU, JTAG, UART, oscilloscope, logic analyzer
4h
Save
Mark Applied
Hide
Lead Vulnerability Researcher
Maryland or Herndon
$175k-$220k/yr OnsiteFull Time
GrammaTech
GrammaTech: A cybersecurity delivering advanced security solutions and vulnerability research for government customers.
4+ YOEAdvanced degree and relevant cybersecurity experience required; proficiency in C/C++, Python, ISA, Linux, reverse engineering, decompilers, vulnerability research tools, and debuggers. Active TS/SCI clearance with polygraph required in Maryland.
C, C++, Python, x86, ARM, MIPS, Linux, IDA Pro, Binary Ninja, Ghidra, GDB, WinDbg, UART, SPI, I2C, TLS, SSH, RTOS
2mo
Save
Mark Applied
Hide
of SVP, Vulnerability Management & Cloud Security Posture Platform Engineering
New York or Pittsburgh or Washington
$120k-$253k/yr HybridFull Time
BNY
BNYNYSE: BK: Global institution managing and servicing financial assets worldwide.
10+ YOE2+ MgmtExtensive leadership and hands-on engineering in enterprise cybersecurity, vulnerability management, cloud security posture, automation, and platform operations.
Python, Go, Java, AWS, Azure, GCP, Kubernetes, CI/CD, API technologies
2mo
Save
Mark Applied
Hide
CNO Vulnerability Researcher, SME
Columbia, Maryland, United States
$150k-$275k/yr OnsiteFull Time
Navstar
Navstar: Provides IT and cybersecurity solutions to the intelligence community.
7+ YOEActive TS/SCI with Polygraph; 7+ years position-specific vulnerability research and reverse engineering experience; proficiency with IDA Pro, Ghidra, Binary Ninja, GDB, WinDBG, Python, C/C++, and low-level OS internals.
IDA Pro, Ghidra, Radare, Binary Ninja, Microsoft Sysinternals, GDB, WinDBG, Python, C, C++, Assembly
1mo
Save
Mark Applied
Hide
Penetration Testing, Software Assurance and Vulnerability Assessment Engineer
Washington, District of Columbia, United States
OnsiteFull Time
One Federal Solution
One Federal Solution: Provides professional and technical services to federal government agencies.
10+ YOEMinimum 10 years related experience, 2+ years recent experience in software assurance, penetration testing, vulnerability assessment, patch management, secure cloud/hybrid engineering, and CDS. CEH and CISSP required or comparable experience.
Cross Domain Solution (CDS)
3mo
Save
Mark Applied
Hide
SME CNO Vulnerability Researcher
Columbia or Hanover
$179k-$318k/yr OnsiteFull Time
ManTech
ManTech: Provides technology solutions for defense and intelligence agencies.
7+ YOECurrent active TS/SCI with poly required; 7+ years position-specific experience; experience in vulnerability research and reverse engineering (IDA Pro, Ghidra, Binary Ninja, Radare, SysInternals, GDB, WinDBG); proficiency in Python, C/C++, Assembly; CNO capability development experience.
IDA Pro, Ghidra, Radare, Binary Ninja, SysInternals, GDB, WinDBG, Python, C, C++, Assembly (x86/x64)
2w
Save
Mark Applied
Hide
Enterprise Vulnerability Assessment Program- AI Focused
Washington, District Of Columbia, United States
$160k-$205k/yr OnsiteFull Time
ECS
ECSNYSE: ASGN: Provides advanced technology and engineering services to government agencies.
Active Top Secret clearance, experience with Nessus/Tenable, vulnerability management across infrastructure and applications, AI/ML security experience, strong communication and prompt-engineering familiarity.
NESSUS, Tenable, Tenable.io, Tenable.sc, VMware vSphere, Oracle, MSSQL, MySQL, Postgres
1mo
Save
Mark Applied
Hide
Senior Penetration Testing, Software Assurance and Vulnerability Assessment Engineer
Washington, District of Columbia, United States
$125k-$150k/yr OnsiteFull Time
Dexian Government Solutions
Dexian Government Solutions: Provides diversified IT and engineering solutions to government agencies.
10+ YOE10+ years total experience with at least 2 years recent experience in software assurance, penetration testing, vulnerability assessment, patch management, secure cloud/hybrid engineering, and CDS. Must hold CEH and CISSP or equivalent and possess TS/SCI with CI-scope polygraph.
JWICS, RMF, NATO-TS COSMIC, DoD 8570/8140
2mo
Save
Mark Applied
Hide
Compliance and Continuous Monitoring Engineer - Vulnerability Management (Top Secret Clearance)
Washington, District of Columbia, United States
OnsiteFull Time
ShorePoint
ShorePoint: Provides cybersecurity and risk management services for federal agencies.
5+ YOEExperience in vulnerability management, NIST 800-53/800-53A, TS clearance, bachelor’s or 10+ years IT experience, CISSP/GIAC/GCIA/GCIH certs, Tenable/Nessus, Web Inspect, AppDetective/DbProtect.
Nessus, Tenable Security Center, AppDetective, DbProtect, Web Inspect, Nmap, Guardium, Hailstorm
1mo
Save
Mark Applied
Hide
Cloud Engineer (22728)
Arlington or McLean
OnsiteFull Time
RenXTech
RenXTech: Technical and analytical support for national security missions.
U.S. citizen with active TS/SCI; experienced in Amazon Web Services and Microsoft Azure cloud engineering, DevSecOps/CI/CD, cloud architecture, security and vulnerability management, and project/team leadership.
Amazon Web Services (AWS), Microsoft Azure, Gitlab, Jenkins, GCP
1w
Save
Mark Applied
Hide
Senior Penetration Testing, Software Assurance and Vulnerability
Washington, District of Columbia, United States
$115k-$185k/yr OnsiteFull Time
Def-Logix
Def-Logix: Cybersecurity research, software development, and technical services firm.
10+ YOE10+ years cybersecurity experience; 2+ years recent experience in software assurance, penetration testing with automated tools, vulnerability assessment, patch management, secure cloud/hybrid engineering, and Cross Domain Solutions; CEH and CISSP or comparable experience.
6d
Save
Mark Applied
Hide
Senior Penetration Testing, Software Assurance and Vulnerability
Washington, District of Columbia, United States
$175k-$215k/yr OnsiteFull Time
CDO Technologies
CDO Technologies: Provides IT systems integration and engineering design services.
10+ YOE10+ years related experience with at least 2 years recent experience in software assurance, automated penetration testing, vulnerability assessment, patch management, secure cloud/hybrid engineering, and Cross Domain Solutions; CEH and CISSP or comparable experience.
1mo
Save
Mark Applied
Hide
Senior Platform Engineer - Security
Washington or Sarasota or Miami or New York City or Toronto or Longboat Key
$165k-$205k/yr OnsiteFull Time
Rumble
RumbleNASDAQ: RUM: Video sharing platform and cloud infrastructure provider.
Strong Linux systems engineering and security background; experience hardening Linux, OpenStack/Ceph/Kubernetes, vulnerability management, automation with Ansible/Terraform, scripting in Bash/Python, and supporting compliance/audit activities.
OpenStack, Ceph, Kubernetes, Ansible, Terraform, Bash, Python, CIS Benchmarks, ISO 27001, SELinux, AppArmor, auditd, PAM, Elastic, Splunk, Wazuh, Falco, Vault, LUKS, dm-crypt
1mo
Save
Mark Applied
Hide
Senior Platform Engineer - Security
Washington or Sarasota or Miami or New York City or Toronto or Longboat Key
$165k-$205k/yr OnsiteFull Time
Rumble
RumbleNASDAQ: RUM: Online video sharing platform and cloud services provider.
Strong Linux systems engineering and security hardening experience; vulnerability management, OpenStack/Ceph/Kubernetes familiarity; automation with Ansible/Terraform and scripting in Bash or Python; audit and compliance experience.
CIS Benchmarks, STIGs, OpenStack, Nova, Neutron, Keystone, Cinder, Ceph, Kubernetes, CIS Kubernetes Benchmarks, Ansible, Terraform, Bash, Python, SELinux, AppArmor, auditd, PAM, SIEM, EDR, Elastic, Splunk, Wazuh, Falco, Vault, LUKS/dm-crypt, CVSS, ISO 27001, SOC 2, PCI DSS, FedRAMP, Pod Security Standards
4w
Save
Mark Applied
Hide
Staff Security Engineer, Application Security
Chicago or California or Colorado or Florida or Georgia or Illinois or Indiana or Minnesota or Missouri or Montana or New Jersey or New York or North Carolina or Ohio or Oregon or Pennsylvania or South Carolina or Texas or Utah or Vermont or Virginia or Washington or Washington or Wisconsin
$210k-$260k/yr HybridFull Time
NinjaTrader
NinjaTrader: Provides futures brokerage services and a trading software platform.
7+ YOE7+ years in application/product/security engineering; hands-on threat modeling, vulnerability management, secure design, CI/CD integration, automation using Python/Go; experience with cloud-native AWS/GCP environments.
AWS, GCP, Python, Go, SAST, SCA, DAST, CI/CD, AI/LLMs

Explore Jobs

Expand Your Job Search