292 vulnerability manager jobs at 169 companies in Manassas Park, VA
3w
Save
Mark Applied
Hide
3w
Vulnerability Management Lead
Washington, District of Columbia, United States
OnsiteContract
K2Share: A mission-driven organization providing cybersecurity, IT advisory services, and workforce-readiness education.
6+ YOE2+ MgmtBachelor's degree or equivalent experience; 6+ years in vulnerability management, including 2+ years leading enterprise programs; vulnerability platforms, risk prioritization, remediation coordination, reporting, POA&M, and NIST knowledge.
Tenable, Qualys, Rapid7, Microsoft Defender Vulnerability Management, Azure, Microsoft 365, AWS, SIEM, EDR, SBOM, POA&M, NIST
BDR Solutions: Service-disabled veteran-owned small IT services firm modernizing health, social-service, and disaster-relief systems for U.S. federal agencies.
7+ YOEUS citizen with active Top Secret clearance, 7+ years managing Windows servers and vulnerability remediation, bachelor's in networking/cybersecurity, proficiency with AD, SQL Server, SCCM, Nessus and BigFix, scripting (PowerShell, Python, Azure/AWS CLI).
Tenable Nessus, BigFix, Microsoft Active Directory, SQL Server, System Center Configuration Manager (SCCM), PowerShell, Azure CLI, AWS CLI, Python, VBScript, Microsoft Excel, Microsoft PowerPoint, Microsoft Visio, Microsoft Word, Ansible
Unissant: Government technology consulting firm delivering data analytics, AI, digital transformation, and cybersecurity services to U.S. federal agencies.
5+ YOE5+ years enterprise vulnerability management experience; bachelor\u0002s degree required; experience with risk-based remediation, dashboarding, automation, and federal cybersecurity expectations; strong communication skills.
Steampunk: Federal contractor providing human-centered IT and mission solutions.
5+ YOEBachelor's degree or equivalent, 5+ years of enterprise vulnerability management and cybersecurity experience, federal cybersecurity knowledge, strong analytical and communication skills, and ability to obtain a U.S. government clearance.
AWS, Microsoft Azure, Google Cloud Platform, Power BI, Power Apps, Microsoft SharePoint, Artificial intelligence/machine learning (AI/ML)
CACINYSE: CACI: Provider of specialized IT and mission-critical government services.
6+ YOEU.S. citizenship, bachelor's degree plus 6 years of vulnerability management and cybersecurity experience, Qualys expertise, scanning-tool experience, risk analysis, and vulnerability prioritization skills.
Qualys, dbProtect, WebInspect, Tenable, Tableau, Power BI, Splunk, DISA STIGs
Two Six Technologies: Private defense technology delivering cybersecurity, data, and mission solutions to U.S. national security customers.
Lead vulnerability research on embedded systems; expert in C/C++ and Python, reverse engineering, firmware analysis, emulation, fuzzing, and mentoring junior staff. Active Top Secret clearance required or eligible.
GrammaTech: Cybersecurity services provider and software-assurance developer serving government, intelligence, and mission-critical infrastructure.
5+ YOEBachelor's degree and 5 years' relevant experience, or associate degree and 7 years; proficiency in C/C++, Python, ISA, Linux, decompilers, vulnerability tools, and debuggers; active TS/SCI clearance required.
CACINYSE: CACI: Provider of specialized IT and mission-critical government services.
6+ YOEBachelor's degree plus 6 years of vulnerability management and cybersecurity experience; U.S. citizenship, Qualys expertise, scanning-tool experience, risk analysis, and strong analytical skills required.
Qualys, dbProtect, Webinspect, Tenable, Tableau, Microsoft Power BI, Splunk
Digital Global Connectors: Woman-owned cybersecurity services firm providing engineering, assessment, consulting, training, and operations services to federal and private-sector clients.
4+ YOEBachelor's degree, 4+ years vulnerability management experience, experience with Tenable/Qualys/Rapid7/Microsoft tools, RMF/NIST SP 800-53 familiarity, U.S. citizenship and ability to obtain Tier 2 Public Trust.
Tenable Security Center, Nessus Manager, Nessus Professional, Nessus Agents, Microsoft Defender Vulnerability Management, Qualys VMDR, Rapid7 InsightVM, Microsoft Defender for Cloud, AWS Inspector, Azure Security Center, Security Content Automation Protocol (SCAP), Microsoft Office Suite, ServiceNow, Jira
GovCIO: Provider of IT modernization and digital transformation services.
12+ YOE3+ MgmtBachelor's degree preferred, 12+ years in cybersecurity, 5+ years in vulnerability management, 3+ years managing vulnerability teams, information security certification, and US citizenship for Public Trust.
Tenable, DB Protect, Netsparker, Qualys, Microsoft Lists, Jira
TIME Systems: Service-disabled veteran-owned IT, cybersecurity, engineering, and management consulting contractor serving government, corporate, and nonprofit clients.
4+ YOE4+ years cybersecurity/systems experience with ≥1 year in vulnerability management using Tenable/Nessus/ACAS, active DoD Secret clearance, CompTIA Security+ CE, knowledge of RMF, DISA STIGs, SCAP, NIST SP 800-53, and strong reporting and communication skills.
Tenable SecurityCenter, Nessus, Assured Compliance Assessment Solution (ACAS), SCAP Compliance Checker (SCC), eMASS, HBSS, PowerShell, Nessus API, Microsoft Windows Server, Red Hat Enterprise Linux (RHEL), VMware, Active Directory
Areté: Employee-owned science and engineering developing sensing products and software for U.S. defense, intelligence, and commercial customers.
3+ YOERequires active Top Secret clearance, 3+ years in systems or vulnerability administration, Windows Server and Red Hat Linux expertise, scanning and patch management experience, and scripting skills. Security+ CE required within 120 days.
Rapid7, Tenable Security Center, Nessus, Qualys, PDQ Deploy, Microsoft System Center Configuration Manager (SCCM), Microsoft Endpoint Configuration Manager (MECM), Microsoft Windows Server Update Services (WSUS), YUM, DNF, Red Hat Satellite, PowerShell, Bash, Python, DISA STIGs, SCAP Compliance Checker, NIST 800-53, NIST 800-171, Risk Management Framework (RMF), Software Bill of Materials (SBOM), Microsoft AZ-800/801, Microsoft MD-102, GIAC GCED/GEVA, CCNA, Network+, CySA+, RHCSA
Arizona or North Carolina or Texas or Virginia or Plano or Raleigh or Reston or Richardson or Tempe
OnsiteFull Time
InfosysNYSE: INFY: Global leader in next-generation digital services and consulting.
Bachelor's degree or equivalent experience; expertise in vulnerability governance, risk assessment, compliance monitoring, reporting, workflow documentation, remediation tracking, and technical writing. US work authorization required.
Chenega Systems: Alaska Native providing diversified services to federal agencies.
5+ YOEBachelor's degree or equivalent experience, 5+ years in cybersecurity vulnerability or exposure management, and Security+, SSCP, or comparable certification. U.S. citizenship and background screening required.
Rapid7, Tenable, Wiz, CMDB, PowerShell, Python, Transmission Control Protocol (TCP), Internet Protocol (IP), Open System Interconnection Model (OSI), Information Technology Infrastructure Library (ITIL), PL/SQL, Nmap
StratasCorp: The new generation supporting the next-gen warfighter.
7+ YOERequires 7 years of relevant IT or cybersecurity experience, vulnerability management and Windows/Linux patch management expertise, RMF and continuous monitoring experience, active Secret clearance, high school diploma, and Security+ certification.
Navstar Inc.: IT services and defense contractor providing software development, systems engineering, and data management to U.S. federal agencies.
7+ YOEActive TS/SCI with Polygraph; 7+ years position-specific vulnerability research and reverse engineering experience; proficiency with IDA Pro, Ghidra, Binary Ninja, GDB, WinDBG, Python, C/C++, and low-level OS internals.
IDA Pro, Ghidra, Radare, Binary Ninja, Microsoft Sysinternals, GDB, WinDBG, Python, C, C++, Assembly
ManTech International: Advancing the future of defense through innovative technology.
7+ YOECurrent active TS/SCI with poly required; 7+ years position-specific experience; experience in vulnerability research and reverse engineering (IDA Pro, Ghidra, Binary Ninja, Radare, SysInternals, GDB, WinDBG); proficiency in Python, C/C++, Assembly; CNO capability development experience.
Enterprise Vulnerability Assessment Program (EVAP)
Washington, District of Columbia, United States
$162k-$195k/yrOnsiteFull Time
ECS FederalEFOR: Federal segment of Everforth delivering technology and engineering solutions.
Requires vulnerability assessment and management experience using Tenable, scanning enterprise systems and networks, knowledge of Windows, RHEL, security infrastructure, vulnerability frameworks, and strong communication skills.
Peraton: Provider of mission-critical national security technologies and services.
8+ YOE8+ years in security operations or vulnerability management; Bachelor in Cybersecurity/IT (or 4 years additional experience); hands-on vulnerability scanning, cloud compliance, ISVM, API scanning; Secret clearance and U.S. citizenship required.