302 vulnerability jobs at 137 companies in Maryland
2mo
Save
Mark Applied
Hide
2mo
Vulnerability Researcher
Annapolis Junction, Maryland, United States
OnsiteFull Time
Intelliforce: Provides engineering and technical solutions for the intelligence community.
12+ YOETop Secret clearance with polygraph required; US citizen; degree and experience as listed; vulnerability research and reverse engineering experience.
Booz Allen HamiltonNYSE: BAH: Consulting and technology services for government and commercial clients
6+ YOETS/SCI with polygraph required; 6+ years vulnerability research or 2+ years with relevant degree; reverse engineering, exploit development, scripting, OS and DevOps experience.
Unissant: Delivers data analytics and cybersecurity services to government agencies.
5+ YOE5+ years enterprise vulnerability management experience; bachelor\u0002s degree required; experience with risk-based remediation, dashboarding, automation, and federal cybersecurity expectations; strong communication skills.
ManTech: Provides technology solutions for defense and intelligence agencies.
4+ YOEBachelor's plus 4+ years (or HS plus 8+ years), experience in vulnerability research, exploit development, reverse engineering; proficiency in C/C++, Python, Assembly; active Secret clearance.
GrammaTech: A cybersecurity delivering advanced security solutions and vulnerability research for government customers.
5+ YOEBachelor's degree and 5 years' relevant experience, or associate degree and 7 years; proficiency in C/C++, Python, ISA, Linux, decompilers, vulnerability tools, and debuggers; active TS/SCI clearance required.
Booz Allen HamiltonNYSE: BAH: Provides technology and management consulting services to diverse organizations.
6+ YOE6+ years vulnerability research or 2+ years with bachelor’s and experience in reverse engineering, exploit development, scripting (Perl, Java, Python, Bash, PowerShell), Windows/Linux/Mac, DevOps and CI/CD tools.
Core4ce: Provider of data-driven national security and defense technology solutions.
7+ YOETS/SCI with Poly, 7+ years vulnerability research, experience in reverse engineering, strong low-level software analysis, and proficiency with standard security tools.
Tharros: Provides specialized cybersecurity defense and vulnerability research services.
3+ YOEActive Top Secret/SCI eligibility, DCWF qualification codes as listed, 3+ years vulnerability research or military OJT equivalent, reverse engineering/binary analysis/exploitation experience, experience in DoD classified environments.
Navstar: Provides IT and cybersecurity solutions to the intelligence community.
7+ YOEActive TS/SCI with Polygraph; 7+ years position-specific vulnerability research and reverse engineering experience; proficiency with IDA Pro, Ghidra, Binary Ninja, GDB, WinDBG, Python, C/C++, and low-level OS internals.
IDA Pro, Ghidra, Radare, Binary Ninja, Microsoft Sysinternals, GDB, WinDBG, Python, C, C++, Assembly
The Swift Group: Providing engineering and cybersecurity services for national security missions.
2+ YOEPerform vulnerability assessments and security analysis of systems, networks, hardware and software; recommend mitigations. Requires OS/network knowledge, risk analysis skills, and active TS/SCI with Polygraph and U.S. citizenship.
RealmOne: Provides advanced technology services for national security agencies.
4+ YOEIdentify and analyze system vulnerabilities and attacks, exploit captured media, conduct incident investigations, perform vulnerability analysis/penetration testing/forensics, and produce reports and briefings; active security clearance with polygraph required.
SkyePoint Decisions: Provider of cybersecurity, infrastructure, and IT development services.
5+ YOEBachelor's in relevant field, U.S. citizenship, Public Trust eligibility, 5+ years cybersecurity/vulnerability management experience in federal environments, POA&M and remediation tracking experience, strong analytical and communication skills.
BigBear.aiNYSE: BBAI: Provides AI-powered decision intelligence software for national security.
5+ YOEActive TS/SCI with Poly, minimum 5 years technical experience (BS in technical discipline or equivalent), 4+ years programming in Assembly/C/C#/C++/Perl/Python, reverse engineering and exploit development experience.
Digital Global Connectors: Provides cybersecurity, engineering, and compliance services to federal agencies.
4+ YOEBachelor's degree, 4+ years vulnerability management experience, experience with Tenable/Qualys/Rapid7/Microsoft tools, RMF/NIST SP 800-53 familiarity, U.S. citizenship and ability to obtain Tier 2 Public Trust.
Tenable Security Center, Nessus Manager, Nessus Professional, Nessus Agents, Microsoft Defender Vulnerability Management, Qualys VMDR, Rapid7 InsightVM, Microsoft Defender for Cloud, AWS Inspector, Azure Security Center, Security Content Automation Protocol (SCAP), Microsoft Office Suite, ServiceNow, Jira
Peraton: National security and mission-critical government technology services provider.
5+ YOEBachelor's plus 5+ years, master's plus 3+ years, or PhD with relevant experience; active Secret clearance and IAT Level II certification. Requires penetration testing, web exploitation, vulnerability assessment, and security framework expertise.
HackerOne Triage, Kali Linux, Burp Suite, MITRE ATT&CK, CVSS, NIST, Open Web Application Security Project (OWASP), Hack-The-Box, HTML, CSS, SQL, PowerShell, Bash, Python, Perl
TIME Systems: Provider of technology, engineering, and management solutions for federal agencies.
4+ YOE4+ years cybersecurity/systems experience with ≥1 year in vulnerability management using Tenable/Nessus/ACAS, active DoD Secret clearance, CompTIA Security+ CE, knowledge of RMF, DISA STIGs, SCAP, NIST SP 800-53, and strong reporting and communication skills.
Tenable SecurityCenter, Nessus, Assured Compliance Assessment Solution (ACAS), SCAP Compliance Checker (SCC), eMASS, HBSS, PowerShell, Nessus API, Microsoft Windows Server, Red Hat Enterprise Linux (RHEL), VMware, Active Directory
GovCIO: Provides technology and mission support services to federal agencies.
12+ YOE3+ MgmtBachelor's degree preferred, 12+ years in cybersecurity, 5+ years in vulnerability management, 3+ years managing vulnerability teams, information security certification, and US citizenship for Public Trust.
Tenable, DB Protect, Netsparker, Qualys, Microsoft Lists, Jira
Themis Insight: Provides technical consulting and data analytics for national security.
11+ YOETS/SCI with Polygraph; Bachelor’s degree in CS or related field plus 11 years experience, or Master’s plus 9 years, or Doctoral plus 7 years; relevant vulnerability analysis experience.
Weeghman & Briggs: Provides specialized intelligence analysis and cybersecurity services to government agencies.
Active TS/SCI with Polygraph, experience supporting government or DoD programs, vulnerability analysis/penetration testing/forensics experience, strong written and verbal communication, ability to exploit captured media and investigate security incidents.