Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Cybersecurity Vulnerability Analyst

$104k - $166k

Peraton

Cybersecurity Vulnerability Analyst

This Cybersecurity Vulnerability Analyst supports a Vulnerability Disclosure Program (VDP) within the federal government and is responsible for reviewing and vetting security vulnerability reports submitted to the DoD VDP from outside hackers. The Analyst will evaluate the reports to ensure the vulnerability is reproducible and therefore valuable to the customer. They will assess each vulnerability for severity and assign an associated risk statement. The HackerOne Triage console tool will be utilized to assist in assigning and prioritizing reports. It will also assist the Analyst in helping identify duplicate submissions. Valid reports will be written in a DoD approved format and sent to the Vulnerability Management Analyst team for system owner coordination and mitigation. The Vulnerability Analyst will be a VDP liaison with the hacker community.

The Vulnerability Analyst will also:

  • Utilize offensive toolsets such as Kali Linux to safely analyze production networks and systems, documenting steps and procedures to produce usable vulnerability assessments for the customer.
  • Identify and investigate vulnerabilities, assess exploit potential, and document findings and remedies for presentation to facilitate mitigations on customer systems.
  • Conduct web application vulnerability assessment testing using both automated tools and manual web exploitation techniques, using tools such as Burp Suite and open-source toolsets.
  • Utilize a variety of industry standard security tools to conduct automated scans against systems and applications.
  • Develop and execute proof-of-concept exploits to demonstrate the real-world impact of identified vulnerabilities, utilizing various web exploitation methods.

This position is fully on-site M-F in the Baltimore-Metropolitan area.

#DC3bonus

#DC3bonus

Qualifications

Required Qualifications:

  • Education: Bachelor's degree and 5+ years of experience, or Master's and 3+ years of experience, or PhD and 0+ years of experience. A degree in one of the following fields of study is highly desired: Information Technology, Computer Science, Cybersecurity, Information Systems, Software Engineering, or Data Science. An additional 4 years of relevant experience or specialized training may be considered in lieu of Bachelor's degree.
  • Security Clearance: Active Secret clearance.
  • Certifications: Active IAT Level II certification (CompTIA Security+ preferred).
  • In-depth understanding of information security principles and practices.
  • Pentesting experience.
  • Utilize MITRE ATT&CK, CVSS, and NIST frameworks to assess vulnerability severity and risk impact.
  • In-depth understanding of web exploitation concepts and techniques.
  • Knowledge and understanding of the Open Web Application Security Project (OWASP) top 10.
  • Experience operating in a professional IT or cybersecurity environment.
  • Experience investigating security events, threats and/or vulnerabilities.
  • Understand information security principles, technologies and practices.
  • Excellent customer service skills.

Preferred Additional Skills:

  • CEH, CCNA-Security, CySA+, OSCP (or equivalent), PenTest+ or similar certification a plus.
  • Completed multiple Hack-The-Box penetration testing labs and challenges, developing hands-on expertise in vulnerability enumeration, exploitation, privilege escalation, and post-exploitation techniques within realistic, adversarial environments.
  • Must possess an in-depth understanding of penetration testing methodology, including recon, exploit, persistence, etc.
  • Must have a solid understanding of networking protocols, their uses, and their potential misuses.
  • Programming experience in one or more languages, experience in HTLM/CSS or SQL.
  • Experience with one or more scripting languages such as PowerShell, Bash, Python or Perl.
Peraton Overview

Peraton is a next-generation national security company that drives missions of consequence spanning the globe and extending to the farthest reaches of the galaxy. As the world's leading mission capability integrator and transformative enterprise IT provider, we deliver trusted, highly differentiated solutions and technologies to protect our nation and allies. Peraton operates at the critical nexus between traditional and nontraditional threats across all domains: land, sea, space, air, and cyberspace. The company serves as a valued partner to essential government agencies and supports every branch of the U.S. armed forces. Each day, our employees do the can't be done by solving the most daunting challenges facing our customers. Visit peraton.com to learn how we're keeping people around the world safe and secure.

Target Salary Range

$104,000 - $166,000. This represents the typical salary range for this position. Salary is determined by various factors, including but not limited to, the scope and responsibilities of the position, the individual's experience, education, knowledge, skills, and competencies, as well as geographic location and business and contract considerations. Depending on the position, employees may be eligible for overtime, shift differential, and a discretionary bonus in addition to base pay.

EEO

EEO: Equal opportunity employer, including disability and protected veterans, or other characteristics protected by law.

Vacancy posted 3 days ago
Similar jobs that could be interesting for youBased on the Cybersecurity Vulnerability Analyst in Linthicum Heights, MD vacancy
  • $90k - $120k

     ...supporting current and near-term efforts to provide cybersecurity, data and network analysis expertise to...  ...professionals in the following areas: Network Analysts (Cyber, Forensic, Signals, Exploitation etc) Vulnerability Analysts Data Analysts Penetration... 
    Suggested
    Local area
    Remote work

    Nexxis Solutions

    Annapolis Junction, MD
    5 days ago
  • $110k - $220k

     ...System Vulnerability Analyst BTS Software Solutions is seeking a System Vulnerability Analyst to support the identification of vulnerabilities of and attacks against specific systems. Produce formal and informal reports, and briefings to present to the Government Customer... 
    Suggested
    Local area

    Navstar

    Annapolis Junction, MD
    3 days ago
  •  ...programs and MORE! Position Summary: The Cybersecurity Analyst is responsible for safeguarding, monitoring, and...  ...cybersecurity operations, threat detection, incident response, and vulnerability management. The role is accountable for identifying,... 
    Suggested
    Local area

    Johns Hopkins HealthCare

    Hanover, MD
    2 days ago
  •  ...security gaps, and implement preventive measures to strengthen the program's long-term defense posture. Provide expert guidance on cybersecurity directives and risk management policies; review POA&Ms for technical clarity and sound judgment to ensure acceptable remediation... 
    Suggested
    Work at office

    True Zero Technologies, LLC

    Annapolis Junction, MD
    5 days ago
  • $100k - $200k

     ...bring together some of the most curious minds in networking and cybersecurity. ANS was founded to disrupt the status quo . For over 20...  ...today is safe and tomorrow is smarter. As an Intrusion Analyst on our team, you will: be trusted to analyze target... 
    Suggested
    Full time
    Temporary work
    Local area
    Flexible hours

    Applied Network Solutions

    Annapolis Junction, MD
    2 days ago
  • Vision Technologies is looking for a Security Service Engineer to ensure the operational stability and performance of Genetec Security Center environments. The candidate will be responsible for proactive maintenance, troubleshooting issues, and supporting customer service...

    Vision Technologies

    Glen Burnie, MD
    6 hours ago
  • $128.7k - $143k

     ...decade, and we are cultivating a workplace where our employees can grow, thrive, and contribute.   The Senior Relay Engineering Analyst position is based out of our Constellation Generation Solutions (CGS), Fort Smallwood site in Baltimore, MD. Our culture and... 
    Full time
    Work experience placement

    Constellation Energy

    Halethorpe, MD
    1 day ago
  • $90k - $120k

     ...supporting current and near-term efforts to provide cybersecurity, data and network analysis expertise to...  ...professionals in the following areas: Network Analysts (Cyber, Forensic, Signals, Exploitation etc) Vulnerability Analysts Data Analysts Penetration... 
    Full time
    Local area
    Remote work

    Nexxis Solutions

    Annapolis Junction, MD
    a month ago
  • $195k - $219k

     ...Job Description Job Description System Vulnerability Analyst 4 Location: Annapolis Junction, MD | Onsite Clearance Required: TS/SCI with Polygraph Employment Type: Full-Time Salary Range: $195,000-$219,000 Join a Growing Team at Weeghman & Briggs Weeghman... 
    Full time
    Contract work
    Local area

    Weeghman & Briggs LLC

    Annapolis Junction, MD
    2 days ago
  • $92k - $120k

     ...deployment, configuration, management, and retirement of security tools (e.g., firewalls, SIEM, PAM, ZTN, IdP, IAM, CSPM, DLP, Vulnerability/Exposure Management, CIEM, DevSecOps and SSDLC, etc.). Monitoring and managing enterprise security systems, cloud environments... 
    Full time
    Work experience placement
    Work at office
    Remote work
    Work from home
    Flexible hours
    2 days per week

    Breakthru Beverage Group

    Linthicum Heights, MD
    20 days ago
  • $500 per month

    Become a Professional Game Tester We're looking for passionate gamers to join our elite team of mobile game testers. Get paid to play and test the latest games before they launch. $500+ Avg Monthly Pay 5-10 Hours/Week 100% Remote Position Requirements: ...
    Remote work
    10 hours per week

    Babki

    Baltimore, MD
    3 days ago
  • $135k - $216k

     ...degree must be in one of the following fields: Computer Science, Information Technology, Information Systems, Software Engineering, Cybersecurity, Data Science, or Mathematics. In lieu of a Master's degree, candidate must possess an additional 4 years of relevant... 
    Contract work
    Shift work

    Peraton

    Linthicum Heights, MD
    5 days ago
  •  ...primarily independently with direction from the manager while referring appropriately to the manager, the senior application system analyst is responsible for the implementation, enhancement and support of business, clinical or financial applications deployed throughout... 
    Full time
    Shift work
    Day shift

    LifeBridge Health

    Baltimore, MD
    4 days ago
  • $104k - $156k

     ...qualifications: ~ Experience securing cloud-native applications / SaaS solutions and networks. ~ Familiarity with vulnerability scanning and threat protection. ~ Relevant certifications: ~ Microsoft Certified: Azure Security Engineer... 
    Remote work

    Relativity

    Baltimore, MD
    1 day ago
  •  ...Digital Forensic Analyst Employment Type: Full-Time, Mid-Level CGS is seeking a Digital Forensic Analyst whose primary focus will be on the preservation & collection of mobile device and cloud-stored data. This candidate should be fluent in a broad range of forensic... 
    Full time
    Work at office
    Remote work
    Flexible hours

    Contact Government Services LLC

    Baltimore, MD
    3 days ago
  • $134.1k - $241.4k

     ...you ready to be part of a cutting edge cybersecurity project that will make a huge impact on...  ...provide critical insights into cybersecurity vulnerability assessments of mission-critical...  ...opportunity supports a team of Target Analyst Reporters and Target Digital Network Analysts... 
    Local area
    Worldwide
    Flexible hours

    Parsons Company

    Linthicum Heights, MD
    5 days ago
  • $87.1k - $157.45k

    Description Are you seeking a highly rewarding job with global impact? This position may be the perfect fit for you! At Leidos, our mission is to be the global leader in developing and applying technology to solve our customers' most complex challenges. We are looking...
    Work at office
    Local area
    Immediate start

    Leidos

    Brooklyn, MD
    11 hours ago
  • $79.6k - $119.4k

     ...Grumman Classified Solutions team is seeking a Computer Systems Analyst - Linux to support information system lifecycle activities....  ...Systems Security Manager (ISSM). Prepare documentation for input to Cybersecurity. Support environments by means of ticketing requirements... 
    Full time
    Internship
    Remote work
    Worldwide
    Relocation package
    Flexible hours
    Shift work
    Weekend work

    Northrop Grumman

    Linthicum, MD
    1 day ago
  • Sr. Cloud Security Engineer Security Clearance: TS/SCI with both Polygraphs is required Location: Linthicum, Maryland Overview: Join our "Security in the Cloud" team dedicated to enhancing the security posture of our cloud environments. The team is responsible...

    Capital Solutions Group LLC

    Linthicum Heights, MD
    3 days ago
  •  ...Job Description Overview BigBear.ai is seeking a Cybersecurity Compliance Analyst to Enter manage the overall compliance posture of systems...  ...updates using the ATO Automation Platform’s automated vulnerability tracking and remediation status features Qualifications... 
    Work at office

    Bigbear.ai

    Annapolis Junction, MD
    27 days ago
  •  ...motivated, career and customer-oriented Senior Cyber Intelligence Analyst to join our team in the Annapolis Junction, MD area....  ...websites, forums, and mailing lists for information regarding vulnerabilities and exploits. Collates and correlates threat information.... 
    Work at office

    MANTECH

    Annapolis Junction, MD
    15 hours ago
  • Information Systems Security Engineer (ISSE) Davis Unlimited Information Technologies, Inc. (DUIT) is seeking passionate and experienced Information Systems Security Engineers (ISSEs) of all levels to join our dynamic and innovative team. Whether you're just starting...

    DUIT

    Linthicum Heights, MD
    3 days ago
  • $148.3k - $266.9k

     ...Authorizing Official of changes affecting the organization's cybersecurity posture. Collect and maintain data needed to meet system...  ...protective or corrective measures when a cybersecurity incident or vulnerability is discovered. Track audit findings and recommendations... 
    Local area
    Worldwide
    Flexible hours

    Parsons Company

    Annapolis Junction, MD
    1 day ago
  • $10k

     ...Polygraph clearance, OR the ability to obtain and maintain a DoD Top Secret Security Clearance with SCI Access Experience with Cybersecurity Maturity Model Certification (CMMC) requirements, implementation, or compliance programs Nice to Have: Experience supporting multiple... 

    ClearEdge IT Solutions

    Jessup, MD
    5 days ago
  •  ...requirements for processing classified information. Performs vulnerability/risk assessment analysis to support certification and accreditation...  ...Technology (IT) Service Desk, Computer Network Defense (CND) Analyst, Telecommunication Technician, and Network Administration. OR... 
    Temporary work
    Work experience placement

    Quevera

    Odenton, MD
    2 days ago
  • $150k - $175k

     ...relationships, creating value for accounts from ideation through to successful outcomes Stay updated with emerging trends across cybersecurity Reporting & Cadence: (Monthly) Pipeline and deal progression New logo activity and advancement Enablement delivered... 
    Full time
    Remote work
    Shift work

    World Wide Technology

    Baltimore, MD
    4 days ago
  • $135k - $216k

     ...s Degree and 6+ years of experience; OR 3 years with PhD. Degree must be within one of these fields of study: Computer Science, Cybersecurity, Data Science, Information Systems, Information Technology, Mathematics, or Software Engineering. In lieu of a Bachelor's degree... 
    Contract work
    For subcontractor
    Shift work

    Peraton

    Linthicum Heights, MD
    3 days ago
  •  ...Litigation Systems Analyst Employment Type: Full Time, Mid-level CGS is seeking a Systems Analyst to join our team supporting a wide-ranging technical support initiative for a large Federal agency's ongoing litigation efforts. CGS brings motivated, highly skilled... 
    Full time
    Contract work
    For contractors
    Work at office
    Remote work
    Flexible hours

    Contact Government Services LLC

    Baltimore, MD
    4 days ago
  •  ...Senior Systems Analyst Employment Type: Full Time, Senior-level Department: Information Technology CGS is seeking a Senior Systems Analyst to join our team supporting a wide-ranging technical support initiative for a large Federal agency. CGS brings motivated, highly skilled... 
    Full time
    Contract work
    For contractors
    Work at office
    Flexible hours

    Dormont Manufacturing Company

    Baltimore, MD
    5 days ago
  • $170k - $190k

     ...Planning Financial & Legal Services Position Required Skills The ideal candidate will perform Software Engineering and vulnerability research with a focus on OCO (Offensive Cyber Operations) and DCO (Defensive Cyber Operations) activities. Work with customers... 

    Cornerstone Defense

    Linthicum Heights, MD
    3 days ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Cybersecurity Vulnerability Analyst. Be the first to apply!