Senior Vulnerability Assessment Analyst
RIVIDIUM
Job Description
Job Description
Position Overview
RiVidium Inc. seeking a highly skilled Senior Vulnerability Assessment Analyst to support enterprise cybersecurity and vulnerability management activities within a federal environment. The successful candidate will be responsible for identifying, analyzing, prioritizing, and helping remediate vulnerabilities across networks, systems, applications, and infrastructure.
This role requires strong technical knowledge of vulnerability assessment methodologies, cybersecurity risk management, penetration testing concepts, and security assessment tools. The Senior Vulnerability Assessment Analyst will work closely with cybersecurity engineers, system administrators, ISSOs, security assessors, and program leadership to identify security weaknesses and reduce organizational risk.
The ideal candidate will be able to translate technical vulnerability findings into actionable remediation recommendations and communicate cybersecurity risks effectively to both technical and non-technical stakeholders.
Key Responsibilities
- Conduct comprehensive vulnerability assessments of enterprise systems, networks, applications, servers, and infrastructure.
- Identify, validate, analyze, and prioritize security vulnerabilities based on severity, exploitability, exposure, and mission impact.
- Perform vulnerability scanning using industry-standard cybersecurity tools and technologies.
- Analyze scan results and distinguish legitimate vulnerabilities from false positives.
- Conduct technical validation and verification of identified vulnerabilities.
- Support penetration testing and security testing activities as required.
- Research emerging vulnerabilities, exploits, attack techniques, and threat trends.
- Map identified vulnerabilities to applicable security controls, systems, assets, and risk categories.
- Develop detailed vulnerability assessment reports documenting findings, evidence, risk levels, and recommended remediation actions.
- Provide technical recommendations to system owners and engineering teams for vulnerability remediation.
- Track remediation activities and verify that vulnerabilities have been appropriately mitigated.
- Support vulnerability management processes, dashboards, metrics, and reporting.
- Assist with continuous monitoring and ongoing security assessment activities.
- Analyze vulnerability trends and identify systemic weaknesses across the enterprise.
- Support Risk Management Framework (RMF), security assessment, and authorization activities.
- Assist with Security Control Assessments (SCAs) and technical testing of applicable security controls.
- Evaluate system configurations and security baselines for compliance with organizational and federal requirements.
- Support security audits, assessments, and cybersecurity reviews.
- Coordinate with ISSOs, ISSMs, system owners, engineers, administrators, and other cybersecurity personnel.
- Maintain accurate vulnerability and remediation records.
- Provide cybersecurity risk briefings and technical recommendations to program and customer leadership.
- Stay current on Common Vulnerabilities and Exposures (CVEs), Common Vulnerability Scoring System (CVSS), threat intelligence, and emerging attack techniques.
- Provide technical mentorship and guidance to junior vulnerability assessment analysts.
Required Qualifications
- Bachelor?s degree in Cybersecurity, Computer Science, Information Technology, Information Systems, or a related field .
- Demonstrated experience performing vulnerability assessments, vulnerability management, security testing, or cybersecurity analysis.
- Strong understanding of network, operating system, application, and infrastructure vulnerabilities.
- Experience using vulnerability scanning and assessment tools.
- Ability to analyze vulnerability scan results and validate findings.
- Knowledge of vulnerability scoring methodologies, including CVSS .
- Understanding of common attack techniques, exploits, malware, and cybersecurity threats.
- Experience developing technical vulnerability assessment reports and remediation recommendations.
- Knowledge of cybersecurity risk management and security control assessment processes.
- Understanding of NIST cybersecurity frameworks and federal security requirements .
- Strong analytical, problem-solving, technical writing, and communication skills.
- Ability to work independently while collaborating effectively with cybersecurity and engineering teams.
Required Certifications
Candidates must possess:
- Certified Ethical Hacker (CEH)
- Certified Information Systems Security Professional (CISSP)
Preferred Qualifications
- Offensive Security Certified Professional (OSCP)
- GIAC Penetration Tester (GPEN)
- Experience supporting federal civilian or Department of Defense cybersecurity programs.
- Experience with NIST SP 800-53, NIST SP 800-37, and FISMA .
- Experience supporting the Risk Management Framework (RMF) .
- Experience with Security Control Assessments and continuous monitoring.
- Experience with penetration testing and ethical hacking.
- Knowledge of web application, database, cloud, network, and endpoint vulnerabilities.
- Experience with vulnerability management platforms and security dashboards.
- Experience analyzing CVEs, CVSS scores, exploit availability, and threat intelligence.
- Experience with cloud vulnerability assessment and security testing.
- Familiarity with security tools such as Tenable/Nessus, Qualys, Rapid7, Burp Suite, Nmap, or similar technologies .
Technical Skills
The ideal candidate should have experience with:
- Vulnerability Assessment
- Vulnerability Management
- Vulnerability Scanning
- Penetration Testing
- Ethical Hacking
- Security Testing
- CVE Analysis
- CVSS Scoring
- Threat and Risk Analysis
- Network Security
- Application Security
- Web Application Security
- Operating System Security
- Cloud Security
- Security Configuration Assessment
- NIST RMF
- NIST SP 800-53
- FISMA
- Security Control Assessment
- Continuous Monitoring
- POA&M Remediation
- Security Reporting and Metrics
- Threat Intelligence
- Vulnerability Remediation
- Security Architecture
RiVidium Inc is seeking a ? Senior Vulnerability Assessment Analyst ? to support a federal client. This position is contingent upon contract award and funding approval. As such, this job posting is intended to identify qualified candidates for a potential future opportunity and does not represent a currently available position. Compensation has not yet been determined and will be established based on contract requirements, candidate qualifications, experience, and applicable market conditions.
- ...Description Tharros is seeking a Senior Penetration Testing, Software Assurance and Vulnerability Assessment Engineer to support a DHS Intelligence and Analysis cybersecurity program in the National Capital Region. This role will support advanced penetration...Senior
- ...Cybersecurity Assessments And Exercises Vice President Drive the security of critical banking applications and platforms through... ...methodologies and advanced techniques, you will proactively identify vulnerabilities, collaborate with application owners to understand root...Senior
$106.3k - $221.1k
...Senior Penetration Tester At Accenture Federal Services, nothing matters more than helping the US federal government make... ...applications, networks, and systems. Identify and exploit security vulnerabilities to assess risk, developing detailed reports on findings, and...Senior- ...Senior Penetration Tester Quzara is hiring Penetration Testers across multiple experience... ...selection process, candidates will be assessed and placed at the level that best... ...planning and performing penetration tests and vulnerability assessments, simulating real-world...SeniorFull timeWork experience placementRemote workMonday to FridayShift workNight shift
$115k - $203k
...Senior Penetration Tester Job Description Overview CoStar Group is a leading... ...test plans to validate identified vulnerabilities and demonstrate the exploitation of the... ..., agentic system risks, and MCP server assessment. Hands-on experience implementing security...SeniorHourly payFull timeWork at officeWork from homeMonday to Thursday$104k - $166k
ResponsibilitiesPeraton is currently seeking a Senior Risk and Vulnerability Analyst.Location: Chandler, AZ or Washington DCRole and Responsibilities... ...monitoring and risk analysis.Execute vulnerability assessments using industry-standard scanning tools across networks,...SeniorContract workShift work- ...MANTECH seeks a motivated, career and customer-oriented Senior Cloud Information System Security Officer (ISSO) to... ...updated on a continuous basis Conduct required IS vulnerability scans according to risk assessment parameters. Coordinate system owner concurrence for...SeniorWork at office
- ...DESCRIPTION Iron EagleX is seeking a Senior Principal Cyber Network Analyst to join our fast-paced technical... ...network surveys and technical assessments to identify, document, and... ...identify relationships, dependencies, vulnerabilities, and potential operational access...SeniorContract work
- DescriptionSAIC is seeking a highly skilled Senior Vulnerability Analyst with a strong technical background to join our team in support of a critical US government agency in the National Capital Region. This is an exciting opportunity to work with a team responsible for...Senior2 days per week
$124.54k - $180k
GovCIO is currently hiring for a Senior Pentration Tester with an active TS/SCI clearance to support DHS onsite in Washington... ...Personnel responsible for leading advanced penetration testing and vulnerability assessment activities within a TS/SCI environment. This role ensures...SeniorCurrently hiring$110k - $160k
...tools, actively identifying and exploiting vulnerabilities to validate and strengthen the platform... ...application, and social engineering assessments. Use a combination of advanced manual... ...Testing Engineer (CPTE)CompTIA CyberSecurity Analyst (CySA+)Federal IT Security Professional...SeniorFull timeWork at office- ...Description Vexterra Group is searching for a Digital Forensic Analysts to provide the following support: ~ Conduct forensic... ...tools and tradecraft Assist asset validation and credibility assessments by providing baseline assessments of digital media and cellular...SeniorWork experience placement
- ...Senior Information Systems Security Officer Base-2 Solutions is seeking a Senior Information Systems... ...networks. Performs or reviews technical security assessments of computing environments to identify vulnerabilities, non-compliance with IA standards and regulations...Senior
- ...Information Systems Security Officer (ISSO) - Senior Category: Cyber Security Main... ...include implementing security policies, assessing risks, responding to security breaches,... ...They conduct regular security audits, vulnerability assessments, and risk analyses to identify...SeniorFull time
$86.8k - $198k
Enterprise Cybersecurity Vulnerability Analyst, SeniorThe Opportunity:Support Booz Allen Hamilton'... ...enterprise-level vulnerability scanning and assessment tools to identify internally and... ...and KPIs to other operational teams and senior leadership.Join us. The world can't...SeniorFull timeContract workPart timeWork at officeLocal areaRemote work$120k - $160k
...Description Description SAIC is seeking a technical Senior Information System Security Officer (ISSO) to support a critical... ...role to independently validate security implementations, assess technical risk, and ensure authorization decisions are supported...SeniorWork at office3 days per week$140k - $150k
...Quantum Sky is searching for a Senior Information System Security... ...improvements to amend vulnerabilities, and assist with implementing... ...System Security Plan (SSP), Risk Assessment Report, Security Assessment... ...as an ISSO or Security Analyst. Familiarity with program...SeniorFull time$120.8k - $265.8k
...Job Title: Senior Information System Security Officer Job Category: Information Technology... ...selection and implementation, self-assessments, POA&M development, and continuous... ...Assessments, annual security assessments, and vulnerability assessments across assigned systems....SeniorFull timeContract workWork experience placementWork at officeFlexible hours$90k - $140k
...Senior Information Systems Security Officer (ISSO) Steampunk wants you to be a Senior... ...all phases of annual security control assessments and audits (Financial, A-123, FISMA,... ...accordance with FISMA Identify risks and vulnerabilities and create, update, and monitor Plans...SeniorLocal areaFlexible hours- ...development IAW currently applicable CS regulations and policies. Assessment and Authorization: Lead TENCAP projects through all phases... ...non-repudiation; and properly mitigates identified threats/vulnerabilities. CS Compliance: Ensure TENCAP systems remain compliant...SeniorContract workFor contractorsWork at officeWorldwide
- ...continuous penetration testing, simulate threat actor attacks, and assess SOC detection effectiveness. Perform web, mobile, API,... ...Persistent Threat (APT) tactics. Provide source code analysis, vulnerability scanning, phishing simulations, and exploitation assessments....SeniorLocal areaRemote work
- ...CONTRACT AWARD**Overview: Job Title: Senior Information System Security Officer (ISSO... ...for Splunk, ServiceNow, ConMon, vulnerability management, POA&M, and incident and change... ...Track audit, penetration-test, and assessment findings through corrective action and...SeniorContract work
$150k - $210k
...requirements which may impact salary Position Overview The Senior Information System Security Officer supports cybersecurity,... ...documentation, security control implementation, security assessments, vulnerability identification, and maintenance of system security posture....SeniorFull timeWork experience placement$204.8k - $425.5k
...reliable solutions to clients’ intricate technology risks and vulnerabilities as part of the Cyber Threat and Vulnerability Management (... ...with security concepts and methods, including vulnerability assessments, privacy assessments, intrusion detection, incident response...SeniorWork experience placement- ...join our talented Team. Job Title: Senior Cyber Security Analyst Location:- Washington, DC... ...appropriate access to resources, monitor vulnerabilities and threats, collects intelligence,... ..., investigating root causes, assessing impact, and coordinate and document...SeniorContract workWork at office
- ...presentations to communicate threat intelligence findings, assessments, and recommendations to stakeholders at all levels of... ...Eligible to acquire Public Trust Position Senior Cyber Threat Intelligence Analyst Number of Openings 1 Exempt/Non-Exempt Non...SeniorFull timePart timeWork at office
$100k - $140k
...will also develop, maintain, review, and continuously update system security documentation. Conducting required IS vulnerability scans based on risk assessment parameters will be part of your duties, along with coordinating system owner agreement for corrective or...SeniorFull timeWork at office$100k - $150k
...status allowed) Kroll is seeking a highly experienced Senior ISSO-S. The ISSO-S is responsible for leading the... ...Authority to Operate (ATO). Risk Management & Assessment Conduct risk assessments and vulnerability scans using tools like ACAS, SCAP, and STIGs....SeniorTemporary work- ...motivated, career and customer-oriented senior Information Systems Security Officer (... ...and 800-53 based independent security assessments and provide strong leadership in the development... .../classified information; perform vulnerability/risk assessment analysis to support...SeniorWork experience placementRemote work
- ...: DHS Information Systems Security Officer (ISSO) Senior Location : NCR Clearance : TS/SCI OneZero... ...and networks. Conduct and participate in security assessments and audits, identifying vulnerabilities and recommending corrective actions. Monitor security...SeniorFull timeContract workWork at office
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Senior Vulnerability Assessment Analyst. Be the first to apply!
- penetration tester Washington DC
- vulnerability analyst Washington DC
- ethical hacker Washington DC
- senior technical consultant Washington DC
- senior director product management Washington DC
- senior vice president human resources Washington DC
- senior automation controls engineer Washington DC
- senior grant accountant Washington DC
- senior compliance officer Washington DC
- senior tax Washington DC



