Cybersecurity Analyst (Vulnerability Management & Continuous Monitoring)
Chenega Corporation
Summary Cybersecurity Analyst (Vulnerability Management & Continuous Monitoring) – Oakton, VA. Are you ready to enhance your skills and build your career in a rapidly evolving business climate? Are you looking for a career where professional development is embedded in your employer’s core culture? If so, Chenega Military, Intelligence & Operations Support (MIOS) could be the place for you! Join our team of professionals who support large-scale government operations by leveraging cutting‑edge technology and take your career to the next level! SecuriGence delivers essential technology services supporting critical national security missions. We are seeking a Cybersecurity Analyst (Vulnerability Management & Continuous Monitoring) to support Department of Defense (DoD) cybersecurity operations by executing vulnerability management, security compliance, and Continuous Monitoring (ConMon) activities in accordance with the Risk Management Framework (RMF). This role is responsible for identifying, assessing, prioritizing, and tracking vulnerabilities using enterprise tools, ensuring compliance with Security Technical Implementation Guides (STIGs), and responding to Information Assurance Vulnerability Alerts (IAVAs). Responsibilities Vulnerability Management Perform vulnerability scanning using Assured Compliance Assessment Solution (ACAS) (e.g., Tenable.sc / Nessus). Enforcing the ACAS best practice guide requirements when performing vulnerability scans in ACAS. Analyze scan results to identify vulnerabilities, misconfigurations, and compliance gaps. Validate findings against the latest released DISA STIGs and applicable security baselines. Review of provided checklists and working with system admins in identifying gaps for POA&M creation. Assess and track vulnerabilities in accordance with DoD timelines and risk severity. Correlate vulnerabilities with IAVA/IAVM notices and ensure timely remediation or mitigation. Develop and maintain Plan of Action and Milestones (POA&M) documentation. Maintenance of Risk Acceptance (RA) POA&M items within SOR (System of Record) and coordinating with System administrators to validate that RA is required instead of a POA&M. STIG Compliance & Hardening Apply and validate Security Technical Implementation Guides (STIGs) across operating systems, applications, and network devices. Conduct manual and automated STIG compliance checks using tools such as ACAS Audit checks, STIG Viewer, SCAP Compliance Checker (SCC), and Evaluate-STIG. Document compliance status and provide remediation guidance to system administrators. Support system hardening efforts aligned with DoD baseline configurations. Ensure that golden images are maintained for Servers (RHEL and Windows) and Workstations following STIG guidance. IAVA/IAVM Management Monitor and assess Information Assurance Vulnerability Alerts (IAVAs) and Bulletins (IAVBs). Determine system applicability and operational impact. Coordinate remediation actions and track compliance deadlines. Maintain IAVA compliance reporting and documentation for audits. Continuous Monitoring (ConMon) Execute Continuous Monitoring activities in accordance with RMF Step 6. Monitor security controls for effectiveness and ongoing compliance. Conduct control assessments and assist with periodic security reviews. Support automated and manual data collection for ConMon dashboards and reporting. Identify trends, recurring issues, and systemic risks across systems. RMF & Compliance Support Support RMF activities across all six steps, with emphasis on control implementation validation, security control assessment support, and ongoing authorization (ATO sustainment). Update and maintain RMF artifacts, including System Security Plan (SSP), Security Assessment Report (SAR), Plan of Action and Milestones (POA&M), and Security Assessment Plan (SAP). Map vulnerabilities and findings to NIST SP 800-53 controls. Reporting & Documentation Generate vulnerability and compliance reports for leadership and Authorizing Officials (AOs). Provide risk-based recommendations and remediation strategies. Maintain audit‑ready documentation in accordance with DoD and agency requirements. Other duties as assigned. Qualifications High school diploma or GED equivalent. 5+ years of experience in DoD cybersecurity or RMF‑based environments. Hands‑on experience with: ACAS (Nessus / Tenable.sc) STIG implementation and validation IAVA/IAVM processes Experience with vulnerability assessment, risk analysis, and remediation tracking. DoD 8570/8140 Compliance: Must meet IAT Level II requirements (e.g., Security+). Active DoD Top Secret clearance with SCI eligibility. Knowledge, Skills, and Abilities Strong understanding of: DoD RMF (DoDI 8510.01) NIST SP 800-53 security controls Ability to manage multiple systems and priorities in a regulated environment. Strong analytical and problem‑solving skills. Attention to detail and compliance rigor. Ability to translate technical risk into mission impact. Effective communication with technical and non‑technical stakeholders. Relevant certifications: Certified Information Systems Security Professional (CISSP). Certified Ethical Hacker (CEH) or equivalent. DISA ACAS Training Certificate. Experience with: ACAS SCAP Compliance Checker (SCC) / Evaluate-STIG STIG Viewer eMASS, Xacta Trellix, MDE Splunk, Elastic Familiarity with scripting (e.g., PowerShell, Python) for automation. Experience in enterprise‑level ConMon programs or NOSC/SOC environments. How you’ll grow At Chenega MIOS, our professional development plan focuses on helping our team members at every level of their careers to identify and use their strengths to do their best work every day. From entry‑level employees to senior leaders, we believe there’s always room to learn. We offer opportunities to help sharpen skills in addition to hands‑on experience in the global, fast‑changing business world. From on‑the‑job learning experiences to formal development programs, our professionals have a variety of opportunities to continue to grow throughout their careers. Benefits At Chenega MIOS, we know that great people make a great organization. We value our team members and offer them a broad range of benefits. Learn more about what working at Chenega MIOS can mean for you. Chenega MIOS’s culture Our positive and supportive culture encourages our team members to do their best work every day. We celebrate individuals by recognizing their uniqueness and offering them the flexibility to make daily choices that can help them be healthy, centered, confident, and aware. We offer well‑being programs and continuously look for new ways to maintain a culture where we excel and lead healthy, happy lives. Corporate citizenship Chenega MIOS is led by a purpose to make an impact that matters. This purpose defines who we are and extends to relationships with our clients, our team members, and our communities. We believe that business has the power to inspire and transform. We focus on education, giving, skill‑based volunteerism, and leadership to help drive positive social impact in our communities. Learn more about Chenega’s impact on the world. Tips from your Talent Acquisition Team We want job seekers exploring opportunities at Chenega MIOS to feel prepared and confident. To help you with your research, we suggest you review the following links: Chenega MIOS website - Glassdoor - LinkedIn - Facebook - #J-18808-Ljbffr Chenega Corporation
- ...Overview Cybersecurity Analyst (Vulnerability Management & Continuous Monitoring) Oakton, VA Are you ready to enhance your skills and build your career in a rapidly evolving business climate? Are you looking for a career where professional development is embedded...Suggested
- ...support in the areas of Cyber Security and Management to improve the Information Assurance... ...Assessment and Authorization (A&A), Vulnerability Management, and Cyber Defense support... ...Support the Information Security Continuous Monitoring (ISCM) Program Lead in maturing the customer...SuggestedFull time
- ...Job Title: Cybersecurity Analyst Location: Oakton, VA Department... ...Services Reports To: Management FLSA Status: Full Time/... ...mission by executing advanced vulnerability management, compliance, and Continuous Monitoring (ConMon) within complex,...SuggestedFull timeWork at officeLocal area
- Njvc LLC is looking for a Cybersecurity Analyst (Vulnerability Management & Continuous Monitoring) in Oakton, VA. This role supports DoD cybersecurity operations, focusing on vulnerability management and compliance activities. Candidates must have 5+ years of experience...Suggested
- ...Description Description: Job Title: Cybersecurity Analyst Location: Oakton, VA... ...Services Reports To: Management FLSA Status: Full Time/... ...mission by executing advanced vulnerability management, compliance, and Continuous Monitoring (ConMon) within complex,...SuggestedFull timeWork at officeLocal area
$103.54k - $147.92k
...threats. Our capabilities in cybersecurity, network architecture,... ...a Junior Vulernability Management Analyst to work out of Fairfax, VA... ...• Supports enterprise vulnerability management operations for... ...ServiceNow workflows, and continuous monitoring dashboards to maintain current...Full timeContract workFor contractorsWork at officeLocal areaWorldwide$103.54k - $147.92k
...Responsibilities Supports enterprise vulnerability management operations for Department... ...workflows, and continuous monitoring dashboards to maintain... ...owners, administrators, and cybersecurity teams to collect... ...under guidance of senior analysts. Maintains detailed records...Full timeFor contractorsWork at officeLocal area- ...Cybersecurity Systems Analyst Entrusted by companies with challenging Cybersecurity and IT data management recruiting needs, Flex Staffing Resources... ...), and ongoing continuous monitoring activities. This position... ...and Analysis of vulnerability scans Ability to...Remote workFlexible hours1 day per week
$130k - $216k
...leading teams for Technology cybersecurity program support projects.... ...(e.g., SIEM, EDR, vulnerability management). Assess current cybersecurity... ...activities, including monitoring, incident response, vulnerability management, and continuous improvement initiatives....Temporary workFlexible hours- ...Cybersecurity Analyst (CDAP) Lead - Senior ECS is seeking a Cybersecurity Analyst (CDAP) Lead... ...responsibility. The role directs enterprise monitoring, detection, correlation, reporting,... ...produced in this role help sustain continuous monitoring, RMF support, and...Contract work
- ...Cyber Incident Response Analyst to join our team in McLean... ...Lead the detection and continuous monitoring of potential security incidents... ...threat intelligence and vulnerability management data to proactively... ...of hire. Knowledge of cybersecurity principles, incident detection...Shift workNight shiftDay shiftAfternoon shift
- ...an Operational Technology Cybersecurity Analyst - Journeyman to support... ...Cybersecurity Operations Support by monitoring and analyzing security... ...and helps maintain continuous cyber defense operations... ...monitoring, threat detection, vulnerability management, and Defensive Cyberspace...Contract work
- ...to inform the customer’s vulnerability management (VM) efforts. In support of... ...Suitability BS Intelligence, Cybersecurity or related degree, or High... ...with intelligence monitoring, collection, targeting and... ...Plus (SEC+) Intelligence Analyst Certified (IAC) Certified...
$100k - $145k
...Description Dark Wolf is seeking Cybersecurity Analysts to join a collaborative team to develop, manage, and maintain the security... ...and Authorization (A&A), continuous monitoring and compliance with NIST &... ...of controls, audits, vulnerability scans, and penetration test...Full timeFor contractorsWork at officeLocal area$81k - $120k
...teamwork? At Ntiva, we're more than a Managed Services Provider, we're a community dedicated... ...lines of a fast-paced industry, facing cybersecurity threats and rapid technology changes... ...) EDR agent deployment, health monitoring, and lifecycle management across all...Contract workTemporary workRemote work- ...Junior Vulnerability Management Analyst Everforth ECS is seeking a Junior Vulnerability Management... ..., contributing directly to the continuous monitoring, POA&M tracking, and remediation... ...system owners, administrators, and cybersecurity teams to collect remediation...For contractorsInternship
- ...seeking an experienced Security Operations Manager to lead its enterprise information... ...The role involves overseeing security monitoring, incident response, and compliance activities... ..., and ensuring timely remediation of vulnerabilities. Candidates must have at least five...
$229.9k - $262.4k
...Security & Access Control Management, Container Services,... ...a strong desire to continually learn about new... ...experience working in cybersecurity or information... ...attack vectors, model vulnerabilities, prompt injection, data... ...-Fu and Enterprise Monitoring experience ~1+ years...Full timePart timeH1bLocal areaShift work$100k - $150k
...Information System Security Manager (ISSM) - Fairfax, Virginia... ...network fundamentals and vulnerability management tools. This... ...support system accreditation, continuous monitoring, and operational security... ...external stakeholders, provide cybersecurity oversight, and drive...Permanent employmentFull time- ...Information System Security Manager (ISSM) - SME to support... ...Enterprise Network Operations and Cybersecurity Support (ENOCS) program.... ...baselines, directs vulnerability remediation prioritization... ...into eMASS, and supporting continuous monitoring across the ENOCS cybersecurity...Contract work
- ...Information Systems Security Manager (ISSM) Location:... ...to oversee the cybersecurity of classified and... ...Develop, implement, and monitor security controls to... ...Risk Assessment & Vulnerability Management Conduct... ...system accreditation. Continuous Monitoring & Incident...
- Chenega Corporation seeks a Cybersecurity Analyst (Vulnerability Management & Continuous Monitoring) in Oakton, VA. This role involves supporting DoD cybersecurity operations, including vulnerability management and compliance activities per the Risk Management Framework...
- ...(IT) infrastructure, cybersecurity, DevSecOps, data exploitation... ...the Project Management plans and other contract... ...installations. Monitors activities under the... ...days when requested. Vulnerability & Configuration Management... ...remediation are one continuous remediation workflow....Contract workWork at officeRemote work
- ...Position Summary ECS is seeking a Cybersecurity Threat Analyst - Journeyman to support the Army National Guard (ARNG) Enterprise Network... ...cyber personnel to refine detections, support continuous monitoring, and provide reporting that informs incident analysis,...Contract work
- ...Position Summary ECS is seeking a Cybersecurity Analyst (CDAP) - Journeyman to support... ...Security Information & Event Management (USIEM) analytics ecosystem, integrated... ..., Zeek metadata, Sysmon-informed monitoring, EDR, SOAR, and continuous monitoring processes to improve...Contract work
- ...Cybersecurity Analyst - Evenings Unlock the secrets of intelligence with MANTECH! Join a dynamic team at the forefront... ...in Tysons, VA. The Cybersecurity Analyst will monitor Air Gapped Security Fabrics through managed SECOPs Tools. Responsibilities include but are...Work at officeLocal areaShift workAfternoon shift
- ...Cybersecurity Analyst (CDAP) - Senior ECS is seeking a Cybersecurity Analyst (CDAP) - Senior... ...Cybersecurity Analyst (CDAP) performs monitoring and analysis of security telemetry within... ...Center and DISA DCDC to strengthen continuous monitoring, threat detection, and...Contract work
- ...Enterprise Network Operations and Cybersecurity Support (ENOCS) program. In this... ...required security documentation and continuous monitoring evidence, managing Plans of Action and Milestones (... ...to ensure security findings, vulnerabilities, and control deficiencies are accurately...Contract work
- ...Arlington, VA Reports To: Management FLSA Status: Full Time/... ...input to the ISSM on the cybersecurity programs include... ...have oversight to ensure the continuous monitoring of systems within their purview... ...cybersecurity incident or vulnerability and ensures a process exists...Full timeWork at officeLocal area
$87.02k - $145.04k
...network-related issues. # Network Performance and Management: Perform network performance monitoring and capacity planning to ensure optimal performance... ...Program Employees' Child Care Center Continuous Learning Opportunities Please click for a summary...Full timeTemporary workWork at officeFlexible hours
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Cybersecurity Analyst (Vulnerability Management & Continuous Monitoring). Be the first to apply!
- construction management full time Oakton, VA
- director program management Oakton, VA
- remote database management Oakton, VA
- IT performance management Oakton, VA
- management opportunity Oakton, VA
- sales management training program - entry level Oakton, VA
- management team Oakton, VA
- provider data management Oakton, VA
- identity management Oakton, VA
- entry level management training Oakton, VA



