Vulnerability Management Analyst
TIME Systems
Vulnerability Management Analyst Location - Joint Base Andrews, MD Clearance - Secret Certifications - CompTIA Security+ or equivalent About TIME Systems At TIME Systems, we are at the forefront of Technology, Innovation, Management, and Engineering solutions. Our commitment to empowering our team and fostering impactful leadership has established us as a leader in our field. Our work extends beyond business, actively contributing to local charities. We are proud of our CMMI Level 3 for Services and Development, ISO 9001:2015 certification, and our regular presence on Inc. Magazine’s “Inc. 5000 List” and Syracuse University’s IVMF “Vet 100 List”. Benefits Health Coverage: Select from three plans, including a 100% company-funded employee-only plan. Dental Coverage: Our dental plan offers extensive care with no annual maximum. Vision: Our vision plan covers regular eye exams and corrective eyewear. Life Insurance and AD&D and other customizable coverage options! 401(k) Retirement Plan Health Savings Account (HSA), Flexible Spending Account (FSA), Short- and Long-Term Disability Insurance, Employee Assistance Plan, and more! Why Join Us Veteran Preference – Strong value placed on military veterans and their skills. Career Growth – Opportunities for professional development in a supportive environment. Innovative Culture – Be part of a team that pushes boundaries and makes tangible impacts. Role Summary TIME Systems is looking for a Vulnerability Management Analyst to join our Cybersecurity Operations team supporting the Air Force National Capital Region (AFNCR) Information Technology Services (ITS) program. The selected candidate will support enterprise vulnerability management operations by performing vulnerability assessments, reviewing DISA STIG compliance, coordinating remediation activities, and assisting with Risk Management Framework (RMF) compliance across Department of Defense environments. This role will work closely with cybersecurity engineers, ISSOs, system administrators, and engineering teams to improve the organization’s security posture while supporting mission-critical systems throughout the AFNCR enterprise. Key Responsibilities Perform vulnerability assessments utilizing Tenable SecurityCenter, Nessus, and Assured Compliance Assessment Solution (ACAS) across classified and unclassified environments. Review vulnerability scan results to identify CAT I, CAT II, and CAT III vulnerabilities, validate findings, identify false positives, and prioritize remediation activities. Coordinate vulnerability remediation efforts with system administrators, ISSOs, engineering teams, and Queue Managers to ensure timely resolution of identified security findings. Support the development, maintenance, and tracking of Plans of Action and Milestones (POA&Ms) in accordance with Risk Management Framework (RMF) requirements. Validate and review DISA Security Technical Implementation Guides (STIGs), Security Content Automation Protocol (SCAP) results, and secure configuration baselines. Generate vulnerability assessment reports, compliance metrics, executive summaries, and dashboards supporting leadership reporting and cybersecurity readiness inspections, including CCRI and CORA assessments. Maintain ACAS asset inventories, credentialed scan configurations, asset groups, repositories, scan zones, and vulnerability data accuracy. Assist with vulnerability trend analysis, risk scoring, and continuous monitoring activities to improve enterprise cybersecurity posture. Support cybersecurity audits, inspections, accreditation activities, and system authorization efforts by providing required vulnerability documentation and evidence. Collaborate with cybersecurity engineers, system administrators, network engineers, and ISSOs to implement remediation strategies and security best practices. Maintain documentation including Standard Operating Procedures (SOPs), vulnerability management processes, scan schedules, and operational procedures. Ensure compliance with Department of Defense (DoD), Air Force, DISA, RMF, and organizational cybersecurity policies and standards. Requirements Bachelor’s degree in Cybersecurity, Information Technology, Computer Science, Information Systems, or a related technical discipline; equivalent education and experience may be substituted. Minimum of four (4) years of professional cybersecurity or systems administration experience with at least one (1) year supporting vulnerability management, ACAS, Nessus, or Tenable SecurityCenter. Active DoD Secret Security Clearance. Current CompTIA Security+ CE or higher certification meeting DoD 8570/8140 IAT Level II requirements. Hands‑on experience performing vulnerability assessments using Tenable SecurityCenter, Nessus, or ACAS. Working knowledge of DISA Security Technical Implementation Guides (STIGs), SCAP Compliance Checker (SCC), and secure system configuration practices. Understanding of Risk Management Framework (RMF), NIST SP 800‑53 security controls, POA&Ms management, and Air Force cybersecurity policies. Experience reviewing vulnerability findings, validating scan results, identifying false positives, and supporting remediation efforts. Strong analytical, troubleshooting, documentation, and organizational skills with excellent attention to detail. Experience preparing technical reports, compliance documentation, vulnerability metrics, and executive summaries. Excellent written and verbal communication skills with the ability to effectively communicate technical information to both technical and non‑technical personnel. Ability to work independently while managing multiple priorities in a fast‑paced cybersecurity operations environment. Preferred Qualifications Experience supporting United States Air Force (USAF), Department of Defense (DoD), DISA, or other federal government cybersecurity environments. Experience utilizing eMASS, SCAP Compliance Checker (SCC), HBSS, or other enterprise cybersecurity management tools. Experience supporting Command Cyber Readiness Inspection (CCRI), Command Cyber Operational Readiness Assessment (CORA), or similar cybersecurity inspections. Knowledge of Continuous Monitoring (ConMon) processes and vulnerability lifecycle management. Experience developing PowerShell scripts, Nessus API integrations, or automation solutions to streamline vulnerability management processes. Familiarity with Microsoft Windows Server, Red Hat Enterprise Linux (RHEL), VMware, Active Directory, and enterprise network infrastructure. Understanding of cybersecurity risk assessment methodologies, CVSS scoring, threat prioritization, and risk-based remediation strategies. Experience supporting Authorization to Operate (ATO) packages, security control assessments, and continuous authorization activities. Demonstrated ability to collaborate across cybersecurity, engineering, and operations teams supporting mission‑critical enterprise environments. We are TIME Systems: Committed to Excellence, Dedicated to Service. TIME Systems, LLC is an equal opportunity/affirmative action employer. All qualified applicants will receive consideration for employment without regard to sex, gender identity, sexual orientation, race, color, religion, national origin, disability, protected veteran status, age, or any other characteristic protected by law. #J-18808-Ljbffr TIME Systems
$87.1k - $157.45k
Description Leidos has a career opportunity for a Vulnerability Management Analyst to support the Air Force National Capital Region IT Services program. The AFNCR IT Services program provides support services for information systems for Headquarters Air Force (HAF),...SuggestedWork at officeLocal areaImmediate startWorldwide$87.1k - $157.45k
Leidos has a career opportunity for a Vulnerability Management Analyst to support the Air Force National Capital Region IT Services program. The AFNCR IT Services program provides support services for information systems for Headquarters Air Force (HAF), Air Force District...SuggestedWork at officeWorldwide- RiVidium is seeking a Vulnerability Management Analyst to support our planned MODES III team supporting Military Community and Family Policy (MC&FP). This role supports IT, Cybersecurity, and Data Operations - Core Operations and helps deliver mission-focused outcomes...SuggestedContract work
- cFocus Software seeks a Vulnerability Management Analyst to join our program supporting the United States International Defense Finance Agency (DFC). This position is remote. This position requires an Active Public Trust clearance. Qualifications: ~ Active Public...SuggestedFull timeFor contractorsRemote work
- ...S. Government customer to provide cybersecurity vulnerability analysis support to reduce the prevalence and impact... ...(CIKR). The Cybersecurity Vulnerability Analyst utilizes cybersecurity best practices, risk management techniques, critical thinking, and strong analytical...Suggested
$106.5k - $197.5k
...maintaining the integrity and performance of our software products. Essential Functions: Design, develop, and manage test cases, including traceability to requirements, user stories, etc. Execute software testing events using industry-accepted...For contractorsLocal areaMonday to FridayFlexible hours- ...a dedicated and skilled Cyber Security Analyst to join our team in support of a critical... ...mission-critical systems, identifying vulnerabilities, and implementing robust security... ...federal frameworks. Support the Risk Management Framework (RMF) process, including categorizing...Permanent employmentFull time
- ...You will help develop and maintain effective security and risk management programs on complex government information systems. As an... ...system administrators and operations teams Monitor and oversee vulnerability management program including vulnerability scanning, timely...Flexible hours
- ...interconnected business systems. The successful candidate will partner closely with business stakeholders, developers, project managers, business analysts, vendors, and subject matter experts to validate system functionality, ensure data integrity, and support successful...
$80k - $128k
...Clearance: Secret Peraton is currently seeking a Risk and Vulnerability Analyst. Location: Chandler, AZ or Washington DC. The Risk and Vulnerability... ...years of experience in security operations, vulnerability management, or risk analysis. Hands‑on experience with industry...Contract workShift work$110k - $126k
...Page Mechanical Group, Inc. is seeking an Investigation Support Analyst in Camp Springs, MD. This hybrid role involves supporting cybersecurity investigations, conducting digital forensic analysis, and performing malware analysis. Ideal candidates should have experience...$95.86k
...consider a career in Advisory. KPMG is currently seeking a Senior Specialist, MAST Application Penetration Tester to join our Managed Services practice. Responsibilities: Conduct manual application penetration testing against API's (REST/SOAP), Web Applications...H1bLocal area$108.8k - $163.2k
...forefront of engineering, logistics, operations, science, program management, mission IT and cybersecurity solutions. Collaborative... ...Conduct security assessments and audits, identifying vulnerabilities and recommending mitigations to strengthen the overall security...Full timeTemporary workWork experience placementLocal areaRelocation package$100k
...and monthly bonuses; Our top performers make well over a 6-figure income. To ensure your success, you will have a dedicated sales manager & support team, continued results-driven training, WHAT THE COMPENSATION PACKAGE OFFERS: UNCAPPED EARNING POTENTIAL AGGRESSIVE...Local area- ...Qualifications 5+ years of directly relevant experience in cyber incident management or cybersecurity operations Knowledge of incident response and handling methodologies Having close familiarity with NIST 800-62 (latest revision), and FISMA standards as they pertain...
- ...Asset Management Analyst CW Financial Services LLC ("CW") is a premier, full-service real estate firm providing innovative solutions to institutional clients across the commercial real estate finance sector. We are known for leveraging sophisticated capital markets...Work at officeLocal area
$160k - $205k
...procedures into offensive security testing to identify high‑value vulnerabilities/chained attacks. Develop proof‑of‑concepts for exploitation.... ...notifications. Provide clear and practical advice regarding managing risks. Learn and develop advanced technical and leadership...Shift workDay shift- ...ArchKey Solutions Business Development Manager Description ArchKey is one of the nations largest privately held specialty trade installation and integrated facility service companies. We are a leader in designing, building and maintaining electrical, technologies and specialty...Work experience placementFor subcontractor
$80.47k - $100.58k
Job Details Job Location: Headquarters - Suitland, MD 20746 Position Type: Full Time Purpose of Position The Business Development Manager is a senior business development leader responsible for driving Andrews Federal’s membership growth strategy through the acquisition...Full timeWork at officeRemote workAfternoon shift- ...responsibility for assisting District residents who are covered by the Health Care Bill of Rights. The incumbent serves as a Management Analyst, responsible for assisting the administration with handling customer inquiries, analyzing, evaluating, and providing information...Work at officeLocal areaMonday to Friday
- Overview This position is in the Policy and Programs Division, Office of Counterintelligence, Domestic Operations Directorate, Bureau of Diplomatic Security (DS/CI/PPD). The Office of Counterintelligence works to detect, deter, and neutralize the efforts of foreign intelligence...Work at officeWorldwide
$90k - $120k
...Senior Database Management Analyst Full Time Arlington, VA, US Salary Range: $90,000.00 To $120,000.00 Annually We are currently seeking a Senior Database Management Analyst located in the Washington, D.C. area. What you’ll do: The Senior Database Management Analyst will...Full timeWork at officeFlexible hours$69k - $105k
...Kearney & Company is seeking a Management Analyst to join our growing firm. Duties include but not limited to: Provide support to ensure conformance with work requirements associated with accounting, resource allocations, internal management controls, business process...Contract workFor contractorsWork at officeLocal areaFlexible hours$86.8k - $198k
...Knowledge Management Analyst The Opportunity: As a digital defense spe cia list, you know that effective Data Management ( DM ) and Knowledge Management ( KM ) processes and policies are cru cia l for executing transformative initiatives and your client's future...Full timeContract workPart timeWork at officeLocal areaRemote work$100k - $125k
...Overview Nakupuna Consulting is looking to hire a Management Analyst to support a DoD client within the Department of the Navy (DON) in executing day-to-day administrative, analytical, and professional support requirements. The Management Analyst will support the client...Contract workWork at officeRemote work- ...Job Seekers can review the Job Applicant Privacy Policy by clicking here ( . Job Description : Summary - The Asset Management Analyst position is designed to execute enhanced asset management processes that pertain to our fleet management and revenue monitoring...Full timeTemporary workLocal area
- ...Kimpton Hotels & Restaurants is seeking a Revenue Management role to provide strategic support to senior leaders and cross-functional teams. You will develop pricing strategies, monitor distribution channels, and forecast ownership and P&L for the hotel portfolio. Ideal...
- ...Summit Ridge Energy is seeking an O&M Analyst to support the Director of Operations & Maintenance and Senior Analyst, assisting with optimizing a portfolio of solar projects across the United States. The role emphasizes data interpretation, reporting, and collaboration...
$85k
...that enhance efficiency and knowledge retention for NGB ExecSec and ARNG offices.This specialize... Show more Full-time DADMS Analyst / Management Analyst II.The DADMS Analyst / Management Analyst II manages software and hardware registration within the DoD Application...Full timeContract workTemporary workSummer workWork at officeRemote workWork from home- ...compelling opportunity for strategic partnerships in the GovCon space. Job Description BryceTech is currently looking for a Records Management Analyst. The person in this role will support our HHS ASPR client with a variety of needs including support to the Office of Records...For contractors
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Vulnerability Management Analyst. Be the first to apply!
- management team Camp Springs, MD
- IT performance management Camp Springs, MD
- management opportunity Camp Springs, MD
- construction management full time Camp Springs, MD
- provider data management Camp Springs, MD
- management jobs Camp Springs, MD
- remote database management Camp Springs, MD
- web application penetration tester
- junior penetration tester
- ethical hacker work from home


