Federal Cybersecurity Consultant: Vulnerability & Compliance
$85k - $141kGuidehouse
Job Family : Cyber Consulting Travel Required : Up to 25% Clearance Required : Ability to Obtain Public Trust What You Will Do : Lead vulnerability management efforts across a portfolio of client applications, including analyzing findings, identifying affected versions, providing remediation guidance, assigning issues to teams, and tracking vulnerabilities through closure. Build and maintain strong working relationships with business, engineering, and security teams to validate fixes, resolve blockers, and support timely remediation. Support POA&M activities, patching timelines, remediation deadlines, and related federal cybersecurity and compliance requirements. Develop and maintain automated vulnerability reports, dashboards, KPIs, and metrics to track remediation progress, compliance gaps, and asset risk. Prepare reports and briefings for leadership and federal oversight stakeholders. Monitor suspicious activity and security alerts in Splunk and coordinate follow-up actions with relevant teams. Support secure development efforts through security documentation, secure coding guidance, annual training support, and evaluation of security tools and processes. Provide cyber subject matter expertise during information security audits and assessments. What You Will Need : Must be able to OBTAIN and MAINTAIN a Federal or DoD "PUBLIC TRUST"; candidates must obtain approved adjudication of their PUBLIC TRUST prior to onboarding with Guidehouse. Candidates with an ACTIVE PUBLIC TRUST or SUITABILITY and maintain an active HHS/NIH clearance are preferred. Minimum of THREE (3) years of cybersecurity or IT risk management experience, candidates with experience focused on vulnerability management and/or secure configuration are preferred. Minimum of a Bachelors Degree is required. Tools: Hands-on experience with Invicti, Splunk, and Atlassian tools (Jira & Confluence) Knowledge: Deep understanding of NIST SP 800-53, FISMA requirements, and OWASP Top 10. Certifications: Active CompTIA Security+ CE preferred; CISSP, CEH, or cloud-related certifications are a plus. Soft Skills: Strong communication and analytical thinking; ability to manage multiple concurrent priorities and deadlines. What Would Be Nice To Have : Experience developing automated data pipelines or integrating APIs into Power BI dashboards. Knowledge of MITRE ATT&CK framework and vulnerability prioritization methodologies (e.g., EPSS, CVSS v3). Prior experience supporting a federal agency or working in a Public Health environment.
#LI-DNI
The annual salary range for this position is $85,000.00-$141,000.00. Compensation decisions depend on a wide range of factors, including but not limited to skill sets, experience and training, security clearances, licensure and certifications, and other business and organizational needs. What We Offer : Guidehouse offers a comprehensive, total rewards package that includes competitive compensation and a flexible benefits package that reflects our commitment to creating a diverse and supportive workplace. Benefits include: Medical, Rx, Dental & Vision Insurance Personal and Family Sick Time & Company Paid Holidays Position may be eligible for a discretionary variable incentive bonus Parental Leave and Adoption Assistance 401(k) Retirement Plan Basic Life & Supplemental Life Health Savings Account, Dental/Vision & Dependent Care Flexible Spending Accounts Short-Term & Long-Term Disability Student Loan PayDown Tuition Reimbursement, Personal Development & Learning Opportunities Skills Development & Certifications Employee Referral Program Corporate Sponsored Events & Community Outreach Emergency Back-Up Childcare Program Mobility Stipend About Guidehouse Guidehouse is an Equal Opportunity Employer–Protected Veterans, Individuals with Disabilities or any other basis protected by law, ordinance, or regulation. Guidehouse will consider for employment qualified applicants with criminal histories in a manner consistent with the requirements of applicable law or ordinance including the Fair Chance Ordinance of Los Angeles and San Francisco. If you have visited our website for information about employment opportunities, or to apply for a position, and you require an accommodation, please contact Guidehouse Recruiting at View phone number on click.appcast.io or via email at View email address on click.appcast.io . All information you provide will be kept confidential and will be used only to the extent required to provide needed reasonable accommodation. All communication regarding recruitment for a Guidehouse position will be sent from Guidehouse email domains including @guidehouse.com or View email address on click.appcast.io . Correspondence received by an applicant from any other domain should be considered unauthorized and will not be honored by Guidehouse. Note that Guidehouse will never charge a fee or require a money transfer at any stage of the recruitment process and does not collect fees from educational institutions for participation in a recruitment event. Never provide your banking information to a third party purporting to need that information to proceed in the hiring process. If any person or organization demands money related to a job opportunity with Guidehouse, please report the matter to Guidehouse’s Ethics Hotline. If you want to check the validity of correspondence you have received, please contact View email address on click.appcast.io . Guidehouse is not responsible for losses incurred (monetary or otherwise) from an applicant’s dealings with unauthorized third parties. Guidehouse does not accept unsolicited resumes through or from search firms or staffing agencies. All unsolicited resumes will be considered the property of Guidehouse and Guidehouse will not be obligated to pay a placement fee. #J-18808-Ljbffr Guidehouse- NTT DATA seeks a Cybersecurity and Risk Analyst to join the VAPT team, identifying and... ...and applications. You will perform vulnerability assessments, risk evaluations, and threat... ...to improve security posture and compliance across federal directives and #J-18808-Ljbffr NTT...Suggested
- ...Foxhole Technology provides robust cybersecurity and IT support capabilities for federal civilian and defense agencies.... ...Foxhole Technology is seeking Vulnerability Management, Tenable/Nessus &... ...tracking EOL/EOS software, patch compliance, POA&M aging, remediation...SuggestedWork at office
$86.8k - $198k
Enterprise Cybersecurity Vulnerability Analyst, SeniorThe Opportunity:Support Booz Allen Hamilton's internal Enterprise Cybersecurity team by utilizing... ...veteran or any other status protected by applicable federal, state, local, or international law.SummaryLocation:...SuggestedFull timeContract workPart timeWork at officeLocal areaRemote work$90k - $155k
...Intelligence Community (IC), Federal Civilian missions and... ...our team. ABSC is seeking a Vulnerability Management Analyst to join... ...Anacostia-Bolling. Spanning cybersecurity, engineering, enterprise operations... ...analysis, remediation, and compliance activities across Air Force...SuggestedContract workRemote workFlexible hours$99k - $225k
Enterprise Cybersecurity AnalystThe Opportunity:Support mission-critical... ...in real time, conduct vulnerability assessments across cloud and... ...ensure operational excellence, compliance with Department of Defense... ...), NIST 800-53, or Defense Federal Acquisition Regulation...SuggestedFull timeContract workPart timeWork at officeLocal areaRemote work- ...Clearance Node is supporting a U.S. Government customer to provide cybersecurity vulnerability analysis support to reduce the prevalence and impact of vulnerabilities and exploitable conditions across Federal Civilian Executive Branch (FCEB) entities and Critical...
- Cybersecurity Vulnerability Analyst (Incident Manager III) Description Supporting our prime contractor and their U.S. Government customer to provide... ...of vulnerabilities and exploitable conditions across Federal Civilian Executive Branch (FCEB) entities and Critical Infrastructure...For contractors
$110.18k - $183.63k
...currently seeking a Cybersecurity and Risk Analyst to join... ...member of the Vulnerability Assessment and Penetration... ...intelligence, and supporting compliance efforts to ensure... ...in alignment with federal security frameworks... ...application services. our consulting and Industry...Full timeTemporary workWork at officeRemote workFlexible hours$104.8k - $192.2k
...Government and Public Sector - Cybersecurity - Penetration Tester -... ...a full range of consulting and audit services to help our Federal, State, Local and... ...discovering the newest security vulnerabilities, attending and... ...aligned to engagement and compliance requirements....For contractorsSummer holidayWork at officeLocal areaFlexible hours- CMMC (Cybersecurity Maturity Model Certification) Consultant Tenacious Solutions, LLC is seeking a CMMC (Cybersecurity... ...support to our team in achieving compliance with the latest CMMC 2.0 requirements... ...72 requirements, and addressing Federal Contract Information (FCI) and...Contract workPart timeRemote workFlexible hours
- cFocus Software seeks a Vulnerability Management Analyst to join our... ...related field ~5+ years of cybersecurity experience, including three... ...management, security compliance, POA&M management, or a closely... ...BOD 22-01 requirements, and federal continuous-monitoring...Full timeFor contractorsRemote work
$115k - $131k
...seeking a highly motivated The Vulnerability Management Analyst to support the NIH cybersecurity program by identifying,... ...accordance with NIH, HHS, and Federal cybersecurity requirements.... ...analysis, remediation tracking, and compliance reporting. Responsibilities...Contract workLocal areaFlexible hours- The Cybersecurity Analyst supports the security, compliance, and maintenance of information systems throughout the Risk... ...meaningful security outcomes through vulnerability management, continuous... ..., NIST 800-series publications, Federal Information Processing Standards...
$100k - $145k
Dark Wolf is seeking Cybersecurity Analysts to join a collaborative... ...continuous monitoring and compliance with NIST & RMF. The successful... ...of controls, audits, vulnerability scans, and penetration test... ...categories. In compliance with federal law, all persons hired will...Full timeFor contractorsWork at officeLocal area$99k - $225k
Compliance ISSO and Enterprise Cybersecurity Security ArchitectThe Opportunity: Enterprise Cybersecurity (ECS)... ...of Department of Defense (DoD), Federal Information Security Modernization... ...lifecycle, from identifying technical vulnerabilities to guiding engineering teams...Full timeContract workPart timeWork at officeLocal areaRemote work$100k - $150k
...Cybersecurity Risk Analyst Salary Range: $100,000 – $150,000 Clearance: TS/SCI + CI Poly... ...automation approaches. Reviewing applicable federal and IC cybersecurity policies and... ...NIST SP 800-53, continuous monitoring, vulnerability management, or SOC/SIEM operations....Full timeContract work- Absolute Business Solutions Corp (ABSC) is recruiting a Vulnerability Management Analyst to strengthen cybersecurity for the AFNCR ITS2 program, supporting the... ...emphasizes vulnerability detection, remediation, and compliance across Air Force networks. The position requires...Remote job
- A leading cybersecurity consultancy is seeking a Cybersecurity Vulnerability Analyst based in Arlington, VA. The role requires an active Top Secret Security Clearance... ..., focusing on vulnerability analysis for federal clients. Candidates must exhibit strong analytical...
$104k - $166k
Responsibilities The Vulnerability Management Analyst will support the Federal Aviation Administration (FAA) under the BNATCS... ..., providing specialized cybersecurity and risk management services to... ...across FAA environments, ensuring compliance with federal security...Contract workLocal areaRemote workShift work- SkyePoint Decisions is seeking a Vulnerability Management Analyst to identify, analyze, track, and report security vulnerabilities... ...prioritized, remediated, and verified in accordance with HHS and Federal cybersecurity requirements. #J-18808-Ljbffr SkyePoint DecisionsRemote job
$110.18k - $183.63k
...organization. Job Summary The Cybersecurity and Risk Analyst is a... ...member of the Vulnerability Assessment and... ...intelligence, and supporting compliance efforts to ensure... ...activities in alignment with federal security frameworks... ...services. our consulting and Industry solutions...Temporary workWork at officeRemote workFlexible hours$110k - $120k
As Sr. Cybersecurity Analyst II, you’ll Provides a wide array of Information Technology... ...to information assurance including compliance with the Federal Information Security Modernization... ...(CTO) and Information Assurance Vulnerability Alerts (IAVAs).Assist in defining system...Full timeLocal area- cFocus Software seeks a Vulnerability Management Analyst to join our program supporting the United States International Defense Finance... ...remediation with cross-functional teams while ensuring compliance with federal standards and deadlines. #J-18808-Ljbffr cFocus Software...Remote job
- kozmetickesluzby.vecnakraska.sk - Jobboard is seeking a Cybersecurity Vulnerability Analyst (Incident Manager III) in Arlington, Virginia. This... .... Government customers to mitigate vulnerabilities across Federal Civilian Executive Branch entities. The ideal candidate will...
- .... in Arlington, Virginia seeks a Program Manager to lead a federal cybersecurity exercise support program for the Cybersecurity and Infrastructure... ..., cost, staffing, and quality assurance, ensuring compliance with all program requirements. Candidates should have over...Contract work
$104k - $166k
...is currently seeking a Senior Risk and Vulnerability Analyst.Location: Chandler, AZ or... ...This role ensures continuous visibility, compliance, and timely remediation to reduce operational... ...: Bachelor’s degree in Cybersecurity, Information Technology, or related field...Contract workShift work- ...the assigned Job Role of Infrastructure Consultant 2, your Area Of Responsibility will be... ...security checks, recovery drills, and compliance audits, implement security measures, and... ...assessments, and reporting processes• Maintain vulnerability management standard, procedures, and...Full timeTemporary workRelocation
$152k - $222k
...blockers.Deliver in-depth security and compliance expertise to support the technical relationship... .... You will work at the intersection of cybersecurity and cloud transformation, partnering... ...the complex needs of local, state and federal government and educational institutions...Local area- ...contingent upon contract award ***Overview SOSi is seeking a Risk and Vulnerability Analyst II to support vulnerability assessment and risk... ...development of remediation recommendations· Support cloud compliance scans and assessment activities· Troubleshoot scan issues and...Contract workWork at officeWorldwideMonday to FridayWeekend workAfternoon shift
$130k - $216k
...Clearance Required:Active SecretThe Managing Consultant will oversee three workstreams led by Senior Consultants Cybersecurity, Risk & Compliance. Management role coordinating and... ...workstreams, with IT stakeholders, and federal partners to ensure alignment with federal...Full timeFlexible hours
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Federal Cybersecurity Consultant: Vulnerability & Compliance. Be the first to apply!
- cyber security consultant Mc Lean, VA
- cyber security specialist Mc Lean, VA
- IT cyber security Mc Lean, VA
- cyber security Mc Lean, VA
- cyber security part time Mc Lean, VA
- cyber security sales Mc Lean, VA
- cybersecurity policy and compliance analyst Mc Lean, VA
- cybersecurity specialist Mc Lean, VA
- cybersecurity technical writer Mc Lean, VA
- remote cyber security Mc Lean, VA



