Vulnerability Management Analyst
$90k - $155kAbsolute Business Solutions Corp
Absolute Business Solutions Corp (ABSC) is not just another tech company. We're a community of innovators, engineers, analysts and business professionals working together with our customers to tackle the most complex national security challenges. For more than 20 years we've supported critical Department of Defense (DoD), Intelligence Community (IC), Federal Civilian missions and global, multi-national corporations. We specialize in supporting our clients in the Intelligence, Technology, Defense, AI/ML, and Data Science fields. As we continue to grow at a rapid pace, we need some amazing new professionals to join our team.
ABSC is seeking a Vulnerability Management Analyst to join our team supporting the Air Force National Capital Region (AFNCR) Information Technology Services (ITS2) program, delivering secure, resilient technology supporting Air Force operations across the National Capital Region, including the Pentagon, Joint Base Andrews, and Joint Base Anacostia-Bolling. Spanning cybersecurity, engineering, enterprise operations, infrastructure modernization, logistics, and 24/7 mission support, AFNCR ITS2 also supports the National Military Command Center (NMCC), Joint Staff, and other mission partnersgiving technical professionals the opportunity to solve complex challenges while helping keep critical national-defense capabilities connected, protected, and operational.
As a Vulnerability Management Analyst, you will help strengthen the cybersecurity posture of the AFDW environment through vulnerability detection, assessment, analysis, remediation, and compliance activities across Air Force networks and systems. You will work closely with ISSOs, ISSMs, cybersecurity teams, engineers, system and network administrators, program offices, and mission owners to identify risk, drive remediation, support compliance, and help keep critical Air Force systems secure, resilient, and mission ready.
The majority of work is conducted on-site at our client location in the National Capital Region primarily Pentagon, Joint Base Andrews and/or Joint Base Anacostia-Bolling (JBAB), based on each assignment. We offer a flexible schedule and, occasionally, some tasks may be performed remotely with prior client approval.
Security clearance required for this role: An Active Secret security clearance is required.
Responsibilities:
The Vulnerability Management Analyst will support activities including:
- Conduct and support vulnerability detection, assessment, analysis, and remediation using DoD-, Air Force-, and AFDW-approved systems and tools.
- Maintain and support Assured Compliance Assessment Solution (ACAS) capabilities and ensure vulnerability scans are properly configured and executed.
- Prepare and provide recurring vulnerability scan results, cybersecurity reports, and vulnerability trend analysis.
- Analyze scan data and security logs to identify vulnerabilities, anomalies, policy violations, unauthorized activity, and potential cybersecurity incidents.
- Configure vulnerability assessment tools in accordance with NIST, DoD, Air Force, and DISA cybersecurity guidance.
- Review and track vulnerability reports, IAVMs, TCNOs, TASKORDs, and other DoD/USAF cybersecurity directives.
- Support remediation of identified vulnerabilities, including Critical and Zero-Day vulnerabilities, within required compliance timelines.
- Review and validate Security Technical Implementation Guide (STIG) checklists and recommend appropriate remediation actions.
- Develop, coordinate, track, and manage Plans of Action and Milestones (POA&Ms) through closure.
- Review and track Risk Management Framework (RMF)-related POA&Ms and security controls.
- Support periodic reviews and testing of RMF security controls.
- Configure, manage, operate, and maintain approved automated vulnerability management and endpoint security capabilities, including Microsoft Endpoint Configuration Manager (MECM) or equivalent tools.
- Coordinate vulnerability remediation activities with cybersecurity offices, engineering teams, system/network administrators, PMOs, customers, mission owners, and external Air Force/DoD organizations.
- Provide weekly vulnerability remediation status reporting, including open/closed IAVMs, STIG findings, RMF POA&Ms, and other compliance metrics.
- Recommend technical and procedural solutions to improve the security posture of network, platform, and system environments.
- Support the development and maintenance of cybersecurity policies, procedures, and standard operating procedures.
- Education/Years Experience/Certifications:
- Option 1 Standard Qualification
- Bachelor's degree in Computer Science, Cybersecurity, Information Technology, Information Systems, Engineering, or a related technical discipline.
- Current CompTIA Security+ CE or equivalent DoD 8570/8140 IAT Level II certification.
- Option 2 Master's Degree Substitution
- Master's degree in a relevant technical discipline.
- Ability to obtain Security+ CE or equivalent IAT Level II certification within six months of assignment.
- Option 3 Experience Substitution
- No degree required with a minimum of 5 years of intensive, progressive relevant experience demonstrating the technical proficiency required for the position.
- Security+ CE or equivalent DoD 8570/8140 IAT Level II certification in accordance with contract requirements.
- Option 1 Standard Qualification
- Skills:
- Must be able to work effectively in a highly regulated DoD environment.
- Must possess strong analytical, troubleshooting, documentation, and communication skills.
- Must be able to coordinate across technical teams, cybersecurity organizations, customers, and mission stakeholders.
- Must maintain all certifications required for the assigned labor category before performing work.
- Personnel with elevated privileges on Air Force networks must maintain applicable DoD cybersecurity workforce certifications.
- Must be able to read, write, speak, and understand English.
- On-call or after-hours support may be required based on mission
Strong candidates will have hands-on experience with one or more of the following:
- ACAS / Tenable Security Center / Nessus
- Vulnerability scanning and remediation
- DISA STIGs and SRGs
- RMF and cybersecurity control assessment
- POA&M development and management
- IAVM / cybersecurity directive compliance
- Microsoft Endpoint Configuration Manager (MECM/SCCM)
- Endpoint Security products
- NIPRNet and/or SIPRNet environments
- DoD and Air Force cybersecurity policies
- NIST cybersecurity standards and guidance
- Security log analysis and incident identification
- Vulnerability metrics, trend analysis, and compliance reporting
Who we are:
ABSC is a technology and services company that combines the agility of a small business with proven processes refined over more than two decades in business. We specialize in supporting public sector clients in the Intelligence, Defense, Health, and Safety areas. Our team stands ready to deliver the next generation of programs, personnel, and solutions to help advance our federal government customers driving innovation, agility, and security across all mission areas.
Some of our benefits include:
- Generous PTO plus 11 Federal Holidays
- Retirement Planning 401k Fully Vested with Match
- Annual Health and Wellness Allowance buy an Apple Watch, a treadmill, or hit the gym on us
- Career Development Annual Funds to spend on Education and Training
- Volunteer Time Off Annually, all employees can spend 8 hours directly supporting a charity of choice
- Charitable Match ABSC matches an employee's donation to a qualifying charity
- Referral Program We pay for internal and external referrals!
- LOV Awards Earn bonus awards throughout the year from our Living Our Values awards program
Apply to join our team today! We are always looking to grow our team - if you know someone who is seeking a new career opportunity, please share this job opening with them. ABSC offers generous external referral bonuses. You don't need to be an employee to benefit from our Referral Program.
*ABSC is a proud V3, Virginia Values Vets, member which recognizes our commitment to hiring Veterans. If you are a veteran, please be sure to include that in your application.*
Equal Opportunity Employer, including veterans and individuals with disabilities.
- cFocus Software seeks a Vulnerability Management Analyst to join our program supporting the United States International Defense Finance Agency (DFC). This position is remote. This position requires an Active Public Trust clearance. Qualifications: ~ Active Public...SuggestedFull timeFor contractorsRemote work
- Absolute Business Solutions Corp (ABSC) is recruiting a Vulnerability Management Analyst to strengthen cybersecurity for the AFNCR ITS2 program, supporting the Pentagon, JB Andrews, and JBAB. The role emphasizes vulnerability detection, remediation, and compliance across...SuggestedRemote job
- ...and secure the enterprise - across the organization and around the world . Foxhole Technology is seeking Vulnerability Management, Tenable/Nessus & Metrics Analyst to support vulnerability management, security metrics, remediation tracking, and dashboard reporting in a...SuggestedWork at office
- Foxhole Technology is seeking a Vulnerability Management, Tenable/Nessus & Metrics Analyst to support vulnerability management, security metrics, remediation tracking, and dashboard reporting in a federal civilian technology environment. The role is hybrid in Rosslyn,...Suggested
- ...contribute to transformative projects across banking, wealth management, and insurance sectors. If you're passionate about AI and eager... ..., risk assessments, and reporting processes• Maintain vulnerability management standard, procedures, and guidelines• Identify vulnerabilities...SuggestedFull timeTemporary workRelocation
- ...Vulnerability Management Analyst Location- Joint Base Andrews, MD Clearance- Secret Certifications- CompTIA Security+ or equivalent About TIME Systems At TIME Systems, we are at the forefront of Technology, Innovation, Management, and Engineering solutions...Temporary workLocal areaFlexible hours
- ...Vulnerability Management Analyst ID 2025-3164 Job Locations US Category Information Technology Type Regular Full-Time Overview DecisionPoint seeks a Vulnerability Management Analyst to support enterprise cybersecurity...Full timeContract workFor contractorsLocal areaRemote work
$87.1k - $157.45k
...Description Leidos has a career opportunity for a Vulnerability Management Analyst to support the Air Force National Capital Region IT Services program. The AFNCR IT Services program provides support services for information systems for Headquarters Air Force (HAF...Work at officeLocal areaImmediate startWorldwide$115k - $131k
...Job Description Job Description Copper River Cyber Solutions is seeking a highly motivated The Vulnerability Management Analyst to support the NIH cybersecurity program by identifying, analyzing, tracking, and reporting security vulnerabilities across enterprise...Contract workLocal areaFlexible hours- Job Title: Mid-Level Vulnerability Management Analyst Location: Bethesda, Maryland Type: Direct Hire / Perm Work Model: 99% remote with occasional onsite for meetings Security Clearance: Public Trust Position Summary The Mid-Level Vulnerability Management Analyst performs...Permanent employmentLocal areaRemote work
- System One in Bethesda, MD is seeking a Mid-Level Vulnerability Management Analyst to perform vulnerability scanning, analysis, reporting, and remediation tracking across NIH/OD-managed systems. You will coordinate with stakeholders, monitor CVE sources, and develop remediation...Remote job
$104k - $166k
Responsibilities The Vulnerability Management Analyst will support the Federal Aviation Administration (FAA) under the BNATCS contract, providing specialized cybersecurity and risk management services to help protect National Airspace System (NAS) systems, enterprise infrastructure...Contract workLocal areaRemote workShift work$87.1k - $157.45k
Leidos has a career opportunity for a Vulnerability Management Analyst to support the Air Force National Capital Region IT Services program. The AFNCR IT Services program provides support services for information systems for Headquarters Air Force (HAF), Air Force District...Work at officeWorldwide- SkyePoint Decisions is seeking a Vulnerability Management Analyst to identify, analyze, track, and report security vulnerabilities across enterprise systems, applications, databases, cloud environments, and network infrastructure. The Analyst collaborates with system owners...Remote job
$86.8k - $198k
Enterprise Cybersecurity Vulnerability Analyst, SeniorThe Opportunity:Support Booz Allen Hamilton's internal Enterprise Cybersecurity team by... ...SLA levels. Conduct analysis and serve as a vulnerability management resource supporting the company's client-facing and internal...Full timeContract workPart timeWork at officeLocal areaRemote work- DescriptionSAIC is seeking a highly skilled Senior Vulnerability Analyst with a strong technical background to join our team in support of a... ...to work with a team responsible for Patch and Vulnerability Management, contributing to the security and integrity of vital...2 days per week
- A leading cybersecurity consultancy is seeking a Cybersecurity Vulnerability Analyst based in Arlington, VA. The role requires an active Top Secret Security Clearance and 5+ years of experience, focusing on vulnerability analysis for federal clients. Candidates must exhibit...
- Cybersecurity Vulnerability Analyst (Incident Manager III) Description Supporting our prime contractor and their U.S. Government customer to provide cybersecurity vulnerability analysis support to reduce the prevalence and impact of vulnerabilities and exploitable conditions...For contractors
- ...S. Government customer to provide cybersecurity vulnerability analysis support to reduce the prevalence and impact... ...(CIKR). The Cybersecurity Vulnerability Analyst utilizes cybersecurity best practices, risk management techniques, critical thinking, and strong analytical...
$104k - $166k
ResponsibilitiesPeraton is currently seeking a Senior Risk and Vulnerability Analyst.Location: Chandler, AZ or Washington DCRole and... ...years of experience in security operations, vulnerability management, or risk analysis. 6 years of experience with a Masters Degree...Contract workShift work- ...upon contract award ***Overview SOSi is seeking a Risk and Vulnerability Analyst II to support vulnerability assessment and risk analysis activities... ...to support tool operations, testing, and vulnerability management activitiesQualifications· Experience:Three (3) to five (5)...Contract workWork at officeWorldwideMonday to FridayWeekend workAfternoon shift
- ...Phoenix Cyber is looking for Vulnerability Analysts to join our client delivery team. This is a remote position. Provide technical leadership and oversight to vulnerability threat management activities and initiatives Develop and implement strategies to manage and...Full timeRemote work
- ...mitigation plans Oversee analysis and reporting of security vulnerabilities across systems Perform vulnerability scans, analyze results,... ...papers Requirements 8+ years of experience in vulnerability management and analysis Experience with enterprise vulnerability scanning...
- NTT DATA seeks a Cybersecurity and Risk Analyst to join the VAPT team, identifying and mitigating cybersecurity risks across enterprise systems, networks, and applications. You will perform vulnerability assessments, risk evaluations, and threat simulations aligned with...
- ...Job Description Job Description One Federal Solution is seeking an experienced Operations Management Analyst to support a Government Client by providing analytical, operational, and program management support for mission-critical initiatives. The successful candidate...
- ...operations, cyber defense and resiliency, vulnerability research, ubiquitous technical... ...Nightwing is seeking a Cyber Incident Manager to support this critical customer mission... ...Compromise (IOCs), escalating to specialized analysts Required Skills: - Must have an active...Contract workImmediate startShift work
$144.2k - $164.6k
Cyber Security Log Management Analyst Capital One is looking for a Cyber Security Analyst to join our Log Management team. This team is responsible for enabling comprehensive cyber monitoring. We ensure standard log events are generated across Capital One so our threat...Full timePart timeH1bLocal area$104.8k - $192.2k
...The team works together in planning, pursuing, delivering and managing engagements to assess, improve, build, and in some cases... ...relevant by researching and discovering the newest security vulnerabilities, attending and speaking at top security conferences around the...For contractorsSummer holidayWork at officeLocal areaFlexible hours- Mayvin is seeking an experienced Operations Management Analys to support the Department of Homeland Security Federal Protective Service. This is a mission critical position that will support the Government through data analysis and operational and program management support...
- ...risks, policies, and mitigation plans. The role includes leading vulnerability analysis across multiple systems and guiding remediation... ...expert presentations. Required are 8+ years in vulnerability management, experience with Tenable.sc/Nessus/ACAS, and knowledge of NIST...
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Vulnerability Management Analyst. Be the first to apply!
- penetration tester Arlington, VA
- vulnerability analyst Arlington, VA
- ethical hacker Arlington, VA
- public sector business analyst Arlington, VA
- knowledge management analyst Arlington, VA
- business analyst healthcare Arlington, VA
- business strategy analyst Arlington, VA
- servicenow business analyst Arlington, VA
- business analyst law firm Arlington, VA
- configuration management analyst Arlington, VA


