Vulnerability Analyst
Boston Government Services
Boston Government Services, LLC. (BGS) has created this Evergreen Talent Pool post for gathering qualified candidates for a position relating to Vulnerability Analyst which would support our clients.
BGS is an engineering, technology, and security firm helping to advance missions of national importance for government programs, national laboratories, national security facilities, nuclear operations, and complex commercial projects. We support clients at every stage, from strategic planning and program management to the execution of project management, procurement, supply chain management, quality, safety, security, nuclear and systems engineering and technical activities. We strive to attract and retain the best talent because it delivers the best results and "Delivery Certainty" for our clients. Our capabilities are based on our experience in complex, secure, and highly regulated environments. We leverage our expertise and capabilities to provide mission-driven integrated services, systems, and solutions tuned to our clients' mission needs, challenges, requirements, expected results, and strategic direction. Work that Matters. People that Matter More. At BGS, we believe meaningful work starts with great people. We foster a culture built on respect, collaboration, and accountability-where employees are empowered to contribute ideas, grow professionally, and make an impact. We care about our employees' well-being through competitive benefits, clear expectations, and an environment that values both excellence and connection. If you align with BGS' company values and culture, we would love for you to explore opportunities to join our growing team by checking out the job description below! Duties/Responsibilities Include:- Possess a working level expertise with the National Institute of Standards and Technologies (NIST) Cybersecurity Framework (CSF) and the NIST 800-53 series of control families and approaches.
- Using automated tools and manual techniques to Client security weaknesses (i.e. Tenable Security Center, Nucleus Security, etc...)
- Conducting regular scans and assessments of systems, applications, and networks to identify potential vulnerabilities.
- Analyzing the identified vulnerabilities to determine their potential impact on the organization.
- Prioritizing vulnerabilities based on their severity and the risk they pose to the organization.
- Performing routine assignment of tickets to IT and other teams to address vulnerabilities as part of a 'cyber hygiene' process.
- Recommending mitigation strategies to address identified vulnerabilities.
- Working with IT and development teams to apply patches, configure systems securely, and implement other remediation measures. This position is not expected to perform patching activities.
- Creating detailed reports on the findings of vulnerability assessments and risk analyses.
- Documenting the status of vulnerabilities and the actions taken to mitigate them.
- Communicating the results of vulnerability assessments, risk analyses, and other cyber hygiene work to stakeholders, including management and technical teams.
- Staying up to date with the latest cybersecurity threats, vulnerabilities, and best practices.
- Continuously improving the organization's vulnerability management processes and tools.
- Attend online/Teams meetings with team and others as appropriate.
- Work with team to provide status on current task, suggest improvements, discuss implementation, etc.
- Practical experience in conducting vulnerability assessments and/or penetration tests.
- Experience in system and network administration.
- Familiarity with security concerns and vulnerabilities common in an enterprise environment, including application development, IT/OT environments, virtualization, containers, etc.
- Staying up to date with the latest cybersecurity threats, vulnerabilities, and best practices.
- Strong analytical and problem-solving skills to identify and assess vulnerabilities.
- Meticulous attention to detail to ensure thorough assessments and accurate reporting.
- Excellent written and verbal communication skills to effectively convey findings and recommendations to technical and non-technical stakeholders.
- Ability to work collaboratively with other cybersecurity professionals, IT staff, and external vendors.
- Considerable knowledge/experience of assessing security controls.
- Experience and skill in conducting audits or reviews of technical systems.
- Experience working in a government environment.
- Experience working in a distributed IT environment.
- Ability to obtain HSPD-12 card for use in two-factor authentication.
- Able to work both independently and as a contributing member of a small technical team.
- Able to disseminate knowledge to current staff.
- Must be a U.S. citizen.
- Successful drug screening.
- Proficiency in using vulnerability scanning tools such as Tenable, Nessus, Qualys, OpenVAS, and Nexpose.
- Familiarity with penetration testing tools like Metasploit, Burp Suite, and Nmap.
- Strong knowledge of various operating systems, including Windows, Linux, and macOS.
- Understanding of system administration and security configurations.
- In-depth understanding of network protocols, architecture, and security.
- Experience with network scanning and monitoring tools.
- Ability to write scripts in languages such as Python, Bash, or PowerShell to automate tasks and analyze data.
- Basic programming skills to understand and analyze code for vulnerabilities.
- Familiarity with cybersecurity frameworks and standards such as NIST, ISO 27001, CIS Controls, and OWASP.
- Understanding of the Cybersecurity Framework (CSF) and NIST 800-53 controls.
- Certified Information Systems Security Professional (CISSP).
- Certified Ethical Hacker (CEH).
- CompTIA Security+.
- Certified Information Security Manager (CISM).
- Offensive Security Certified Professional (OSCP).
- GIAC Security Essentials (GSEC).
- This position may be remote, hybrid, or fully onsite depending on the client need.
Schedule is full-time, Monday - Friday 40-hour week.
Vacancy posted 2 days ago
Similar jobs that could be interesting for youBased on the Vulnerability Analyst in Oak Ridge, TN vacancy
- ...Implementation Guides (STIGs) and configuration standards. Working knowledge of Industry Standard tools for purposes of audit reduction, vulnerability scanning, and malware analysis is preferred. Relevant tools include but are not limited to: Splunk, Tenable Nessus, Host Based...SuggestedRelocation packageFlexible hours
- ...Management Framework activities including maintaining system security documentation, supporting control implementation, assisting with vulnerability management, and helping maintain continuous monitoring programs. The position will also help ensure that systems supporting...SuggestedFull timeFor contractors
- ...qualified candidates for a position relating to Cyber Security Analyst which would support our clients. BGS is an engineering,... ...systems, undocumented systems, and newly disclosed vulnerabilities. Reviewing systems with existing public access to ensure requirements...SuggestedFull timeTemporary workRemote workMonday to FridayShift work
- ...Framework activities including oversight of system authorization packages, system security plans, security control implementation, vulnerability management programs, and continuous monitoring strategies. This role will coordinate cybersecurity assessments, guide...SuggestedFull timeFor contractors
- ...collection, and develops corrective action plans in a federal or regulated environment. Leverages SIEM tools (e.g., Splunk), vulnerability management, and control monitoring platforms. Works independently and collaboratively across technical and non-technical teams...SuggestedContract workWork at office
- Corporate Architect-Project/Senior Spectra Tech, Inc. is hiring for a Corporate Architect-Project/Senior in Oak Ridge, TN at our Corporate Office. We are seeking an experienced Architect with advanced proficiency in Revit to lead projects from design through delivery...Work at office
- ...integrate AI-on-AI testing infrastructures, where AI models can actively challenge each other in adversarial contexts to detect vulnerabilities or weaknesses. Scalability and Cluster Computing Design distributed systems that support high-throughput simulations and...Work at officeRelocation packageFlexible hours
$500 per week
Compensation: Varies per assignment. Up to $500 per week. Location: Remote (USA) Company: ProductReviewJobs Thank you for your interest in becoming a Paid Product Tester. This opportunity is for completing market research opportunities with independent brands via online...Remote work- Job Summary: Do you thrive at the intersection of technology, teamwork, and transformation? As an IT Project Manager at Centrus Energy, you’ll be the driving force behind the systems that keep our business running smoothly—from Finance to Procurement to IT. You’ll...Full timeShift work
- Technical Project Manager Location: Oak Ridge, TN Schedule: Full-Time Standard Nuclear is fueling America's nuclear renaissance at industrial scale. Our mission is to deliver the essential building blocks of nuclear power—enabling cost-effective, safe, and secure...Permanent employmentFull timeWork at office
- Licensing Engineer Oak Ridge, TN Standard Nuclear is fueling America's nuclear renaissance at industrial scale. Our mission is to deliver the essential building blocks of nuclear power—enabling cost-effective, safe, and secure energy for the world. Function ...Permanent employmentImmediate start
- Requisition Id 16065 Overview: Oak Ridge National Laboratory is the largest US Department of Energy (DOE) science and energy laboratory, conducting basic and applied research to deliver transformative solutions to compelling problems in energy and security. The...Work at officeRelocation packageFlexible hours
- Embedded Design Engineer Teledyne Technologies Incorporated provides enabling technologies for industrial growth markets that require advanced technology and high reliability. These markets include aerospace and defense, factory automation, air and water quality environmental...Permanent employmentLocal area
- Electrical Design Engineer Pinnacle Specialty Group is a woman-owned and operated small business specializing in providing project and contract management for Professional, Technical, Engineering, IT and Support Services. We offer full benefits to include: Medical, ...Full timeContract workWork at office
- Industrial Engineer We are seeking an experienced and highly motivated Industrial Engineer to join our team. The ideal candidate brings 5–10 years of hands-on experience in process optimization, production planning, and continuous improvement initiatives. This role ...Full time
- Electrical Instrumentation And Controls Engineer (I&C) SMSI, LLC is seeking an Electrical Instrumentation and Controls Engineer (I&C) who will design projects and lead other Electrical and I&C Engineers and designers on project tasks. Work involves a variety of activities...Remote work2 days per week3 days per week
- Navarro Research and Engineering is recruiting an Electrical Engineering Designer in Oak Ridge, TN. An active DOE Q clearance is required to be considered for this position. Navarro Research & Engineering is an award-winning federal contractor dedicated to partnering...Temporary workFor contractors
- Job Summary : Ready to turn manufacturing challenges into smarter, faster, and more efficient solutions? As a Senior Industrial Engineer at Centrus Energy, you’ll play a key role in optimizing production operations at our Technology and Manufacturing Center in Oak ...Full timeShift work
- Senior Civil Engineer - Aviation & Federal (Oak Ridge) Oak Ridge, TN Job: Civil Engineering Primary Location: Oak Ridge, TN Schedule: Full-time Travel: Yes, 25 % of the Time Req ID: 252705 Description Imagine having an ownership stake in the company...Full timeFor contractorsWork at officeLocal areaRemote workFlexible hours
- Posting Title X-Ray Technologist- PRN Overview At Fast Pace Urgent Care, X-Ray Techs provide clinical and administrative support essential for effective patient care under the direct supervision of a Provider, Nurse Practitioner or Physician Assistant. They provide...Full timeReliefSeasonal work
- Navarro Research and Engineering is recruiting an AI Automation Engineer (3878) in Oak Ridge, TN. This is an onsite position at our corporate office. Navarro Research & Engineering is an award-winning federal contractor dedicated to partnering with clients to advance...Contract workTemporary workFor contractorsWork at officeLocal area
- Overview Certified Surgical Technologist, Surgery Full Time, 72 Hours Per Pay Period, Variable Shifts Rotating on-call shifts required. With more than 30 specialties from Cardiology and Neurosurgery to Orthopedics and Vascular care, Methodist Medical Center was...Full timeImmediate startShift workRotating shift
- Full Stack Developer XCEL Engineering, Inc. is an award-winning small business that provides trusted information technology, engineering, consulting, and project management solutions and services to federal agencies and organizations. Originally founded in 1971 by professional...Work at officeLocal area
- Requisition Id 16529 Overview: The Atmospheric Radiation Measurement Program's Data Center is seeking a Full Stack Developer who will focus on internal tools related to ARM triennial deliverables for a one-year term. This position resides in the Earth Science...Temporary workWork at officeLocal areaRelocation packageFlexible hours
- Requisition Id 16549 Overview: We are hiring a HPC Software Engineer to design, operate and maintain clusters, servers, and workstations supporting services where science happens at ORNL! This position resides in the Emerging Technologies & Computing group in ...Work at officeRelocation packageFlexible hours
- SharePoint Intranet Developer This position is based at our Corporate Headquarters in Oak Ridge, TN. The deadline to apply for this opportunity is June 22, 2026. Job Summary: The SharePoint Intranet Developer is responsible for designing, building, and enhancing ...Work experience placementRemote work
- ...approvals for Safety Basis documentation. Provide mentorship and professional development opportunities to staff Safety Basis analysts and USQ evaluators. Interfaces as directed with other external stakeholders (e.g., Defense Nuclear Facilities Review Board) relative...Contract workFor contractorsWork at office
$25 - $35 per hour
Overview Rapiscan Systems, an OSI Systems, Inc. company, designs, manufactures and markets security and inspection systems worldwide. Our products are used to inspect baggage, cargo, people, vehicles and other objects for weapons, explosives, drugs and other contraband...Hourly payFull timeRemote workWorldwideFlexible hoursNight shift- Power Electronics Engineer We are seeking a Power Electronics Engineer with 5–10 years of experience to design, develop, and optimize power conversion and power management systems for our next-generation energy products. This role will focus on DC-DC conversion, voltage...
- ABOUT THE ROLE We are seeking a Nuclear Safety Engineer to join our team supporting the Uranium Processing Facility ! This position is full-time and will be based out of Oak Ridge, Tennessee. Responsibilities Conduct hazard evaluation studies and...Full timeFor contractorsWork at officeLocal area
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Vulnerability Analyst. Be the first to apply!

