Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Vulnerability Management Analyst

Dane

Benefits Life/STD/LTD FSA/DCA 401(k) Employee discounts Paid time off 401(k) matching Dental insurance Health insurance Tuition assistance Vision insurance Description Looking for a place that invests in you from day one? At DANE, we offer aggressive PTO, strong benefits, and ongoing learning opportunities, backed by a culture that values and supports our team. We are seeking a Vulnerability Management Analyst (Tenable/Nessus & Metrics) to support vulnerability tracking, remediation coordination, and security metrics reporting in a federal technology environment. This is a junior-level role (1–3 years of experience) focused on execution and coordination, working hands-on with Tenable/Nessus, iPost, Power BI, Excel, and ticketing systems to ensure that vulnerability data is accurate, actionable, and reportable. Details Location: Hybrid - Onsite, Arlington, VA, 1 day/week and as needed Job Type: Full Time Education: Minimum of a Bachelor’s degree in computer science or Equivalent Experience: Minimum 1 year of relevant experience Clearance: Must hold an Active DoD Secret Clearance or higher Responsibilities Run authorized Tenable/Nessus scans using credentialed scan profiles and review exports to identify CVEs, plugin findings, KEV status, EOL/EOS software risks, and affected assets. Validate findings as true or false positives, track vulnerability age using first-seen/last-seen dates, and escalation unresolved findings to senior security staff or system owners. Support the full vulnerability lifecycle from intake and triage through ownership assignment, remediation tracking, retest/rescan validation, and closure evidence collection. Monitor KEV and Critical/High findings against federal remediation timelines (e.g., BOD 22-01) and flag aging, stale, or blocked findings for escalation. Build and maintain Power BI dashboards and Excel reports covering vulnerability posture, patch compliance, KEV status, finding aging, and ownership tracking using Power Query, slicers, and basic DAX measures. Produce recurring deliverables, including Critical/High aging reports, Tenable/iPost reconciliation summaries, EOL/EOS tracking, and executive snapshots; document KPI definitions and data sources. Reconcile vulnerability data across Tenable/Nessus, iPost, ServiceNow/CA ServiceDesk, Jira, SharePoint, POA&M trackers, and Excel exports to identify mismatches and coverage gaps. Coordinate with security, development, infrastructure, database, and cloud teams and ISSO stakeholders to drive remediation through closure. Requirements 1–3 years of experience in cybersecurity operations, vulnerability management, SOC, cyber GRC, IT operations, or application security support; working knowledge of CVE, CVSS, KEV, false positives, POA&M tracking, risk acceptance, and vulnerability aging. Hands-on Tenable/Nessus experience: executing credentialed scans, analyzing plugin output and CVE findings, validating true/false positives, and building dashboards, saved filters, and exports for KEV, Critical/High, EOL/EOS, and aging tracking. Intermediate Power BI (Power Query, data modeling, DAX, slicers) and strong Excel skills (pivot tables, VLOOKUP/XLOOKUP, conditional formatting, deduplication) for vulnerability reporting and KPI tracking. Experience with iPost, ServiceNow, CA ServiceDesk, Jira, or SharePoint for remediation tracking; ability to reconcile data across multiple tools, identify mismatches, and maintain accurate ownership and evidence records. Familiarity with EOL/EOS software tracking, patch compliance, remediation exceptions, risk acceptance documentation, and closure evidence collection. Strong attention to detail, comfort working with large and messy datasets, and clear communication skills for translating technical findings into plain-language updates for leadership and non-technical stakeholders. Preferred Qualifications Experience supporting federal cybersecurity programs or regulated environments; familiarity with NIST SP 800-53, RMF, A&A, ATO, POA&M lifecycle management, CISA BOD 22-01, and FedRAMP vulnerability requirements. Exposure to DevSecOps and application security tooling: SAST, DAST, SCA, container image scanning, secrets scanning, or Software Bill of Materials (SBOM) analysis. Basic understanding of enterprise patching for Windows Server, Windows workstations, .NET Framework, Java JRE, SQL Server, and endpoint agents; familiarity with Splunk or other SIEM platforms. Experience developing SOPs, RACI matrices, or workflow documentation in a security or IT operations context. Relevant certifications such as CompTIA Security+, CySA+, CEH, or equivalent entry‑to‑mid‑level cybersecurity credentials. DANE LLC is an equal-opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or status as a protected veteran. Flexible work from home options available. #J-18808-Ljbffr

Vacancy posted 4 days ago
Similar jobs that could be interesting for youBased on the Vulnerability Management Analyst in Chantilly, Loudoun County, VA vacancy
  • $103.54k - $147.92k

     ...Mission Technologies is currently seeking a Junior Vulernability Management Analyst to work out of Fairfax, VA i in support of the DoD/DoW...  ...: I want to and can do that! • Supports enterprise vulnerability management operations for Department of Defense mission systems... 
    Suggested
    Full time
    Contract work
    For contractors
    Work at office
    Local area
    Worldwide

    Huntington Ingalls Industries

    Fairfax, VA
    4 days ago
  •  ...Junior Vulnerability Management Analyst Everforth ECS is seeking a Junior Vulnerability Management Analyst to work in the National Capital Region covering the Pentagon, Falls Church, and Fairfax. The War Data Platform (WDP) is a key initiative within the U.S. Department... 
    Suggested
    For contractors
    Internship

    ECS

    Fairfax, VA
    4 days ago
  • $60k - $73k

     ...Vulnerability Management Analyst Are you looking for limitless career opportunities with a company that values growth, innovation, and teamwork? At Ntiva, we're more than a Managed Services Provider, we're a community dedicated to helping each other, our clients, and... 
    Suggested
    Contract work
    Temporary work
    Remote work
    Monday to Friday

    Ntiva

    McLean, VA
    4 days ago
  • Mission Technologies, a division of HII, is looking for a skilled professional in vulnerability management in Fairfax, Virginia. The successful candidate will support Department of Defense cybersecurity efforts, ensure accuracy in vulnerability assessments, and maintain... 
    Suggested

    Mission Technologies, a division of HII

    Fairfax, VA
    4 days ago
  • $103.54k - $147.92k

     ...Required Travel: 0-10%. Responsibilities Supports enterprise vulnerability management operations for Department of Defense mission systems across...  ...and compensating controls under guidance of senior analysts. Maintains detailed records supporting Risk Management Framework... 
    Suggested
    Full time
    For contractors
    Work at office
    Local area

    Mission Technologies, a division of HII

    Fairfax, VA
    4 days ago
  •  ...Overview Senior Business Operations & Financial Management Analyst LOCATION: Chantilly, VA JOB STATUS: Full-time CLEARANCE: Active DoD Top Secret security clearance with SCI eligibility and Poly required. U.S. citizenship required. Astrion has... 
    Full time
    Work at office

    ASTRION, INC.

    Chantilly, Loudoun County, VA
    1 day ago
  •  ...who do not meet these requirements will not be considered. Responsibilities Responsible for performing basic reconnaissance and vulnerability scanning in accordance with established testing methodologies Identifies common vulnerabilities that can be potentially exploited... 
    Work experience placement

    Cyber Defense Technologies

    Chantilly, Loudoun County, VA
    1 day ago
  •  ...Overview At all levels, our Earned Value Management Analysts will utilize and enhance their skills in EVM by supporting programs related to the development and acquisition of space vehicles for various legacy programs of the DOD and Intelligence communities. The support... 
    For contractors
    Work at office

    Tecolote Research

    Chantilly, Loudoun County, VA
    1 day ago
  •  ...Position Title: IT Management Tool Analyst Position Type: Full-time, On-Site Location: Chantilly, VA Clearance: Active TS/SCI CI Poly Overview Seeking a discerning technology professional who possesses both the technical acumen... 
    Full time

    Waypoint Human Capital

    Chantilly, Loudoun County, VA
    5 days ago
  •  ...Candidates should have 3 years of experience and preferably OSCP certification. Responsibilities include conducting reconnaissance and vulnerability scanning, identifying vulnerabilities, and mentoring junior testers. In addition to competitive salaries, CDT offers a... 

    Cyber Defense Technologies

    Chantilly, Loudoun County, VA
    1 day ago
  •  ...and clearly translate highly technical information to senior management in a way that supports mission goals. Help define the Red...  ...Provide risk-appropriate and pragmatic recommendations to correct vulnerabilities found. Configure and safely utilize attacker tools, tactics,... 
    Work experience placement

    Cyber Defense Technologies

    Chantilly, Loudoun County, VA
    3 days ago
  •  ...testing along with OSCP certification. As a member of the team, you'll conduct vulnerability assessments, mentor junior testers, and lead complex penetration tests while collaborating with management on security policies. We offer a collaborative environment with... 

    Cyber Defense Technologies

    Chantilly, Loudoun County, VA
    17 hours ago
  •  ...Ntiva, Inc. is seeking a Vulnerability Management Analyst to support security engineers by executing approved remediation tasks and performing manual configuration updates. This role is essential in maintaining security hygiene and follows clearly defined procedures for... 
    Remote work

    Ntiva

    McLean, VA
    17 hours ago
  •  ...join our cybersecurity team. In this role, you will identify vulnerabilities and test the security of networks, applications, and systems...  ...SIMILAR CAREER TITLES Ethical Hacker, Vulnerability Analyst, Security Consultant, Red Team Specialist, Cybersecurity Analyst... 
    Temporary work
    For contractors
    Immediate start
    Flexible hours

    Cymertek

    Chantilly, Loudoun County, VA
    4 days ago
  •  ...Security, Information Assurance, Cyber Warfare, Cloud Computing, Policy, Planning, Analysis, Training, Communications, Design, and Management. Responsibilities: Deliver specialized consultation, facilitate client interactions, ensure quality in development and lifecycle... 
    Permanent employment

    Edgeworks Co

    Chantilly, Loudoun County, VA
    4 days ago
  •  ...Dormont Manufacturing Co is seeking a Senior Discovery Business and System Analyst to oversee the documentation and management of business processes. You will analyze existing and new operational requirements while ensuring efficient execution of business tasks. This role... 

    Dormont Manufacturing Company

    Chantilly, Loudoun County, VA
    3 days ago
  • $80k - $120k

     ...Digital Forensic Analyst Employment Type: Full-Time, Mid-Level Department: Forensics CGS is seeking a Digital Forensic Analyst whose...  ...updates and new options in the market. Work closely with project management and other team members on completing complex projects in a... 
    Full time
    Work at office
    Remote work
    Flexible hours

    Contact-Government-Services,-LL

    Chantilly, Loudoun County, VA
    3 days ago
  •  ...cloud specific concepts such as networking, identity and access management, console applications, and functions. A strong Penetration...  ...at identifying and exploiting misconfigurations and/or vulnerabilities in cloud infrastructure. Our mission is to help our client protect... 

    Cyber Defense Technologies

    Chantilly, Loudoun County, VA
    3 days ago
  •  ...Service Performance Management Analyst, TS/SCI with Polygraph Security Clearance Required, Chantilly, VA Ready to hire a Service Performance Management Analyst. Qualified candidates must have an active TS/SCI with Polygraph Security Clearance. Military (Air Force... 

    Next Step Systems LTD

    Chantilly, Loudoun County, VA
    4 days ago
  • $89.2k - $194.78k

     ...critical voice, video and collaboration services for the full spectrum of operations. AT&T has an opening for a Change Management Analyst to support the program’s configuration control board, customer’s technical post implementation review, and root cause analysis... 
    Temporary work
    Work at office
    Local area
    Relocation

    AT&T

    Chantilly, Loudoun County, VA
    2 days ago
  •  ...Administrators and other IS security personnel. Conduct required IS vulnerability scans according to risk assessment parameters. Develop Plan...  ...(POAMs) in response to reported security vulnerabilities Manage the risks to ISs and other NRO assets by coordinating... 
    Work at office
    Local area

    ManTech

    Chantilly, Loudoun County, VA
    3 days ago
  •  ...cyber threats. The ideal candidate will possess over 5 years of systems engineering experience in cyber operations and be skilled in managing complex technical projects. You will collaborate with stakeholders to define goals, investigate innovative solutions, and develop... 
    Remote work

    Phase2 Technology

    Chantilly, Loudoun County, VA
    17 hours ago
  •  ...compliance with security policies, and managing risk through the implementation of robust...  ...security assessments, monitor for vulnerabilities, and respond to potential threats. The...  ...SIMILAR CAREER TITLES Cybersecurity Analyst, Information Security Specialist, Security... 
    Temporary work
    For contractors
    Immediate start
    Flexible hours

    Cymertek

    Chantilly, Loudoun County, VA
    4 days ago
  •  ...information Technology, Information Assurance, Information Management (IT/IA/IM) • Manage the day-to-day system security including...  ...security compliance • Review Nessus security scans, communicate vulnerabilities to technical stakeholders, and perform remediation •... 
    Work experience placement

    Jacobs

    Chantilly, Loudoun County, VA
    2 days ago
  •  ...implementing and overseeing security policies, managing risk assessments, and ensuring...  ...closely with other IT teams to identify vulnerabilities, develop security protocols, and monitor...  ..., Cybersecurity Officer, Security Analyst, Information Assurance Officer, Security... 
    Temporary work
    For contractors
    Immediate start
    Flexible hours

    Cymertek

    Chantilly, Loudoun County, VA
    4 days ago
  •  ...configurations, enclave policy, or local policy. This is achieved through passive evaluations (compliance audits) and active evaluations (vulnerability assessments). Establishes strict program control processes to ensure mitigation of risks and supports for obtaining... 
    For contractors
    Work experience placement
    Local area

    Cyber Defense Technologies

    Chantilly, Loudoun County, VA
    5 days ago
  •  ...policy architecture across SPA's information systems. The team manages cyber policy, develops control implementations and system...  ...supervision Desired Qualifications: ~ Experience performing Vulnerability Management activities and validating system compliance using... 
    Work experience placement
    Immediate start

    Systems Planning and Analysis, Inc

    Chantilly, Loudoun County, VA
    4 days ago
  •  ...Associates Degree and 12 years of work experience or equivalent Desired Qualifications: Expertise with configuration management; system maintenance; and integration testing. Ability to troubleshoot technical configurations and make recommendations on... 
    For contractors
    Work experience placement

    Cyber Defense Technologies

    Chantilly, Loudoun County, VA
    3 days ago
  •  ...configurations, enclave policy, or local policy. This is achieved through passive evaluations (compliance audits) and active evaluations (vulnerability assessments). Establishes strict program control processes to ensure mitigation of risks and supports for obtaining... 
    For contractors
    Work experience placement
    Local area

    Cyber Defense Technologies

    Chantilly, Loudoun County, VA
    2 days ago
  • $165k - $195k

     ...Required Top Secret/SCI Overview AMERICAN SYSTEMS is seeking a Senior Information System Security Officer (ISSO ) to manage RMF execution, authorization, and continuous monitoring for hybrid onpremises and cloud systems supporting classified government... 
    Full time
    Remote work

    American Systems

    Chantilly, Loudoun County, VA
    2 days ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Vulnerability Management Analyst. Be the first to apply!