Vulnerability Management Analyst
DANE LLC
Job Description
Job Description
Benefits:
- Life/STD/LTD
- FSA/DCA
- 401(k)
- Employee discounts
- Paid time off
- 401(k) matching
- Dental insurance
- Health insurance
- Tuition assistance
- Vision insurance
Job Type: Full Time
Education: Minimum of a Bachelor’s degree in computer science or Equivalent
Experience: Minimum 1 year of relevant experience
Clearance: Must hold an Active DoD Secret Clearance or higher Responsibilities
- Run authorized Tenable/Nessus scans using credentialed scan profiles and review exports to identify CVEs, plugin findings, KEV status, EOL/EOS software risks, and affected assets.
- Validate findings as true or false positives, track vulnerability age using first-seen/last-seen dates, and escalate unresolved findings to senior security staff or system owners.
- Support the full vulnerability lifecycle from intake and triage through ownership assignment, remediation tracking, retest/rescan validation, and closure evidence collection.
- Monitor KEV and Critical/High findings against federal remediation timelines (e.g., BOD 22-01) and flag aging, stale, or blocked findings for escalation.
- Build and maintain Power BI dashboards and Excel reports covering vulnerability posture, patch compliance, KEV status, finding aging, and ownership tracking using Power Query, slicers, and basic DAX measures.
- Produce recurring deliverables, including Critical/High aging reports, Tenable/iPost reconciliation summaries, EOL/EOS tracking, and executive snapshots; document KPI definitions and data sources.
- Reconcile vulnerability data across Tenable/Nessus, iPost, ServiceNow/CA ServiceDesk, Jira, SharePoint, POA&M trackers, and Excel exports to identify mismatches and coverage gaps.
- Coordinate with security, development, infrastructure, database, and cloud teams and ISSO stakeholders to drive remediation through closure.
- 1–3 years of experience in cybersecurity operations, vulnerability management, SOC, cyber GRC, IT operations, or application security support; working knowledge of CVE, CVSS, KEV, false positives, POA&M tracking, risk acceptance, and vulnerability aging.
- Hands-on Tenable/Nessus experience: executing credentialed scans, analyzing plugin output and CVE findings, validating true/false positives, and building dashboards, saved filters, and exports for KEV, Critical/High, EOL/EOS, and aging tracking.
- Intermediate Power BI (Power Query, data modeling, DAX, slicers) and strong Excel skills (pivot tables, VLOOKUP/XLOOKUP, conditional formatting, deduplication) for vulnerability reporting and KPI tracking.
- Experience with iPost, ServiceNow, CA ServiceDesk, Jira, or SharePoint for remediation tracking; ability to reconcile data across multiple tools, identify mismatches, and maintain accurate ownership and evidence records.
- Familiarity with EOL/EOS software tracking, patch compliance, remediation exceptions, risk acceptance documentation, and closure evidence collection.
- Strong attention to detail, comfort working with large and messy datasets, and clear communication skills for translating technical findings into plain-language updates for leadership and non-technical stakeholders.
- Experience supporting federal cybersecurity programs or regulated environments; familiarity with NIST SP 800-53, RMF, A&A, ATO, POA&M lifecycle management, CISA BOD 22-01, and FedRAMP vulnerability requirements.
- Exposure to DevSecOps and application security tooling: SAST, DAST, SCA, container image scanning, secrets scanning, or Software Bill of Materials (SBOM) analysis.
- Basic understanding of enterprise patching for Windows Server, Windows workstations, .NET Framework, Java JRE, SQL Server, and endpoint agents; familiarity with Splunk or other SIEM platforms.
- Experience developing SOPs, RACI matrices, or workflow documentation in a security or IT operations context.
- Relevant certifications such as CompTIA Security+, CySA+, CEH, or equivalent entry-to-mid-level cybersecurity credentials.
Flexible work from home options available.
Vacancy posted a month ago
Similar jobs that could be interesting for youBased on the Vulnerability Management Analyst in Chantilly, Loudoun County, VA vacancy
- ...Position Title: Senior Business Operations & Financial Management Analyst Location: Chantilly, VA Clearance Requirement: Active Top Secret with SCI eligibility U.S. Citizenship required OMNI Consulting Solutions is seeking a Senior Business Operations &...SuggestedFull timeWork at office
$200k
...Job Description Job Description Overview Senior Business Operations & Financial Management Analyst LOCATION: Chantilly, VA JOB STATUS: Full-time CLEARANCE: Active DoD Top Secret security clearance with SCI eligibility and Poly required. U.S. citizenship...SuggestedFull timeWork at office- ...join our cybersecurity team. In this role, you will identify vulnerabilities and test the security of networks, applications, and systems... ...*** SIMILAR CAREER TITLES Ethical Hacker, Vulnerability Analyst, Security Consultant, Red Team Specialist, Cybersecurity Analyst...SuggestedTemporary workFor contractorsImmediate startFlexible hours
- ...Senior Earned Value Management (EVM) Analyst – TS/SCI Clearance w/CI Poly Required Location Chantilly, VA Job Description Leffler Consulting is seeking a Senior Earned Value Management (EVM) Analyst to join our team in Chantilly providing support to national...SuggestedFor contractorsWork at office
$120k - $160k
...Development, Architecture, SE milestones: SRR, PDR, CDR, etc.), and/or DAWIA/PMI Program Management will be especially well-prepared to excel.This position is for a Business Operations Analyst in Chantilly, VA supporting cutting-edge and innovative space programs. The...SuggestedFull timeFor contractorsWork at office- ...Digital Forensic Analyst CGS is seeking a Digital Forensic Analyst whose primary focus will be on the preservation & collection... ...updates and new options in the market Work closely with project management and other team members on completing complex projects in a...Work at officeRemote workFlexible hours
$176k - $282k
...Digital Forensic Analyst Job Locations US-VA-Chantilly Requisition ID 2026-168250 Position Category... ...the team to implement changes to mitigate potential weaknesses/vulnerabilities. Additionally, the Digital Forensic Analyst will: Perform...Contract workShift work- ...administering SolarWinds alongside deep knowledge of Microsoft Windows Systems, HP SANs, and VMware products Advanced experience managing VPNs, GRE tunnels, routing protocols (BGP E/I, OSPF), VLANs, VRFs, and configuring KGs Strong familiarity with Cisco ACI, data...Work at office
- ...software engineering, AI solutions, cybersecurity, and IT program management. We thrive at the intersection of mission, technology, and... ...security groups and organizations Communicating vulnerability results and risk posture to senior executives Performing complex...Full timeWork experience placement
$21 - $29 per hour
DescriptionKforce has a client that is seeking a Finance Operations & Business Management Analyst. This hybrid role is ideally based in Reston, VA or Houston, TX.Summary:We are looking for a highly organized, execution-focused finance professional to help drive financial...- ...practice and play a significant role in the company's long-term growth. What You'll Do Federal Market Development Build and manage a targeted portfolio of government prime contractors, systems integrators, and federal program teams. Develop relationships...Full timeContract workFor contractorsFor subcontractorImmediate start
- ...compliance with security policies, and managing risk through the implementation of robust... ...security assessments, monitor for vulnerabilities, and respond to potential threats. The... ...SIMILAR CAREER TITLES Cybersecurity Analyst Information Security Specialist Security...Temporary workFor contractorsImmediate startFlexible hours
$24 - $29 per hour
...career. We’ll support you with training, and our shared vision of global security. Northrop Grumman is seeking a Business Management Analyst for an internship opportunity. This position will be located at our Defense Systems Sector in McLean, VA . Basic Qualifications...Hourly payFull timeSummer workInternshipWork at officeRelocation$90.3k - $189.6k
...Prepare a certification package including STIG assessment, vulnerability and scan assessments, and quarterly software security reviews... ....S.) in Information Assurance, Computer Science, Information Management Systems, or related discipline. Minimum 10 years of related...Full time$100k - $140k
...ability to remain in a stationary position 50% of the time. You may need to move about the office to access file cabinets, office machinery, or communicate with colleagues, management, and clients, which may involve delivering presentations. last updated 36 week of 2026...Full timeWork at office$92.3k - $166.85k
...candidate will work on a team comprised of developers, database administrators, systems engineers, security engineers, as well as program managers and a scrum master. The ideal candidate will be familiar with agile principles, specifically scrum. The candidate will be joining...Full time- ...complete satellites to meet mission requirements Lead and/or participate in proposal activities, including generation of technical, management, cost, schedule, and proposal content for new business Develop strong relationships across all levels of the business to ensure...Permanent employmentFor contractorsLocal areaWeekend work
$250k - $270k
...Partner with operational leadership to align growth initiatives with organizational priorities and capabilities. Maintain and manage a robust pipeline of qualified opportunities using established business development processes and tools. Develop and implement win...Contract workLocal areaFlexible hours- Northrop Grumman Corp. is seeking a Mid-Level Cybersecurity Professional to join the Cybersecurity IPT, focusing on ground segment cloud infrastructure and securing mission-critical information systems through the full SDLC in an Agile environment. You will lead as ...
$79.6k - $172.4k
Business Program & Project Management Analyst TS/SCI with Poly REQUIRED Position Description CGI Federal is seeking candidates for Business Program & Project Management Analyst positions supporting a USG agency in Northern Virginia. Successful candidates will assist...Local area$203.85k - $220.57k
...Responsibilities for this Position GDMS has an immediate opening for a passionate, experienced Strategy and Business Development Capture Manager (SBDCM) focused on strategic growth activities. The SBDCM will lead the customer relationship building and market assessment...Immediate startRemote workFlexible hours$79.6k - $172.4k
Business Program and Project Management Analyst TS/SCI with Poly REQUIRED Position Description CGI Federal is seeking candidates for Business Program and Project Management Analyst positions supporting a USG agency in Northern Virginia. Successful candidates will...Work at officeLocal areaShift work$86.8k - $198k
...the team. Join us. The world can’t wait.You Have:2+ years of experience with penetration testing and red teaming Experience with vulnerability enumeration and exploitation frameworks, including Burp Suite Pro, Metasploit, Cobalt Strike, Armitage, or PowerSploit Knowledge...Full timeContract workPart timeLocal areaRemote work$86.8k - $198k
Penetration TesterThe Opportunity:Conduct testing and analysis to identify vulnerabilities and potential threat vectors in systems and networks, develop exploits, and engineer attack methodologies. Apply advanced advising skills, extensive technical expertise, and full...Full timeContract workPart timeWork at officeLocal areaRemote work- ...Driving Customer Experience Excellence Pohanka Automotive Group is looking for a driven, people-first Service Business Development Manager (BDC Manager) to lead and elevate our customer engagement operations. In this role, you’ll coach and inspire a high-performing...Local area
- ...purpose. Our team members are passionate about making a positive difference in the lives of residents every day.As an Asset Management Analyst, you drive value creation across Sunrise's operating and development portfolios by delivering financial insights that support...Contract work
$190k - $210k
...As a Capture Manager at Amentum, you will drive strategy, planning, and execution for high-value business opportunities in the Intelligence Community (IC). Leveraging your deep customer knowledge, competitive insights, and capture acumen, you will own the end-to-end capture...Hourly payContract workLocal area$100k - $140k
...engineers, visitors, system administrators, security staff, program managers, and local vendors and inspectors. This position requires an... ...including audit log reviews, system compliance assessments, vulnerability scans, and account activity for privileged and general users....Full timeTemporary workFor contractorsWork at officeLocal areaImmediate startRemote workFlexible hours$125.3k - $187.9k
...assessments of mission software applications to include code reviews, vulnerability assessments, application security testing, while contributing... ...& Event Monitoring Solutions Developing standard Risk Management Framework (RMF) artifacts, such as System Security Plan (SSP)...Relocation packageShift work- ...Incident Management ConsultantIn this incident management function, manage incidents to resolution in a 24/7/365 environment using the standard incident management processes, effectively guide incident triage calls from a technical perspective, share technical details...Work experience placement
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Vulnerability Management Analyst. Be the first to apply!
Related searches
- management analyst Chantilly, Loudoun County, VA
- knowledge management analyst Chantilly, Loudoun County, VA
- analytics business analyst Chantilly, Loudoun County, VA
- business strategy analyst Chantilly, Loudoun County, VA
- senior business development analyst Chantilly, Loudoun County, VA
- records management analyst Chantilly, Loudoun County, VA
- deloitte business technology analyst Chantilly, Loudoun County, VA
- business analyst law firm Chantilly, Loudoun County, VA
- senior business analyst Chantilly, Loudoun County, VA
- pega business analyst Chantilly, Loudoun County, VA





