Vulnerability Analyst
Consolidated Nuclear Security
Career Opportunities: Vulnerability Analyst (19322) Requisition ID 19322 -Posted - Technology - Level of Experience (3) - Travel - 30% or less - Job Location Options (1) Location: Oak Ridge, TN Job Title: Vulnerability Analyst Career Level From: Associate Career Level To: Senior Specialist Job Specialty: Cyber Security What You’ll Do The Vulnerability Analyst is responsible for analyzing key data streams and interpreting threats, vulnerabilities, impacts, and likelihood of asset exposure. The aggregation of ingested data informs analysis with key identifiers to generate a holistic view of the enterprise and provide recommended mitigations and/or remediation of possible exploitable assets. The analyst also assists Vulnerability and Compliance Assessment Management with cyber analysis to support requested exception requests. Responsible for cybersecurity assessment/analysis and provides recommendations for Enterprise level systems and applications designs. Involved in a wide range of cybersecurity areas, including system architectures, firewalls, inspection and analysis tools, encryption components and networking architectures. Involved in security reporting and analysis to regulatory agencies. Position Duties and Responsibilities Identify systemic security issues based on the analysis of vulnerability and configuration data. Share meaningful insights about the context of an organization’s threat environment that improve its risk management posture. Apply cybersecurity and privacy principles to organizational requirements (relevant to confidentiality, integrity, availability, authentication, and non-repudiation). Host/network access control mechanisms (e.g., access control list, capabilities lists). Conduct vulnerability scans and recognize vulnerabilities in security systems. Assess robustness of security systems and designs. Detect host and network-based intrusions via intrusion detection technologies (e.g., Snort). Ability to mimic threat behaviors. Support penetration testing tools and techniques. Use social engineering techniques (e.g., phishing, baiting, tailgating, etc.). Support network analysis tools to identify vulnerabilities (e.g., fuzzing, nmap, etc.). Review logs to identify evidence of past intrusions. Conduct application vulnerability assessments. Develop insights about the context of an organization’s threat environment. Analyze organization's cyber defense policies and configurations and evaluate compliance with regulations and organizational directives. Maintain knowledge of applicable cyber defense policies, regulations, and compliance documents specifically related to cyber defense auditing. What You Can Expect Meaningful work and unique opportunities to support missions vital to national and global security Top-notch, dedicated colleagues Generous pay and benefits with a stable organization Career advancement and professional development programs Work-life balance fostered through flexible work options and wellness initiatives Bachelor’s degree in engineering/science/information technology discipline. Master’s degree in engineering/science/information technology discipline. Eight or more years of education and/or relevant experience may be considered to satisfy educational and years‑of‑experience requirements for this posting. Preferred Job Requirements Knowledge of computer networking concepts and protocols, and network security methodologies. Knowledge of laws, regulations, policies, and ethics as they relate to cybersecurity and privacy. Knowledge of cybersecurity threats and vulnerabilities. Knowledge of risk management processes (e.g., methods for assessing and mitigating risk). Knowledge of cryptography and cryptographic key management concepts. Knowledge of cybersecurity specific operational impacts of cybersecurity lapses. Knowledge of cybersecurity application vulnerabilities. Knowledge of network access, identity, and access management (e.g., public key infrastructure, Oauth, OpenID, SAML, SPML). Knowledge of how traffic flows across the network (e.g., Transmission Control Protocol [TCP] and Internet Protocol [IP], Open System Interconnection Model [OSI], Information Technology Infrastructure Library, current version [ITIL]). Knowledge of programming language structures and logic. Knowledge of system and application security threats and vulnerabilities (e.g., buffer overflow, mobile code, cross‑site scripting, Procedural Language/Structured Query Language [PL/SQL] and injections, race conditions, covert channel, replay, return‑oriented attacks, malicious code). Knowledge of systems diagnostic tools and fault identification techniques. Knowledge of what constitutes a network attack and a network attack’s relationship to both threats and vulnerabilities. Knowledge of different classes of attacks (e.g., passive, active, insider, close‑in, distribution attacks). Knowledge of system administration, network, and operating system hardening techniques. Knowledge of cyber‑attack stages (e.g., reconnaissance, scanning, enumeration, gaining access, escalation of privileges, maintaining access, network exploitation, covering tracks). Knowledge of network security architecture concepts including topology, protocols, components, and principles (e.g., application of defense‑in‑depth). Knowledge of security models (e.g., Bell‑LaPadula model, Biba integrity model, Clark‑Wilson integrity model). Knowledge of system administration concepts for operating systems such as but not limited to Unix/Linux, IOS, Android, and Windows operating systems. Knowledge of packet‑level analysis using appropriate tools (e.g., Wireshark, tcpdump). Knowledge of network protocols such as TCP/IP, Dynamic Host Configuration, Domain Name System (DNS), and directory services. Knowledge of penetration testing principles, tools, and techniques. Knowledge of application Security Risks (e.g. Open Web Application Security Project Top 10 list). Notes The minimum education and experience for the lowest career level in the job posting range are listed under Minimum Job Requirements. Successful candidates hired into a higher career level than the minimum in the range must meet the requirements listed in the job leveling charts for the career level into which they are being hired. If a range of Career Levels is posted, i.e., Senior Associate to Senior Specialist, internal applicants already in one of the Career Levels would come across at their current Career Level. Internal applicants currently in a lower level Career Level would move to the lowest posted Career Level. Requires a Q clearance; however all qualified candidates will be considered regardless of their current clearance status. The ability to obtain and maintain a Department of Energy Q clearance is required. This position may require entry into the Material Access Areas (MAA) and participation in the Human Reliability Program (10 C.F.R. Part 712), which requires successful competition of a DOE counterintelligence evaluation and may include a counterintelligence‑scope polygraph examination. This position may be categorized as a “designated position” identified by 10 C.F.R. Part 709, requiring successful completion of a DOE counterintelligence evaluation that may include a counterintelligence‑scope polygraph examination. CNS is a drug‑free workplace. Candidates accepting a job offer will be required to pass a pre‑placement physical, drug screening and background investigation. As an employee, you may be required to receive and maintain a security clearance from the United States Department of Energy in order to meet eligibility requirements for access to sensitive information or matter. U.S. citizenship is a requirement for security clearance applicants. All employees are subject to being randomly selected for drug testing without advance notification. CNS is an equal opportunity employer. All qualified applicants will receive consideration for employment based on merit and without regard to race, color, religion, sex, sexual orientation, national origin, protected veteran status or disability. #J-18808-Ljbffr Consolidated Nuclear Security
- Consolidated Nuclear Security is seeking a Vulnerability Analyst in Oak Ridge, TN. This role involves analyzing key data streams to identify threats and vulnerabilities, providing recommendations for mitigating risks. Candidates should hold a Bachelor’s degree in a relevant...SuggestedFlexible hours
- ...Management Framework activities including maintaining system security documentation, supporting control implementation, assisting with vulnerability management, and helping maintain continuous monitoring programs. The position will also help ensure that systems supporting...SuggestedFull timeFor contractors
- ...security controls, ensuring alignment with DISA STIGs and NIST 800-53. Assist with security architecture reviews, risk assessments, vulnerability analyses, and mitigation strategies. Provide technical input for STIG feasibility and implementation, including possible...SuggestedWork at officeLocal areaRelocation packageFlexible hours
- ...qualified candidates for a position relating to Cyber Security Analyst which would support our clients. BGS is an engineering,... ...systems, undocumented systems, and newly disclosed vulnerabilities. Reviewing systems with existing public access to ensure requirements...SuggestedFull timeTemporary workRemote workMonday to FridayShift work
- ...Description Location: Oak Ridge, TN Job Title: Cyber Defense Analyst (Sr. SOC) Career Level From: Senior Associate Career... ...incidents -Correlate incident data to identify specific vulnerabilities and make recommendations that enable expeditious remediation...SuggestedWork from homeFlexible hours
- Boston Government Services is seeking a Cyber Security Analyst to join their team. This position focuses on resetting user passwords, analyzing account usage patterns, and monitoring external attack surfaces. The ideal candidate will have strong analytical and problem-solving...Remote job
- Consolidated Nuclear Security is looking for a Cyber Defense Analyst (Senior SOC) in Oak Ridge, Tennessee. This crucial role involves investigating and responding to cyber incidents within the Y12 network and providing expert technical support to resolve issues. The ideal...
- ...Framework activities including oversight of system authorization packages, system security plans, security control implementation, vulnerability management programs, and continuous monitoring strategies. This role will coordinate cybersecurity assessments, guide...Full timeFor contractors
- ...collection, and develops corrective action plans in a federal or regulated environment. Leverages SIEM tools (e.g., Splunk), vulnerability management, and control monitoring platforms. Works independently and collaboratively across technical and non-technical teams...Contract workWork at office
- Spectra Tech, Inc. is hiring for a Corporate Architect-Project/Senior in Oak Ridge, TN at our Corporate Office. We are seeking an experienced Architect with advanced proficiency in Revit to lead projects from design through delivery while collaborating closely with ...Work at office
- Akima Infrastructure Services, LLC (AIS), is actively seeking engineering, professional, technical, and administrative personnel to support the Department of Energy at the Y-12 National Security Complex in Oak Ridge, Tennessee and the Pantex Plant in Amarillo, Texas. Successful...Hourly payFull time
- ...integrate AI-on-AI testing infrastructures, where AI models can actively challenge each other in adversarial contexts to detect vulnerabilities or weaknesses. Scalability and Cluster Computing Design distributed systems that support high-throughput...Work at officeRelocation packageFlexible hours
$500 per week
Compensation: Varies per assignment. Up to $500 per week. Location: Remote (USA) Company: ProductReviewJobs Thank you for your interest in becoming a Paid Product Tester. This opportunity is for completing market research opportunities with independent brands via online...Remote work- Technical Project Manager Location: Oak Ridge, TN Schedule: Full-Time Standard Nuclear is fueling America's nuclear renaissance at industrial scale. Our mission is to deliver the essential building blocks of nuclear power—enabling cost-effective, safe, and secure...Permanent employmentFull timeWork at office
- Job Summary: Do you thrive at the intersection of technology, teamwork, and transformation? As an IT Project Manager at Centrus Energy, you’ll be the driving force behind the systems that keep our business running smoothly—from Finance to Procurement to IT. You’ll...Full timeShift work
- A premier research institution in Tennessee is seeking an AI Security Systems Architect to design and develop advanced security testing systems for AI technologies. This critical position emphasizes creating scalable infrastructures, managing adversarial testing methodologies...
- GEM Technologies, Inc. is looking for a full-time CSU Test Engineer to support the DOE's Y-12 National Security Complex in Oak Ridge, Tennessee. The role involves providing expertise and support for various project activities, ensuring compliance with safety standards, ...Full time
$190k - $220k
Alumni Ventures is seeking a Schedule Management Expert to support internal and external scheduling for X-energy’s partners. The role involves creating, analyzing, and maintaining detailed resource-loaded schedules while ensuring adherence to industry best practices. The...- A solutions provider in Oak Ridge, TN, is looking for a Project Manager to lead a Development and Implementation team. This role acts as a key liaison between stakeholders and the development team, emphasizing Agile practices. The ideal candidate requires an active DOE ...Remote work
$175k - $190k
E&I Engineer Sr. (Hybrid/Remote) As a Senior Electrical Engineer in the Oak Ridge office, you will perform a variety of electrical engineering design and construction support functions. This includes survey/assess existing facility, planning, scoping and estimating ...Hourly payContract workCasual workWork at officeRemote workLong distance- MartinFed, located in Oak Ridge, TN, is seeking a Full Stack Software Engineer to support various projects within a Department of Energy environment. The role requires on-site work and collaboration with technical teams and government clients. Candidates must have a bachelor...
- Licensing Engineer Oak Ridge, TN Standard Nuclear is fueling America's nuclear renaissance at industrial scale. Our mission is to deliver the essential building blocks of nuclear power—enabling cost-effective, safe, and secure energy for the world. Function ...Permanent employmentImmediate start
- Senior Recruitment Consultant | Placing Engineers across North America | Lumicity LLC Job Opportunity - Lead Mechanical Engineer - DOE-Backed Nuclear Project - Oak Ridge, TN I'm seeking a Lead Mechanical Engineer to lead the charge in designing and integrating mechanical...Full timeFor contractorsWork experience placement
- Requisition Id 16065 Overview: Oak Ridge National Laboratory is the largest US Department of Energy (DOE) science and energy laboratory, conducting basic and applied research to deliver transformative solutions to compelling problems in energy and security. The...Work at officeRelocation packageFlexible hours
- ...software to effectively evaluate the performance of rotors, suspensions, and other related components while working closely with analysts to validate rotor and subassembly models to ensure accurate prediction of performance. Dynamic testing and analysis of structures...RelocationRelocation packageFlexible hours
$90k - $145k
Mid-Level Mechanical Engineer (Hybrid/Remote) Amentum is a global leader in advanced engineering and innovative solutions, supporting critical missions across defense, intelligence, energy, and civilian sectors. Our people are our competitive advantage, driven by purpose...Remote jobHourly payContract workWork at officeLocal area- Job Summary : Ready to turn manufacturing challenges into smarter, faster, and more efficient solutions? As a Senior Industrial Engineer at Centrus Energy, you’ll play a key role in optimizing production operations at our Technology and Manufacturing Center in Oak ...Full timeShift work
- Akima Infrastructure Services, LLC (AIS), is actively seeking Engineering, Professional, Technical, and administrative support personnel as part of our staff augmentation team supporting the Department of Energy at the Y‑12 National Security Complex located in Oak Ridge...Hourly payFor contractorsLocal areaRemote work
- Entry Level Electronics Engineer Ready to turn your passion for electronics into real-world impact? As an Entry Level Electronics Engineer at Centrus Energy, you'll jump into hands-on work supporting advanced instrumentation, motor controls, and power electronics that...Internship
- Posting Title X-Ray Technologist- PRN Overview At Fast Pace Urgent Care, X-Ray Techs provide clinical and administrative support essential for effective patient care under the direct supervision of a Provider, Nurse Practitioner or Physician Assistant. They provide...Full timeReliefSeasonal work
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Vulnerability Analyst. Be the first to apply!

