Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Cybersecurity Analyst (Vulnerability Management & Continuous Monitoring)

NJVC

Req ID: 40432 Summary Cybersecurity Analyst (Vulnerability Management & Continuous Monitoring) Oakton, VA Are you ready to enhance your skills and build your career in a rapidly evolving business climate? Are you looking for a career where professional development is embedded in your employer's core culture? If so, Chenega Military, Intelligence & Operations Support (MIOS) could be the place for you! Join our team of professionals who support large-scale government operations by leveraging cutting‑edge technology and take your career to the next level! SecuriGence delivers essential technology services supporting critical national security missions. We are seeking a Cybersecurity Analyst (Vulnerability Management & Continuous Monitoring) to support Department of Defense (DoD) cybersecurity operations by executing vulnerability management, security compliance, and Continuous Monitoring (ConMon) activities in accordance with the Risk Management Framework (RMF). This role is responsible for identifying, assessing, prioritizing, and tracking vulnerabilities using enterprise tools, ensuring compliance with Security Technical Implementation Guides (STIGs), and responding to Information Assurance Vulnerability Alerts (IAVAs). Responsibilities Vulnerability Management Perform vulnerability scanning using Assured Compliance Assessment Solution (ACAS) (e.g., Tenable.sc / Nessus). Enforcing the ACAS best practice guide requirements when performing vulnerability scans in ACAS Analyze scan results to identify vulnerabilities, misconfigurations, and compliance gaps. Validate findings against the latest released DISA STIGs and applicable security baselines. Review of provided checklists and working with system admins in identifying gaps for POA&M creation. Assess and track vulnerabilities in accordance with DoD timelines and risk severity. Correlate vulnerabilities with IAVA/IAVM notices and ensure timely remediation or mitigation. Develop and maintain Plan of Action and Milestones (POA&M) documentation. Maintenance of Risk Acceptance (RA) POA&M items within SOR (System of Record) and coordinating with System administrators to validate that RA is required instead of a POA&M. STIG Compliance & Hardening Apply and validate Security Technical Implementation Guides (STIGs) across operating systems, applications, and network devices. Conduct manual and automated STIG compliance checks using tools such as ACAS Audit checks, STIG Viewer, SCAP Compliance Checker (SCC), and Evaluate-STIG. Document compliance status and provide remediation guidance to system administrators. Support system hardening efforts aligned with DoD baseline configurations. Ensure that golden images are maintained for Servers (RHEL and Windows) and Workstations following STIG guidance. IAVA/IAVM Management Monitor and assess Information Assurance Vulnerability Alerts (IAVAs) and Bulletins (IAVBs). Determine system applicability and operational impact. Coordinate remediation actions and track compliance deadlines. Maintain IAVA compliance reporting and documentation for audits. Continuous Monitoring (ConMon) Execute Continuous Monitoring activities in accordance with RMF Step 6. Monitor security controls for effectiveness and ongoing compliance. Conduct control assessments and assist with periodic security reviews. Support automated and manual data collection for ConMon dashboards and reporting. Identify trends, recurring issues, and systemic risks across systems. RMF & Compliance Support Support RMF activities across all six steps, with emphasis on control implementation validation, security control assessment support, ongoing authorization (ATO sustainment), update and maintain RMF artifacts including the System Security Plan (SSP), Security Assessment Report (SAR), Plan of Action and Milestones (POA&M), and Security Assessment Plan (SAP), and map vulnerabilities and findings to NIST SP 800-53 controls. Reporting & Documentation Generate vulnerability and compliance reports for leadership and Authorizing Officials (AOs). Provide risk‑based recommendations and remediation strategies. Maintain audit‑ready documentation in accordance with DoD and agency requirements Other duties as assigned Qualifications High school diploma or GED equivalent 5+ years of experience in DoD cybersecurity or RMF-based environments Hands‑on experience with ACAS (Nessus / Tenable.sc), STIG implementation and validation, IAVA/IAVM processes, and vulnerability assessment, risk analysis, and remediation tracking DoD 8570/8140 Compliance: Must meet IAT Level II requirements (e.g., Security+) Active DoD Top Secret clearance with SCI eligibility Knowledge, Skills, and Abilities Strong understanding of DoD RMF (DoDI 8510.01) and NIST SP 800-53 security controls; ability to manage multiple systems and priorities in a regulated environment; strong analytical and problem‑solving skills; attention to detail and compliance rigor; ability to translate technical risk into mission impact; effective communication with technical and non‑technical stakeholders Relevant certifications: Certified Information Systems Security Professional (CISSP), Certified Ethical Hacker (CEH) or equivalent, DISA ACAS Training Certificate Experience with ACAS, SCAP Compliance Checker (SCC) / Evaluate-STIG, STIG Viewer, eMASS, Xacta, Trellix, MDE, Splunk, Elastic, familiarity with scripting (e.g., PowerShell, Python) for automation, and enterprise‑level ConMon programs or NOSC/SOC environments Benefits At Chenega MIOS, we know that great people make a great organization. We value our team members and offer them a broad range of benefits. Learn more about what working at Chenega MIOS can mean for you. Chenega Corporation and family of companies is an EOE. Equal Opportunity Employer/Veterans/Disabled Native preference under PL 93-638. We participate in the E‑Verify Employment Verification Program #J-18808-Ljbffr NJVC

Vacancy posted 1 day ago
Similar jobs that could be interesting for youBased on the Cybersecurity Analyst (Vulnerability Management & Continuous Monitoring) in Oakton, VA vacancy
  • Description: Job Title: Cybersecurity Analyst Location: Oakton, VA Department:...  ...Security Services Reports To: Management FLSA Status: Full Time/Non-...  ...operations by executing vulnerability management, compliance, and Continuous Monitoring (ConMon) activities within a... 
    Suggested
    Full time
    Work at office
    Local area

    Socket

    Oakton, VA
    4 days ago
  •  ...Description: Job Title: ACAS Cybersecurity Analyst Location: Oakton, VA...  ...Security Services Reports To: Management FLSA Status: Full Time/...  ...research mission, driving vulnerability management, compliance validation, and Continuous Monitoring (ConMon) efforts across... 
    Suggested
    Full time
    Work at office
    Local area

    Apavo Corporation

    Oakton, VA
    4 days ago
  •  ...Security Monitor 3 page is loaded## Security Monitor 3locations...  ...JOB FUNCTIONS:*** Continuously monitor to detect unauthorized...  ...intact.* Identify and report vulnerabilities in physical security systems...  ...scale logistics, facilities management, and advanced professional... 
    Suggested
    Contract work
    For contractors
    Shift work

    Intrepid USA

    McLean, VA
    1 day ago
  •  ...support in the areas of Cyber Security and Management to improve the Information Assurance...  ...Assessment and Authorization (A&A), Vulnerability Management, and Cyber Defense support...  ...Support the Information Security Continuous Monitoring (ISCM) Program Lead in maturing the customer... 
    Suggested

    RDR Inc

    Chantilly, Loudoun County, VA
    3 days ago
  • $99k - $225k

    Enterprise Cybersecurity Vulnerability Risk AnalystThe Opportunity:Cyber threats are everywhere, and vulnerabilities...  ...action.As a Vulnerability Exception and Deferral Analyst on our Enterprise IT and Cyber Risk team, you’ll manage the operational lifecycle of vulnerability... 
    Suggested
    Full time
    Contract work
    Part time
    Work at office
    Local area
    Remote work

    Booz Allen Hamilton

    McLean, VA
    4 days ago
  • $134.5k - $265.1k

     ...Summary Are you an experienced cybersecurity professional looking to help...  ...Deloitte’s Cyber Defense & Resilience Continuous Threat Exposure Management (CTEM) team to help clients...  ...aligned to CTEM prioritiesLeading vulnerability and patch management operations across... 
    Local area

    Deloitte

    McLean, VA
    2 days ago
  • $134.5k - $265.1k

     ...increasing array of cyber threats and vulnerabilities. Our Cyber Risk practice helps organizations with the management of information and technology risks...  ...for process optimization and continuous improvement in incident monitoring, detection, and response. Team Management... 
    Local area
    Visa sponsorship

    Deloitte

    McLean, VA
    3 days ago
  • $100k - $145k

     ...Description Dark Wolf is seeking Cybersecurity Analysts to join a collaborative team to develop, manage, and maintain the security...  ...and Authorization (A&A), continuous monitoring and compliance with NIST &...  ...of controls, audits, vulnerability scans, and penetration test... 
    Full time
    For contractors
    Work at office
    Local area

    Dark Wolf Solutions

    Herndon, VA
    14 days ago
  • Secure IT Service Management, a division of Paragone...  ...and maintain vulnerability scanning on networks...  ...when necessary. Continuously improve risk models;...  ...security frameworks and monitoring tools. Experience...  ...who must comply with Cybersecurity Maturity Model Certification... 
    Permanent employment
    Temporary work
    For contractors
    Work at office
    Remote work

    Paragone Solutions, Inc.

    McLean, VA
    a month ago
  •  ...Security Services Reports To: Management FLSA Status: Full Time/...  ...is at the forefront of cybersecurity, providing services to...  ...standard DoD tooling to drive Continuous Monitoring (ConMon), validate...  ...environments. ACAS Operations & Vulnerability Management: Execute... 
    Full time
    Work at office
    Local area
    Flexible hours

    Apavo Corporation

    Oakton, VA
    4 days ago
  • $170k - $195k

     ...provider of information management solutions for...  ...Enterprise, providing continuity in skills crucial to...  ...senior management on cybersecurity issues, communicate...  ...authorization, and continuous monitoring Develop,...  ...assessments, vulnerability management, and mitigation... 
    Worldwide

    The Mission Essential Group, LLC

    Fairfax, VA
    2 days ago
  • $100k - $150k

     ...Cybersecurity Risk Analyst Salary Range: $100,000 – $150,000 Clearance: TS/SCI + CI Poly...  ...Provide recommendations for continuous improvement of the processes and...  ...ATO, NIST SP 800-53, continuous monitoring, vulnerability management, or SOC/SIEM operations. Relevant... 
    Full time
    Contract work

    Ops Tech Alliance

    McLean, VA
    24 days ago
  • $99k - $225k

    Enterprise Cybersecurity AnalystThe Opportunity:Support mission-critical...  ..., and BigID. Deploy and manage endpoint detection and response...  ...in real time, conduct vulnerability assessments across cloud and...  ...DoD) security standards, and continuous maturity of the organization... 
    Full time
    Contract work
    Part time
    Work at office
    Local area
    Remote work

    Booz Allen Hamilton

    McLean, VA
    12 hours ago
  • $99k - $225k

     ...Security Officer (ISSO) to support the cybersecurity and compliance needs of a U.S....  ...Special Publications (SP) 800 series, Risk Management Framework (RMF), and other federal...  ...completion and reporting of required continuous monitoring activities, including system security... 
    Full time
    Contract work
    Part time
    For contractors
    Work at office
    Local area
    Remote work

    Booz Allen Hamilton

    McLean, VA
    3 days ago
  •  ...Cyber Security Analyst to join our team...  ...capabilities to ensure continuous mission success....  ...(CSOC) support, managing cyber and...  ...while identifying vulnerabilities and recommending...  ...continuous monitoring and response readiness...  ...of current COTS Cybersecurity technologies and... 
    Work at office

    ManTech

    Springfield, VA
    4 days ago
  •  ...Arlington, VA Reports To: Management FLSA Status: Full Time/...  ...input to the ISSM on the cybersecurity programs include...  ...have oversight to ensure the continuous monitoring of systems within their purview...  ...cybersecurity incident or vulnerability and ensures a process exists... 
    Full time
    Work at office
    Local area

    Apavo Corporation

    Arlington, VA
    1 day ago
  • A leading financial institution is seeking a Sr. Director AI Management (Hybrid) in McLean, Virginia. The role focuses on establishing standards for AI Ethics, Monitoring & Testing across the organization. Ideal candidates will possess significant experience in AI/ML principles... 

    PenFed Credit Union

    McLean, VA
    1 day ago
  •  ...fields as diverse as cybersecurity, healthcare,...  ...Security Network Management and Orchestration...  ...implementation, and monitoring—across networking and...  ...automation, metrics, and continual service improvement....  ..., identify threats, vulnerabilities, and control gaps, and... 
    Work experience placement
    Relocation

    MITRE

    McLean, VA
    2 days ago
  • $80k - $128k

     ...Junior Cyber Incident Analyst - Notification...  ...Notification Specialist monitoring and reviewing...  ..., to identify cybersecurity incidents, threats, and vulnerabilities on behalf of CISA....  ...community stakeholders.Manage incident triage...  ...investigation (EOD) for continued employment.... 
    Contract work
    Shift work

    Peraton Corporation

    Arlington, VA
    12 hours ago
  •  ...Systems Security Manager-Advanced to support our Cybersecurity Division in the NCE...  ...effective enterprise continuity of operations...  ...contracting. Manage the monitoring of information...  ...of Operations, Net Analyst Reports, Monitor...  ...cybersecurity incident or vulnerability is discovered.... 
    Full time
    For contractors
    Work at office
    Flexible hours

    Amyx

    Springfield, VA
    4 days ago
  • $130k - $160k

    Overview Amentum is seeking a Cybersecurity Analyst to support our McLean,...  ...under the NIST Risk Management Framework (RMF) for a federal...  ...documentation, support Continuous Monitoring (CONMON), and assist in...  ...reviews of vulnerabilities, architecture, and defense... 

    PAE Government Services Inc.

    Mc Lean, VA
    12 hours ago
  • $102.17k

     ...water resources are managed and protected....  ...Cyber Security Analyst, where you will...  ...intersection of cybersecurity and DevSecOps to...  ...controls, identifying vulnerabilities, and ensuring...  ...security monitoring, analyzing complex...  ...innovation and continuous improvement in cybersecurity... 
    H1b

    Trinnex

    Fairfax, VA
    12 hours ago
  • $100k - $120k

     ...service delivery and network monitoring. A competitive base...  ...period. Job Summary The Cybersecurity Analyst (Security & AI Governance...  ...AI oversight, risk management, and continuous improvement initiatives....  ...incident analysis. Conduct vulnerability assessments and coordinate... 
    Temporary work

    C.C.D. Cogent Communications Deutschland GmbH

    Herndon, VA
    3 days ago
  • MANTECH seeks a motivated, career and customer-oriented Cybersecurity Analyst - Nights to join our team in Tysons, VA. The Cybersecurity Analyst will monitor Air Gapped Security Fabrics through managed SECOPs Tools. Responsibilities Monitoring Operations Center IT infrastructure... 
    Work at office
    Local area
    Shift work
    Night shift

    MANTECH

    Vienna, VA
    12 hours ago
  • $105.4k - $207.8k

     ...landscape. Through powerful solutions and managed services that simplify complexity, we...  ...certifications, credential rotation, deprovisioning, monitoring, and control improvement activitiesA...  ...have a variety of opportunities to continue to grow throughout their career.... 
    Local area
    Visa sponsorship

    Deloitte

    McLean, VA
    12 hours ago
  • Description SAIC is seeking a Cybersecurity Compliance analyst in Arlington, VA. The...  ...expertise of the Risk Management Framework with...  ...network operations and vulnerability management. This position...  ...classified and unclassified Continuous Monitoring Risk Scoring (CMRS)... 

    SAIC

    Arlington, VA
    2 days ago
  • $197.3k - $225.1k

     ...Overview Manager, Information Security Office Consultant...  ...a strong desire to continually learn about new...  ...experience working in cybersecurity or information...  ...Penetration Testing and/or Vulnerability Management ~ Experience...  ...-Fu / Enterprise Monitoring experience ~ Financial... 
    Full time
    Part time
    H1b
    Work at office
    Local area
    Shift work

    Capital One

    McLean, VA
    a month ago
  •  ...a Principal Cyber Security Cloud Analyst, to serve as a member of a Vulnerability Assessment program. This position...  ...vulnerabilitiesAct as advisor to management and customers on technical research...  ...workloads on AWS; logging and monitoring strategies; cloud security threat... 

    Science Applications International Corporation

    Chantilly, Loudoun County, VA
    4 days ago
  • $134.5k - $265.1k

     ...Resilience - Insider Risk Manager Are you interested in...  ...detection use cases, monitoring processes, and...  ...to and recovering from cybersecurity incidents • Hands-on experience...  ..., CERT Insider Threat Analyst, CERT Insider Risk...  ...variety of opportunities to continue to grow throughout... 
    Local area
    Visa sponsorship

    Deloitte

    McLean, VA
    4 days ago
  •  ...Computer Network Defense Analyst uses information...  ...variety of sources to monitor network activity and analyze...  ...cyber defense tools for continual monitoring and analysis...  ...• Notify designated managers, cyber incident responders, and cybersecurity service provider team members... 
    Full time
    Local area
    Immediate start
    Flexible hours

    BCMC

    Arlington, VA
    13 days ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Cybersecurity Analyst (Vulnerability Management & Continuous Monitoring). Be the first to apply!