Cybersecurity Analyst (Vulnerability Management & Continuous Monitoring)
Njvc LLC
Req ID: 40432 Summary Cybersecurity Analyst (Vulnerability Management & Continuous Monitoring) Oakton, VA Are you ready to enhance your skills and build your career in a rapidly evolving business climate? Are you looking for a career where professional development is embedded in your employer's core culture? If so, Chenega Military, Intelligence & Operations Support (MIOS) could be the place for you! Join our team of professionals who support large-scale government operations by leveraging cutting‑edge technology and take your career to the next level! SecuriGence delivers essential technology services supporting critical national security missions. We are seeking a Cybersecurity Analyst (Vulnerability Management & Continuous Monitoring) to support Department of Defense (DoD) cybersecurity operations by executing vulnerability management, security compliance, and Continuous Monitoring (ConMon) activities in accordance with the Risk Management Framework (RMF). This role is responsible for identifying, assessing, prioritizing, and tracking vulnerabilities using enterprise tools, ensuring compliance with Security Technical Implementation Guides (STIGs), and responding to Information Assurance Vulnerability Alerts (IAVAs). Responsibilities Vulnerability Management Perform vulnerability scanning using Assured Compliance Assessment Solution (ACAS) (e.g., Tenable.sc / Nessus). Enforcing the ACAS best practice guide requirements when performing vulnerability scans in ACAS Analyze scan results to identify vulnerabilities, misconfigurations, and compliance gaps. Validate findings against the latest released DISA STIGs and applicable security baselines. Review of provided checklists and working with system admins in identifying gaps for POA&M creation. Assess and track vulnerabilities in accordance with DoD timelines and risk severity. Correlate vulnerabilities with IAVA/IAVM notices and ensure timely remediation or mitigation. Develop and maintain Plan of Action and Milestones (POA&M) documentation. Maintenance of Risk Acceptance (RA) POA&M items within SOR (System of Record) and coordinating with System administrators to validate that RA is required instead of a POA&M. STIG Compliance & Hardening Apply and validate Security Technical Implementation Guides (STIGs) across operating systems, applications, and network devices. Conduct manual and automated STIG compliance checks using tools such as ACAS Audit checks, STIG Viewer, SCAP Compliance Checker (SCC), and Evaluate-STIG. Document compliance status and provide remediation guidance to system administrators. Support system hardening efforts aligned with DoD baseline configurations. Ensure that golden images are maintained for Servers (RHEL and Windows) and Workstations following STIG guidance. IAVA/IAVM Management Monitor and assess Information Assurance Vulnerability Alerts (IAVAs) and Bulletins (IAVBs). Determine system applicability and operational impact. Coordinate remediation actions and track compliance deadlines. Maintain IAVA compliance reporting and documentation for audits. Continuous Monitoring (ConMon) Execute Continuous Monitoring activities in accordance with RMF Step 6. Monitor security controls for effectiveness and ongoing compliance. Conduct control assessments and assist with periodic security reviews. Support automated and manual data collection for ConMon dashboards and reporting. Identify trends, recurring issues, and systemic risks across systems. RMF & Compliance Support Support RMF activities across all six steps, with emphasis on control implementation validation, security control assessment support, ongoing authorization (ATO sustainment), update and maintain RMF artifacts including the System Security Plan (SSP), Security Assessment Report (SAR), Plan of Action and Milestones (POA&M), and Security Assessment Plan (SAP), and map vulnerabilities and findings to NIST SP 800-53 controls. Reporting & Documentation Generate vulnerability and compliance reports for leadership and Authorizing Officials (AOs). Provide risk‑based recommendations and remediation strategies. Maintain audit‑ready documentation in accordance with DoD and agency requirements Other duties as assigned Qualifications High school diploma or GED equivalent 5+ years of experience in DoD cybersecurity or RMF-based environments Hands‑on experience with ACAS (Nessus / Tenable.sc), STIG implementation and validation, IAVA/IAVM processes, and vulnerability assessment, risk analysis, and remediation tracking DoD 8570/8140 Compliance: Must meet IAT Level II requirements (e.g., Security+) Active DoD Top Secret clearance with SCI eligibility Knowledge, Skills, and Abilities Strong understanding of DoD RMF (DoDI 8510.01) and NIST SP 800-53 security controls; ability to manage multiple systems and priorities in a regulated environment; strong analytical and problem‑solving skills; attention to detail and compliance rigor; ability to translate technical risk into mission impact; effective communication with technical and non‑technical stakeholders Relevant certifications: Certified Information Systems Security Professional (CISSP), Certified Ethical Hacker (CEH) or equivalent, DISA ACAS Training Certificate Experience with ACAS, SCAP Compliance Checker (SCC) / Evaluate-STIG, STIG Viewer, eMASS, Xacta, Trellix, MDE, Splunk, Elastic, familiarity with scripting (e.g., PowerShell, Python) for automation, and enterprise‑level ConMon programs or NOSC/SOC environments Benefits At Chenega MIOS, we know that great people make a great organization. We value our team members and offer them a broad range of benefits. Learn more about what working at Chenega MIOS can mean for you. Chenega Corporation and family of companies is an EOE. Equal Opportunity Employer/Veterans/Disabled Native preference under PL 93-638. We participate in the E‑Verify Employment Verification Program #J-18808-Ljbffr Njvc LLC
- ...support in the areas of Cyber Security and Management to improve the Information Assurance... ...Assessment and Authorization (A&A), Vulnerability Management, and Cyber Defense support... ...Support the Information Security Continuous Monitoring (ISCM) Program Lead in maturing the customer...Suggested
- ...Description: Job Title: ACAS Cybersecurity Analyst Location: Oakton, VA... ...Security Services Reports To: Management FLSA Status: Full Time/... ...research mission, driving vulnerability management, compliance validation, and Continuous Monitoring (ConMon) efforts across...SuggestedFull timeWork at officeLocal area
$100k - $145k
Dark Wolf is seeking Cybersecurity Analysts to join a collaborative team to develop, manage, and maintain the security posture... ...and Authorization (A&A), continuous monitoring and compliance with NIST &... ...reviews of controls, audits, vulnerability scans, and penetration test...SuggestedFull timeFor contractorsWork at officeLocal area- ## Cybersecurity Operations AnalystApplylocations... ...Operations Analyst will be responsible... ...performs daily monitoring of SIEM logs, threat... ...threats and vulnerability disclosures (including... ...making* Support continuous improvement of... ...vulnerability management workflows*...SuggestedTemporary workFlexible hours
- ...We provide program management services for government... ...logistics support, monitoring & evaluations,... ...overseeing enterprise cybersecurity strategy, ensuring the... ...incident response, and vulnerability management... ...frameworks Implement continuous monitoring and threat...SuggestedTemporary workRemote workFlexible hours
- ...A leading financial institution is seeking a Sr. Director AI Management (Hybrid) in McLean, Virginia. The role focuses on establishing standards for AI Ethics, Monitoring & Testing across the organization. Ideal candidates will possess significant experience in AI/ML principles...Full time
- ...oriented Cyber Incident Response Analyst to join our team in McLean... ...team provides 24x7x365 cybersecurity support to one of the most... ...Incident Detection and Monitoring Incident Analysis and... ...Mitigation Threat Intelligence and Vulnerability Management Reporting and...Shift workNight shiftDay shiftAfternoon shift
$100k - $130k
...Hill Technologies is seeking a highly skilled Vulnerability Analyst to support our federal client's vulnerability management program. The position is contingent upon... ...Signal Hill Technologies delivers advanced cybersecurity solutions to DoD, Intelligence Community, financial...Permanent employmentFull timeContract workWork at officeLocal area- MANTECH seeks a motivated, career and customer-oriented Cybersecurity Analyst - Nights to join our team in Tysons, VA. The Cybersecurity Analyst will monitor Air Gapped Security Fabrics through managed SECOPs Tools. Responsibilities Monitoring Operations Center IT infrastructure...Work at officeLocal areaShift workNight shift
$130k - $160k
Overview Amentum is seeking a Cybersecurity Analyst to support our McLean,... ...under the NIST Risk Management Framework (RMF) for a federal... ...documentation, support Continuous Monitoring (CONMON), and assist in... ...reviews of vulnerabilities, architecture, and defense...$94.67k - $137.27k
...closing date. As a Cybersecurity Analyst, you will implement... ...security measures, managing the Security Information... ...threats; identify, monitor, assess, and counter... ...events. Conducts vulnerability assessments and security... ...Supports business continuity and disaster recovery...Work at officeRemote workFlexible hours$102.17k
...water resources are managed and protected.... ...Cyber Security Analyst, where you will... ...intersection of cybersecurity and DevSecOps to... ...controls, identifying vulnerabilities, and ensuring... ...security monitoring, analyzing complex... ...innovation and continuous improvement in cybersecurity...H1b- ...Secure IT Service Management, a division of Paragone... ...and maintain vulnerability scanning on networks... ...when necessary. Continuously improve risk models;... ...security frameworks and monitoring tools. Experience... ...who must comply with Cybersecurity Maturity Model Certification...Permanent employmentTemporary workFor contractorsWork at officeRemote work
- ...Technologies, a division of HII, is looking for a skilled professional in vulnerability management in Fairfax, Virginia. The successful candidate will support Department of Defense cybersecurity efforts, ensure accuracy in vulnerability assessments, and maintain compliance...
$120.64k - $197.6k
...focused on applying risk management frameworks, engineering security... ...ATO packages to driving vulnerability remediation and system... ...implementation, assessment, and continuous monitoring Develop, review, and... ...system lifecycle Provide cybersecurity risk input to program leadership...Full timeRelocationRelocation package- ...Title: Information System Security Manager (ISSM) Location: Chantilly, VA Clearance... ...Manager (ISSM) to provide overall cybersecurity oversight for classified and... ...execution, accreditation activities, continuous monitoring, vulnerability management, and cybersecurity compliance...
$107.9k - $195.05k
...Information System Security Manager (ISSM) will work with a... ...(NIST) approved cybersecurity and Risk Management Framework... ...recommendations. Assess system vulnerabilities, implement risk... ...findings. Support continuous improvement of monitoring capabilities, automation...- Description SAIC is seeking a Cybersecurity Compliance analyst in Arlington, VA. The... ...expertise of the Risk Management Framework with... ...network operations and vulnerability management. This position... ...classified and unclassified Continuous Monitoring Risk Scoring (CMRS)...
$100k - $150k
...Cybersecurity Risk Analyst Salary Range: $100,000 – $150,000 Clearance: TS/SCI + CI Poly... ...Provide recommendations for continuous improvement of the processes and... ...ATO, NIST SP 800-53, continuous monitoring, vulnerability management, or SOC/SIEM operations. Relevant...Full timeContract work$229.9k - $262.4k
...Security & Access Control Management, Container Services,... ...a strong desire to continually learn about new... ...experience working in cybersecurity or information... ...attack vectors, model vulnerabilities, prompt injection, data... ...-Fu and Enterprise Monitoring experience ~1+ years...Full timePart timeH1bLocal areaShift work- ...supporting a U.S. Government customer to provide cybersecurity vulnerability analysis support to reduce the prevalence... ...(CIKR). The Cybersecurity Vulnerability Analyst utilizes cybersecurity best practices, risk management techniques, critical thinking, and strong analytical...
- ...understanding of applied cybersecurity in a corporate IT... ...operations, including monitoring, detection, and... ...security threats and vulnerabilities. Cybersecurity... ...cybersecurity program Manage threat intelligence and... ...developing staff Continuous Improvement Drive...Full timeFor contractorsWork at office
- ...seeks a Principal Researcher for Healthcare Innovations to lead monitoring and evaluation of federal health programs, including CMS/CMMI.... ...designs, and data-informed decision making. Candidates will manage large projects, mentor staff, and develop business opportunities...Remote work
$140k - $160k
...collaborative team to develop, manage, and maintain... ..., executing, and monitoring of the seven step RMF... ...or Xacta. Driving cybersecurity activities through all... ...Manage and implement Continuous Monitoring activities... ...of controls, audits, vulnerability scans, and penetration...Full timeFor contractorsFlexible hours$81.35k - $100.05k
...through audits, control reviews, and continuous monitoring. Responsibilities Conduct security... ...actions, and ensure timely closure of vulnerabilities. Analyze system changes,... ...understanding of NIST SP 800‑53, DoD cybersecurity requirements, and control implementation...Work experience placementRemote work- ...level policy makers to program managers, to choose smartly, buy... ...mix of junior and mid-level analysts who will look to you for... ...Responsibilities Provide cybersecurity expertise to surface combat... ...capabilities. Identify security vulnerabilities and weaknesses in SW, HW...Work at office
$100k - $120k
...service delivery and network monitoring. A competitive base... ...period. Job Summary: The Cybersecurity Analyst (Security & AI... ...Shadow AI oversight, risk management, and continuous improvement initiatives.... ...incident analysis. Conduct vulnerability assessments and coordinate...Temporary workWork at office$100k - $120k
...Communications Deutschland GmbH is seeking a Cybersecurity Analyst specializing in Security & AI Governance... ...hands-on skills. Responsibilities include monitoring security systems, managing incidents, and assessing vulnerabilities. They will work with IT teams and...$113k - $188k
...Master Job Family: IT Project Management Travel Required: Up to 1... ...planning, and operational continuity for a public‑facing,... ...account management, logging, monitoring, backup validation, or disaster... ...(CISM), or equivalent cybersecurity certification. Certified...Temporary workFor contractorsFlexible hours- ...being and support of U.S. citizens. Job Description Monitoring & Event Management Lead Advance how our customer operates while you... ...managing contractor personnel performance, documentation, and continuous improvement. Manage event detection, validation,...For contractors
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Cybersecurity Analyst (Vulnerability Management & Continuous Monitoring). Be the first to apply!
- cybersecurity administrator Oakton, VA
- management team Oakton, VA
- IT performance management Oakton, VA
- management opportunity Oakton, VA
- construction management full time Oakton, VA
- sales management training program - entry level Oakton, VA
- entry level management training Oakton, VA
- management jobs Oakton, VA
- sales management training program Oakton, VA
- cyber security consultant




