Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Vulnerability Management Analyst

$87.1k - $157.45k

Leidos

Leidos has a career opportunity for a Vulnerability Management Analyst to support the Air Force National Capital Region IT Services program.

The AFNCR IT Services program provides support services for information systems for Headquarters Air Force (HAF), Air Force District of Washington (AFDW), Office of the Secretary of Defense (OSD), Joint Chiefs of Staff, and other Air Force activities within the AFNCR, missions to include the Pentagon, Joint Base Andrews (JBA), Joint Base Anacostia-Bolling (JBAB), and other locations, leased spaces, and alternate sites. The major support areas required are IT Operations and Maintenance; Plans, Projects, and Engineering (PP&E); and National Military Command Center (NMCC). The senior leaders and national defense missions that are supported require that the AFNCR operations never fail, resulting in a fast-paced, challenging, but also rewarding environment.

If this sounds like the kind of environment where you can thrive, keep reading!

Leidos Defense Group provides a diverse portfolio of systems, solutions, and services covering land, sea, air, space, and cyberspace for customers worldwide. Solutions for Defense include enterprise and mission IT, large-scale intelligence systems, command and control, geospatial and data analytics, cybersecurity, logistics, training, and intelligence analysis and operations support. Our team is solving the world's toughest security challenges for customers with "can't fail" missions. To explore and learn more, click here!

Are you ready to make an impact? Begin your journey of a flourishing and meaningful career, share your resume with us today!

POSITION SUMMARY:

Leidos is seeking a Vulnerability Management Analyst to join our Cybersecurity Operations team supporting the AFNCR IT Services (AFNCRIT) program. This T1-level position is ideal for an entry-level cybersecurity professional interested in learning vulnerability management processes. The role will assist with running vulnerability scans using ACAS, reviewing STIG findings, and supporting remediation coordination across Air Force enterprise systems under the guidance of senior team members.

PRIMARY RESPONSIBILITIES:

Assist with scheduling and running vulnerability scans using Tenable SecurityCenter/Nessus (ACAS) in classified and unclassified environments under senior staff guidance.

Review scan results to help identify potential CAT I/II/III findings, false positives, and basic configuration issues.

Support tracking of remediation actions, Plans of Action and Milestones (POA&Ms), and exceptions in accordance with RMF guidance.

Follow established procedures to validate DISA STIG checklists and work with team members to ensure secure system configurations.

Help prepare basic vulnerability reports, compliance summaries, and metrics to support leadership briefings and inspection readiness (e.g., CCRI/CORA).

Assist in maintaining asset groupings, scan zones, and credentialed scanning configurations as directed by senior analysts.

Coordinate with Queue Managers, ISSOs, and Engineering teams to support the remediation of high-priority vulnerabilities.

Maintain data accuracy within ACAS, including proper tagging and grouping for consistent reporting.

BASIC QUALIFICATIONS:

Active DoD Secret clearance required.

CompTIA Security+ CE or higher DoD 8570 IAT Level II certification must meet 8140 ISSM role qualification

Bachelor's Degree and 4-8 years of cybersecurity or system administration experience, with at least 1 year of direct ACAS or Tenable experience. Additional education and years of experience may be considered in lieu of a degree.

Working knowledge of DISA STIGs, vulnerability risk levels, and POA&M remediation strategies.

Familiarity with NIST SP 800-53, RMF compliance, and Air Force cybersecurity policy (AFMAN 17-130).

Strong attention to detail, documentation skills, and the ability to interpret technical vulnerability data.

PREFERRED QUALIFICATIONS:

Experience supporting USAF, DISA, or other DoD mission systems.

Familiarity with eMASS, SCAP Compliance Checker (SCC), or HBSS.

Prior involvement in CCRI/CORA preparation or vulnerability remediation campaigns.

Ability to communicate risk-based recommendations to both technical and non-technical stakeholders.

Understanding of automation tools/scripts (e.g., PowerShell, Nessus APIs) to support scan or report optimization.

If you're looking for comfort, keep scrolling. At Leidos, we outthink, outbuild, and outpace the status quo - because the mission demands it. We're not hiring followers. We're recruiting the ones who disrupt, provoke, and refuse to fail. Step 10 is ancient history. We're already at step 30 - and moving faster than anyone else dares.

Original Posting:
July 13, 2026

For U.S. Positions: While subject to change based on business needs, Leidos reasonably anticipates that this job requisition will remain open for at least 3 days with an anticipated close date of no earlier than 3 days after the original posting date as listed above.

Pay Range:
Pay Range $87,100.00 - $157,450.00

The Leidos pay range for this job level is a general guideline only and not a guarantee of compensation or salary. Additional factors considered in extending an offer include (but are not limited to) responsibilities of the job, education, experience, knowledge, skills, and abilities, as well as internal equity, alignment with market data, applicable bargaining agreement (if any), or other law.
Vacancy posted 5 days ago
Similar jobs that could be interesting for youBased on the Vulnerability Management Analyst in District Heights, MD vacancy
  • $87.1k - $157.45k

    Leidos has a career opportunity for a Vulnerability Management Analyst to support the Air Force National Capital Region IT Services program. The AFNCR IT Services program provides support services for information systems for Headquarters Air Force (HAF), Air Force District... 
    Suggested
    Work at office
    Worldwide

    COMFORT SYSTEMS

    Camp Springs, MD
    3 days ago
  • cFocus Software seeks a Vulnerability Management Analyst to join our program supporting the United States International Defense Finance Agency (DFC). This position is remote. This position requires an Active Public Trust clearance. Qualifications: ~ Active Public... 
    Suggested
    Full time
    For contractors
    Remote work

    cFocus Software Incorporated

    Washington DC
    18 days ago
  • $110k - $130k

     ...produce meaningful results. This is a contingent position based on contract win. SkyePoint Decisions is seeking a Vulnerability Management Analyst to support a cybersecurity program by identifying, analyzing, tracking, and reporting security vulnerabilities across... 
    Suggested
    Contract work
    Remote work

    SkyePoint Decisions

    Washington DC
    13 days ago
  • DescriptionSAIC is seeking a highly skilled Senior Vulnerability Analyst with a strong technical background to join our team in support of a...  ...to work with a team responsible for Patch and Vulnerability Management, contributing to the security and integrity of vital... 
    Suggested
    2 days per week

    Science Applications International Corporation

    Washington DC
    1 day ago
  • blueStone is seeking a Cyber Security Operations Analyst in Alexandria, Virginia, to support operations for a major government client...  ...in data security administration and a strong skill set in vulnerability scanning, operating systems, and security tools. This opportunity... 
    Suggested

    Bluestone.com

    Alexandria, VA
    22 hours ago
  • Cybersecurity Vulnerability Analyst (Incident Manager III) Description Supporting our prime contractor and their U.S. Government customer to provide cybersecurity vulnerability analysis support to reduce the prevalence and impact of vulnerabilities and exploitable conditions... 
    For contractors

    kozmetickesluzby.vecnakraska.sk - Jobboard

    Arlington, VA
    2 days ago
  • A leading cybersecurity consultancy is seeking a Cybersecurity Vulnerability Analyst based in Arlington, VA. The role requires an active Top Secret Security Clearance and 5+ years of experience, focusing on vulnerability analysis for federal clients. Candidates must exhibit... 

    Node.Digital

    Arlington, VA
    3 days ago
  •  ...Phoenix Cyber is looking for Vulnerability Analysts to join our client delivery team. This is a remote position.  Provide technical leadership and oversight to vulnerability threat management activities and initiatives Develop and implement strategies to manage and... 
    Full time
    Remote work

    Phoenix Cyber

    Washington DC
    10 days ago
  •  ...S. Government customer to provide cybersecurity vulnerability analysis support to reduce the prevalence and impact...  ...(CIKR). The Cybersecurity Vulnerability Analyst utilizes cybersecurity best practices, risk management techniques, critical thinking, and strong analytical... 

    Node.Digital

    Arlington, VA
    2 days ago
  • $80k - $128k

    ResponsibilitiesPeraton is currently seeking a Risk and Vulnerability Analyst.Location: Chandler, AZ or Washington DC.Role and Responsibilities...  ...years of experience in security operations, vulnerability management, or risk analysis.Hands-on experience with industry... 
    Contract work
    Shift work

    Peraton Corporation

    Washington DC
    1 day ago
  •  ...upon contract award ***Overview SOSi is seeking a Risk and Vulnerability Analyst II to support vulnerability assessment and risk analysis activities...  ...to support tool operations, testing, and vulnerability management activitiesQualifications· Experience:Three (3) to five (5)... 
    Contract work
    Work at office
    Worldwide
    Monday to Friday
    Weekend work
    Afternoon shift

    SOSi

    Washington DC
    1 day ago
  • NTT DATA seeks a Cybersecurity and Risk Analyst in Arlington, VA to join the VAPT team, focusing on evaluating vulnerabilities, integrating threat intelligence, and supporting compliance under NIST/ISO frameworks. Responsibilities include risk assessments, threat simulation... 

    NTT America

    Arlington, VA
    4 days ago
  • NTT DATA seeks a Cybersecurity and Risk Analyst to join the VAPT team, identifying and mitigating cybersecurity risks across enterprise systems, networks, and applications. You will perform vulnerability assessments, risk evaluations, and threat simulations aligned with... 

    NTT DATA North America

    Arlington, VA
    23 hours ago
  •  ...mitigation plans Oversee analysis and reporting of security vulnerabilities across systems Perform vulnerability scans, analyze results,...  ...papers Requirements 8+ years of experience in vulnerability management and analysis Experience with enterprise vulnerability scanning... 

    Jobtailor

    Arlington, VA
    3 days ago
  • $106.5k - $197.5k

     ...maintaining the integrity and performance of our software products. Essential Functions: Design, develop, and manage test cases, including traceability to requirements, user stories, etc. Execute software testing events using industry-accepted... 
    For contractors
    Local area
    Monday to Friday
    Flexible hours

    L3Harris Technologies

    Suitland, MD
    3 days ago
  •  ...a dedicated and skilled Cyber Security Analyst to join our team in support of a critical...  ...mission-critical systems, identifying vulnerabilities, and implementing robust security...  ...federal frameworks. Support the Risk Management Framework (RMF) process, including categorizing... 
    Permanent employment
    Full time

    Tactibit

    Suitland, MD
    8 hours ago
  • $59k - $63k

    Make an impact supporting the Air Force ! Lynch Consultants is seeking a Junior Risk Management Analyst with a solid understanding of risk management, internal controls, audit support, financial management, business process improvement who is ready to take on meaningful... 
    Flexible hours

    Lynch Consultants Llc

    Camp Springs, MD
    3 days ago
  •  ...sustained growth driven by our people-first approach and unwavering dedication to excellence.     This candidate will execute vulnerability identification, scanning, analysis, and coordination to reduce system attack. Maintain disciplined vulnerability workflows from... 
    Work at office

    True Zero Technologies

    Washington DC
    a month ago
  •  ...operations, cyber defense and resiliency, vulnerability research, ubiquitous technical...  ...Nightwing is seeking a Cyber Incident Manager to support this critical customer mission...  ...Compromise (IOCs), escalating to specialized analysts Required Skills U.S. Citizenship... 
    Contract work
    Immediate start
    Shift work
    Night shift
    Weekend work

    Nightwing

    Arlington, VA
    3 days ago
  • $99k - $144k

     ...service and not for profit, we measure our success in the impact of our service. Position Overview ANSER is seeking an Operations Management Analyst to support the Office of the Secretary of War (OSW), Director of Administration and Management (DA&M), Organizational and... 
    Full time
    Contract work
    Work at office
    Local area
    Monday to Friday

    Analytic Services Inc

    Alexandria, VA
    2 days ago
  • One Federal Solution is seeking an experienced Operations Management Analyst to support a Government Client by providing analytical, operational, and program management support for mission-critical initiatives. The successful candidate will analyze operational data, evaluate... 

    One Federal Solution

    Washington DC
    1 day ago
  • Mayvin is seeking an experienced Operations Management Analys to support the Department of Homeland Security Federal Protective Service. This is a mission critical position that will support the Government through data analysis and operational and program management support... 

    Mayvin, Inc.

    Washington DC
    3 days ago
  •  ...risks, policies, and mitigation plans. The role includes leading vulnerability analysis across multiple systems and guiding remediation...  ...expert presentations. Required are 8+ years in vulnerability management, experience with Tenable.sc/Nessus/ACAS, and knowledge of NIST... 

    Jobtailor

    Arlington, VA
    3 days ago
  •  ...Salesforce case record creation Verify integrations between AI-generated summaries, call metadata, quality scores, and Verint quality management systems Validate CloudWatch alarms, anomaly detection configurations, operational monitoring dashboards, and alerting... 
    Local area

    rockITdata

    Arlington, VA
    5 days ago
  • $72k - $82k

     ...Operations Management Analyst Salary Range $72,000.00 - $82,000.00 Salary Position Type Full Time Job Shift Day Education Level 4 Year Degree Travel Percentage None Category Government Description Mayvin is seeking an experienced Operations Management Analyst... 
    Full time
    Shift work

    Mayvin INC

    Washington DC
    4 days ago
  •  ...someone with a passion for cybersecurity, a deep understanding of application security, and the ability to identify and mitigate vulnerabilities. The successful candidate will play a critical role in ensuring the security of our applications and guiding our security... 

    OnDefend

    Washington DC
    5 days ago
  •  ...new opportunity fora Cybersecurity Operations Analyst to provide support for the Executive Airlift...  ...including mitigation of identified cyber incidents/vulnerabilities/network attacks (as described within DAFI 17-10, Risk Management Framework (RMF) for Air Force Information... 
    Full time
    Contract work

    Apogee Engineering

    Morningside, MD
    3 days ago
  •  ...You will help develop and maintain effective security and risk management programs on complex government information systems. As an...  ...system administrators and operations teamsMonitor and oversee vulnerability management program including vulnerability scanning, timely patch... 
    Flexible hours

    Tactibit Technologies LLC

    Suitland, MD
    2 days ago
  • SummaryAll Native Group is seeking a Management and Program Analyst II position to provide skilled — and largely independent — administrative analytical and evaluative work to program operations and, management and organizational efficiency and productivity for the assigned... 
    Full time
    Contract work
    For contractors
    Work at office
    Immediate start
    Overseas
    Monday to Friday
    Weekend work
    Afternoon shift

    Ho Chunk

    Washington DC
    2 days ago
  • $143.91k

     ...year (GS 14)Dates: Open 08/10/2026 to 08/14/2026Schedule: Full-timeWork type: PermanentRelocation: FalsePosition ID: AMO-IMP-13030928-HJBDocument ID: 879605400Grade: GS 14Job category: Management And Program Analysis (0343)Hiring path: fed-internal-search, fed-transition

    United States Government

    Washington DC
    2 days ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Vulnerability Management Analyst. Be the first to apply!