Vulnerability Analyst
$69.55k - $125.73kLeidos Inc
Description We are currently seeking a Vulnerability Analyst to join the Compartmented Enterprise Services Office (CESO) effort. This program is establishing a modern secure web service (SWS) operation as part of a state‑of‑the‑art, highly automated platform capable of supporting a rapidly expanding customer population. to become part of the Leidos team assisting CESO as it migrates to a high security cloud environment, providing vulnerability management, risk assessment, and compliance services that protect the integrity of the platform throughout its lifecycle. This position is based in Arlington, VA and is 100% on‑site. Requires a TS/SCI US Government Security Clearance to start. Primary Responsibilities Responsible for meeting both regulatory (Legal and Mandated Requirements) and non-regulatory (Real-World Threat Reduction) compliance demands across the CESO environment. Assist in the management and maintenance of the IAVA (Information Assurance Vulnerability Alerts) program for CESO systems. Manage and enforce information security policies, and train and educate end-users on proper security practices. Conduct security and risk assessments using established frameworks (e.g., NIST, RMF, Common Criteria), mitigating risk via security controls and testing and evaluation to certify and accredit commercial security products used within the CESO platform. Develop, update, organize, maintain, and track RMF documentation using information obtained from the customer. Ensure privacy of data throughout its lifecycle; perform vulnerability management (scanning, assessment, reporting, and mitigation verification), business continuity, and disaster recovery activities. Coordinate with infrastructure, storage, database, and application teams to align vulnerability management activities with CESO's operational and compliance requirements. Maintain documentation, operational procedures, and compliance reports supporting CESO's secure cloud migration. Responsible for a combination of duties to protect information and maintain security controls across the CESO system, site, or program in order to reduce risk. Basic Qualifications Bachelor's degree and 2+ years of related IT security experience; additional experience, education, or training may be considered in lieu of degree. Active TS/SCI security clearance required DoDD 8140 compliant certification, at minimum IAT Level II (e.g., Security+ CE), at start. Experience with the Defense Information Systems Agency (DISA) security model, controls, and authorization processes for standard computing systems and cloud computing across the Department of Defense Experience conducting activities associated with Information Assurance Vulnerability Alerts (IAVA) for example, Cybersecurity and Infrastructure Security Agency (CISA). Experience with creating Information Assurance documentation such as Security Control Traceability Metrics (SCTM), Risk Assessment Report (RAR), Security Assessment Report (SAR) and maintaining POA&Ms (Plans of Action and Milestones). Experience with ACAS and SEIM tools. Experience with application and hardware security settings for vendor and/or DISA best business practices. Candidate may be asked to obtain a CI Polygraph in the future. Preferred Qualifications Prior experience with DISA and DISA's support to mission partners. TS/SCI with CI Polygraph preferred. Experience with ACAS, SPLUNK, ACT (cybersecurity event), IAVA reporting, and eMASS. Familiarity with vulnerability management across enterprise applications and infrastructure (e.g., Oracle, SQL Server, Exchange, virtualization platforms, Windows, Red Hat). Understanding of disaster recovery and business continuity concepts as they apply to secure cloud migrations. If you're looking for comfort, keep scrolling. At Leidos, we outthink, outbuild, and outpace the status quo - because the mission demands it. We're not hiring followers. We're recruiting the ones who disrupt, provoke, and refuse to fail. Step 10 is ancient history. We're already at step 30 - and moving faster than anyone else dares. Pay Range: Pay Range $69,550.00 - $125,725.00 The Leidos pay range for this job level is a general guideline onlyand not a guarantee of compensation or salary. Additional factors considered in extending an offer include (but are not limited to) responsibilities of the job, education, experience, knowledge, skills, and abilities, as well as internal equity, alignment with market data, applicable bargaining agreement (if any), or other law. About Leidos Leidos is an industry and technology leader serving government and commercial customers with smarter, more efficient digital and mission innovations. Headquartered in Reston, Virginia, with 47,000 global employees, Leidos reported annual revenues of approximately $16.7 billion for the fiscal year ended January 3, 2025. For more information, visit Pay and Benefits Pay and benefits are fundamental to any career decision. That's why we craft compensation packages that reflect the importance of the work we do for our customers. Employment benefits include competitive compensation, Health and Wellness programs, Income Protection, Paid Leave and Retirement. More details are available at Commitment to Non-Discrimination All qualified applicants will receive consideration for employment without regard to sex, race, ethnicity, age, national origin, citizenship, religion, physical or mental disability, medical condition, genetic information, pregnancy, family structure, marital status, ancestry, domestic partner status, sexual orientation, gender identity or expression, veteran or military status, or any other basis prohibited by law. Leidos will also consider for employment qualified applicants with criminal histories consistent with relevant laws. #J-18808-Ljbffr Leidos Inc
- ...Job Description Job Description Areté is looking for the person who makes sure vulnerabilities actually get closed — not just found. As our Vulnerability Management Analyst in Falls Church, VA, you will own the end-to-end remediation cycle — scanning, prioritization...SuggestedFull time
$69.55k - $125.73k
We are currently seeking a Vulnerability Analyst to join the Compartmented Enterprise Services Office (CESO) effort. This program is establishing a modern secure web service (SWS) operation as part of a state-of-the-art, highly automated platform capable of supporting a...SuggestedWork at officeLocal areaImmediate start- ...supporting a U.S. Government customer to provide cybersecurity vulnerability analysis support to reduce the prevalence and impact of... ...Infrastructure Key Resources (CIKR). The Cybersecurity Vulnerability Analyst utilizes cybersecurity best practices, risk management...Suggested
$80k - $128k
...Risk And Vulnerability Analyst Peraton is currently seeking a Risk and Vulnerability Analyst. Location: Chandler, AZ or Washington DC. Role and Responsibilities: The Risk and Vulnerability Analyst supports a 24x7 Security Operations Center (SOC) by identifying...SuggestedContract workShift work- Driven by Innovation and built on Trust, rockITdata is a unique SDVOSB services company that partners with leading commercial healthcare/life sciences organizations on cutting edge innovations - think AI, automation and data transformation. We then bring those commercially...SuggestedFull time
$110k - $160k
...curated analytics tools, actively identifying and exploiting vulnerabilities to validate and strengthen the platform’s security posture against... ...Penetration Testing Engineer (CPTE)CompTIA CyberSecurity Analyst (CySA+)Federal IT Security Professional-Auditor (FITSP-A)GIAC...Full timeWork at office- ...our sustained growth driven by our people-first approach and unwavering dedication to excellence. This candidate will execute vulnerability identification, scanning, analysis, and coordination to reduce system attack. Maintain disciplined vulnerability workflows from...Work at office
$86.8k - $198k
...the team. Join us. The world can’t wait.You Have:2+ years of experience with penetration testing and red teaming Experience with vulnerability enumeration and exploitation frameworks, including Burp Suite Pro, Metasploit, Cobalt Strike, Armitage, or PowerSploit Knowledge...Full timeContract workPart timeLocal areaRemote work- ...privilege escalation and lateral movement Examine results of web/OS scanners, scans and static source code analysis Identify vulnerabilities, misconfigurations, and compliance issues Write final reports, defend all findings to include the risk or vulnerability,...
- ...Specialist to join our cybersecurity team. This role involves performing detailed security assessments, penetration tests, and vulnerability analyses to protect critical systems and data. The ideal candidate is hands-on, highly technical, and experienced in identifying...Flexible hours
- ...penetration testing supporting PCI-DSS. ~ Technical writing skills, along with ease in communicating concepts related to security vulnerabilities and attack path scenarios. ~ Familiar with OWASP Application Security Verification Standard ( ASVS ) and MITRE ATT&CK...Local areaRemote work
- ...Information Technology (TSA IT) Task Order (TO) by performing security attacks against all types of IT assets, and exploiting vulnerabilities found to determine if further reach within the engagement scope can be obtained. Provide final reports and presentations of the...Full timeFor contractors
$500 per month
Become a Professional Game Tester We're looking for passionate gamers to join our elite team of mobile game testers. Get paid to play and test the latest games before they launch. $500+ Avg Monthly Pay 5-10 Hours/Week 100% Remote Position Requirements: ...Remote work10 hours per week- ...Cyber Network Defense Analyst II page is loaded## Cyber Network Defense Analyst IIlocations: Arlington, VAtime type: Full timeposted... ...include cyber space operations, cyber defense and resiliency, vulnerability research, ubiquitous technical surveillance, data intelligence...Contract workImmediate start
$197.3k - $225.1k
..., MITRE ATTCK, CMMC, FedRAMP, etc. ~5+ years of experience performing analysis of or developing solutions for cyber threats, vulnerabilities, risks, or, events ~5+ years of experience working on teams and presenting to stakeholders cybersecurity information such as...Full timePart timeH1bLocal area- ...networks, cloud environments, and client infrastructure. This role is responsible for planning and performing penetration tests and vulnerability assessments, simulating real-world attack scenarios, identifying security weaknesses, and translating findings into clear...Full timeWork experience placementRemote workMonday to FridayShift workNight shift
$136k - $184k
...non-internship) experience- Bachelor's degree in Engineering, Computer Science, or a related field- Knowledge of system security vulnerabilities and remediation techniques, including penetration testing and the development of exploits or equivalent- Experience with web...InternshipFlexible hours- General Dynamics Information Technology, Inc. is seeking a Penetration Tester to join our Cyber Security team at the McLean, VA client site. You will perform internal and external evaluations of networks, applications, databases, and cloud services, and articulate clear...
$115k - $190k
...APIs, and the software development lifecycle (SDLC). The selected candidate will be responsible for secure application design, vulnerability management, DevSecOps integration, security monitoring, WAF administration, File Integrity Monitoring (FIM), and Tier II security...Full timeRemote work$145k - $175k
...candidate will serve as a senior technical contributor responsible for web application and api security engineering, threat modeling, vulnerability remediation, owasp top 10, waf/fim, logs analysis, devsecops gates, secure coding, and compliance automation. Primary...Contract work$146k - $234k
ResponsibilitiesPeraton is seeking an Information Systems Security Engineer - Vulnerability Remediation Team (VRT) - based to support its Federal Strategic Cyber programs.Location: Washington, DCIn this role, you will: Identify, track and remediate vulnerabilities within...Contract workFor contractorsShift work$156k - $195k
...SOC leadership, structure & coverage: Lead daily SOC/ARC monitoring, alert triage, investigations, and incident response; manage analysts, shift leads, and incident handlers across all tiers; define Tier 1/2/3 responsibilities and escalation criteria; and establish a...Contract workTemporary workImmediate startRemote workFlexible hoursShift work$180k - $220k
As a Cyber Systems Engineer/ Information System Security Engineer (ISSE) at Amentum, you will play a vital role in safeguarding national security by protecting the integrity, confidentiality, and availability of government-affiliated information systems. Your expertise...Hourly payContract workInterim roleLocal area- ...digital forensics/incident response (DFIR) and proactively hunting for malicious cyber activity. They are seeking Cyber Network Defense Analysts (CNDA) to support this critical customer mission. Responsibilities Assistthe Government lead in coordinating teams in preliminary...Immediate startRemote work
- Cyber Network Forensic Analyst III, TS/SCI Raytheon Technologies provides remote and onsite advanced technical assistance, proactive hunting, rapid onsite incident response, and immediate investigation and resolution using host-based, network-based and cloud-based cybersecurity...Immediate startRemote work
- ...Government agencies and critical infrastructure owners who experience cyber-attacks. Solutions³ LLC is seeking a Cyber Network Defense Analysts (CNDA) to support this critical mission by providing front line response for digital forensics/incident response (DFIR) and...For contractors
- ...Job Description Job Description Cyber Network Defense Analyst (CNDA) - Cloud Forensics Location: Remote / Onsite (as required) Clearance: Active TS/SCI (DHS EOD eligibility required) Company: Argo Cyber Systems, LLC - A Service-Disabled Veteran-Owned Small...Remote work
- Solutions³ LLC is seeking a Cyber Network Defense Analyst II to support a government mission, performing investigations to assess breach severity and develop mitigation plans. The role requires US citizenship, active TS/SCI clearance, and DHS suitability prior to start,...
$105.4k - $207.8k
Position Summary Cyber Palo Alto Networks Security Engineer/ Senior Consultant, Strategy, Growth, and TransformationDeloitte’s Cyber business is passionate about making an impact with lasting change. Delivering our industry leading services requires fresh thinking...Work experience placementLocal areaRemote work$10 per hour
Job Description Job Description About Flexport: At Flexport, we believe global trade can move the human race forward. That's why it's our mission to make global commerce so easy there will be more of it. We're shaping the future of a $10T industry with solutions powered...Work at officeImmediate startFlexible hours
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Vulnerability Analyst. Be the first to apply!




