Sr. Vulnerability Analyst

ST2 ManTech Advanced Systems Intl
2000 Edmund HalleyDr,Reston,VA, 201FX
$99.2K-$164.6K a year
Remote
Full-time

Secure our Nation, Ignite your Future

Your Growth, ManTech’s Promise, OUR Mission. Continue to Secure the Future. Become an integral part of a diverse team while working at an Industry Leading Organization, where our employees come first.

At ManTech International Corporation , you’ll help protect our national security while working on innovative projects that offer opportunities for

advancement.

ManTech is seeking a motivated, career and customer-oriented Enterprise Information Senior Vulnerability Analyst to provide unparalleled support to our customer and develop an exciting and rewarding career within ManTech.

The Senior Vulnerability Analyst shall provide high quality technical, engineering, analytical, and planning support to achieve customer cybersecurity requirements.

Responsibilities Include, but are not limited to :

Planning, integration, deployment and administration of security tools and technologies to include routine patching and updates, as well as their cross-interoperability where required.

Monitoring service ticket queues, responding to ticket requests as appropriate.

Supporting the evolution of Cybersecurity Operations capabilities as a fully integrated capability with the IT enterprise.

Providing technical expertise on new or lifecycle replacement of Cybersecurity technology deployments and shall collaborate with stakeholders to assess technologies against requirements.

Providing technical input to new projects requiring operational cybersecurity monitoring and vulnerability analysis.

Reviewing information submitted for system authorization packages to identify Incident Response points of contact, vulnerability assessment requirements, log management, and other technical cybersecurity points as needed.

Conducting penetration tests and vulnerability assessments and develops mitigation and / or remediation recommendations for discovered vulnerabilities.

Analyzing and reviewing application, system, and network security postures across the through active scanning, application-layer protocol fingerprinting or traffic analysis.

Prioritizing mitigation actions based on assessed risk upon discovery of critical exploits and vulnerabilities. Supports the development and implementation of enterprise mitigation actions in response to complex vulnerabilities.

Reviewing and recommending updates to network / system configurations in response to changes in the threat environment (identified trends, IA vulnerability alerts / bulletins / technical advisories, known malicious files, zero day exploits, etc.).

Researching existing exploit code and / or develops proof-of-concept exploit code for test and evaluation of mitigations solutions.

Develops and submit detailed reports of findings, analysis and recommendations.

Researching new vulnerabilities, attacks and exploits.

Contributing to the completion of milestones associated with specific projects.

Creating, updating and maintaining Security Systems Administration content within a Standard Operating Procedure (SOP) and / or Cyber Operations Wiki.

Minimum Qualifications :

3+ years of experience in Tenable configuration, deployment, engineering, and defining policies and procedures based on Govt best practices

1+ years of experience with, Qualys, Imperva Trustwave , DBprotect, BurpSuite Professional, and / or Prisma.

Demonstrated experience integrating Vulnerability Management tools in Amazon Web Services.

Demonstrated experience integrating Vulnerability Management tools with DHS Continuous Diagnostics & Mitigation (CDM) program Federal Shared Services

Subject Matter Expertise in Vulnerability Tool configuration, deployment, engineering, and defining policies and procedures based on Govt best practices

Demonstrated experience collaborating with System Owners to mitigate vulnerabilities

Preferred Qualifications :

5+ years of experience managing and implementing cybersecurity solutions, including process definition and procedure documentation

2+ years of experience with Cylance PROTECT or Crowdstrik

1+ years’ experience with Splunk and Phantom

1+ years’ experience with Threat Intelligence Platforms, specifically Anomali

1+ years’ experience with Linux Redhat and RHEL systems

1+ years’ experience with Data Loss Prevention for Windows and / or Mac endpoints

Certification : None

None

Clearance :

Selected applicants must be a US Citizen and able to obtain and maintain a U.S. Department of Homeland Security suitability.

Physical Requirements :

Must be able to be in a stationary position more than 50% of the time.

Must be able to communicate, converse, and exchange information with peers and senior personnel.

Constantly operates a computer and other office productivity machinery, such as a computer.

The projected compensation range for this position is $99,200-$164,600. There are differentiating factors that can impact a final salary / hourly rate, including, but not limited to, Contract Wage Determination, relevant work experience, skills and competencies that align to the specified role, geographic location (For Remote Opportunities), education and certifications as well as Federal Government Contract Labor categories.

In addition, ManTech invests in it’s employees beyond just compensation. ManTech’s benefits offerings include, dependent upon position, Health Insurance, Life Insurance, Paid Time Off, Holiday Pay, Short Term and Long Term Disability, Retirement and Savings, Learning and Development opportunities, wellness programs as well as other optional benefit elections.

For all positions requiring access to technology / software source code that is subject to export control laws, employment with the company is contingent on either verifying U.

S.-person status or obtaining any necessary license. The applicant will be required to answer certain questions for export control purposes, and that information will be reviewed by compliance personnel to ensure compliance with federal law.

ManTech may choose not to apply for a license for such individuals whose access to export-controlled technology or software source code may require authorization and may decline to proceed with an applicant on that basis alone.

ManTech International Corporation, as well as its subsidiaries proactively fulfills its role as an equal opportunity employer.

We do not discriminate against any employee or applicant for employment because of race, color, sex, religion, age, sexual orientation, gender identity and expression, national origin, marital status, physical or mental disability, status as a Disabled Veteran, Recently Separated Veteran, Active Duty Wartime or Campaign Badge Veteran, Armed Forces Services Medal, or any other characteristic protected by law.

If you require a reasonable accommodation to apply for a position with ManTech through its online applicant system, please contact ManTech's Corporate EEO Department at (703) 218-6000.

ManTech is an affirmative action / equal opportunity employer - minorities, females, disabled and protected veterans are urged to apply.

ManTech's utilization of any external recruitment or job placement agency is predicated upon its full compliance with our equal opportunity / affirmative action policies.

ManTech does not accept resumes from unsolicited recruiting firms. We pay no fees for unsolicited services.

If you are a qualified individual with a disability or a disabled veteran, you have the right to request an accommodation if you are unable or limited in your ability to use or access as a result of your disability.

To request an accommodation please click and provide your name and contact information.

30+ days ago
Related jobs
ST2 ManTech Advanced Systems Intl
Reston, Virginia
Remote

Providing technical input to new projects requiring operational cybersecurity monitoring and vulnerability analysis. Reviewing information submitted for system authorization packages to identify Incident Response points of contact, vulnerability assessment requirements, log management, and other tec...

Promoted
SAIC
Arlington, Virginia

Bachelor’s degree in Electrical Engineering, Computer Engineering, Network Engineering, or a related field (or equivalent practical experience). We are seeking a detail-oriented Network Design Engineer with strong expertise in CAD software and hands-on experience with network equipment (e. You will ...

Promoted
LMI
McLean, Virginia

Provide business performance analysis services. Provide support with overall business assessments. Provide a strategic outlook for all client business areas. Minimum of five (5) years of experience in business management. ...

Promoted
MITRE
McLean, Virginia

Master of Science (or equivalent experience) in Cybersecurity, Software Engineering, Computer Science, Computer Engineering, or related engineering disciplines. The R&D centers we operate for the government create lasting impact in fields as diverse as cybersecurity, healthcare, aviation, defense, a...

Promoted
Amentum
Arlington, Virginia

CENTRA is looking an early or mid-career analyst to serve as a Foreign Transaction Risk Analyst on the Risk Mitigation and Compliance Monitoring (RMCM) team within DHS’s Office of Trade and Economic Security (TES). Monitoring private parties' compliance with legally binding risk mitigation agreement...

Promoted
Navy Federal Credit Union
Vienna, Virginia

This position is for a Senior Network Security Engineer with a concentration on Cisco ISE NAC/Compliance Posture Assessments and Palo Alto GlobalProtect. Bachelor's Degree in Computer or Electrical Engineering, Computer Science or related field or equivalent work experience. Advanced hands-on experi...

Promoted
Verizon
Ashburn, Virginia

We are committed to providing the highest levels of compliance. This position is responsible for preparing state and local regulatory filings and business licenses by working with various financial systems to analyze data while adhering to regulatory compliance laws, local business license ordinance...

Promoted
Iridium Satellite LLC
Leesburg, Virginia

On the SDA Cyber IT Operations team, as a Cyber Security Analyst, you'll be responsible for ensuring all of the necessary security updates are documented, applied, and reported in a timely manner. Iridium is seeking a Cyber Security Analyst to join our team for a Space Development Agency (SDA) proj...

Promoted
Foxhole Technology
Leesburg, Virginia

Job Title: SOC Analyst (Tier 2). Foxhole Technology is seeking a SOC Analyst (Tier 2) to join our growing team in support of Security Operations Center on a newly awarded contract. The ideal candidate will have experience working in a network security environment, such as a Security Operations Cente...

Promoted
H4 Enterprises
Arlington, Virginia

The Information Systems Security - Senior Data Analyst will assist the assigned Government Division Chief and assigned team leader with various IT security duties in support of the Department's information security and information assurance needs of SCI IT networks. Conducts event analysis on ca...