Vulnerability Assessment Analyst GW - TS/SCI Poly Required

EMTAK LLC
Annapolis Junction, MD
Full-time

The Vulnerability Assessment Analyst shall :

  • Maintain and optimize the Tenable Security Center infrastructure.
  • Conduct regular security patching, assessments and scans on Linux Security Center servers using Tenable Nessus.
  • Mitigate STIGS / Vulnerabilities on Tenable Linux Security Center Servers and Windows / Linux Nessus Scanning Servers.
  • Install and update Tenable Nessus Software on Linux / Windows Scanning Servers.
  • Install and update Tenable Security Center Software on Linux Servers.
  • Configure and fine-tune scanning policies and asset lists to ensure thorough vulnerability coverage.
  • Keep abreast of the latest Tenable Security Center features and updates.
  • Perform regular vulnerability assessments of multiple device types and Operating Systems using Tenable Security Center.
  • Utilize Nessus Scanning Tool to identify vulnerabilities across customer assets on a Continuous Monitoring basis.
  • Review Nessus / ACAS scan results and provide direction where required.
  • Recognizes potential, successful, and unsuccessful scan results for efficiency in reporting compromises thorough reviews and analyses of relevant event detail and summary information.
  • Analyze scan results and generate comprehensive vulnerability reports.
  • Monitor and track vulnerability remediation progress.
  • Collaborate with ISS and other teams to ensure timely vulnerability remediation.
  • Communicate effectively with stakeholders about the security posture and potential risks.
  • Prepare and deliver clear and concise reports to management and stakeholders.
  • Maintain accurate records of security incidents and vulnerabilities.

Mandatory Skills :

  • Familiarity with DISA STIGs, Tenable Audit files, and / or CIS Benchmarks
  • Hands-on operational experience with enterprise vulnerability management and scanning solutions, such as Tenable
  • Knowledge of system and application security threats and vulnerabilities
  • Working knowledge of networking, Linux / Unix, Windows administration, patch deployment and system configuration
  • CEH, Security+
  • Bachelors Degree + 7 years technical experience. Four years of experience can be substituted for degree.

Desired Skills :

  • In-depth knowledge of vulnerability assessment methodologies, tools, and best practices
  • Self-starter, ability to work effectively both independently and as part of a team including the ability and desire to own every aspect of a task from start to finish
  • Strong analytical and problem-solving abilities, with a keen attention to detail
  • 19 hours ago
Related jobs
Promoted
Amentum
Hanover, Maryland

Experience managing system requirements and derived requirements to ensure the delivery of products and systems that are compatible with the system architecture(s). Seven (7) years of experience as a SE in programs and contracts of similar scope, type and complexity is required. Ability to meet with...

Promoted
KBR
Fulton, Maryland

Enterprise Services Engineer - TS/SCI. Additional compensation may be in the form of sign on bonus, relocation benefits, short term incentives, long term incentives, or discretionary payments for exceptional performance. KBR’s work is at the forefront of engineering, logistics, operations, science, ...

Promoted
Zachary Piper
Fort Meade, Maryland

Active DoD TS/SCI clearance, and eligibility for a CI Poly. Requirements for the Cyber Threat Intel Analyst include:. Cyber Threat Intelligence Analyst. Responsibilities of the Cyber Threat Intel Analyst include:. ...

Promoted
EMTAK LLC
Annapolis Junction, Maryland

Reviews and tests software components for adherence to the design requirements and documents test results. Provides specific input to the software components of system design to include hardware and software trade-offs, software reuse, use of Commercial Off-the-shelf (COTS) and Government Off-the-sh...

EMTAK LLC
Annapolis Junction, Maryland

IAT Level 1 certificate (CompTIA A+ CE, CompTIA Network+ CE) is required within 6 months of start date. ...

NPA WorldWide
Columbia, Maryland

Flexible work schedule, fully non-remote SCIF location in Columbia, MD Qualifications: *Capabilities** Analyze user requirements to derive software design and performance requirements* Debug existing software and correct defects* Provide recommendations for improving documentation and software de...

Jacobs
Annapolis Junction, Maryland

Reviews and tests software components for adherence to the design requirements and documents test results. Provides specific input to the software components of system design to include hardware/software trade-offs, software reuse, use of Commercial Off-the-shelf (COTS)/Government Off-the-shelf (GOT...

Career Development Partners
Fort Meade, Maryland

Must currently possess an active TS/SCI Clearance with Full-Scope Polygraph (FSP). We are looking for talented employees who appreciate opportunities to learn new things and to contribute their talents on multiple projects. Experience using VHDL RTL Coding (for design and/or analysis of digital circ...

Intermedia Group, Inc.
Fort Meade, Maryland

JOB TITLE: Information Security Associate - TS SCI FS POLY - $180000. CLEARANCE: TS/SCI with FS Poly. Prepare and review documentation to include System Security Plans (SSPs), Risk Assessment Reports, Certification and Accreditation (C&A) packages, and System Requirements Traceability Matrices (SRTM...

GDIT
Annapolis Junction, Maryland

Installing and configuring required Trellix products, including but not limited to Trellix Endpoint Security (ENS) Client, ENS Firewall, Threat Prevention, Access Protection on enterprise Microsoft and Linux endpoints; maintaining malware security compliance and troubleshooting/resolving issues remo...