Vulnerability Assessment Analyst GW - TS/SCI Poly Required

EMTAK LLC
Annapolis, MD
Full-time

The Vulnerability Assessment Analyst shall :

  • Maintain and optimize the Tenable Security Center infrastructure.
  • Conduct regular security patching, assessments and scans on Linux Security Center servers using Tenable Nessus.
  • Mitigate STIGS / Vulnerabilities on Tenable Linux Security Center Servers and Windows / Linux Nessus Scanning Servers.
  • Install and update Tenable Nessus Software on Linux / Windows Scanning Servers.
  • Install and update Tenable Security Center Software on Linux Servers.
  • Configure and fine-tune scanning policies and asset lists to ensure thorough vulnerability coverage.
  • Keep abreast of the latest Tenable Security Center features and updates.
  • Perform regular vulnerability assessments of multiple device types and Operating Systems using Tenable Security Center.
  • Utilize Nessus Scanning Tool to identify vulnerabilities across customer assets on a Continuous Monitoring basis.
  • Review Nessus / ACAS scan results and provide direction where required.
  • Recognizes potential, successful, and unsuccessful scan results for efficiency in reporting compromises thorough reviews and analyses of relevant event detail and summary information.
  • Analyze scan results and generate comprehensive vulnerability reports.
  • Monitor and track vulnerability remediation progress.
  • Collaborate with ISS and other teams to ensure timely vulnerability remediation.
  • Communicate effectively with stakeholders about the security posture and potential risks.
  • Prepare and deliver clear and concise reports to management and stakeholders.
  • Maintain accurate records of security incidents and vulnerabilities.

Mandatory Skills :

  • Familiarity with DISA STIGs, Tenable Audit files, and / or CIS Benchmarks
  • Hands-on operational experience with enterprise vulnerability management and scanning solutions, such as Tenable
  • Knowledge of system and application security threats and vulnerabilities
  • Working knowledge of networking, Linux / Unix, Windows administration, patch deployment and system configuration
  • CEH, Security+
  • Bachelors Degree + 7 years technical experience. Four years of experience can be substituted for degree.

Desired Skills :

  • In-depth knowledge of vulnerability assessment methodologies, tools, and best practices
  • Self-starter, ability to work effectively both independently and as part of a team including the ability and desire to own every aspect of a task from start to finish
  • Strong analytical and problem-solving abilities, with a keen attention to detail
  • 1 day ago
Related jobs
Promoted
EMTAK LLC
Annapolis, Maryland

Reviews and tests software components for adherence to the design requirements and documents test results. Provides specific input to the software components of system design to include hardware/software trade-offs, software reuse, use of Commercial Off-the-shelf (COTS)/Government Off-the-shelf (GOT...

Promoted
Leidos Holding
Annapolis, Maryland

An Active TS/SCI with polygraph security clearance is required up front to be considered for this position. Help create and refine documentation for a large-scale environment and tracking of hardware and software assets, and resources, and facilitate continuous process improvements. Identify, contro...

Promoted
EMTAK LLC
Annapolis, Maryland

Reviews and tests software components for adherence to the design requirements and documents test results. Provides specific input to the software components of system design to include hardware/software trade-offs, software reuse, use of Commercial Off-the-shelf (COTS)/Government Off-the-shelf (GOT...

Promoted
Cymertek Corporation
Annapolis, Maryland

You must be able to complete end-to-end assessment reports and deliver mitigation guidance. In this role you can expect to be responsible for analyzing various hardware and software products to find flaws in their design. Experience with network programming (sockets/TCP/IP). Cymertek is a growing sm...

Promoted
RBR Technologies
Fort Meade, Maryland

Active TS/SCI with polygraph required to be considered. Bachelor's degree in System Engineering, Computer Science, Information Systems, Engineering Science, Engineering Management, or a related discipline from an accredited college or university is required. Seven (7) years of experience as a SE...

Amentum
Fort Meade, Maryland

Analyze user requirements and convert requirements to design documents. Using languages like HTML, CSS, and JavaScript, front end developer will construct responsive page layouts, navigation menus, buttons, search forms, and all other interface components. In this role you will support challenging, ...

GDIT
Fort Meade, Maryland

TS/SCI; Candidates must be willing and able to. Rather, salary will be set based on experience, geographic location and possibly contractual requirements and could fall outside of this range. Applications Systems Analyst - Intermediate. Applications Systems Analyst - Intermediate. ...

Amentum
Fort Meade, Maryland

Manage the process and preparation of documentation reviews to include System Security Plans (SSPs), Risk Assessment Reports, Certification and Accreditation (C&A) packages, and System Requirements. Active TS/SCI and a current polygraph. Manage the performance of vulnerability/risk assessment analys...

GDIT
Fort Meade, Maryland

Systems Administrator Intermediate – TS/SCI required. Conducts routine hardware and software audits of workstations and servers to ensure compliance with established standards, policies, and configuration guidelines. Troubleshoot, maintain integrity and configure network components along with implem...

GDIT
Fort Meade, Maryland

Network Engineer Intermediate – TS/SCI required. Analyzes user's requirements, concept of operations documents, and high level system architectures to develop network requirements specifications. Under general supervision will install, configure, and support an organization’s local area network (LAN...