CM
Vulnerability Management Specialist II
Chenega MIOS
🇺🇸 United States
11 months ago
- Vulnerability Management
- Nessus
- Tenable
- Excel
- RMF
- Windows
- Linux
- STIGs
- Qualys
- CVSS
- Technical Writing
11 months ago
Duties and Responsibilities:Â Â
- Support scan scheduling, scan result analysis, and basic remediation coordination. Maintains scan tools and works under guidance of senior team members.Â
- Assist in scheduling and executing vulnerability scans using tools such as Nessus, Tenable, or other approved platforms.Â
- Analyze scan results and support remediation tracking efforts.Â
- Maintain scanning tools and ensure proper configuration and operation.Â
- Perform data entry and generate reports using Excel and other reporting tools.Â
- Coordinate with stakeholders to support remediation activities and ensure timely resolution.Â
- Contribute to audit responses and documentation efforts as directed by senior staff.Â
- Stay current with emerging threats, vulnerabilities, and mitigation strategies.Â
- Other duties as assigned.Â
Minimum Qualifications:
- Bachelor’s degree in Cybersecurity, Information Technology, Computer Science or related field. Â
- 3+ years of experience in vulnerability tracking and reporting, with 2+ years in IT or cybersecurity roles.Â
- Certifications: Security + preferred.Â
- Exposure to DoD cybersecurity frameworks and RMF processes preferred.Â
- Experience supporting POA&M documentation and audit preparation preferred.Â
- Must have active Top Secret Clearance with SCI eligibility.Â
Knowledge, Skills and Abilities:Â Â
- Familiarity with vulnerability scanning tools such as Nessus, Tenable, or ACAS.Â
- Basic understanding of IT systems, including Windows and Linux environments.Â
- Experience with Excel for reporting and data analysis.Â
- Knowledge of STIGs and SCAP tools is a plus.Â
- Skilled in organizing and tracking remediation efforts.Â
- Capable of maintaining accurate records and supporting compliance documentation.Â
- Ability to meet minimum clearance requirements.Â
- Ability to work nights, weekends, and holidays as required.Â
- Ability to travel up to 10%.Â
Vulnerability Management Specialist IIIÂ
Duties and Responsibilities:Â Â
- Conduct vulnerability scans using tools such as ACAS, Tenable, and SCAP-compliant tools.Â
- Track and assess vulnerabilities, correlating findings with system inventories and mission relevance.Â
- Support remediation efforts by coordinating with system owners and IT teams.Â
- Prepare summary reports, trend analyses, and dashboard metrics for leadership and audit purposes.Â
- Assist in mapping vulnerabilities to STIG compliance, risk scores, and POA&M entries.Â
- Contribute to audit responses and ensure documentation aligns with DoD cybersecurity requirements.Â
- Stay current with emerging threats, vulnerabilities, and mitigation strategies.Â
- Other duties as assigned.Â
Minimum Qualifications:
- Bachelor’s degree in computer science, Information Systems or related field. Â
- 5+ years of experience in vulnerability management with 5-7 years in cybersecurity or IT operations.Â
- Proficient in Tenable/Nessus, Qualys, ACAS.Â
- Familiarity with DoD STIGs, DISA SCAP tools, and vulnerability management frameworks.Â
- Certifications: Security + or equivalentÂ
- Must have active Top Secret Clearance with SCI eligibility.Â
Knowledge, Skills and Abilities:Â Â
- Excellent communication, leadership, and project management skills.Â
- Proficiency with ASAS, Tenable/Nessus, and SCAP tools.Â
- Exposure to RMF processes and DoD cybersecurity directives preferred.Â
- Familiarity with HBSS/ESS and enterprise security tools preferred.Â
- Experience with Windows/Linux system hardening and STIG implementation.Â
- Understanding of vulnerability scoring systems (e.g., CVSS) and risk prioritization.Â
- Familiarity with POA&M documentation and audit preparation.Â
- Ability to interpret scan results and correlate with system configurations.Â
- Skilled in tracking remediation progress and identifying trends.Â
- Capable of supporting compliance efforts and generating actionable metrics.Â
- Strong technical writing skills for reports and summaries.Â
- Effective communicator with cross-functional teams and leadership.Â
- Experience in supporting audit and compliance documentation.Â
- Ability to work both independently and within a team.Â
- Ability to meet minimum clearance requirements.Â
- Ability to work nights, weekends, and holidays as required.Â
- Ability to travel up to 10%.Â
Vulnerability Management Specialist II · Chenega MIOS