Security Engineer – Vulnerability Management

Stellenbeschreibung:

  • Manage and mature the organization’s vulnerability management program
  • Identify, assess, and prioritize vulnerabilities across applications, networks, endpoints, cloud environments, and enterprise systems
  • Collaborate with ISSOs and Controls Assessors to capture RMF artifacts and validate security control effectiveness
  • Review, advise, and refine security Control Statements
  • Support compliance with NIST 800-53, FISMA, and SOX
  • Implement vulnerability management, patching, configuration hardening, and risk-reduction best practices
  • Assist with incident response involving exploited vulnerabilities
  • Establish repeatable workflows supporting ATO readiness for new systems
  • Communicate risk and recommend mitigation strategies
  • Contribute to continuous improvement of security processes and controls

Requirements

  • 4–6 years of experience in vulnerability management or a related information security role
  • Advanced knowledge of Tenable Nessus, Qualys, Rapid7, or OpenVAS
  • Strong understanding of vulnerability scanning, assessment, and risk prioritization
  • Familiarity with CVSS, NIST 800-53, and OWASP Top 10
  • Understanding of OS-level vulnerabilities across Windows, Linux, and macOS
  • Knowledge of TCP/IP, DNS, firewalls, routers, and switches
  • Experience with AWS, Azure, GCP, and cloud-native policies
  • Experience configuring and working with Identity Providers (IdP)
  • Experience with patch management tools and processes
  • Basic understanding of FISMA and SOX
  • Familiarity with NIST CSF, ISO 27001, and CIS Controls
  • Ability to assess vulnerabilities, identify risks, and support incident response
  • Bachelor's degree in Cybersecurity, Computer Science, Information Technology, or related field (or equivalent experience)
  • U.S. Citizenship required
  • Eligible to obtain a Public Trust security clearance

Core Competencies

Demonstrates expertise in vulnerability management, including risk assessment, incident response, and compliance with NIST 800-53 and FISMA. Proficient in utilizing tools such as Tenable Nessus and Qualys to identify and prioritize vulnerabilities across diverse environments.

Highest-signal resume keywords

  • Vulnerability Management
  • Tenable Nessus
  • NIST 800-53 Compliance
  • Incident Response
  • Cloud Security (AWS, Azure, GCP)

ATS Optimization Keywords

Hard Skills

  • Vulnerability Assessment
  • Risk Prioritization
  • Patch Management
  • Configuration Hardening
  • OS-Level Vulnerabilities (Windows, Linux, macOS)
  • TCP/IP
  • DNS
  • Firewalls
  • Identity Providers (IdP)
  • CVSS

Soft Skills

  • Collaboration
  • Communication
  • Continuous Improvement

Certifications & Qualifications

  • Bachelor's Degree in Cybersecurity
  • Public Trust Security Clearance Eligibility

Industry Keywords

  • FISMA
  • SOX
  • NIST CSF
  • ISO 27001
  • CIS Controls
  • Risk Management Framework (RMF)

Tools & Technologies

  • Qualys
  • Rapid7
  • OpenVAS
  • AWS
  • Azure
  • GCP

#J-18808-Ljbffr
NOTE / HINWEIS:
EnglishEN: Please refer to Fuchsjobs for the source of your application
DeutschDE: Bitte erwähne Fuchsjobs, als Quelle Deiner Bewerbung

Stelleninformationen

  • Veröffentlichungsdatum:

    16 Sep 2026
  • Standort:

    WorkFromHome
  • Typ:

    Vollzeit
  • Arbeitsmodell:

    Vor Ort
  • Kategorie:

  • Erfahrung:

    2+ years
  • Arbeitsverhältnis:

    Angestellt

KI Suchagent

AI job search

Möchtest über ähnliche Jobs informiert werden? Dann beauftrage jetzt den Fuchsjobs KI Suchagenten!