Senior Vulnerability Management Engineer (Tenable) - Active Secret clearance

THE PODMILSAK GROUP, INC.
United States
about 1 month ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
5 years minimum
Compensation
$145,000.0 - $170,000.0
Working hours
Regular working hours
Job source

Tech stack

Microsoft Windows Application Programming Interfaces (APIs) Amazon Web Services Systems Engineering JIRA Microsoft Azure Bash Shell Ubuntu (Operating System) CentOS Linux Domain Name System (DNS) Python (Programming Language)
+20 more
Automation of Marketing Windows Servers Routing Windows PowerShell Red Hat Enterprise Linux Security Information and Event Management TCP/IP Virtual Local Area Networks VMware VSphere Software Vulnerability Management Cloud Platform System Mttr SC Clearance Patch Management Nessus CIS Benchmarks Api Design Servicenow Plan of Action and Milestones Vulnerability Analysis

Job description

PGTEK is seeking an experienced Senior Vulnerability Management Engineer to lead the engineering and administration of enterprise Tenable vulnerability management solutions supporting a large Department of Defense program.

This is a hands-on engineering role responsible for designing, deploying, optimizing, and maintaining the full Tenable platform while driving vulnerability remediation efforts across enterprise and classified environments. You’ll work closely with cybersecurity teams, system administrators, ISSOs, and government stakeholders to improve the organization’s overall security posture.

As the program grows, this position offers the opportunity to take on technical leadership responsibilities and mentor junior engineers. Responsibilities

  • Administer and optimize the full Tenable platform, including: *

  • Tenable.sc
  • Tenable Vulnerability Management (formerly Tenable.io)
  • Nessus
  • Nessus Agents
  • Perform authenticated and unauthenticated vulnerability scans across Windows, Linux, network, and cloud environments.
  • Analyze vulnerability data, validate findings, eliminate false positives, and prioritize remediation efforts based on risk.
  • Coordinate remediation activities with infrastructure, networking, and application teams through closure.
  • Manage scan schedules, repositories, credentials, scan zones, and agent deployments.
  • Troubleshoot scanning issues, credential failures, performance bottlenecks, and platform health.
  • Develop executive dashboards, compliance reports, and security metrics.
  • Support RMF continuous monitoring, POA&M management, and audit activities.
  • Integrate Tenable with ServiceNow, SIEM, asset management, and automation platforms.
  • Develop automation using PowerShell, Python, Bash, and Tenable APIs.
  • Recommend system hardening improvements and security best practices.
  • Provide technical mentorship to junior engineers and vulnerability analysts.
  • Support security investigations and incident response activities requiring vulnerability analysis.

Requirements

  • 7+ years of cybersecurity engineering, vulnerability management, or systems engineering experience.
  • Experience supporting Federal Government or DoD environments (5+ years preferred).
  • Active Secret Clearance (TS/SCI preferred).
  • Deep experience administering: *

  • Tenable.sc
  • Tenable Vulnerability Management
  • Nessus
  • Nessus Agents
  • Strong understanding of vulnerability management lifecycle and remediation processes.
  • Experience with: *

  • CVSS scoring
  • Known Exploited Vulnerabilities (KEV)
  • Patch management
  • STIG compliance scanning
  • False-positive validation
  • Working knowledge of: *

  • Windows Server
  • Linux (RHEL, CentOS, Ubuntu)
  • VMware vSphere
  • AWS and/or Azure
  • Enterprise networking (TCP/IP, DNS, VLANs, routing, switching)

Compliance Experience

Experience supporting one or more of the following:

  • NIST SP 800-53
  • Risk Management Framework (RMF)
  • DISA STIGs and SRGs
  • CMMC
  • CIS Benchmarks
  • DoD 8570 / 8140 requirements

Preferred Skills

  • PowerShell, Python, or Bash scripting
  • Tenable API development and automation
  • ServiceNow or Jira integration
  • SIEM and SOAR platforms
  • Executive reporting and security metrics
  • Experience improving vulnerability remediation processes and reducing MTTR

Benefits & conditions

3.33.3 out of 5 stars United States Remote $145,000 - $170,000 a year - Full-time

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.indeed.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

1:53 min

Transitioning toward DevSecOps with dynamic scanning and secrets management

Christoph Ruggenthaler · LIVE

52 sec

Running persistent Linux environments directly on Windows

Ben Breard Ben Breard · WWC 2025

3:05 min

Integrating an assistant application with Jira software

Felix Augenstein · LIVE

3:08 min

Aligning engineering processes with core business impact metrics

Chris Riley · WWC 2021

3:55 min

Demonstrating .NET installation on Debian and Azure Linux

Silvano Coriani Silvano Coriani · Europe 2026 Virtual

5:47 min

Integrating user stories and test automation via Jira tools

Christoph Ruggenthaler · LIVE

Videos

See all

Related articles

See all