Cybersecurity Vulnerability Analyst
- Discuss this with your agent
- Open in Claude
- Open in ChatGPT
Role details
Tech stack
+1 more
Job description
Experteer Overview In this role you will support a DoD Vulnerability Disclosure Program as part of a mission-driven security team. You will assess external vulnerability reports, determine reproducibility, and assign risk using industry frameworks. You will work hands-on with offensive tools to develop actionable vulnerability assessments for DoD systems. You will liaise with the hacker community and coordinate mitigations with system owners, influencing national security outcomes. Compensation / Benefits * Review and vet vulnerability reports submitted to the DoD VDP from external researchers * Assess report reproducibility, severity, and risk; produce DoD-approved formats * Utilize HackerOne Triage to prioritize reports and identify duplicates * Conduct web application vulnerability assessments using automated and manual techniques (Burp Suite, open-source tools) * Perform offensive testing with tools like Kali Linux on production networks, documenting procedures for customer use * Develop proof-of-concept exploits to demonstrate real-world impact and aid mitigations * Coordinate with Vulnerability Management Analysts for system owner remediation and follow-up * Operate within on-site DoD environment (Baltimore-Metropolitan area) Tasks * Bachelor’s degree with 5+ years of experience, or Master’s with 3+ years, or PhD with 0+ years (information technology related field highly desired) * Active Secret clearance * Active IAT Level II certification (CompTIA Security+ preferred) * Pentesting experience * Knowledge of MITRE ATT&CK, CVSS, and NIST frameworks for severity assessment * Understanding of web exploitation concepts and OWASP Top 10 * Experience in professional IT or cybersecurity environments and investigating threats or vulnerabilities * Excellent customer service skills Key requirements *
Requirements
_ Develop proof-of-concept exploits to demonstrate real-world impact and aid mitigations * Coordinate with Vulnerability Management Analysts for system owner remediation and follow-up * Operate within on-site DoD environment (Baltimore-Metropolitan area) Tasks * Bachelor’s degree with 5+ years of experience, or Master’s with 3+ years, or PhD with 0+ years (information technology related field highly desired) * Active Secret clearance * Active IAT Level II certification (CompTIA Security+ preferred) * Pentesting experience * Knowledge of MITRE ATT&CK, CVSS, and NIST frameworks for severity assessment * Understanding of web exploitation concepts and OWASP Top 10 * Experience in professional IT or cybersecurity environments and investigating threats or vulnerabilities * Excellent customer service skills Key requirements *
Apply for this position
This job is hosted externally. Click below to view the full posting and apply.
Apply on us.experteer.comGood distractions
Talks and stories from around this role — technically off-topic, practically not.
Moments
Explore playlistsVideos
See allRelated articles
See all
Understanding and Mitigating Common Web Vulnerabilities
Dev Digest 134 - Where pixels sing?
Walking Into The Era of Supply Chain Risks
The Overflow: Security and Privacy