REMOTE Senior Vulnerability & Exposure Management Engineer

Insight Global
Fairfax County, VA, United States
10 days ago
Apply on dejobs.org
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
8 years minimum
Working hours
Regular working hours
Job source

Tech stack

Microsoft Windows Application Programming Interfaces (APIs) Amazon Web Services User Authentication Cloud Computing Cloud Engineering Cyber Security Databases Linux Networking Hardware Software Vulnerability Management Web Applications
+10 more
Datadog Transport Layer Security Enterprise Software Applications Load Balancing Cyberark HybridCloud CIS Benchmarks Prisma Cloud Platform Splunk Servicenow

Job description

Peraton is seeking a Senior Vulnerability & Exposure Management Engineer to lead enterprise vulnerability management, exposure management, web application scanning, and compliance auditing across AWS cloud environments. This role is responsible for engineering, sustaining, and optimizing Tenable One (TVM, TEM, ASM, WAS) and ensuring reliable, high-quality scanning across AWS cloud services, operating systems, databases, and enterprise applications in a highly regulated federal environment.

The ideal candidate demonstrates strong client-facing presence, concise communication, project management discipline, and deep hands-on engineering expertise in enterprise-scale vulnerability operations. They must be self-directed, capable of independently planning work, reporting status, and ensuring quality technical delivery.

We are a company committed to creating diverse and inclusive environments where people can bring their full, authentic selves to work every day. We are an equal opportunity/affirmative action employer that believes everyone matters. Qualified candidates will receive consideration for employment regardless of their race, color, ethnicity, religion, sex (including pregnancy), sexual orientation, gender identity and expression, marital status, national origin, ancestry, genetic factors, age, disability, protected veteran status, military or uniformed service member status, or any other status or characteristic protected by applicable laws, regulations, and ordinances. If you need assistance and/or a reasonable accommodation due to a disability during the application or recruiting process, please send a request to HR@insightglobal.com.To learn more about how we collect, keep, and process your private information, please review Insight Global’s Workforce Privacy Policy: https://insightglobal.com/workforce-privacy-policy/.

Skills and Requirements

Engineer and optimize Tenable One across hybrid cloud and enterprise environments

  • Configure authenticated and non-authenticated web application scanning

  • Perform credentialed scanning across Linux, Windows, databases, network appliances, web apps, and cloud platforms

  • Maintain accurate attack surface visibility and exposure prioritization using Tenable One ASM and cloud-native discovery

  • Troubleshoot issues involving TLS/SSL, authentication, load balancers, reverse proxies, cloud networking, segmentation, and distributed scanning

  • Deploy compliance auditing aligned to IRS Safeguards/SCSEM, CIS Benchmarks, NIST standards, DISA STIG, and FedRAMP

  • Integrate Tenable platforms with CyberArk, Splunk, ServiceNow, AWS APIs, DataDog, and automation workflows

  • Support remediation validation, compliance reporting, audit readiness, and dashboard development

  • Resolve asset correlation/inventory issues across ephemeral, virtualized, and cloud infrastructure

Requirements

Bachelor’s degree in Cybersecurity, IT, CS, Engineering (or equivalent experience)

  • 8+ years enterprise vulnerability management, exposure management, or cybersecurity engineering experience

  • Hands-on expertise with Tenable One and cloud-native exposure platforms (e.g., WIZ, Prisma Cloud, Orca)

  • Strong proficiency in authenticated web app scanning and enterprise application testing workflows

  • Deep knowledge of vulnerability management, exposure management, attack surface discovery, and compliance auditing

  • Familiarity with IRS Safeguards/SCSEM, CIS, NIST frameworks, DISA STIG, FedRAMP

  • Experience with enterprise integrations, automation, and reporting

  • Strong cross-domain troubleshooting (cloud, infra, app, network)

  • Demonstrated project management, workflow discipline, client engagement, and consulting skills

  • Active Public Trust 6C or Top Secret (Reciprocity) or obtained last in the last 2 years. Candidates without background/clearances may be considered. AWS Certification:

  • Offensive security certifications such as: Offensive Security, SANS GIAC, eLearnSecurity, CREST

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on dejobs.org
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

2:40 min

Examining real-world zero-day exploits in enterprise applications

Sonya Moisset · World Congress 2023

1:36 min

Visualizing memory limits and isolating suspicious endpoints

Dina Matveev Dina Matveev · Europe 2026 Virtual

2:38 min

Establishing comprehensive monitoring and log management

Michael Eder +1 · LIVE

52 sec

Running persistent Linux environments directly on Windows

Ben Breard Ben Breard · World Congress 2025

1:08 min

Analyzing error logs and root causes using artificial intelligence

Nishil Patel Nishil Patel · World Congress 2025

3:10 min

Correlating dispersed logs using structured request tracing

Michael Eder +1 · LIVE

Videos

See all

Related articles

See all