> Markdown version of [/jobs/ext/2253526-remote-senior-vulnerability-exposure-management-engineer](https://www.wearedevelopers.com/jobs/ext/2253526-remote-senior-vulnerability-exposure-management-engineer). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # REMOTE Senior Vulnerability & Exposure Management Engineer - **Company:** Insight Global - **Location:** Fairfax County, VA, United States - **Experience:** Expert - **Contract:** Permanent contract - **Skills:** Microsoft Windows, Application Programming Interfaces (APIs), Amazon Web Services, User Authentication, Cloud Computing, Cloud Engineering, Cyber Security, Databases, Linux, Networking Hardware, Software Vulnerability Management, Web Applications, Datadog, Transport Layer Security, Enterprise Software Applications, Load Balancing, Cyberark, HybridCloud, CIS Benchmarks, Prisma Cloud Platform, Splunk, Servicenow - **Published:** August 26, 2026 - **Apply:** https://dejobs.org/x/x/83A11621BBA443FDA1AB3C3CF9EBAB56/job/ ## About the Role Bachelor's degree in Cybersecurity, IT, CS, Engineering (or equivalent experience) * 8+ years enterprise vulnerability management, exposure management, or cybersecurity engineering experience * Hands-on expertise with Tenable One and cloud-native exposure platforms (e.g., WIZ, Prisma Cloud, Orca) * Strong proficiency in authenticated web app scanning and enterprise application testing workflows * Deep knowledge of vulnerability management, exposure management, attack surface discovery, and compliance auditing * Familiarity with IRS Safeguards/SCSEM, CIS, NIST frameworks, DISA STIG, FedRAMP * Experience with enterprise integrations, automation, and reporting * Strong cross-domain troubleshooting (cloud, infra, app, network) * Demonstrated project management, workflow discipline, client engagement, and consulting skills * Active Public Trust 6C or Top Secret (Reciprocity) or obtained last in the last 2 years. Candidates without background/clearances may be considered. AWS Certification: * Offensive security certifications such as: Offensive Security, SANS GIAC, eLearnSecurity, CREST ## Description Peraton is seeking a Senior Vulnerability & Exposure Management Engineer to lead enterprise vulnerability management, exposure management, web application scanning, and compliance auditing across AWS cloud environments. This role is responsible for engineering, sustaining, and optimizing Tenable One (TVM, TEM, ASM, WAS) and ensuring reliable, high-quality scanning across AWS cloud services, operating systems, databases, and enterprise applications in a highly regulated federal environment. The ideal candidate demonstrates strong client-facing presence, concise communication, project management discipline, and deep hands-on engineering expertise in enterprise-scale vulnerability operations. They must be self-directed, capable of independently planning work, reporting status, and ensuring quality technical delivery. We are a company committed to creating diverse and inclusive environments where people can bring their full, authentic selves to work every day. We are an equal opportunity/affirmative action employer that believes everyone matters. Qualified candidates will receive consideration for employment regardless of their race, color, ethnicity, religion, sex (including pregnancy), sexual orientation, gender identity and expression, marital status, national origin, ancestry, genetic factors, age, disability, protected veteran status, military or uniformed service member status, or any other status or characteristic protected by applicable laws, regulations, and ordinances. If you need assistance and/or a reasonable accommodation due to a disability during the application or recruiting process, please send a request to HR@insightglobal.com.To learn more about how we collect, keep, and process your private information, please review Insight Global's Workforce Privacy Policy: https://insightglobal.com/workforce-privacy-policy/. Skills and Requirements Engineer and optimize Tenable One across hybrid cloud and enterprise environments * Configure authenticated and non-authenticated web application scanning * Perform credentialed scanning across Linux, Windows, databases, network appliances, web apps, and cloud platforms * Maintain accurate attack surface visibility and exposure prioritization using Tenable One ASM and cloud-native discovery * Troubleshoot issues involving TLS/SSL, authentication, load balancers, reverse proxies, cloud networking, segmentation, and distributed scanning * Deploy compliance auditing aligned to IRS Safeguards/SCSEM, CIS Benchmarks, NIST standards, DISA STIG, and FedRAMP * Integrate Tenable platforms with CyberArk, Splunk, ServiceNow, AWS APIs, DataDog, and automation workflows * Support remediation validation, compliance reporting, audit readiness, and dashboard development * Resolve asset correlation/inventory issues across ephemeral, virtualized, and cloud infrastructure ## Related Videos - [Docker network without Docker](https://www.wearedevelopers.com/videos/1418-docker-network-without-docker) - [Our journey with Spring Boot in a microservice architecture](https://www.wearedevelopers.com/videos/511-our-journey-with-spring-boot-in-a-microservice-architecture) - [Debugging in the Dark](https://www.wearedevelopers.com/videos/1658-debugging-in-the-dark) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Docker exec without Docker](https://www.wearedevelopers.com/videos/1094-docker-exec-without-docker) - [Hacking MSSQL on Cloud. All of them. How I became sysadmin on Azure, AWS, GCP and Alibaba.](https://www.wearedevelopers.com/videos/100339-hacking-mssql-on-cloud-all-of-them-how-i-became-sysadmin-on-azure-aws-gcp-and-alibaba) ## Related Articles - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities) - [Walking Into The Era of Supply Chain Risks](https://www.wearedevelopers.com/magazine/106-walking-into-the-era-of-supply-chain-risks) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [The Overflow: Security and Privacy](https://www.wearedevelopers.com/magazine/715-the-overflow-security-and-privacy) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Fully Remote Software Engineer Jobs](https://www.wearedevelopers.com/magazine/447-fully-remote-software-engineer-jobs)