Cyber Vulnerability Management SME

TEKSYSTEMS INC.
Fort Liberty, NC, United States
29 days ago
Apply on www.clearancejobs.com
Prepare application

Role details

Contract type
Contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
10 years minimum
Working hours
Regular working hours

Tech stack

Amazon Web Services Data Analysis Antivirus Softwares Microsoft Azure Cloud Computing CompTIA Security+ Cyber Security Computer Telephony Integration Linux Intrusion Detection and Prevention Log Analysis Red Hat Enterprise Linux
+10 more
Software Vulnerability Management EndPointSecurity Google Cloud Cloud Platform System Azure Security Center ArcSight Event Correlation Splunk Servicenow Plan of Action and Milestones Vulnerability Analysis

Job description

The SME Information Security Analyst (Vulnerability Management) serves as the technical lead for deploying, configuring, and maintaining the enterprise vulnerability management environment. This position focuses on optimizing Tenable Security Center within Linux/Red Hat infrastructures and ensuring compliance with DISA STIGs, NSA guidelines, and organizational cybersecurity policies. The analyst supports Enterprise Communications and hybrid environments across AWS, Microsoft Azure, and Google Cloud. This role requires deep technical expertise, strong analytical skills, and collaboration with engineering, cybersecurity, and leadership teams across the command., Vulnerability Management Operations

  • Install, configure, and maintain Tenable Security Center and scanning components on Linux/Red Hat platforms.
  • Ensure vulnerability management systems meet DISA STIG, NSA, and cybersecurity policy requirements.
  • Manage credentialed and non-credentialed scans, schedules, asset groups, and plugin updates.
  • Troubleshoot scanner/system issues to ensure accurate and continuous vulnerability detection.

Analysis & Reporting

  • Analyze scan results to identify weaknesses, misconfigurations, and emerging threats.
  • Validate findings, assess severity, and prioritize remediation based on mission needs.
  • Produce recurring reports, dashboards, and metrics for Command Leadership.
  • Translate complex technical findings into clear remediation guidance for engineering teams.

Mitigation Support & POA&M Management

  • Provide expert guidance on mitigation, configuration hardening, and patching strategies.
  • Support development and maintenance of POA&Ms for unresolved vulnerabilities.
  • Track remediation progress to ensure compliance with published cyber directives.

Enterprise Communications Support

  • Support enterprise communications systems and services to ensure secure hybrid operations.
  • Assist with monitoring and securing cloud/on-prem workloads using enterprise security tools.
  • Collaborate with cloud, network, and communications teams to ensure secure configurations and continuous monitoring.

Threat Detection & Response

  • Support threat detection using Microsoft Defender for Endpoint and cloud environments including AWS, Azure, and Google Cloud.
  • Conduct log analysis, event correlation, and investigation of suspicious activity.
  • Assist with incident reporting, documentation, and escalation procedures.
  • Contribute to detection rule tuning, alert fidelity improvements, and endpoint hardening.
  • Identify coverage gaps and recommend improvements; document findings in After-Action Reports with SOC, EPT, and CTI partners.
  • Develop guardrails, configuration baselines, and automation artifacts to reduce vulnerability recurrence.
  • Support surge response activities through rapid scanning, validation, and remediation assistance.

Requirements

  • Technical Training, Certification(s) or Degree with 10+ years of experience
  • Splunk or Elastic for Cloud
  • Endpoint Detection & Response (EDR) tools
  • Antivirus platforms
  • ServiceNow, Remedy, or similar ticketing systems

Compliance / Certifications (Preferred):

  • DoD 8570 / 8140 compliant certification
  • CompTIA Security+
  • CySA+
  • Network+
  • CASP+
  • GIAC certifications (GCIH, GCFA, etc.)

Security Clearance Level: TS/SCI Required, · This position requires an active DoD Clearance (Secret, Top Secret, Top Secret/SCI) or the ability to be obtain an (Interim Secret, Interim Top Secret) · Because an active or interim DoD clearance is required, U.S. Citizenship is required

Benefits & conditions

Eligibility requirements apply to some benefits and may depend on your job classification and length of employment. Benefits are subject to change and may be subject to specific elections, plan, or program terms. If eligible, the benefits available for this temporary role may include the following:

  • Medical, dental & vision
  • Critical Illness, Accident, and Hospital
  • 401(k) Retirement Plan - Pre-tax and Roth post-tax contributions available
  • Life Insurance (Voluntary Life & AD&D for the employee and dependents)
  • Short and long-term disability
  • Health Spending Account (HSA)
  • Transportation benefits
  • Employee Assistance Program
  • Time Off/Leave (PTO, Vacation or Sick Leave)

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.clearancejobs.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

4:01 min

Finding personal fulfillment in the cybersecurity industry

LIVE

56 sec

Integrating automated approval workflows into the portal

Markus Eisele Markus Eisele · World Congress 2025

2:38 min

Establishing comprehensive monitoring and log management

Michael Eder +1 · LIVE

52 sec

Running persistent Linux environments directly on Windows

Ben Breard Ben Breard · World Congress 2025

2:27 min

Establishing a simulated technical environment for the workflow demo

Tobias Dunn-Krahn · LIVE

3:10 min

Correlating dispersed logs using structured request tracing

Michael Eder +1 · LIVE

Videos

See all

Related articles

See all