> Markdown version of [/jobs/ext/2600436-cybersecurity-consultant](https://www.wearedevelopers.com/jobs/ext/2600436-cybersecurity-consultant). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Cybersecurity Consultant - **Company:** Guidehouse Inc. - **Location:** Bethesda, MD, United States - **Experience:** Experienced - **Salary:** $85,000.0 - $141,000.0 - **Contract:** Permanent contract - **Skills:** Application Integration Architecture, CompTIA Security+, Cyber Security, Open Web Application Security, Power BI, Secure Coding, Software Vulnerability Management, Mitre Att&ck, Atlassian Tools, Splunk, Data Pipelines, Plan of Action and Milestones - **Published:** August 6, 2026 - **Apply:** https://www.indeed.com/viewjob?jk=32bcda00f5ba0b9e ## About the Role * Must be able to OBTAIN and MAINTAIN a Federal or DoD "PUBLIC TRUST"; candidates must obtain approved adjudication of their PUBLIC TRUST prior to onboarding with Guidehouse. Candidates with an ACTIVE PUBLIC TRUST or SUITABILITY and maintain an active HHS/NIH clearance are preferred. * Minimum of THREE (3) years of cybersecurity or IT risk management experience, candidates with experience focused on vulnerability management and/or secure configuration are preferred. * Minimum of a Bachelors Degree is required. * Tools: Hands-on experience with Invicti, Splunk, and Atlassian tools (Jira & Confluence) * Knowledge: Deep understanding of NIST SP 800-53, FISMA requirements, and OWASP Top 10. * Certifications: Active CompTIA Security+ CE preferred; CISSP, CEH, or cloud-related certifications are a plus. * Soft Skills: Strong communication and analytical thinking; ability to manage multiple concurrent priorities and deadlines. What Would Be Nice To Have: * Experience developing automated data pipelines or integrating APIs into Power BI dashboards. * Knowledge of MITRE ATT&CK framework and vulnerability prioritization methodologies (e.g., EPSS, CVSS v3). * Prior experience supporting a federal agency or working in a Public Health environment. ## Description * Lead vulnerability management efforts across a portfolio of client applications, including analyzing findings, identifying affected versions, providing remediation guidance, assigning issues to teams, and tracking vulnerabilities through closure. * Build and maintain strong working relationships with business, engineering, and security teams to validate fixes, resolve blockers, and support timely remediation. * Support POA&M activities, patching timelines, remediation deadlines, and related federal cybersecurity and compliance requirements. * Develop and maintain automated vulnerability reports, dashboards, KPIs, and metrics to track remediation progress, compliance gaps, and asset risk. * Prepare reports and briefings for leadership and federal oversight stakeholders. * Monitor suspicious activity and security alerts in Splunk and coordinate follow-up actions with relevant teams. * Support secure development efforts through security documentation, secure coding guidance, annual training support, and evaluation of security tools and processes. * Provide cyber subject matter expertise during information security audits and assessments. ## Related Videos - [Our journey with Spring Boot in a microservice architecture](https://www.wearedevelopers.com/videos/511-our-journey-with-spring-boot-in-a-microservice-architecture) - [Beyond Dashboards: Fixing Text-to-SQL with Semantic RAG](https://www.wearedevelopers.com/videos/2036-beyond-dashboards-fixing-text-to-sql-with-semantic-rag) - [Cyber Sleuth: Finding Hidden Connections in Cyber Data](https://www.wearedevelopers.com/videos/893-cyber-sleuth-finding-hidden-connections-in-cyber-data) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [REST, GraphQL, gRPC, and more: A comparison of modern API styles](https://www.wearedevelopers.com/videos/100247-rest-graphql-grpc-and-more-a-comparison-of-modern-api-styles) - [Data Analytics with Microsoft Fabric: End-to-End Use Case with Data Agents](https://www.wearedevelopers.com/videos/1547-data-analytics-with-microsoft-fabric-end-to-end-use-case-with-data-agents) ## Related Articles - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities) - [The Overflow: Security and Privacy](https://www.wearedevelopers.com/magazine/715-the-overflow-security-and-privacy) - [Building Security Champions](https://www.wearedevelopers.com/magazine/87-building-security-champions)