Vulnerability Management Analyst (OS/Infrastructure)

Unity Technologies
Battle Creek, MI, United States
10 days ago
Apply on www.careerjet.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
5 years minimum
Working hours
Regular working hours

Tech stack

Cyber Security Information Systems Databases Identity and Access Management Software Vulnerability Management Data Logging Computer Networking Systems SC Clearance Vulnerability Analysis

Job description

We are seeking a Vulnerability Management Analyst (OS/Infrastructure) to join our team. You will serve as a Vulnerability Management Analyst responsible for proactively discovering, assessing, and remediating security risks across enterprise networks, operating systems, and applications. Additionally, you will collaborate with mission partners to prioritize remediation efforts and enforce strict adherence to DoD, Defense Logistics Agency (DLA), and DISA security compliance programs. This position is in Battle Creek, MI. This position may require CONUS and OCONUS travel. Responsibilities include, but are not limited to:

  • Vulnerability Discovery and Risk Assessment

  • Conducting targeted manual reviews and utilizing automated vulnerability scanners to identify systemic weaknesses.
  • Analyzing discovered vulnerabilities and accurately characterizing the operational risk to networks, operating systems, applications, databases, and other core information system components.
  • Engaging proactively with stakeholders and mission partners to facilitate seamless vulnerability discovery.
  • Remediation Coordination and Mitigation Strategy

  • Facilitating and coordinating comprehensive remediation efforts across multiple teams and system owners.
  • Prioritizing mitigation activities strictly based on characterized risk levels and potential impact.
  • Recommending appropriate, actionable technical measures to remediate identified vulnerabilities and mitigate overarching systemic risks.
  • Continuous Monitoring, Validation, and Reporting

  • Tracking ongoing system security postures and logging compliance issues throughout their lifecycle.
  • Generating comprehensive reports regarding security status and remediation progress for mission partners.
  • Validating that applied remedial actions are effective and successfully resolve the targeted vulnerabilities.
  • Strict DoD and Agency Compliance Enforcement

  • Ensuring the implementation of mandated security settings, specifically those required by Defense Information Systems Agency (DISA) Security Technical Implementation Guides (STIG).
  • Supporting and enforcing compliance with the overarching DoD Information Assurance Vulnerability Management (IAVM) program.
  • Validating that all systems and remediation activities adhere strictly to DLA and broader DoD information security policies.

Requirements

  • A minimum of five (5) years of relevant experience
  • DoD Approved 8570 Baseline Certification: Category IAM Level II
  • Hands-on experience working with vulnerability scanners
  • Understanding of vulnerabilities and remediation techniques

Clearance Requirements:

  • Must be a U.S. citizen
  • Must possess a current Top-Secret clearance.

About the company

UnityTec is an SBA-certified Woman-Owned Small Business (WOSB) delivering high-impact professional and technical services to government agencies. With deep expertise in Industrial and Enterprise Systems Modernization, FIAR (Financial Improvement and Audit Readiness), Industrial Facility Transformation, Program and Project Management, Enterprise Support and Consulting, and Advanced Analytics, we empower organizations to modernize operations and advance mission priorities. Our disciplined approach-grounded in dedicated talent, proactive planning, rigorous quality assurance, agile methodologies, cost-effective delivery, and uncompromising ethics-positions UnityTec as a trusted partner committed to achieving measurable, enduring results for our clients.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.careerjet.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

1:10 min

Exposing sensitive information through partial search logs

Dennis Schulz Dennis Schulz +1 · World Congress 2026 Europe

3:04 min

Database evolution and the funding behind vector databases

Erik Bamberg · LIVE

5:30 min

Identifying non-coding software vulnerabilities and organizational risks

Tino Sokic · World Congress 2023

1:56 min

Discovering incidents using logs, metrics, and traces

Nele Uhlemann · World Congress 2023

4:01 min

Managing application isolation via pluggable database models

Wei Hu Wei Hu · World Congress 2022

5:02 min

Reviewing deployment strategies and monitoring guidelines

Aleksandr Kalikov · LIVE

Videos

See all

Related articles

See all