System One logo

Senior Vulnerability Management Engineer

System One

  • Bethesda, MD
  • Today
  • $140,000–$150,000 Per Year
System One
Want to know if you’re a fit?
Upload your resume and let our AI show you.

Skills

  • Analysis Skillsunmatched
  • CISA - Certified Information Systems Auditorunmatched
  • CISM - Certified Information Security Managerunmatched
  • CISSP - Certified Information Systems Security Professionalunmatched
  • Communication Skillsunmatched
  • CompTIA - Computing Technology Industry Associationunmatched
  • Computer Scienceunmatched
  • Computer Securityunmatched
  • Department of Health and Human Servicesunmatched
  • Environmental Managementunmatched
  • Establish Prioritiesunmatched
  • FISMA - Federal Information Security Management Actunmatched
  • GIAC - Global Information Assurance Certificationunmatched
  • Information Technology & Information Systemsunmatched
  • Internet Securityunmatched
  • Mentoringunmatched
  • Metricsunmatched
  • Microsoft Product Familyunmatched
  • National Institutes of Health (NIH)unmatched
  • Outsourcingunmatched
  • Reporting Dashboardsunmatched
  • Reporting Skillsunmatched
  • Riskunmatched
  • Risk Analysisunmatched
  • Security Clearanceunmatched
  • Service Deliveryunmatched
  • Technical Leadershipunmatched
  • U.S. National Institute of Standards and Technology (NIST)unmatched
  • Vulnerability Scannersunmatched

Description

Job Title: Senior Vulnerability Management Engineer / Lead
Location: Bethesda, Maryland
Type: Direct Hire / Perm
Work Model: 99% remote with occasional onsite for meetings
Security Clearance: Public Trust


Position Summary
The Senior Vulnerability Management Engineer leads enterprise vulnerability management activities across NIH/OD-managed environments, providing technical leadership for vulnerability identification, risk prioritization, remediation coordination, reporting, and compliance.

Key Responsibilities

  • Lead enterprise vulnerability management operations and continuous program improvement.
  • Manage and optimize vulnerability scanning infrastructure and tools.
  • Oversee credentialed host, network, application, database, and endpoint vulnerability scanning.
  • Analyze scan results and prioritize vulnerabilities based on risk and federal requirements.
  • Lead vulnerability discovery, validation, mitigation, remediation tracking, and closure.
  • Ensure critical vulnerabilities are escalated and tracked through resolution.
  • Monitor the CISA Known Exploited Vulnerabilities (KEV) Catalog and other authoritative sources.
  • Coordinate remediation activities with system owners and technical teams.
  • Provide risk analysis and technical recommendations for identified vulnerabilities.
  • Support specialized vulnerability assessments for High Value Assets.
  • Develop reports, dashboards, metrics, and executive briefings.
  • Ensure reporting complies with NIH, HHS, CISA, FISMA, and HVA requirements.
  • Improve tool tuning, asset visibility, and reporting accuracy.
  • Mentor mid-level and junior staff.

Minimum Qualifications
  • Bachelor's degree in Cybersecurity, Computer Science, Information Technology, Engineering, or related field.
  • 8–12 years of cybersecurity experience, including at least 5 years in enterprise vulnerability management.
  • Experience with Tenable, Qualys, Rapid7, Microsoft Defender Vulnerability Management, or similar tools.
  • Knowledge of CVEs, CVSS, KEVs, NIST guidance, FISMA, CISA directives, and federal vulnerability remediation requirements.
  • Strong communication and reporting skills.

Recommended Certifications
  • CISSP
  • CISM
  • GIAC Certified Enterprise Defender (GCED)
  • GIAC Certified Vulnerability Assessor (GCVA)
  • CompTIA CySA+
  • Tenable Certified Professional
  • Qualys VMDR Certification

System One, and its subsidiaries including Joulé and Mountain Ltd., are leaders in delivering outsourced services and workforce solutions across North America. We help clients get work done more efficiently and economically, without compromising quality. System One not only serves as a valued partner for our clients, but we offer eligible employees health and welfare benefits coverage options including medical, dental, vision, spending accounts, life insurance, voluntary plans, as well as participation in a 401(k) plan.

System One is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex (including pregnancy, childbirth, or related medical conditions), sexual orientation, gender identity, age, national origin, disability, family care or medical leave status, genetic information, veteran status, marital status, or any other characteristic protected by applicable federal, state, or local law.

#M-2
#LI-CB5
Ref: #856-Baltimore-S1


Numbers & Facts

LocationBethesda, MD
IndustryStaffing/Employment Agencies
Salary$140,000–$150,000 Per Year
Company Size2,500 to 4,999 employees
Websitehttps://systemone.com

About Company

Every day, System One focuses on services and solutions that require a high degree of specialization, in-demand technical skills, and large-scale operational expertise. We are essential partners to those on the front lines of our nation’s most critical infrastructure, technology, and life sciences initiatives. 

Founded more than 40 years ago as a staffing partner to the engineering industry, today System One is a diversified organization operating in over 50 locations and putting more than 9,000 people to work in the United States, Canada, and the United Kingdom.

Similar Jobs

See more jobs