Vulnerability Management Analyst

Cb
  • Columbus, Ohio
  • $110,000–$135,000 Per Year
  • Autofill and Review
8 days ago

Job Description

Responsive recruiter
Benefits:
  • 401(k)
  • 401(k) matching
  • Dental insurance
  • Health insurance
  • Paid time off
  • Profit sharing
  • Training & development
  • Tuition assistance
  • Vision insurance
SarelaTech is seeking an experienced Vulnerability Management Analyst (OS/Infrastructure) to support a Department of War (DoW) cybersecurity mission in Columbus, Ohio. This position will provide vulnerability management support for assigned information systems and computer networks, identifying vulnerabilities and assessing risk across operating systems, infrastructure, applications, databases, and other information system components.
The Vulnerability Management Analyst will engage with stakeholders and mission partners to facilitate vulnerability discovery through manual review and vulnerability scanning tools. The analyst will coordinate remediation activities, prioritize remediation efforts based on risk, recommend appropriate actions to remediate vulnerabilities and mitigate risk, and validate completed remediation actions.
The position will support implementation of required security configurations, including Defense Information Systems Agency (DISA) Security Technical Implementation Guides (STIGs), and support compliance with the DoD Information Assurance Vulnerability Management (IAVM) program. The analyst will track and report security and compliance issues and ensure compliance with DLA and DoD information security policy.
The position may also support ACAS vulnerability scanning and reporting, cyber hygiene reporting, vulnerability remediation prioritization, and coordination with system administrators, Program Managers, ISSMs, and other cybersecurity stakeholders.
Required Qualifications
  • Five (5) years of relevant experience.
  • Hands-on experience working with vulnerability scanners.
  • Understanding of cybersecurity vulnerabilities and appropriate remediation techniques.
  • Experience analyzing vulnerabilities and risk across operating systems, networks, applications, databases, or other information system components.
  • Familiarity with DISA Security Technical Implementation Guides (STIGs).
  • Familiarity with DoD vulnerability management and IAVM processes.
Certification
Must possess a current certification meeting DoD 8570/8140 IAT Level II requirements, such as:
  • CompTIA Security+
  • GIAC Security Essentials (GSEC)
  • GIAC Certified Incident Handler (GCIH)
  • GIAC Certified Forensic Analyst (GCFA)
  • GIAC Certified Enterprise Defender (GCED)
  • Systems Security Certified Practitioner (SSCP)
  • Certified Network Defender (CND)
  • Or an equivalent certification meeting DoD 8570/8140 IAT Level II requirements.
Security Clearance
  • Active DoD Secret security clearance.
Compensation: $110,000.00 - $135,000.00 per year

We are an equal opportunity employer. All aspects of employment including the decision to hire, promote, discipline, or discharge, will be based on merit, competence, performance, and business needs. We do not discriminate on any basis or status protected under federal, state, or local law

Numbers & Facts

LocationColumbus, Ohio
Salary$110,000–$135,000 Per Year

Skills

  • Analysis Skillsunmatched
  • Computer Network Defense (CND)unmatched
  • Computer Networksunmatched
  • Computer Securityunmatched
  • Defense Information Systems Agency (DISA)unmatched
  • Dental Insuranceunmatched
  • DoD Information Assurance - IAunmatched
  • Establish Prioritiesunmatched
  • GCFA - GIAC Certified Forensic Analystunmatched
  • GCIH - GIAC Certified Incident Handlerunmatched
  • GIAC - Global Information Assurance Certificationunmatched
  • GSEC - GIAC Security Essentials Certificationunmatched
  • Health Insuranceunmatched
  • Information Technology & Information Systemsunmatched
  • Information/Data Security (InfoSec)unmatched
  • Internet Securityunmatched
  • Legalunmatched
  • Maintain Complianceunmatched
  • Network Securityunmatched
  • Operating Systemsunmatched
  • Project/Program Managementunmatched
  • Riskunmatched
  • Risk Analysisunmatched
  • Risk Managementunmatched
  • SSCP - Systems Security Certified Practitionerunmatched
  • Security Monitoringunmatched
  • Security Policyunmatched
  • Systems Administration/Managementunmatched
  • Training/Teachingunmatched
  • Tuition Feesunmatched
  • United States Department of Defense (DoD)unmatched
  • Vision Planunmatched
  • Vulnerability Scannersunmatched

Be found by employers

5,500+ employers search our resume database daily. Add yours to get found by recruiters looking for candidates like you.

Level up your application

Professional resume templates

Browse dozens of recruiter approved resume templates, layouts and formats. Choose your favorite and make it your own in minutes.

Free resume templates

Free resume builder

Improve your existing resume or start from scratch and create a standout, ATS-friendly resume. Add job-specific content, download and apply.

Free resume builder