Full-Time Jr. Vulnerability Assessment Analyst

Integres, LLC is hiring a remote Full-Time Jr. Vulnerability Assessment Analyst. The career level for this job opening is Entry Level and is accepting Crownsville, MD based applicants remotely. Read complete job description before applying.

This job was posted 10 months ago and is likely no longer active. We encourage you to explore more recent opportunities on our site. However, you may still try your luck using 'Apply Now' link below. We recommend focusing on newer listings available here.

Integres, LLC

Job Title

Jr. Vulnerability Assessment Analyst

Posted

Career Level

Full-Time

Career Level

Entry Level

Locations Accepted

Crownsville, MD

Job Details

We are looking for a Jr. Vulnerability Assessment Analyst with project lead experience and hands-on engineering experience. The Vulnerability Assessment Analyst will be responsible for the planning, implementation, maintenance, and support of the vulnerability management program for a state-level department of IT.

Duties and Responsibilities:

  • Daily oversight of vulnerability management program
  • Serve as liaison between Security Assessment and Security Operation Center (SOC) functions on matters pertaining to vulnerability scanning for security assessment efforts
  • Plan, execute, monitor, control, and successfully close vulnerability management projects/tasks
  • Configure and schedule patch and secure configurations audit scan jobs (vulnerability scans)
  • Maintain configurations of patch and secure configurations scan jobs, i.e., asset lists, scan plugins, STIGs audit files, CIS Benchmarks audit files, and scan credentials
  • Troubleshoot and resolve failed patch and secure configurations scan jobs, i.e., missing credentials, asset list updates, firewall issues
  • Analyze patch and secure configurations audit scan results and identify and document technical and procedural vulnerability findings
  • Research resolution strategies/measures for identified vulnerability findings and provide remediation/mitigation recommendations
  • Identify false positive findings and determine and advise on the criteria for validating the findings i.e., required artifacts
  • Prepare vulnerability management reports on the status of patch and secure configuration audit scans and associated remediation efforts
  • Communicate status vulnerability management efforts to include regular scheduled reports and as well as ad hoc reports
  • Ensure the vulnerability management platform maintains updated versions of secure configurations scans audit files i.e., proprietary vendor audit files, STIGs audit files, CIS Benchmarks audit files
  • Ensure that vulnerability management services are operating as expected i.e., completeness of the of each scope scan jobs, timely completion of scan jobs, up-to-date patch audit plugins
  • Ensure proper functioning of integrations between the vulnerability management platform and other tools such as asset management and risk management platforms
  • Ensure and data updates from vulnerability management platforms to asset management and risk management platform are running as scheduled
  • Maintain knowledge of applicable cyber defense policies, regulations, and compliance documents specifically related to cyber defense auditing.
  • Development and implementation operational and technical vulnerability management policies
  • Defining, developing, implementing, and processes and procedures for to support and maintain vulnerability management program

Education and Years of Experience:

  • At least five (5) years of experience with NIST Risk Management Framework (RMF) supporting technical assessment (vulnerability scans) of control implementations and continuous monitoring post-system Authority to Operate (ATO)
  • At least three (3) years of hands-on experience in LAN Administration i.e., Hands-on administration of Windows OS and Linux OS, and hands-on basics administration of routers, switches, and firewalls.
  • At least two (2) years of hands-on experience with Tenable Security Center/ Nessus Scanners i.e., creating, maintaining, and running scan jobs and analyzing scan results
  • At least two (2) years of hands-on experience executing, monitoring and controlling, and closing security assessment projects

Associates or bachelor’s degree from an accredited college or university with a major in Computer Science, Information Systems, Engineering or related scientific or technical discipline.

Ability to work outside of regular business hours, the role may require on-call support after regular business hours or weekends.

Required Skills/Certifications:

  • At least 1 security management industry certifications such as Sec+, CySA+, etc.
  • Self-starter, able to gather requirements, plan, execute system deployment efforts.
  • Able to perform conduct vulnerability assessment of technical security controls, identify and validate findings, research resolutions, and provide remediation/mitigation recommendations.
  • LAN administration experience, particularly with Windows OS and Linux OS.
  • Experience with the vulnerability management tools such as Tenable Security Center/Nessus Scanners, Web Inspect, DB Protect etc.
  • Experience with Governance, Risk, and Compliance (GRC) platforms such as RSA Archer, ServiceNow GRC, CSAM

Customer-oriented with excellent issue follow-through and resolution abilities. Excellent written and oral communication, and presentation skills. Ability to effectively work both autonomously as well as on a team. Outstanding interpersonal skills, strong work ethic, and self-motivated. Utilize tools and analytical skills to plan and execute technical changes. Relevant industry certification. Integres offers competitive salaries bolstered by a comprehensive benefits package.

FAQs

What is the last date for applying to the job?

The deadline to apply for Full-Time Jr. Vulnerability Assessment Analyst at Integres, LLC is 5th of March 2025 . We consider jobs older than one month to have expired.

Which countries are accepted for this remote job?

This job accepts [ Crownsville, MD ] applicants. .

Related Jobs You May Like

Cortex Cloud Sales Specialist - Public Sector

Paris, France
1 day ago
Channel Partnerships
Cloud Solutions
Customer Relationship Management
Palo Alto Networks
Full-Time
Experienced

Senior Product Manager (Security Domain)

São Paulo, Brazil
1 day ago
Agile Methodologies
Product Management
Security Management
Sigma Software
Full-Time
Experienced

Senior Director, Technical Services (NAM)

Plano, TX
1 day ago
Customer Success
Cybersecurity
Stakeholder Management
Palo Alto Networks
Full-Time
Senior Manager
YEAR $270000 - $315000

Sr. Ethics & Compliance Manager- Global Public Sector

Ottawa, Canada
1 day ago
Canadian Contract Security
Government Contract Compliance
Policy Development
ServiceNow
Full-Time
Manager

Solutions Engineer, Identity

Santa Clara, CALIFORNIA
1 day ago
IAM
IGA
REST APIs
Cyberark
Full-Time
Experienced
YEAR $107000 - $158000

Principal Product Manager - Security Center

Santa Clara, CALIFORNIA
1 day ago
AI Integration
Cloud Security
Product Management
ServiceNow
Full-Time
Manager

Senior Safety & Security Officer

Austin, TX
1 day ago
FRA System Safety For Passenger Rail
FTA System Safety And Security Certification (SSC)
PTASP Development
AECOM
Full-Time
Experienced

Sr. Manager, Global Certifications (Federal)

Santa Clara, CA
1 day ago
Cloud Security
DoD SRG
FedRAMP
Palo Alto Networks
Full-Time
Senior Manager
YEAR $180000 - $220000

IAM Engineering Specialist

São Paulo, Brazil
1 day ago
Access Control
Identity Governance And Administration (IGA)
One Identity
Experian
Full-Time
Experienced

Accreditation Specialist Lead (Remote)

United States
1 day ago
HIPAA
ISO 27001
PCI
Experian
Full-Time
Experienced

Embedded Senior Analyst, Threats and Intelligence

Remote
1 day ago
Data Analysis
OSINT
Security Investigations
Sibylline Ltd
Full-Time
Experienced
YEAR $125000 - $125000

Embedded Intelligence Analyst

Remote
1 day ago
Intelligence Analysis
Risk Assessment
Security Investigations
Sibylline Ltd
Full-Time
Experienced
YEAR $76858 - $76858

Looking for a specific job?