1

Apprentice Qualys Vulnerability Management Jobs in Virginia

Security Engineer - Junior

Herndon, VA · On-site +1

$60K - $110K/yr

In this role, you will contribute to security reviews, vulnerability management, IAM governance ... Basic experience with vulnerability scanning tools (Tenable, Qualys, or equivalent) * Understanding ...

Cybersecurity Analyst I

Manassas, VA · Hybrid

$85K - $110K/yr

Support continuous monitoring and vulnerability management programs. * Document findings ... Qualys), endpoint protection (e.g. ESS Trellix, Defender), and cloud security in AWS, Azure, and ...

Cybersecurity Analyst I

Manassas, VA · On-site

$85K - $110K/yr

Support continuous monitoring and vulnerability management programs. * Document findings ... Qualys), endpoint protection (e.g. ESS Trellix, Defender), and cloud security in AWS, Azure, and ...

... vulnerability management, security documentation, incident coordination, or Security Impact Analysis. * Experience with vulnerability platforms such as Tenable Nessus, Qualys, or ACAS . * Experience ...

... vulnerability management, security documentation, incident coordination, or Security Impact Analysis. * Experience with vulnerability platforms such as Tenable Nessus, Qualys, or ACAS . * Experience ...

FedRAMP baselines, sorting Wiz/Qualys vulnerability alerts, basic CrowdStrike endpoint checks ... Support secrets management workflows within HashiCorp Vault, including basic credential generation ...

Analyze and interpret  vulnerability scan results  (e.g., from ACAS, Nessus, or Qualys) and assist in presenting the organization's vulnerability management posture to relevant stakeholders

Analyze and interpret vulnerability scan results (e.g., from ACAS, Nessus, or Qualys) and assist in presenting the organization's vulnerability management posture to relevant stakeholders * Perform ...

ISSO, Junior

Ashburn, VA · On-site

$90K - $125K/yr

... Security Vulnerability Management (ISVM) alerts. • Respond to email inquiries from PSPD ... Qualys). • Other duties as assigned Qualifications • Bachelor's degree in an IT-related field ...

... Vulnerability Management (ISVM) alerts. Respond to email inquiries from PSPD application teams ... DBProtect, Qualys). Other duties as assigned Qualifications Bachelor's degree in an IT-related ...

Showing results 21-40

Apprentice Qualys Vulnerability Management information

What is an apprentice Qualys Vulnerability Management?

An Apprentice Qualys Vulnerability Management professional is someone in an entry-level or learning position focused on identifying, assessing, and managing cybersecurity vulnerabilities using the Qualys platform. They typically assist with scanning IT systems, analyzing vulnerability reports, and collaborating with IT and security teams to help remediate threats. The apprentice role is designed to build foundational skills in vulnerability management, security analysis, and the use of Qualys tools under the guidance of experienced professionals.

What are the key skills and qualifications needed to thrive as an apprentice Qualys Vulnerability Management?

To thrive as an Apprentice Qualys Vulnerability Management, you need a foundational understanding of cybersecurity principles, IT networking, and basic vulnerability assessment, often supported by relevant coursework or certifications like CompTIA Security+. Familiarity with vulnerability management platforms (especially Qualys), ticketing systems, and common operating systems is typically required. Strong analytical thinking, attention to detail, and effective communication skills help you identify threats and collaborate with team members. These skills are crucial for accurately detecting vulnerabilities, prioritizing remediation efforts, and supporting the organization's overall security posture.

What are some common challenges faced by an apprentice in Qualys Vulnerability Management, and how can they be addressed?

As an Apprentice in Qualys Vulnerability Management, one common challenge is quickly becoming proficient with the Qualys platform and understanding its various modules. You may also find it challenging to interpret scan results and prioritize remediation efforts while balancing multiple tasks. To address these challenges, actively seek mentorship from experienced team members, participate in formal training sessions, and practice using the platform in a test environment. Regular communication with IT, security, and operations teams will also help you understand business priorities and improve your vulnerability management process.

What is the difference between Apprentice Qualys Vulnerability Management vs Security Analyst?

AspectApprentice Qualys Vulnerability ManagementSecurity Analyst
CertificationsBasic security or vulnerability management certifications, on-the-job trainingAdvanced certifications like CompTIA Security+, CISSP often preferred
Work EnvironmentEntry-level, hands-on with vulnerability scanning tools, supervisedMore independent, analyzing security data, incident response
Industry UsageUsed in organizations with vulnerability management programs, entry-level roleBroader security responsibilities, including threat analysis and policy enforcement

The Apprentice Qualys Vulnerability Management role focuses on learning and executing vulnerability scans using Qualys tools under supervision. In contrast, a Security Analyst has a broader scope, analyzing security threats, managing incidents, and implementing security measures. While both roles require foundational security knowledge, Security Analysts typically hold more advanced certifications and work independently on complex security issues.

What are the most commonly searched types of Qualys Vulnerability Management jobs in Virginia?

The most popular types of Qualys Vulnerability Management jobs in Virginia are:

What are popular job titles related to Apprentice Qualys Vulnerability Management jobs in Virginia?

For Apprentice Qualys Vulnerability Management jobs in Virginia, the most frequently searched job titles are:

What job categories do people searching Apprentice Qualys Vulnerability Management jobs in Virginia look for?

The top searched job categories for Apprentice Qualys Vulnerability Management jobs in Virginia are:

What cities in Virginia are hiring for Apprentice Qualys Vulnerability Management jobs?

Cities in Virginia with the most Apprentice Qualys Vulnerability Management job openings:

Infographic showing various Apprentice Qualys Vulnerability Management job openings in Virginia as of June 2026, with employment types broken down into 100% Full Time. Highlights an 86% Physical, 5% Hybrid, and 9% Remote job distribution.

Resident Engineer - CAASM (RunZero) | TS/SCI | Reston, VA with Security Clearance

Novacoast Federal

Reston, VA • On-site

$100 - $125/hr

Contractor

Posted 26 days ago


Job description

Active Top Secret / SCI Clearance Required
$100–$125/hour (W2) • 100% On-Site • Reston, VA • 12-Month Contract with a strong expectation of three annual renewals Key Technologies
RunZero • CAASM • ServiceNow CMDB • Python • REST APIs • AWS • Azure • Google Cloud Platform • Splunk • CrowdStrike • Microsoft Defender • SIEM/SOAR • EDR/XDR • OT/ICS • Zero Trust • RMF • FedRAMP • FISMA • Enterprise Networking About Novacoast
Novacoast is a trusted cybersecurity consulting and professional services firm that helps organizations strengthen their security posture through engineering excellence, technical expertise, and customer-focused delivery. We partner with commercial enterprises and government agencies to design, implement, optimize, and support cybersecurity solutions across cloud security, identity, cyber asset management, vulnerability management, security operations, and emerging cyber technologies. Position Overview Novacoast is seeking an experienced Cyber Asset Attack Surface Management (CAASM) Engineer with deep expertise in RunZero to support a classified federal customer in Reston, Virginia.
This is a highly technical, customer-facing consulting role where you'll serve as the embedded technical lead for the customer's Cyber Asset Attack Surface Management (CAASM) program. Rather than simply administering a security platform, you'll help shape the customer's enterprise asset visibility strategy by administering, optimizing, integrating, and continuously improving RunZero as its authoritative cyber asset visibility solution.
Working alongside security leadership, ISSOs, vulnerability management teams, network engineers, and system owners, you'll improve enterprise asset discovery, strengthen exposure management, and deliver actionable cyber asset intelligence across traditional IT, cloud, OT/ICS, IoT, mobile, and remote environments.
If you're passionate about cyber asset visibility, exposure management, automation, and helping organizations mature their cybersecurity programs, we'd love to hear from you.
What You'll Do Lead the Cyber Asset Attack Surface Management (CAASM) Program • Serve as the technical lead for the customer's Cyber Asset Attack Surface Management (CAASM) program. • Improve enterprise-wide visibility across IT, cloud, OT/ICS, IoT, mobile, and remote environments. • Discover unknown, unmanaged, rogue, orphaned, and high-risk assets while improving enterprise asset inventory accuracy. • Partner with security teams to strengthen exposure management, reduce cyber risk, and support Zero Trust initiatives.
Administer & Optimize RunZero • Serve as the organization's primary RunZero Subject Matter Expert. • Administer, optimize, and continuously improve RunZero organizations, Explorers, RBAC, dashboards, reporting, scan templates, scheduling, tagging strategies, and discovery workflows. • Monitor platform health, troubleshoot issues, improve discovery accuracy, and maximize enterprise asset visibility.
Integrations & Automation • Design and maintain integrations between RunZero and enterprise technologies including ServiceNow CMDB, vulnerability management, EDR/XDR, SIEM/SOAR, cloud, and identity platforms. • Develop automation using REST APIs, Python, PowerShell, Bash, JSON, and enterprise workflows to improve reporting, asset intelligence, and operational efficiency.
Customer Consulting & Technical Leadership • Serve as the embedded technical advisor supporting the customer's Cyber Asset Attack Surface Management strategy. • Partner with customer stakeholders, deliver technical guidance, develop operational documentation, and provide knowledge transfer that strengthens long-term program maturity. What Makes You a Great Fit
We're looking for candidates who bring experience in most of the following: • 5+ years of cybersecurity engineering, Cyber Asset Attack Surface Management (CAASM), cyber asset management, exposure management, vulnerability management, security operations, or technical consulting. • Hands-on experience administering RunZero or comparable CAASM platforms such as Axonius, Armis, Tenable, Qualys, Rapid7, Tanium, Wiz, or ServiceNow CMDB. • Strong understanding of enterprise networking concepts and protocols including TCP/IP, DNS, DHCP, SNMP, routing, firewalls, VPNs, and enterprise network discovery. • Experience building integrations and automation using REST APIs, Python, PowerShell, Bash, JSON, and enterprise platform integrations. • Experience supporting vulnerability management, asset discovery, exposure management, asset correlation, CVE/CVSS prioritization, and continuous monitoring. • Strong customer-facing consulting, communication, documentation, and presentation skills with the ability to work independently as an embedded Resident Engineer. • Active Top Secret / SCI security clearance is required. Bonus Points If You Have • Experience supporting Federal Civilian or Department of Defense environments, including RMF, FedRAMP, FISMA, Zero Trust, Continuous Monitoring, Authority to Operate (ATO), or CISA directives. • Experience with enterprise security technologies such as ServiceNow CMDB/ITOM, Microsoft Defender, CrowdStrike, SentinelOne, Splunk, Microsoft Entra ID, AWS, Azure, or Google Cloud Platform. • Experience supporting Operational Technology (OT/ICS) environments using technologies such as the Purdue Model, ISA/IEC 62443, NIST 800-82, Modbus, BACnet, DNP3, OPC UA, EtherNet/IP, or Profinet. • Experience integrating cybersecurity platforms with CMDBs, SIEM/SOAR solutions, identity platforms, cloud environments, or enterprise automation tools. • Experience leading customer engagements, technical workshops, architecture discussions, or enterprise cybersecurity modernization initiatives. • Industry certifications such as CISSP, CISM, Security+, CySA+, GCIH, GCIA, GICSP, CCNA, or cloud security certifications. • Previous experience serving as a Resident Engineer, Technical Consultant, Solutions Engineer, Professional Services Engineer, or Customer Success Engineer within a cybersecurity consulting organization. What Success Looks Like
In this role, you'll help the customer: • Improve enterprise-wide cyber asset visibility and inventory accuracy. • Reduce unknown, unmanaged, rogue, and orphaned assets across the enterprise. • Strengthen Cyber Asset Attack Surface Management (CAASM) and exposure management capabilities. • Increase CMDB accuracy through improved asset discovery and correlation. • Deliver meaningful operational dashboards and executive reporting. • Improve continuous monitoring, audit readiness, and Zero Trust initiatives. • Build sustainable operational processes through automation, documentation, and knowledge transfer.