1

Cyber Consulting Jobs in Virginia (NOW HIRING)

As a Consultant - Cyber Defense and Resilience, you will support the design and deployment of security operations solutions that help clients improve monitoring, detection, response, and automation ...

Cyber Analyst (22584)

Chantilly, VA · On-site

$140K - $165K/yr

Cyber Analyst will serve as a consultant on all internet/cyber topics, to include meetings, ad-hoc questions, targeting projects, and red team projects. Cyber Analyst will be expected to utilize ...

Qualifications Required: * 2+ years of analytics consulting or industry experience * 2+ years of ... Work you'll do As a Cyber SecOps Consultant on the Cyber Defense & Resilience team, you will be ...

Qualifications Required: * 2+ years of analytics consulting or industry experience * 2+ years of ... Work you'll do As a Cyber SecOps Consultant on the Cyber Defense & Resilience team, you will be ...

D2 Consulting is a Veteran-Owned Small Business focused on national security. They are seeking a Cyber Data Engineer to build and manage data pipelines and systems that support cybersecurity ...

next page

Showing results 1-20

Cyber Consulting information

What is the difference between Cyber Consulting vs Cyber Security Analyst?

AspectCyber ConsultingCyber Security Analyst
Required CredentialsCertifications like CISSP, CISA, CISM; relevant degreesCertifications like CompTIA Security+, CISSP; relevant degrees
Work EnvironmentAdvisory roles, client sites, consulting firmsIn-house security teams, IT departments
Employer & Industry UsageConsulting firms, corporations, government agenciesOrganizations with dedicated security teams
Common Search & ComparisonFocuses on strategic security solutions and risk managementFocuses on monitoring, threat detection, and incident response

Cyber Consulting involves advising organizations on security strategies, compliance, and risk management, often working with multiple clients. Cyber Security Analysts focus on implementing security measures, monitoring systems, and responding to threats within a specific organization. While both roles require similar certifications and work in the cybersecurity industry, their responsibilities and work environments differ significantly.

What job categories do people searching Cyber Consulting jobs in Virginia look for? The top searched job categories for Cyber Consulting jobs in Virginia are:
What cities in Virginia are hiring for Cyber Consulting jobs? Cities in Virginia with the most Cyber Consulting job openings:
Infographic showing various Cyber Consulting job openings in Virginia as of August 2026, with employment types broken down into 85% Full Time, 10% Part Time, and 5% Contract. Highlights an 85% Physical, 5% Hybrid, and 10% Remote job distribution.

Vulnerability Management Subject Matter Expert

Guidehouse

Mclean, VA • On-site

Full-time

Medical, Dental, Vision, Life, Retirement

Re-posted 13 days ago


Guidehouse rating

7.7

Company rating: 7.7 out of 10

Based on 27 frontline employees who took The Breakroom Quiz

42nd of 72 rated business consultants


Job description

Job Family:
Cyber Consulting
Travel Required:
Up to 10%
Clearance Required:
Ability to Obtain Public Trust
What You Will Do:
Guidehouse is seeking a seasoned Vulnerability Management Subject Matter Expert (SME) to serve as a trusted advisor to federal clients. The Associate Director focuses on strategic guidance, cross-organizational coordination, and maturing enterprise vulnerability and endpoint management capabilities. This is not a project management role. The SME will provide expert advisory support across vulnerability management and endpoint tooling, with emphasis on platforms such as BigFix, Tenable, SCCM, and/or Qualys. The ideal candidate brings hands-on experience with enterprise vulnerability tooling and has supported modernization, tooling transitions, and enterprise-wide capability uplift. The enterprise is a large, federated organization, with multiple environments and technology, with over 100k endpoints. The individual will help guide clients through improving processes, strengthening reporting and remediation pathways, and driving consistent adoption across numerous sub-organizations.
• Serve as a trusted advisor to federal clients on maturing vulnerability management and endpoint security capabilities.
• Provide expert guidance on configuration, optimization, and effective use of enterprise vulnerability management tools (BigFix, Tenable, SCCM, and/or Qualys).
• Support the modernization and evolution of enterprise vulnerability and endpoint management environments, including tool transitions, capability enhancements, and integration with broader cyber programs.
• Strengthen enterprise vulnerability workflows by advancing prioritization, remediation coordination, communications, and reporting consistency.
• Engage stakeholders across a large, federated organization, building alignment and driving sustained adoption of enterprise vulnerability management practices.
• Translate complex technical topics into clear, actionable insights for leadership.
• Partner with cyber, IT infrastructure, application teams, and senior stakeholders to improve remediation outcomes and reduce enterprise risk.
• Contribute thought leadership, mentor junior staff, and support practice development.
What You Will Need:
• U.S. Citizenship and the ability to obtain/maintain a federal security clearance.
• Bachelor's Degree plus minimum of nine (9) years of cybersecurity experience with deep specialization in vulnerability management and endpoint security.
• Demonstrated experience with enterprise vulnerability tools (BigFix, Tenable, SCCM, and/or Qualys) and architecting solutions.
• Experience supporting enterprise modernization initiatives, system/tool transitions, or the evolution of large-scale cyber capabilities.
• Ability to navigate large, federated organizations and work with multiple sub-organizations.
• Strong communication and advisory skills, with the ability to shape strategy and influence stakeholders.
What Would Be Nice To Have:
• Experience linking vulnerability management with ICAM, Zero Trust, continuous monitoring, or RMF-aligned cyber programs
• Familiarity with federal cybersecurity standards and large-scale IT environments.
• Prior consulting or advisory experience in federal civilian or defense environments.
• Relevant certifications (Security+, CISSP, vendor-specific tool certifications).
What We Offer:
Guidehouse offers a comprehensive, total rewards package that includes competitive compensation and a flexible benefits package that reflects our commitment to creating a diverse and supportive workplace.
Benefits include:
  • Medical, Rx, Dental & Vision Insurance
  • Personal and Family Sick Time & Company Paid Holidays
  • Position may be eligible for a discretionary variable incentive bonus
  • Parental Leave and Adoption Assistance
  • 401(k) Retirement Plan
  • Basic Life & Supplemental Life
  • Health Savings Account, Dental/Vision & Dependent Care Flexible Spending Accounts
  • Short-Term & Long-Term Disability
  • Student Loan PayDown
  • Tuition Reimbursement, Personal Development & Learning Opportunities
  • Skills Development & Certifications
  • Employee Referral Program
  • Corporate Sponsored Events & Community Outreach
  • Emergency Back-Up Childcare Program
  • Mobility Stipend

About Guidehouse
Guidehouse is an Equal Opportunity Employer-Protected Veterans, Individuals with Disabilities or any other basis protected by law, ordinance, or regulation.
Guidehouse will consider for employment qualified applicants with criminal histories in a manner consistent with the requirements of applicable law or ordinance including the Fair Chance Ordinance of Los Angeles and San Francisco.
If you have visited our website for information about employment opportunities, or to apply for a position, and you require an accommodation, please contact Guidehouse Recruiting at 1-571-633-1711 or via email at RecruitingAccommodation@guidehouse.com. All information you provide will be kept confidential and will be used only to the extent required to provide needed reasonable accommodation.
All communication regarding recruitment for a Guidehouse position will be sent from Guidehouse email domains including @guidehouse.com or guidehouse@myworkday.com. Correspondence received by an applicant from any other domain should be considered unauthorized and will not be honored by Guidehouse. Note that Guidehouse will never charge a fee or require a money transfer at any stage of the recruitment process and does not collect fees from educational institutions for participation in a recruitment event. Never provide your banking information to a third party purporting to need that information to proceed in the hiring process.
If any person or organization demands money related to a job opportunity with Guidehouse, please report the matter to Guidehouse's Ethics Hotline. If you want to check the validity of correspondence you have received, please contact recruiting@guidehouse.com. Guidehouse is not responsible for losses incurred (monetary or otherwise) from an applicant's dealings with unauthorized third parties.
Guidehouse does not accept unsolicited resumes through or from search firms or staffing agencies. All unsolicited resumes will be considered the property of Guidehouse and Guidehouse will not be obligated to pay a placement fee.

What Guidehouse employees say

Pay

Benefits

Hours and flexibility

Workplace

Get the full story on Breakroom