1

Director Vulnerability Management Jobs in Washington

Manage the POAM process for Vulnerabilities and STIG violations. * Analyze scan results to identify ... direct ACAS or Tenable experience. * Working knowledge of DISA STIGs, vulnerability risk levels ...

Vulnerability Management to support the Air Force National Capital Region IT Services program. The ... direct ACAS or Tenable experience. * Working knowledge of DISA STIGs, vulnerability risk levels ...

Requirements • Minimum 6 years of experience in systems analysis, vulnerability management ... Criminal history may have a direct, adverse, and negative relationship with some of the material ...

next page

Showing results 1-20

Director Vulnerability Management information

What does a director vulnerability management do?

A Director of Vulnerability Management oversees an organization's efforts to identify, assess, and remediate security vulnerabilities in its systems and networks. This role involves leading a team of security professionals, developing vulnerability management strategies, ensuring compliance with industry standards, and collaborating with IT and business units to mitigate risks. The director also communicates security risks to executive leadership and helps prioritize remediation efforts based on potential business impact.

What are the key skills and qualifications needed to thrive as a director vulnerability management?

To thrive as a Director of Vulnerability Management, you need a strong background in cybersecurity, risk assessment, and vulnerability management frameworks, typically supported by a bachelor's degree in information security or related fields and relevant certifications like CISSP or CISM. Familiarity with vulnerability scanning tools (e.g., Qualys, Nessus), SIEM platforms, and patch management systems is essential. Exceptional leadership, communication, and strategic thinking skills help coordinate cross-functional teams and drive remediation efforts. These skills and qualities are crucial for proactively identifying risks, ensuring regulatory compliance, and safeguarding organizational assets from cyber threats.

What are some common challenges faced by a director vulnerability management, and how can they be addressed?

A Director of Vulnerability Management often encounters challenges such as prioritizing remediation efforts among numerous vulnerabilities, coordinating across multiple teams, and keeping up with rapidly evolving threat landscapes. Addressing these challenges requires strong communication skills to align IT, security, and business stakeholders, as well as implementing effective vulnerability assessment tools and processes. Building a culture of continuous improvement and staying updated with the latest cybersecurity trends can also help in proactively managing and mitigating risks.

What is the difference between Director Vulnerability Management vs Security Manager?

AspectDirector Vulnerability ManagementSecurity Manager
Primary FocusOverseeing vulnerability assessment and remediation strategiesManaging overall security policies and team operations
CertificationsCertifications like CISSP, CISA, GIACCertifications like CISSP, CISM, CompTIA Security+
Work EnvironmentSecurity teams, vulnerability scanning tools, incident responseSecurity teams, policy development, risk management
Industry UsageCommon in large enterprises with dedicated vulnerability teamsWidespread across organizations managing overall security

The main difference is that the Director Vulnerability Management focuses specifically on identifying and addressing security vulnerabilities, while the Security Manager oversees broader security policies and team management. Both roles require similar certifications and work in security-focused environments, but their scope and responsibilities differ.

Is vulnerability management a good career?

Vulnerability management is a valuable career in cybersecurity, focusing on identifying and mitigating security weaknesses in systems. It often requires knowledge of security tools, risk assessment, and certifications like CISSP or CompTIA Security+; the role offers growth opportunities and high demand due to increasing cyber threats.

What are the most commonly searched types of Vulnerability Management jobs in Washington?

The most popular types of Vulnerability Management jobs in Washington are:

What are popular job titles related to Director Vulnerability Management jobs in Washington?

For Director Vulnerability Management jobs in Washington, the most frequently searched job titles are:

What job categories do people searching Director Vulnerability Management jobs in Washington look for?

The top searched job categories for Director Vulnerability Management jobs in Washington are:

What cities in Washington are hiring for Director Vulnerability Management jobs?

Cities in Washington with the most Director Vulnerability Management job openings:

Vulnerability Management

TekSynap

Andrews Air Force Base, MD • On-site

Full-time

Medical, Dental, Vision, Life, Retirement, PTO

Re-posted 10 days ago


TekSynap rating

8.1

Company rating: 8.1 out of 10

Based on 5 frontline employees who took The Breakroom Quiz

62nd of 225 rated it services


Job description

Responsibilities & Qualifications

RESPONSIBILITIES

  • Manage the POAM process for Vulnerabilities and STIG violations.
  • Analyze scan results to identify CAT I/II/III findings, false positives, and configuration errors.
  • Track and document remediation actions, POA&Ms, and exceptions in alignment with RMF guidance.
  • Validate and interpret DISA STIG checklists, collaborate with system admins and engineers to ensure secure configurations.
  • Prepare and deliver vulnerability reports, compliance dashboards, and metrics for leadership and inspection readiness (e.g., CCRI/CORA).
  • Support the development and maintenance of asset groupings, scan zones, credentialed scanning, and scan tuning strategies.
  • Work closely with Queue Managers, ISSOs, and Engineering teams to prioritize and close critical vulnerabilities.
  • Maintain data hygiene within ACAS, ensuring consistent tagging, grouping, and reporting structures.

REQUIRED QUALIFICATIONS

  • Active DoD Secret clearance required.
  • CompTIA Security+CE or higher DoD 8570 IAT Level II certification must meet 8140 ISSM role qualification.
  • Bachelors Degree and 2-4 years of experience. Additional years of experience or certifications may be considered in lieu of a degree.
  • 3 years of cybersecurity or system administration experience, with at least 1 year of direct ACAS or Tenable experience.
  • Working knowledge of DISA STIGs, vulnerability risk levels, and POA&M remediation strategies.Familiarity with NIST SP 800-53, RMF compliance, and Air Force cybersecurity policy (AFMAN 17-130).
  • Strong attention to detail, documentation skills, and the ability to interpret technical vulnerability data.

PREFERRED QUALIFICATIONS 

  • Experience supporting USAF, DISA, or other DoD mission systems.Familiarity with ACAS, DISPATCH EaluateSTIG, STIGManager, Involvement in CCRI/CORA preparation or vulnerability remediation campaigns.
  • Ability to communicate risk-based recommendations to both technical and non-technical stakeholders.
  • Understanding of automation tools/scripts (e.g., PowerShell, Nessus APIs) to support scan or report optimization.
Overview

We are seeking a Vulnerability Management to join our team supporting at Joint Base Andrews, MD.

Vulnerability Management to support the Air Force National Capital Region IT Services program. The AFNCR IT Services program provides support services for information systems for Headquarters Air Force (HAF), Air Force District of Washington (AFDW), Office of the Secretary of Defense (OSD), Joint Chiefs of Staff, and other Air Force activities within the AFNCR, missions to include the Pentagon, Joint Base Andrews (JBA), Joint Base Anacostia-Bolling (JBAB), and other locations, leased spaces, and alternate sites. The major support areas required are IT Operations and Maintenance; Plans, Projects, and Engineering and National Military Command Center (NMCC). 

TekSynap is a fast-growing high-tech company that understands both the pace of technology today and the need to have a comprehensive well planned information management environment. "Technology moving at the speed of thought" embodies these principles - the need to nimbly utilize the best that information technology offers to meet the business needs of our Federal Government customers.

We offer our full-time employees a competitive benefits package to include health, dental, vision, 401K, life insurance, short-term and long-term disability plans, vacation time and holidays.

Visit us at www.TekSynap.com. 

Apply now to explore jobs with us!  

The safety and health of our employees is of the utmost importance. Employees are required to comply with any vaccination requirements mandated by contract, applicable law or regulation.

By applying to a role at TekSynap you are providing consent to receive text messages regarding your interview and employment status.  If at any time you would like to opt out of text messaging, respond "STOP".

As part of the application process, you agree that TekSynap Corporation may retain and use your name, e-mail, and contact information for purposes related to employment consideration.  

Additional Job Information

WORK ENVIRONMENT AND PHYSICAL DEMANDS

The work environment characteristics described here are representative of those an employee encounters while performing the essential functions of the job. Reasonable accommodation may be made to enable individuals with disabilities to perform the essential functions.

  • Location: Joint Base Andrews, MD
  • Type of environment: Office
  • Noise level: Medium
  • Work schedule: Schedule is day shift Monday - Friday. May be requested to work evenings and weekends to meet program and contract needs.
  • Amount of Travel: less than 10%

PHYSICAL DEMANDS

The physical demands described here are representative of those that must be met by an employee to successfully perform the essential functions of this job.  Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions.

While performing the duties of this job, the employee is regularly required to use hands to grip, handle, or feel; reach with hands and arms; and talk or hear. The employee is regularly required to stand; walk; sit; climb or balance; and stoop, kneel, crouch, or crawl. The employee is regularly required to lift up to 10 pounds.

The employee is frequently required to lift up to 25 pounds; and up to 50 pounds. The vision requirements include close vision, distance vision, peripheral vision, depth perception, and ability to adjust focus.

WORK AUTHORIZATION/SECURITY CLEARANCE

  • US Citizen
  • Active Secret Clearance

WAGE INFORMATION

Target salary range: $70,000.00 - $95,000.00.  The salary range displayed is an estimate only and is not a guarantee of compensation or salary, and will be determined on several factors regarding the individual's particular combination of education, knowledge, skills, competencies and experience, as well as contract parameters and organizational requirements.  The displayed salary is one component of the total compensation package for employees. 

OTHER INFORMATION

Please note this job description is not designed to cover or contain a comprehensive listing of activities, duties or responsibilities that are required of the employee for this job. Duties, responsibilities and activities may change at any time with or without notice.

TekSynap is a drug-free workplace. We reserve the right to conduct drug testing in accordance with federal, state, and local laws. All employees and candidates may be subject to drug screening if deemed necessary to ensure a safe and compliant working environment.

Many positions require specific certifications and/or the ability to obtain a security clearance. Security clearances may only be granted to U.S. citizens. Applicants who accept an offer of employment may be subject to investigations performed by TekSynap and/or the Government to verify the candidate meets the required qualifications and other eligibility requirements. 

EQUAL EMPLOYMENT OPPORTUNITY

In order to provide equal employment and advancement opportunities to all individuals, employment decisions will be based on merit, qualifications, and abilities. TekSynap does not discriminate against any person because of race, color, creed, religion, sex, sexual orientation, gender identity, protected veteran status, national origin, disability, age, genetic information or any other characteristic protected by law (referred to as "protected status"). This nondiscrimination policy extends to all terms, conditions, and privileges of employment as well as the use of all company facilities, participation in all company-sponsored activities, and all employment actions such as promotions, compensation, benefits, and termination of employment.

TekSynap is committed to ensuring that our online application process provides an equal employment opportunity to all job seekers, including individuals with disabilities. If you believe you need a reasonable accommodation in order to search for a job opening or to submit an application, please contact hr@teksynap.com for assistance.

Employment Type: FULL_TIME

What TekSynap employees say

Hours and flexibility

Workplace

Get the full story on Breakroom