1

Director Vulnerability Management Jobs (NOW HIRING)

... directed by senior analysts. Coordinate with Queue Managers, ISSOs, and Engineering teams to ... Working knowledge of DISA STIGs, vulnerability risk levels, and POA&M remediation strategies.

... directed by senior analysts. Coordinate with Queue Managers, ISSOs, and Engineering teams to ... Working knowledge of DISA STIGs, vulnerability risk levels, and POA&M remediation strategies.

next page

Showing results 1-20

Director Vulnerability Management information

What are some common challenges faced by a Director of Vulnerability Management, and how can they be addressed?

A Director of Vulnerability Management often encounters challenges such as prioritizing remediation efforts among numerous vulnerabilities, coordinating across multiple teams, and keeping up with rapidly evolving threat landscapes. Addressing these challenges requires strong communication skills to align IT, security, and business stakeholders, as well as implementing effective vulnerability assessment tools and processes. Building a culture of continuous improvement and staying updated with the latest cybersecurity trends can also help in proactively managing and mitigating risks.

What does a Director of Vulnerability Management do?

A Director of Vulnerability Management oversees an organization's efforts to identify, assess, and remediate security vulnerabilities in its systems and networks. This role involves leading a team of security professionals, developing vulnerability management strategies, ensuring compliance with industry standards, and collaborating with IT and business units to mitigate risks. The director also communicates security risks to executive leadership and helps prioritize remediation efforts based on potential business impact.

What are the key skills and qualifications needed to thrive as a Director of Vulnerability Management, and why are they important?

To thrive as a Director of Vulnerability Management, you need a strong background in cybersecurity, risk assessment, and vulnerability management frameworks, typically supported by a bachelor's degree in information security or related fields and relevant certifications like CISSP or CISM. Familiarity with vulnerability scanning tools (e.g., Qualys, Nessus), SIEM platforms, and patch management systems is essential. Exceptional leadership, communication, and strategic thinking skills help coordinate cross-functional teams and drive remediation efforts. These skills and qualities are crucial for proactively identifying risks, ensuring regulatory compliance, and safeguarding organizational assets from cyber threats.

What is the difference between Director Vulnerability Management vs Security Manager?

AspectDirector Vulnerability ManagementSecurity Manager
Primary FocusOverseeing vulnerability assessment and remediation strategiesManaging overall security policies and team operations
CertificationsCertifications like CISSP, CISA, GIACCertifications like CISSP, CISM, CompTIA Security+
Work EnvironmentSecurity teams, vulnerability scanning tools, incident responseSecurity teams, policy development, risk management
Industry UsageCommon in large enterprises with dedicated vulnerability teamsWidespread across organizations managing overall security

The main difference is that the Director Vulnerability Management focuses specifically on identifying and addressing security vulnerabilities, while the Security Manager oversees broader security policies and team management. Both roles require similar certifications and work in security-focused environments, but their scope and responsibilities differ.

More about Director Vulnerability Management jobs
What cities are hiring for Director Vulnerability Management jobs? Cities with the most Director Vulnerability Management job openings:
What are the most commonly searched types of Vulnerability Management jobs? The most popular types of Vulnerability Management jobs are:
What states have the most Director Vulnerability Management jobs? States with the most job openings for Director Vulnerability Management jobs include:
Infographic showing various Director Vulnerability Management job openings in the United States as of July 2026, with employment types broken down into 94% Full Time, and 6% Contract. Highlights an 61% In-person, 22% Hybrid, and 17% Remote job distribution.
Vulnerability Management Analyst

Vulnerability Management Analyst

Leidos

Camp Springs, MD • On-site

Full-time

Posted 9 days ago


Leidos rating

8.4

Company rating: 8.4 out of 10

Based on 149 frontline employees who took The Breakroom Quiz

57th of 454 rated business services


Job description

Leidos has a career opportunity for a Vulnerability Management Analyst to support the Air Force National Capital Region IT Services program.

The AFNCR IT Services program provides support services for information systems for Headquarters Air Force (HAF), Air Force District of Washington (AFDW), Office of the Secretary of Defense (OSD), Joint Chiefs of Staff, and other Air Force activities within the AFNCR, missions to include the Pentagon, Joint Base Andrews (JBA), Joint Base Anacostia-Bolling (JBAB), and other locations, leased spaces, and alternate sites. The major support areas required are IT Operations and Maintenance; Plans, Projects, and Engineering (PP&E); and National Military Command Center (NMCC). The senior leaders and national defense missions that are supported require that the AFNCR operations never fail, resulting in a fast-paced, challenging, but also rewarding environment.

If this sounds like the kind of environment where you can thrive, keep reading!

Leidos Defense Group provides a diverse portfolio of systems, solutions, and services covering land, sea, air, space, and cyberspace for customers worldwide. Solutions for Defense include enterprise and mission IT, large-scale intelligence systems, command and control, geospatial and data analytics, cybersecurity, logistics, training, and intelligence analysis and operations support. Our team is solving the world's toughest security challenges for customers with "can't fail" missions. To explore and learn more, click here!

Are you ready to make an impact? Begin your journey of a flourishing and meaningful career, share your resume with us today!

POSITION SUMMARY:

Leidos is seeking a Vulnerability Management Analyst to join our Cybersecurity Operations team supporting the AFNCR IT Services (AFNCRIT) program. This T1-level position is ideal for an entry-level cybersecurity professional interested in learning vulnerability management processes. The role will assist with running vulnerability scans using ACAS, reviewing STIG findings, and supporting remediation coordination across Air Force enterprise systems under the guidance of senior team members.

PRIMARY RESPONSIBILITIES:

Assist with scheduling and running vulnerability scans using Tenable SecurityCenter/Nessus (ACAS) in classified and unclassified environments under senior staff guidance.

Review scan results to help identify potential CAT I/II/III findings, false positives, and basic configuration issues.

Support tracking of remediation actions, Plans of Action and Milestones (POA&Ms), and exceptions in accordance with RMF guidance.

Follow established procedures to validate DISA STIG checklists and work with team members to ensure secure system configurations.

Help prepare basic vulnerability reports, compliance summaries, and metrics to support leadership briefings and inspection readiness (e.g., CCRI/CORA).

Assist in maintaining asset groupings, scan zones, and credentialed scanning configurations as directed by senior analysts.

Coordinate with Queue Managers, ISSOs, and Engineering teams to support the remediation of high-priority vulnerabilities.

Maintain data accuracy within ACAS, including proper tagging and grouping for consistent reporting.

BASIC QUALIFICATIONS:

Active DoD Secret clearance required.

CompTIA Security+ CE or higher DoD 8570 IAT Level II certification must meet 8140 ISSM role qualification

Bachelor's Degree and 4-8 years of cybersecurity or system administration experience, with at least 1 year of direct ACAS or Tenable experience. Additional education and years of experience may be considered in lieu of a degree.

Working knowledge of DISA STIGs, vulnerability risk levels, and POA&M remediation strategies.

Familiarity with NIST SP 800-53, RMF compliance, and Air Force cybersecurity policy (AFMAN 17-130).

Strong attention to detail, documentation skills, and the ability to interpret technical vulnerability data.

PREFERRED QUALIFICATIONS:

Experience supporting USAF, DISA, or other DoD mission systems.

Familiarity with eMASS, SCAP Compliance Checker (SCC), or HBSS.

Prior involvement in CCRI/CORA preparation or vulnerability remediation campaigns.

Ability to communicate risk-based recommendations to both technical and non-technical stakeholders.

Understanding of automation tools/scripts (e.g., PowerShell, Nessus APIs) to support scan or report optimization.

If you're looking for comfort, keep scrolling. At Leidos, we outthink, outbuild, and outpace the status quo - because the mission demands it. We're not hiring followers. We're recruiting the ones who disrupt, provoke, and refuse to fail. Step 10 is ancient history. We're already at step 30 - and moving faster than anyone else dares.

Original Posting:July 13, 2026

For U.S. Positions: While subject to change based on business needs, Leidos reasonably anticipates that this job requisition will remain open for at least 3 days with an anticipated close date of no earlier than 3 days after the original posting date as listed above.

Pay Range:Pay Range $87,100.00 - $157,450.00

The Leidos pay range for this job level is a general guideline onlyand not a guarantee of compensation or salary. Additional factors considered in extending an offer include (but are not limited to) responsibilities of the job, education, experience, knowledge, skills, and abilities, as well as internal equity, alignment with market data, applicable bargaining agreement (if any), or other law.


What Leidos employees say

Pay

Benefits

Hours and flexibility

Workplace

Get the full story on Breakroom


Leidos logo

About Leidos

Sourced by ZipRecruiter

At Leidos, we deliver innovative solutions through the efforts of our diverse and talented people who are dedicated to our customers' success. We empower our teams, contribute to our communities, and operate sustainable practices. Everything we do is built on a commitment to do the right thing for our customers, our people, and our community.

Industry

It services

Company size

10,000+ Employees

Headquarters location

Reston, VA, US

Social media