1

Qualys Jobs in Virginia (NOW HIRING)

SC, Qualys and/or application-based scanners, which may include activities such as scan policies, asset groups, credentials scanning, and agent deployment. * Lead enterprise-wide vulnerability ...

SC, Qualys and/or application-based scanners, which may include activities such as scan policies, asset groups, credentials scanning, and agent deployment. * Lead enterprise-wide vulnerability ...

SC, Qualys and/or application-based scanners, which may include activities such as scan policies, asset groups, credentials scanning, and agent deployment. * Lead enterprise-wide vulnerability ...

Utilizes the Qualys vulnerability scanning tool to review vulnerabilities in the environment and validate post-deployment vulnerability remediation. * Assists technical teams with the identification ...

Utilizes the Qualys vulnerability scanning tool to review vulnerabilities in the environment and validate post-deployment vulnerability remediation. * Assists technical teams with the identification ...

next page

Showing results 1-20

Qualys information

See Virginia salary details

$39

$66

$87

How much do qualys jobs pay per hour?

As of Jul 30, 2026, the average hourly pay for qualys in Virginia is $66.49, according to ZipRecruiter salary data. Most workers in this role earn between $58.61 and $73.89 per hour, depending on experience, location, and employer.

Where is Qualys headquarters?

Qualys, the cybersecurity and compliance company, is headquartered in Foster City, California. The company offers cloud-based security and compliance solutions and employs professionals in various locations worldwide.

What does the company Qualys do?

Qualys is a cybersecurity company that provides cloud-based security and compliance solutions, including vulnerability management, asset discovery, and web application security. Employees working there often use tools like the Qualys Cloud Platform and may need certifications in cybersecurity or IT security practices.

What jobs in the US pay 300,000 a year?

High-paying jobs that can reach or exceed $300,000 annually often include senior roles such as Chief Information Security Officer (CISO), cybersecurity director, or senior cybersecurity consultant, especially in large organizations. These positions typically require extensive experience, advanced certifications like CISSP or CISA, and strong leadership skills within cybersecurity or IT management environments.

What is the difference between Qualys vs Vulnerability Analyst?

AspectQualysVulnerability Analyst
CertificationsCertifications like CompTIA Security+, CISSP, or vendor-specific credentialsCertifications such as CompTIA Security+, GIAC, or CISSP
Work EnvironmentSecurity teams using vulnerability management tools, often in IT or cybersecurity departmentsSecurity or IT teams conducting vulnerability assessments and analysis
Employer & IndustryOrganizations using Qualys for vulnerability management across various industriesCompanies seeking vulnerability analysis and risk assessment services

Qualys is a vulnerability management platform used by organizations to scan and manage security vulnerabilities, while a Vulnerability Analyst is a professional who performs vulnerability assessments and analyzes security risks. Both roles often require similar certifications and work in cybersecurity environments, but Qualys refers to a specific tool, whereas Vulnerability Analyst describes a job function.

What are the key skills and qualifications needed to thrive as a Qualys Security Engineer, and why are they important?

To thrive as a Qualys Security Engineer, you need a solid understanding of cybersecurity fundamentals, vulnerability management, and network protocols, typically supported by a degree in computer science or a related field. Proficiency in the Qualys Cloud Platform, relevant certifications such as Qualys Certified Specialist, and experience with SIEM tools are highly valuable. Strong analytical thinking, problem-solving abilities, and effective communication skills set standout professionals apart in this role. These combined skills ensure effective identification and mitigation of security risks, safeguarding organizational assets and maintaining compliance.

What are some typical challenges faced by professionals working with Qualys in a cybersecurity team?

Professionals working with Qualys often face challenges such as managing large volumes of vulnerability data, ensuring accurate scanning across diverse environments, and prioritizing remediation efforts. Collaboration with IT and development teams is crucial to address vulnerabilities effectively and to minimize business disruption. Staying updated with the latest security threats and optimizing scan configurations for both on-premise and cloud assets are also key aspects of the role. Communication and coordination are essential, as findings need to be clearly reported and tracked for resolution.

What is the salary of senior QA engineer in Qualys?

The salary of a senior QA engineer at Qualys typically ranges from $90,000 to $130,000 annually, depending on experience, location, and certifications. Compensation may also include bonuses and benefits related to quality assurance and testing tools like Selenium or JIRA.

What are Qualys professionals and what do they do?

Qualys professionals are experts who specialize in deploying, managing, and optimizing the Qualys Cloud Platform—a suite of security and compliance solutions used by organizations to protect their IT infrastructure. They typically handle tasks like vulnerability management, policy compliance, asset discovery, and web application security. These professionals help organizations identify, assess, and remediate security risks in real time, ensuring compliance with industry standards. Their expertise is crucial for maintaining the security posture of businesses and preventing cyber threats.
Infographic showing various Qualys job openings in Virginia as of July 2026, with employment types broken down into 92% Full Time, and 8% Contract. Highlights an 81% Physical, 6% Hybrid, and 13% Remote job distribution, with an average salary of $138,303 per year, or $66.5 per hour.

Vulnerability Manager

AnaVation

Alexandria, VA • On-site

Full-time

Medical, Dental, Vision, Life, Retirement, PTO

Posted 24 days ago


Job description

Be Challenged and Make a Difference
In a world of technology, people make the difference. We believe if we invest in great people, then great things will happen. At AnaVation, we provide unmatched value to our customers and employees through innovative solutions and an engaging culture.
Description of Task to be Performed:
AnaVation is searching for a Vulnerability Manager to assist client leadership with the enterprise vulnerability management program, administering scanning platforms (Tenable and/or Qualys), driving vulnerability analysis and risk prioritization, and delivering reporting to leadership and compliance stakeholders.
Responsibilities:
  • Administer and maintain scanning platforms such as Tenable.SC, Qualys and/or application-based scanners, which may include activities such as scan policies, asset groups, credentials scanning, and agent deployment.
  • Lead enterprise-wide vulnerability scanning cadence across the network, systems, applications and other dependent assets.
  • Analyze scan data, validate findings and false positives, and prioritize based on CVSS, exploitability, and business risk.
  • Own and manage POA&M lifecycle, tracking remediation timelines, risk acceptance documentation, and closure validation.
  • Develop and deliver weekly vulnerability metrics/dashboards and executive reporting (trend analysis, SLA compliance, risk posture).
  • Support ATO and continuous monitoring activities in alignment with NIST 800-53.
  • Coordinate remediation with system owners, IT operations, and patch management teams.
  • Manage scanner tuning, plugin/signature updates, and platform health.
  • Support FISMA reporting requirements. • Interacting with GRC tool (e.g., CSAM) to perform daily/weekly vulnerability analysis.
  • Flexible with other security related tasks as needed by the customer.

This position is hybrid, with the potential for periodic onsite attendance at our customer location in Alexandria, VA.
Applicants who do not currently reside within commuting distance should describe how they would satisfy this requirement. Remote status is subject to change at the customer's direction.
This position requires a Public Trust
Required Qualifications:
  • Bachelor's degree in a related field or equivalent demonstrated experience and knowledge.
  • 6 years of experience as a Security Administrator, Vulnerability Manager or equivalent knowledge.
  • Hands-on administration experience with Tenable or Qualys.
  • Performing vulnerability scans with tools such as Tenable, Qualys, Burpsuite.
  • Deep familiarity with CVSS scoring, risk based prioritization methodologies.
  • Excellent oral and written communication skills.
  • Familiarity with multi-tiered network applications, common ports and protocols used in those communications, the Common Vulnerability System (CVS) and the exploitation mechanisms of common vulnerability types (e.g., buffer overflows, cross-site-scripting, SQL injection).
  • Certifications: Security + required

Preferred Qualifications:
  • Self-Starter - ability to quickly become competent with new security-related tools and processes.
  • Ability to conduct Deep Dive analysis to determine root cause assessment of various network scanning agents' scanning or communication failures.
  • Ability to coordinate remediation strategies with agency's department technical staff through completion.
  • Familiarity with the various use cases and alignment of data from each tool to various security disciplines in configuration management, vulnerability management, risk management and incident management.
  • Understanding of the role of interactive training such as phishing exercises for assessment of organizational abilities.
  • Familiarity with the use of data analysis tools, including the use of Microsoft Excel or PowerBI to combine data from multiple sources.
  • Familiarity with information security terminology and being able to develop or select technical training in the discipline of information security geared to an organization.
  • Familiarity with data management and reporting of training data and statistics using common tools such as Microsoft Excel and Word.
  • Certifications: CISSP

Benefits
  • Generous cost sharing for medical insurance for the employee and dependents
  • 100% company paid dental insurance for employees and dependents
  • 100% company paid long-term and short-term disability insurance
  • 100% company paid vision insurance for employees and dependents
  • 401k plan with generous match and 100% immediate vesting
  • Competitive Pay
  • Generous paid leave and holiday package
  • Tuition and training reimbursement
  • Life and AD&D Insurance

About AnaVation
AnaVation is the leader in solving the most complex technical challenges for collection and processing in the U.S. Federal Intelligence Community. We are a US owned company headquartered in Chantilly, Virginia. We deliver groundbreaking research with advanced software and systems engineering that provides an information advantage to contribute to the mission and operational success of our customers. We offer complex challenges, a top-notch work environment, and a world-class, collaborative team.
If you want to grow your career and make a difference while doing it, AnaVation is the perfect fit for you!
AnaVation is an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to sex, race, color, religion, national origin, disability, protected Veteran status, age, or any other characteristic protected by law.