1

Qualys Jobs in Virginia (NOW HIRING)

Analyze and interpret vulnerability scan results (e.g., from ACAS, Nessus, or Qualys) and assist in presenting the organization's vulnerability management posture to relevant stakeholders * Perform ...

Experience with vulnerability platforms such as Tenable Nessus, Qualys, or ACAS . * Experience validating Splunk log-source coverage, retention, and audit-trail completeness. * Experience authoring ...

Experience with vulnerability platforms such as Tenable Nessus, Qualys, or ACAS . * Experience validating Splunk log-source coverage, retention, and audit-trail completeness. * Experience authoring ...

Readily adapt to emerging security tools and processes used by CBP (e.g., Splunk, Nessus, Anchore, WebInspect, DBProtect, Qualys). Other duties as assigned Qualifications Bachelor's degree in an IT ...

Demonstrated deep experience with Continuous Monitoring, including utilizing scan analysis tools such as Rapid7, Nessus, and Qualys. * Experience utilizing Compliance tools such as Xacta360, Risk ...

Working knowledge of vulnerability scanning tools (e.g., Nessus, Qualys, OpenVAS). * Practical experience querying/extracting data from Active Directory and/or a CMDB. * Familiarity with Windows ...

Showing results 41-60

Qualys information

See Virginia salary details

$39

$66

$87

How much do qualys jobs pay per hour?

As of Aug 23, 2026, the average hourly pay for qualys in Virginia is $66.49, according to ZipRecruiter salary data. Most workers in this role earn between $58.61 and $73.89 per hour, depending on experience, location, and employer.

What is a Qualys professional?

Qualys professionals are experts who specialize in deploying, managing, and optimizing the Qualys Cloud Platform—a suite of security and compliance solutions used by organizations to protect their IT infrastructure. They typically handle tasks like vulnerability management, policy compliance, asset discovery, and web application security. These professionals help organizations identify, assess, and remediate security risks in real time, ensuring compliance with industry standards. Their expertise is crucial for maintaining the security posture of businesses and preventing cyber threats.

What skills and qualifications are needed to thrive as a Qualys security engineer?

To thrive as a Qualys Security Engineer, you need a solid understanding of cybersecurity fundamentals, vulnerability management, and network protocols, typically supported by a degree in computer science or a related field. Proficiency in the Qualys Cloud Platform, relevant certifications such as Qualys Certified Specialist, and experience with SIEM tools are highly valuable. Strong analytical thinking, problem-solving abilities, and effective communication skills set standout professionals apart in this role. These combined skills ensure effective identification and mitigation of security risks, safeguarding organizational assets and maintaining compliance.

What are typical challenges faced by professionals working with Qualys in a cybersecurity team?

Professionals working with Qualys often face challenges such as managing large volumes of vulnerability data, ensuring accurate scanning across diverse environments, and prioritizing remediation efforts. Collaboration with IT and development teams is crucial to address vulnerabilities effectively and to minimize business disruption. Staying updated with the latest security threats and optimizing scan configurations for both on-premise and cloud assets are also key aspects of the role. Communication and coordination are essential, as findings need to be clearly reported and tracked for resolution.

What is the difference between Qualys vs Vulnerability Analyst?

AspectQualysVulnerability Analyst
CertificationsCertifications like CompTIA Security+, CISSP, or vendor-specific credentialsCertifications such as CompTIA Security+, GIAC, or CISSP
Work EnvironmentSecurity teams using vulnerability management tools, often in IT or cybersecurity departmentsSecurity or IT teams conducting vulnerability assessments and analysis
Employer & IndustryOrganizations using Qualys for vulnerability management across various industriesCompanies seeking vulnerability analysis and risk assessment services

Qualys is a vulnerability management platform used by organizations to scan and manage security vulnerabilities, while a Vulnerability Analyst is a professional who performs vulnerability assessments and analyzes security risks. Both roles often require similar certifications and work in cybersecurity environments, but Qualys refers to a specific tool, whereas Vulnerability Analyst describes a job function.

Infographic showing various Qualys job openings in Virginia as of August 2026, with employment types broken down into 84% Full Time, 10% Part Time, and 6% Contract. Highlights an 82% Physical, 8% Hybrid, and 10% Remote job distribution, with an average salary of $138,303 per year, or $66.5 per hour.

$57.25 - $76.50/hr

Full-time

Medical, Life, Retirement, PTO

Re-posted 17 days ago


Job description

Freedom Technology Solutions Group is looking for a Cloud Engineer to accelerate mission delivery and connect mission partners with the power of commercially-driven cloud computing. The team brings multi-cloud solutions to mission environments, supporting cloud services providers (CSPs), and offering cloud services across multiple networks. In this role, the ideal candidate manages security assessment, security compliance, change management, and continuous monitoring responsibilities across four (4) cloud service providers: Amazon Web Services, Google Cloud, Oracle Cloud, and Microsoft Azure.
The Contractor shall ensure that all development and modifications to existing Sponsor applications comply with Sponsor's security and architectural policies and regulations. The Contractor shall be required to communicate and collaborate across organizational boundaries, to include other contractor teams. The Contractor shall be required to work with Sponsor staff and contractor personnel as well as external stakeholders. The Sponsor will direct priorities and delegate tasks.
Responsibilities:
  • Assess cloud security technologies for security gaps and weaknesses according to industry standards.
  • Review cloud security body of evidence packages for completeness and accuracy.
  • Facilitate TEMs with cloud service providers to review cloud service architectures.
  • Provide project management support including project planning, task tracking, milestone management, and resource coordination.

Technical Requirements:
  • Manage security assessment, security compliance, change management, and continuous monitoring activities, including associated program management functions, across four (4) CSPs: AWS, Google Cloud, Oracle Cloud, and Microsoft Azure.
  • Assess cloud security technologies for security gaps and weaknesses according to industry standards.
  • Analyze security scan findings and perform risk analysis on the findings.
  • Review cloud security body of evidence packages for completeness and accuracy.
  • Collaborate with other internal components and security peers to determine security and potential weaknesses of cloud infrastructure and cloud services.
  • Advise Sponsor leadership on cloud security services.
  • Analyze system alerts to determine if a security weakness exists and document risk mitigation procedures.
  • Sustain and evolve the Sponsor's standard operating procedures to meet Program Objectives.
  • Facilitate technical exchange meetings (TEMs) with cloud service providers to review cloud service architectures.
  • Provide program management support including project planning, task tracking, milestone management, and resource coordination.
  • Develop and maintain program metrics and performance indicators including security assessment completion rates, finding remediation timelines, compliance status dashboards, and other KPIs as directed by the Sponsor.
  • Respond to Sponsor inquiries and requests for information within established timelines, providing accurate and complete technical and programmatic information.
  • Prepare periodic program highlights, status reports, and briefing materials for Sponsor leadership.
  • Support ad hoc taskings from the Sponsor including research, analysis, documentation, and coordination activities.
  • Maintain regular communications with the Sponsor through scheduled status meetings, written reports, and other communication channels.

Required Skills:
  1. Facilitating TEMs with cloud service providers to review cloud service architectures
  2. Active Security Clearance with Polygraph.
  3. Maintaining A&A packages across multiple services/systems in accordance with FIPS-199, NIST 800-53, and CNSS 1253
  4. Designing, implementing, assessing or reviewing systems utilizing cloud technology with AWS, Oracle Cloud, Google Cloud, or Microsoft Azure
  5. Utilizing or reviewing cross domain technology and common architecture designs
  6. Continuous monitoring requirements including scan analysis with tools such as Rapid 7, Nessus, and Qualys
  7. Creating, monitoring, or closing POA&Ms
  8. Utilizing compliance tools such as Xacta 360, Risk Vision, RSA Archer
  9. Common control provider concept within the NIST RMF
  10. Security control assessments including working with SCAs and preparing security packages
  11. Information system security engineering activities
  12. Project management including planning, task tracking, milestone management, and resource coordination
  13. Developing and maintaining program metrics, performance indicators, and compliance status dashboards
  14. Preparing technical reports, program highlights, status briefings, and leadership communications

Desired Skills:
  1. Using the Sponsor's or IC element A&A process
  2. Creating or reviewing A&A body of evidence documentation in a cloud security environment
  3. Identifying, implementing, or reviewing appropriate information security controls
  4. Working in Xacta 360
  5. Experience with Sponsor's A&A tools

What's in It for You?
Flexible work environment
A team mentality - work with friendly, like-minded professionals
Work with innovative, cutting edge technologies
Enjoy extremely competitive compensation and benefits
A work-life balance you can count on
Opportunities to grow and advance your career on our dime
The Benefits You Get with Freedom
Amazing benefits including matching 401k, fully paid medical, and more
Generous paid time off - including paid site closure days
Competitive salary offerings
Paid training and tuition reimbursement
Referral bonuses
Fully paid life and disability
Annual logo wear allowance
Company sponsored events (game nights, holiday party, summer party, happy hours)
Interested in learning more about Freedom and our culture? Contact us today! We're constantly hosting hiring events in our office and elsewhere, to help you get a sense of what life is like at Freedom before joining the team.
As an Equal Opportunity Employer, we do not discriminate on the basis of race, color, religion, sex, age, marital status, disability or veteran status
Applicant Federal & E-Verify Postings
VEVRAA Federal Contractor
Accessibility: If you need an accommodation as part of the employment process, please contact Human Resources at
Phone: 410-290-9035
Email: recruiting@goftsg.com
Equal Opportunity Employer, including disabled and veterans.
If you want to view the EEO Law poster, please choose your language: English - Spanish - Arabic - Chinese
If you want to view the EEO Law Supplement poster, please choose your language: English - Spanish - Chinese
If you want to view the Pay Transparency Policy Statement, please click the link: English