2

Remote Qualys Vulnerability Management Jobs in Virginia

Security Engineer - Junior

Herndon, VA · On-site +1

$60K - $110K/yr

In this role, you will contribute to security reviews, vulnerability management, IAM governance ... Basic experience with vulnerability scanning tools (Tenable, Qualys, or equivalent) * Understanding ...

... City Remote Country United States Working time Full-time Description & Requirements Maximus is a ... vulnerability management, and compliance activities. The role works under senior guidance to ...

General information Job Posting Title Lead Security Engineer - Remote Date Wednesday, August 12 ... This role supports security operations, compliance activities, vulnerability management, cloud ...

New

Manager, Cyber Security

Reston, VA · Remote

$115K - $156K/yr

Support vulnerability management, incident response coordination, risk reviews, control evidence ... Remote Office (US99)

Endpoint Engineer

Fairfax, VA · Remote

$120K - $150K/yr

... Remote Monitoring & Management (RMM) tooling, with the ability to drive improvements in device ... Collaborate with Cybersecurity & Risk Management team on vulnerability management activities ...

... Remote Country United States Working time Full-time Description & Requirements The Lead System ... vulnerability management timelines. - Direct prioritization and remediation of high-risk and known ...

... vulnerability management, compliance tracking, or IT security support functions - Basic ... remote Minimum Requirements TCS039, T3, Band 6 #TSTECH EEO Statement Maximus is an equal ...

Cybersecurity Engineer - ISSO

Vienna, VA · On-site +1

$160K - $200K/yr

None Potential for Remote Work: ORA_ON_SITE Description SAIC is seeking a Cyber Security Engineer ... You will lead assessment, authorization, vulnerability management, and secure operations for ...

... vulnerability remediation, credential and certificate management, backup protection, recovery, remote administration, and system lifecycle processes. • Evaluate, deploy, integrate, and operate ...

New

Automate secure configuration, patching, vulnerability remediation, credential and certificate management, backup protection, recovery, remote administration, and system lifecycle processes. Evaluate ...

New

... vulnerability remediation, credential and certificate management, backup protection, recovery, remote administration, and system lifecycle processes. • Evaluate, deploy, integrate, and operate ...

New

next page

Showing results 1-20

Remote Qualys Vulnerability Management information

What are some common challenges remote Qualys Vulnerability Management professionals face, and how can these be addressed?

One common challenge for remote Qualys Vulnerability Management professionals is ensuring effective communication and collaboration with IT and security teams across different time zones and departments. Addressing this requires establishing clear processes for reporting vulnerabilities, prioritizing remediation, and using collaboration tools to stay aligned. Additionally, managing multiple clients or environments remotely can introduce complexity, so strong organizational skills and proactive scheduling of scans and follow-ups are essential. Regular virtual meetings and detailed documentation also help maintain transparency and accountability within the team.

What is the difference between Remote Qualys Vulnerability Management vs Remote Vulnerability Analyst?

AspectRemote Qualys Vulnerability ManagementRemote Vulnerability Analyst
CertificationsQualys Certified, Security+CompTIA Security+, CISSP (preferred)
Work EnvironmentSecurity teams, IT departments, using vulnerability management toolsSecurity teams, IT departments, analyzing vulnerabilities and reports
Industry UsageCybersecurity, IT, Managed Security Service ProvidersCybersecurity, IT, consulting firms
Primary FocusManaging and scanning vulnerabilities with Qualys platformAnalyzing vulnerabilities, assessing risks, and reporting

Remote Qualys Vulnerability Management roles focus on using Qualys tools to identify and manage security vulnerabilities, while Remote Vulnerability Analysts analyze vulnerability data, assess risks, and prepare reports. Both roles require cybersecurity knowledge but differ in technical focus and responsibilities.

What are the key skills and qualifications needed to thrive as a remote Qualys Vulnerability Management professional?

To excel in Remote Qualys Vulnerability Management, you need a strong background in cybersecurity principles, vulnerability assessment, and typically a degree in computer science or related field. Proficiency with Qualys Vulnerability Management tools, understanding of network security protocols, and often relevant certifications like CompTIA Security+ or CISSP are essential. Analytical thinking, attention to detail, and effective communication are standout soft skills for interpreting scan results and collaborating with distributed teams. These skills ensure accurate identification and remediation of security risks, safeguarding organizational assets in remote environments.

What is a remote Qualys Vulnerability Management?

A Remote Qualys Vulnerability Management job involves using the Qualys platform to identify, assess, and prioritize security vulnerabilities in an organization's IT infrastructure, all while working remotely. Professionals in this role deploy and manage vulnerability scans, analyze scan results, and provide recommendations for remediation to minimize risk. They often collaborate with IT and security teams to ensure vulnerabilities are addressed promptly, helping to maintain the security posture of the organization. The remote aspect means all tasks are performed online, allowing for flexibility in work location.

What are the most commonly searched types of Qualys Vulnerability Management jobs in Virginia?

The most popular types of Qualys Vulnerability Management jobs in Virginia are:

What are popular job titles related to Remote Qualys Vulnerability Management jobs in Virginia?

For Remote Qualys Vulnerability Management jobs in Virginia, the most frequently searched job titles are:

What job categories do people searching Remote Qualys Vulnerability Management jobs in Virginia look for?

The top searched job categories for Remote Qualys Vulnerability Management jobs in Virginia are:

What cities in Virginia are hiring for Remote Qualys Vulnerability Management jobs?

Cities in Virginia with the most Remote Qualys Vulnerability Management job openings:

Infographic showing various Remote Qualys Vulnerability Management job openings in Virginia as of August 2026, with employment types broken down into 1% As Needed, 84% Full Time, 13% Part Time, and 2% Contract. Highlights an 92% Physical, 3% Hybrid, and 5% Remote job distribution.

Vulnerability Manager Lead

Dark Wolf Solutions

Arlington, VA • On-site, Remote

Full-time

Posted 7 days ago


Job description

Dark Wolf is seeking a Vulnerability Management Lead to oversee technical vulnerability operations, modern AI workload security, and compliance baselines across a large-scale, multi-tenant cloud government system. Working closely with cross-functional engineering teams, system administrators, and program leadership, the Lead will drive the end-to-end vulnerability lifecycle from initial detection through final remediation.

We are seeking a collaborative cybersecurity professional with a solid foundation in federal or DoD vulnerability management, cloud environments, and technical risk assessment. This position offers the opportunity to lead operational workflows, leverage data analysis (SQL) and tool integrations (REST APIs) to automate reporting, and help shape security strategies for modern platforms—including emerging AI/LLM workloads.

Whether you are an experienced Lead or a Senior Vulnerability/Systems Analyst ready to take the next step in leadership, this role provides an impactful platform to guide technical risk decisions across a mission-critical system. This position is based out of Arlington, VA with hybrid/remote opportunities. Additional responsibilities include:

Key Responsibilities

  • Oversee daily vulnerability identification, triage, and reporting across AWS cloud assets, traditional hybrid infrastructure, and AI/LLM application stacks.
  • Evaluate raw vulnerability data generated by ACAS (Tenable.sc) and AWS security tools to determine its actual threat vector; identify true contextual risk based on compensating controls, network exposure, and the system's specific cloud architecture.
  • Leverage ACAS to execute and analyze SCAP-compliant configuration audits, verifying system alignment with established DISA STIG security benchmarks and identifying configuration drift across cloud assets.
  • Monitor, document, and track the end-to-end lifecycle of technical remediation efforts.
  • Establish and manage cybersecurity vulnerability tickets within Jira to maintain a clear audit trail from identification to closure.
  • Serve as a primary point of contact for hands-on IT support, system administrators, and engineers; clearly communicate the technical details of vulnerabilities, outline required remediation steps, and assist in prioritizing patches.
  • Translate un-remediated, high-true-risk vulnerabilities into actionable Plan of Action and Milestones (POA&Ms), clearly detailing the technical milestones and business impacts.
  • Translate complex technical findings and AI-specific security risks into concrete, step-by-step remediation guidance for platform, data science, and DevOps engineering teams.
  • Collaborate with the team to cross-reference active exploit intelligence against known system vulnerabilities, refining true risk prioritizations based on active real-world threats.
  • Compile and deliver vulnerability posture reports, metrics dashboards, and executive briefings for government stakeholders.
  • Mentor mid-level analysts on triage methodologies, emerging AI threat vectors, technical writing, and workflow automation.
Required Qualifications
  • 6+ years of experience in Cybersecurity, Vulnerability Management, or Systems Administration supporting federal or DoD information systems.
  • Direct, hands-on experience utilizing ACAS (Tenable.sc) to filter, analyze, and report on enterprise vulnerabilities.
  • Operational understanding of the Security Content Automation Protocol (SCAP) ecosystem, including how automated configuration audit files translate into compliance metrics within vulnerability scanners.
  • Comprehensive understanding of how Splunk Enterprise Security and Trellix (ESS) correlate with vulnerability monitoring activities
  • Practical experience writing SQL queries for reporting and/or analytics
  • Proven proficiency utilizing Jira (or equivalent enterprise ticketing infrastructure) to track, update, and manage technical workflows through completion.
  • Excellent interpersonal and written communication skills, with a demonstrated ability to translate complex security vulnerabilities into actionable guidance for IT personnel.
  • Solid understanding of core AWS services (EC2, VPC, Security Groups, IAM) and how vulnerabilities manifest within a cloud-native environment.
  • Must hold an active DoD 8570/8140 IAT Level II certification (e.g., Security+, CySA+).
  • U.S. Citizenship with an active Top Secret security clearance
Desired Qualifications
  • Possess a valid DISA certification for ACAS, Trellix, or Splunk issued or renewed within the last three years, or demonstrate the capability to successfully obtain the required DISA certification upon hire.
  • Familiarity with tracking vulnerabilities across containerized microservices (Docker/Kubernetes) or modern data platforms like Databricks.
  • Ability to identify and evaluate vulnerabilities unique to AI/LLM environments, including model training/inference pipelines, API endpoints, microservices, and AI framework dependencies (e.g., PyTorch, LangChain, Hugging Face) using frameworks like the OWASP Top 10 for LLM Applications.

The salary range for this position is estimated to be between $155,000.00 - $160,000.00, commensurate on experience and technical skillset.

We are proud to be an EEO/AA employer Minorities/Women/Veterans/Disabled and other protected categories.

In compliance with federal law, all persons hired will be required to verify identity and eligibility to work in the United States and to complete the required employment eligibility verification form upon hire.

We are strictly looking for direct, full-time W2 employees. We do not engage with third-party staffing agencies, C2C, or 1099 independent contractors for this role.