2

Remote Qualys Vulnerability Management Jobs in Washington

Manager, Cyber Security

Reston, VA ยท Remote

$115K - $156K/yr

Support vulnerability management, incident response coordination, risk reviews, control evidence ... Remote Office (US99)

Cloud Security Engineer

Washington, DC ยท On-site +1

$74.25 - $98.50/hr

Familiarity with vulnerability management tools (e.g., Tenable, Qualys), SIEM solutions (e.g ... Remote * Work Hours: 40 * Travel: 20% * Extended Computer Use: Regular and prolonged periods of ...

Cybersecurity & Governance Engineer

Washington, DC ยท On-site +1

$64.50 - $79.25/hr

This position will be on-site, hybrid, or remote, at the discretion of the customer. The role ... vulnerability and configuration management, audit logging, cloud security, security documentation ...

Hybrid Columbia MD 3 times a week OR Remote (as applicable to role) Work Authorization Requirements ... Vulnerability Management & Remediation * Identify, track, and support remediation of security ...

Senior Systems Administrator

Vienna, VA ยท Remote

$170K - $190K/yr

... vulnerability management to maintain system security and reliability. The position requires ... new installations, and remote support activities while ensuring high system availability ...

Cybersecurity Engineer - ISSO

Vienna, VA ยท On-site +1

$160K - $200K/yr

None Potential for Remote Work: ORA_ON_SITE Description SAIC is seeking a Cyber Security Engineer ... You will lead assessment, authorization, vulnerability management, and secure operations for ...

Showing results 21-40

Remote Qualys Vulnerability Management information

What is a remote Qualys Vulnerability Management?

A Remote Qualys Vulnerability Management job involves using the Qualys platform to identify, assess, and prioritize security vulnerabilities in an organization's IT infrastructure, all while working remotely. Professionals in this role deploy and manage vulnerability scans, analyze scan results, and provide recommendations for remediation to minimize risk. They often collaborate with IT and security teams to ensure vulnerabilities are addressed promptly, helping to maintain the security posture of the organization. The remote aspect means all tasks are performed online, allowing for flexibility in work location.

What are the key skills and qualifications needed to thrive as a remote Qualys Vulnerability Management professional?

To excel in Remote Qualys Vulnerability Management, you need a strong background in cybersecurity principles, vulnerability assessment, and typically a degree in computer science or related field. Proficiency with Qualys Vulnerability Management tools, understanding of network security protocols, and often relevant certifications like CompTIA Security+ or CISSP are essential. Analytical thinking, attention to detail, and effective communication are standout soft skills for interpreting scan results and collaborating with distributed teams. These skills ensure accurate identification and remediation of security risks, safeguarding organizational assets in remote environments.

What are some common challenges remote Qualys Vulnerability Management professionals face, and how can these be addressed?

One common challenge for remote Qualys Vulnerability Management professionals is ensuring effective communication and collaboration with IT and security teams across different time zones and departments. Addressing this requires establishing clear processes for reporting vulnerabilities, prioritizing remediation, and using collaboration tools to stay aligned. Additionally, managing multiple clients or environments remotely can introduce complexity, so strong organizational skills and proactive scheduling of scans and follow-ups are essential. Regular virtual meetings and detailed documentation also help maintain transparency and accountability within the team.

What is the difference between Remote Qualys Vulnerability Management vs Remote Vulnerability Analyst?

AspectRemote Qualys Vulnerability ManagementRemote Vulnerability Analyst
CertificationsQualys Certified, Security+CompTIA Security+, CISSP (preferred)
Work EnvironmentSecurity teams, IT departments, using vulnerability management toolsSecurity teams, IT departments, analyzing vulnerabilities and reports
Industry UsageCybersecurity, IT, Managed Security Service ProvidersCybersecurity, IT, consulting firms
Primary FocusManaging and scanning vulnerabilities with Qualys platformAnalyzing vulnerabilities, assessing risks, and reporting

Remote Qualys Vulnerability Management roles focus on using Qualys tools to identify and manage security vulnerabilities, while Remote Vulnerability Analysts analyze vulnerability data, assess risks, and prepare reports. Both roles require cybersecurity knowledge but differ in technical focus and responsibilities.

What are the most commonly searched types of Qualys Vulnerability Management jobs in Washington?

The most popular types of Qualys Vulnerability Management jobs in Washington are:

What are popular job titles related to Remote Qualys Vulnerability Management jobs in Washington?

For Remote Qualys Vulnerability Management jobs in Washington, the most frequently searched job titles are:

What job categories do people searching Remote Qualys Vulnerability Management jobs in Washington look for?

The top searched job categories for Remote Qualys Vulnerability Management jobs in Washington are:

What cities in Washington are hiring for Remote Qualys Vulnerability Management jobs?

Cities in Washington with the most Remote Qualys Vulnerability Management job openings:

Cybersecurity Engineer (59903)

Beshenich & Muir Associates

Fort Myer, VA โ€ข On-site, Remote

Full-time

Medical, Dental, Vision, Retirement

Re-posted 21 hours ago


Job description

BMA is seeking a Cybersecurity Engineer to support the DLA Cybersecurity Web/App Vulnerability Management Support Services program. This is a fully remote position and contingent on contract award.
Job Summary
  • BMA is seeking a Cybersecurity Engineer (CE) to support our DLA Cybersecurity Web/App Vulnerability Management Support Services contract.
  • The CE provides advanced cybersecurity (CS) engineering support for the Cybersecurity Web/Application Vulnerability Management Branch supporting DLA's J6 Information Operations (IO) Directorate.
  • The CE supports the assessment, analysis, and remediation of CS vulnerabilities across DLA enterprise IT, Cloud, and Operational Technology (OT) environments.
  • The CE performs CS engineering and vulnerability analysis activities to ensure the confidentiality, integrity, and availability of DLA information systems (IS).
  • The role focuses on evaluating system architectures, identifying security weaknesses, conducting CS assessments, and recommending risk-based mitigation strategies to improve the overall CS posture of DLA systems.
  • The CE supports the evaluation of CS compliance with federal and DoD policies and provides technical expertise in system design, security engineering, vulnerability analysis, and CS architecture reviews.
  • The CE works closely with Program Managers (PMs), Information System Security Managers (ISSMs), system administrators (SA), network engineers (NE), and Authorizing Officials (AOs) to ensure CS controls are properly implemented and maintained throughout the system lifecycle.
  • Key responsibilities include CS engineering and system security design.
  • Provide CS engineering support for the planning, design, development, testing, and integration of DLA information systems.
  • Analyze system architectures and infrastructure to identify CS risks and recommend improvements to system security design.
  • Integrate CS engineering principles into enterprise IT, cloud environments, and OT systems.
  • Support secure system architecture development and CS engineering documentation.
  • Conduct vulnerability assessment and risk analysis.
  • Conduct CS vulnerability assessments across DLA IT, Cloud, and OT environments.
  • Evaluate system configurations and architectures to identify potential vulnerabilities and security weaknesses.
  • Perform risk assessments to determine the likelihood and impact of identified CS threats.
  • Develop mitigation strategies and technical recommendations to reduce system risk and improve CS posture.
  • Provide information assurance engineering support.
  • Perform analysis of existing and emerging information systems to evaluate compliance with DoD and federal CS policies.
  • Conduct CS assessments and security test and evaluation activities to validate compliance with CS standards.
  • Support CS engineering reviews for both classified and unclassified information systems.
  • Provide technical analysis of proposed CS policies and assess their impact on system architectures and security operations.
  • Conduct CS compliance and security control validation.
  • Evaluate compliance of DLA systems with CS policies, standards, and regulatory requirements.
  • Identify areas of non-compliance and recommend remediation actions.
  • Support implementation of security controls aligned with enterprise CS architecture.
  • Assist with development and maintenance of CS standards, guides, and implementation documentation.
  • Provide CS documentation and reporting.
  • Develop CS engineering documentation including risk assessment reports, architecture assessments, and security engineering analyses.
  • Produce implementation documentation and technical reports supporting CS engineering efforts.
  • Document vulnerability findings and recommended mitigation strategies.
  • Provide status updates and technical reports supporting project activities and CS operations.
  • Perform OT security engineering.
  • Evaluate CS risks associated with DLA OT environments including industrial control systems and facility-related control systems.
  • Assess OT system architecture, network configurations, and system interfaces for potential vulnerabilities.
  • Provide CS engineering recommendations for OT system protection and risk mitigation.

Clearance Requirement
There is a Secret security clearance requirement for this role at time of proposal submission.
Required Skills & Certifications
  • DoD Approved Baseline Certification (DoD 8570/8140) Information Assurance Management (IAT) Level III such as ISACA Certified Information Security Manager (CISM), ISC2 Certified Information Systems Security Professional (CISSP), EC-Council Certified Chief Information Security Officer (C-CISO), or GIAC / SANS GIAC Security Leadership Certification (GSLC).
  • DoD 8570/8140 Information Assurance System Architecture and Engineering (IASAE) Level III such as the ISC2 Certified Information Systems Security Professional - Information Systems Security Architecture Professional (CISSP-ISSAP). (must obtain IASAE Level III within 6 months of starting the contract).
  • Computing Environment (CE) Certification: one or more of the following Microsoft Certified Solutions Associate (MCSA) or Expert (MCSE), Cisco Certified Network Associate (CCNA), Microsoft Azure Security Technologies, Amazon Certified Security, or other relevant computing environment certification.
  • 10+ years of relevant information technology experience supporting cybersecurity or information assurance programs.
  • 5+ years of Operational Technology (OT) cybersecurity experience.
  • Demonstrated experience performing cybersecurity engineering activities including system security design, vulnerability assessment, and risk analysis.
  • Experience supporting cybersecurity compliance assessments within large enterprise IT environments.
  • Strong analytical and problem-solving skills related to cybersecurity engineering challenges.
  • Experience working with enterprise IT infrastructure, network security, and cloud-based systems.
  • Experience with STIG compliance cycles, vulnerability management, and POA&M governance.
  • Strong technical writing skills producing RMF artifacts, policy/procedure documents, and audit-ready evidence packages.
  • Strong facilitation skills for IPTs/WG sessions and cross-functional coordination.

Desired Skills & Certifications
  • TS with SCI eligibility.
  • Experience supporting DoD or DLA program offices.
  • Experience supporting DoD or DLA environments.
  • BS or BA in Information Technology, Cybersecurity, Computer Science, Engineering, Business Administration, or a related field.
  • Project Management certification required, such as Project Management Professional (PMP) or equivalent recognized project management certification.
  • One or more of the following DoD-Approved CSSP Analyst Certifications: EC-Council Certified Ethical Hacker, EC-Council CSA Certified SOC Analyst, CompTIA Cybersecurity Analyst (CySA+), GIAC or SANS GCIA GIAC Certified Intrusion Analyst, or GIAC or SANS GCIH GIAC Certified Incident Handler.
  • Current Risk Management Professional certification such as one or more of the following: PMP-RMP, ISACA Certified in Risk and Information Systems Control (CRISC), ISACA Certified Information Systems Auditor (CISA), ISACA Certified Information Security Manager (CISM), ISC2 Certified in Governance, Risk and Compliance (CGRC), or Risk and Insurance Management Society Certified Risk Management Professional (RIMS-CRMP).

Other Duties
  • Able to travel within a week's notice.
  • This job description is not designed to cover or contain a comprehensive listing of activities, duties, or responsibilities that are required of the employee for this job.
  • Duties, responsibilities, and activities may change at any time with or without notice.

Overview
BMA is an employee-owned small business headquartered in Huntsville, AL that provides superior customer service by empowering all levels of our staff to make timely decisions to produce high-quality results. BMA fosters an environment of passion, precision, and dedication in order to fulfill our commitments to our partners, government, and country.
Benefits
We believe that our employees well-being is paramount to our success so our benefits package has been crafted with that in mind. We offer multiple healthcare coverage options to include low deductible, high deductible, and plans eligible for our Health Savings Account (HSA) option. Along with medical coverage, employees have dental, vision, accident & illness, short- and long-term disability all available to them. BMA proudly maintains a 401(k) plan with an industry leading 6% match that can include profit sharing based on company performance. Lastly, being an employee-owned company means that BMA offers a 100% Employee Stock Ownership Plan (ESOP), providing eligible employees the opportunity to earn stock in BMA, subject to plan eligibility and vesting requirements.
AAP & EEO Statement
Beshenich Muir & Associates, LLC (BMA) is an Equal opportunity/Affirmative Action Employer. All qualified applicants will receive consideration for employment without regards to race, color, religion, religious creed, gender, sexual orientation, gender identity, gender expression, transgender, pregnancy, marital status, national origin, ancestry, citizenship status, age, disability, protected Veteran Status, genetics or any other characteristics protected by applicable Federal, State, or Local Law.