2

Remote Vulnerability Analyst Jobs in Washington (NOW HIRING)

Analyze scan data, validate findings and false positives, and prioritize based on CVSS ... Remote status is subject to change at the customer's direction. This position requires a Public ...

Analyze scan data, validate findings and false positives, and prioritize based on CVSS ... Remote status is subject to change at the customer's direction. This position requires a Public ...

iOS Vulnerability Researcher

Arlington, VA ยท Remote

$59.50 - $82/hr

... analysis techniques. * You'll develop Proof-of-Concepts for vulnerabilities identified. * You'll ... This is a remote role so the successful candidate can be based anywhere in the USA, or indeed the ...

Herndon, VA 20171 (Remote) Employment Type: FTE + Benefits Client is supporting the FedRAMP and ... Configuration, Execution and Analysis of vulnerability scans * Ability to interpret and assess ...

Herndon, VA 20171 (Remote) Employment Type: FTE + Benefits Client is supporting the FedRAMP and ... Configuration, Execution and Analysis of vulnerability scans * Ability to interpret and assess ...

Sr Vulnerability Management Engineer

Washington, DC ยท Remote

$118K - $162K/yr

Analyze findings, validate exploitability, and provide clear, actionable remediation guidance to ... Remote - US Only Travel: No travel required Relocation Assistance: Not authorized Must be legally ...

FTE + Benefits Remote: 80% (4 days a week) Client supports the FedRAMP and FISMA authorization(s ... Configuration, Execution and Analysis of vulnerability scans * Ability to interpret and assess ...

FTE + Benefits Remote: 80% (4 days a week) Supports the FedRAMP and FISMA authorization(s) of new ... Configuration, Execution and Analysis of vulnerability scans * Ability to interpret and assess ...

FTE + Benefits Remote: 80% (4 days a week) Client supports the FedRAMP and FISMA authorization(s ... Configuration, Execution and Analysis of vulnerability scans * Ability to interpret and assess ...

FTE + Benefits Remote: 80% (4 days a week) Supports the FedRAMP and FISMA authorization(s) of new ... Configuration, Execution and Analysis of vulnerability scans * Ability to interpret and assess ...

next page

Showing results 1-20

Remote Vulnerability Analyst information

What is a Remote Vulnerability Analyst?

A Remote Vulnerability Analyst is a cybersecurity professional who identifies, assesses, and helps mitigate security vulnerabilities in an organization's digital systems, typically while working from a remote location. They analyze networks, applications, and other IT assets to find weaknesses that could be exploited by cyber attackers. Their responsibilities often include conducting vulnerability scans, reviewing security reports, and collaborating with IT teams to recommend solutions. This role is crucial for proactively protecting sensitive data and ensuring the overall security posture of an organization.

What are the key skills and qualifications needed to thrive as a Remote Vulnerability Analyst, and why are they important?

To thrive as a Remote Vulnerability Analyst, you need a strong understanding of cybersecurity principles, vulnerability assessment methodologies, and relevant security frameworks, typically backed by a degree in cybersecurity or related field. Familiarity with tools such as Nessus, Qualys, Burp Suite, and certifications like CEH or CompTIA Security+ are commonly required. Analytical thinking, attention to detail, and effective remote communication are essential soft skills for success in this position. These skills and qualities are crucial for accurately identifying and mitigating security risks, ensuring the protection of organizational assets in a remote work environment.

What is the difference between Remote Vulnerability Analyst vs Remote Security Analyst?

AspectRemote Vulnerability AnalystRemote Security Analyst
CertificationsCompTIA Security+, CEH, OSCPCompTIA Security+, CISSP, CEH
Work EnvironmentRemote, cybersecurity teams, vulnerability managementRemote, security operations centers, incident response
Industry UsageIT, cybersecurity firms, large enterprisesIT, government, financial institutions

Remote Vulnerability Analysts focus on identifying and assessing security weaknesses in systems, while Remote Security Analysts handle broader security monitoring, incident response, and policy enforcement. Both roles require similar certifications and often work remotely within cybersecurity teams, but their core responsibilities differ in scope and focus.

What are some common challenges faced by Remote Vulnerability Analysts and how can they be addressed?

Remote Vulnerability Analysts often encounter challenges such as maintaining effective communication with on-site teams, staying updated with rapidly evolving security threats, and managing multiple vulnerability assessments simultaneously. To overcome these, it's important to utilize collaborative tools, participate in regular virtual meetings, and stay engaged with industry news and professional development. Building strong relationships with other cybersecurity professionals and leveraging automation tools can also help streamline workflows and ensure timely vulnerability remediation.
What are the most commonly searched types of Vulnerability Analyst jobs in Washington? The most popular types of Vulnerability Analyst jobs in Washington are:
What are popular job titles related to Remote Vulnerability Analyst jobs in Washington? For Remote Vulnerability Analyst jobs in Washington, the most frequently searched job titles are:
What job categories do people searching Remote Vulnerability Analyst jobs in Washington look for? The top searched job categories for Remote Vulnerability Analyst jobs in Washington are:
What cities in Washington are hiring for Remote Vulnerability Analyst jobs? Cities in Washington with the most Remote Vulnerability Analyst job openings:
Vulnerability Manager

Vulnerability Manager

AnaVation

Alexandria, VA โ€ข On-site, Remote

Full-time

Posted 12 days ago


Job description

Be Challenged and Make a Differenceย 
ย 
In a world of technology, people make the difference. We believe if we invest in great people, then great things will happen. At AnaVation, we provide unmatched value to our customers and employees through innovative solutions and an engaging culture.ย 

Description of Task to be Performed:

AnaVation is searching for a Vulnerability Manager to assist client leadership with the enterprise vulnerabilityย management program, administering scanning platforms (Tenable and/or Qualys), driving vulnerability analysis and riskย prioritization, and delivering reporting to leadership and compliance stakeholders.

Responsibilities:

  • Administer and maintain scanning platforms such as Tenable.SC, Qualys and/or application-based scanners,ย which may include activities such as scan policies, asset groups, credentials scanning, and agent deployment.
  • Lead enterprise-wide vulnerability scanning cadence across the network, systems, applications and otherย dependent assets.
  • Analyze scan data, validate findings and false positives, and prioritize based on CVSS, exploitability, andย business risk.
  • Own and manage POA&M lifecycle, tracking remediation timelines, risk acceptance documentation, and closureย validation.
  • Develop and deliver weekly vulnerability metrics/dashboards and executive reporting (trend analysis, SLAย compliance, risk posture).
  • Support ATO and continuous monitoring activities in alignment with NIST 800-53.
  • Coordinate remediation with system owners, IT operations, and patch management teams.
  • Manage scanner tuning, plugin/signature updates, and platform health.
  • Support FISMA reporting requirements. ยท Interacting with GRC tool (e.g., CSAM) to perform daily/weekly vulnerability analysis.
  • Flexible with other security related tasks as needed by the customer.
This position is hybrid, with the potential for periodic onsite attendance at our customer location in Alexandria, VA.
Applicants who do not currently reside within commuting distance should describe how they would satisfy this requirement. Remote status is subject to change at the customerโ€™s direction.
ย 
This position requires a Public Trust
Required Qualifications:
  • Bachelor's degree in a related field or equivalent demonstrated experience and knowledge.
  • 6 years of experience as a Security Administrator, Vulnerability Manager or equivalent knowledge.
  • Hands-on administration experience with Tenable or Qualys.
  • Performing vulnerability scans with tools such as Tenable, Qualys, Burpsuite.
  • Deep familiarity with CVSS scoring, risk based prioritization methodologies.
  • Excellent oral and written communication skills.
  • Familiarity with multi-tiered network applications, common ports and protocols used in those communications,ย the Common Vulnerability System (CVS) and the exploitation mechanisms of common vulnerability types (e.g.,ย buffer overflows, cross-site-scripting, SQL injection).
  • Certifications: Security + required
Preferred Qualifications:
  • Self-Starter โ€“ ability to quickly become competent with new security-related tools and processes.
  • Ability to conduct Deep Dive analysis to determine root cause assessment of various network scanning agentsโ€™ย scanning or communication failures.
  • Ability to coordinate remediation strategies with agencyโ€™s department technical staff through completion.
  • Familiarity with the various use cases and alignment of data from each tool to various security disciplines inย configuration management, vulnerability management, risk management and incident management.
  • Understanding of the role of interactive training such as phishing exercises for assessment of organizationalย abilities.
  • Familiarity with the use of data analysis tools, including the use of Microsoft Excel or PowerBI to combine dataย from multiple sources.
  • Familiarity with information security terminology and being able to develop or select technical training in theย discipline of information security geared to an organization.
  • Familiarity with data management and reporting of training data and statistics using common tools such asย Microsoft Excel and Word.
  • Certifications: CISSP
Benefitsย 
  • ย ย ย ย ย ย ย  Generous cost sharing for medical insurance for the employee and dependentsย 
  • ย ย ย ย ย ย ย  100% company paid dental insurance for employees and dependentsย 
  • ย ย ย ย ย ย ย  100% company paid long-term and short-term disability insuranceย 
  • ย ย ย ย ย ย ย  100% company paid vision insurance for employees and dependentsย 
  • ย ย ย ย ย ย ย  401k plan with generous match and 100% immediate vestingย 
  • ย ย ย ย ย ย ย  Competitive Payย 
  • ย ย ย ย ย ย ย  Generous paid leave and holiday packageย 
  • ย ย ย ย ย ย ย  Tuition and training reimbursementย 
  • ย ย ย ย ย ย ย  Life and AD&D Insurance
About AnaVationย 
AnaVation is the leader in solving the most complex technical challenges for collection and processing in the U.S. Federal Intelligence Community. We are a US owned company headquartered in Chantilly, Virginia. We deliver groundbreaking research with advanced software and systems engineering that provides an information advantage to contribute to the mission and operational success of our customers. We offer complex challenges, a top-notch work environment, and a world-class, collaborative team. ย 
ย 
If you want to grow your career and make a difference while doing it, AnaVation is the perfect fit for you!ย 
ย 
AnaVation is an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to sex, race, color, religion, national origin, disability, protected Veteran status, age, or any other characteristic protected by law.