1

Scan Analyst Jobs in Virginia (NOW HIRING)

Vulnerability, R&D & Directive Scanning: Execute and analyze credentialed and non-credentialed vulnerability scans. Tailor scan zones, profiles, and asset lists to ensure 100% visibility while ...

New

The VAT Analyst will need to be a self-starter with excellent analytical and problem-solving skills ... Develop and execute vulnerability/compliance scans through Nessus SC interface, determine whether a ...

Senior VAT Analyst

Arlington, VA · On-site

$107K - $195K/yr

The VAT Analyst will need to be a self-starter with excellent analytical and problem-solving skills ... Develop and execute vulnerability/compliance scans through Nessus SC interface, determine whether a ...

Position Overview The Analyst within the Media Scanner team is a key member of The Media Trust's Client Operations Group, responsible for ensuring the accurate and timely configuration and execution ...

The VAT Analyst will need to be a self-starter with excellent analytical and problem-solving skills ... Develop and execute vulnerability/compliance scans through Nessus SC interface, determine whether a ...

... the Analyst level to CISO with prestigious organizations nationwide Our client seeking a ... Qualifications Proficiency with vulnerability scanning, remediation and reporting Knowledge in web ...

Program Analysis (PAN) Travel Required: Up to 10% Clearance Required: Ability to Obtain Public ... Review scanned images and Optical Character Recognition (OCR) outputs for completeness and ...

Program Analysis (PAN) Travel Required: Up to 10% Clearance Required: Ability to Obtain Public ... Review scanned images and Optical Character Recognition (OCR) outputs for completeness and ...

Position Overview The Analyst within the Media Scanner team is a key member of The Media Trusts Client Operations Group, responsible for ensuring the accurate and timely configuration and execution ...

Position Overview The Analyst within the Media Scanner team is a key member of The Media Trusts Client Operations Group, responsible for ensuring the accurate and timely configuration and execution ...

Execute vulnerability scans (ACAS, Forescout, Nessus, etc.), review results, and validate findings ... Document analysis steps, maintain case records, and prepare operational summaries, trend reports ...

Execute vulnerability scans (ACAS, Forescout, Nessus, etc.), review results, and validate findings ... Document analysis steps, maintain case records, and prepare operational summaries, trend reports ...

Overview: GovCIO is hiring a Cybersecurity Analyst to provide cybersecurity, compliance, and ... Review vulnerability scans and perform corrective actions across all system hardware and software.

next page

Showing results 1-20

Scan Analyst information

See Virginia salary details

$36.2K

$96.8K

$226.5K

How much do scan analyst jobs pay per year?

As of Jun 12, 2026, the average yearly pay for scan analyst in Virginia is $96,822.00, according to ZipRecruiter salary data. Most workers in this role earn between $54,500.00 and $110,000.00 per year, depending on experience, location, and employer.

How does a Scan Analyst typically collaborate with other departments within a retail organization?

Scan Analysts play a key role in ensuring pricing accuracy and inventory integrity across the organization. They regularly collaborate with the merchandising and IT departments to update product information, resolve discrepancies, and implement promotions efficiently. Additionally, Scan Analysts often work closely with store managers and front-end staff to troubleshoot issues with point-of-sale systems and barcode scanning. Effective communication and teamwork are essential in this role to maintain seamless store operations and support business objectives.

What are the key skills and qualifications needed to thrive as a Scan Analyst, and why are they important?

To thrive as a Scan Analyst, you need strong analytical abilities, attention to detail, and experience with inventory management or retail systems, often backed by a relevant associate degree or retail experience. Familiarity with point-of-sale (POS) systems, data analysis software, and retail pricing tools such as NCR or IBM is typically required. Excellent organizational skills, problem-solving, and effective communication help Scan Analysts ensure pricing accuracy and collaborate with store teams. These skills are crucial for maintaining data integrity, minimizing pricing errors, and supporting efficient retail operations.

What is a Scan Analyst?

A Scan Analyst is a professional responsible for managing, interpreting, and analyzing data collected from scanning equipment, such as barcode scanners, MRI scanners, or document imaging systems. Their duties often include ensuring the accuracy and quality of scanned data, troubleshooting technical issues, and generating reports for internal use. Scan Analysts may work in various industries, including retail, healthcare, logistics, and document management, depending on the type of scanning technology utilized. They typically collaborate with IT staff, data analysts, and operational teams to optimize scanning processes and maintain data integrity.

What is the difference between Scan Analyst vs Data Analyst?

AspectScan AnalystData Analyst
Required CredentialsTypically certifications in imaging, scanning, or specific industry toolsOften requires degrees or certifications in statistics, data analysis, or related fields
Work EnvironmentHealthcare, security, or manufacturing settings involving scanning equipmentOffice environments, analyzing large datasets across various industries
Employer & Industry UsageHospitals, security firms, manufacturing companiesBusiness, finance, marketing, healthcare sectors

While both roles involve analyzing information, a Scan Analyst focuses on interpreting data from scanning devices, whereas a Data Analyst works with broader datasets to generate insights across multiple industries.

Infographic showing various Scan Analyst job openings in Virginia as of June 2026, with employment types broken down into 100% Full Time. Highlights an 60% In-person, and 40% Hybrid job distribution, with an average salary of $96,822 per year, or $46.5 per hour.

Other

Posted yesterday


Job description

Description

Job Title: Cybersecurity Analyst

Location: Oakton, VA 

Department: Cyber Security Services 

Reports To: Management

FLSA Status: Full Time/Non-exempt 


Description:

Apavo is at the forefront of cybersecurity, providing services to military, defense, and critical infrastructure industries. Joining the Apavo team means becoming part of a company rooted in the principles of quality, and communication. We value positive, candid interactions and the belief that everyone has valuable contributions to make. Apavo stands out for its commitment to a work-life balance and fostering a growth mindset among all team members. If you are looking to make a meaningful impact in the cybersecurity world while growing professionally in a supportive environment, Apavo is the place for you.  


Job Purpose:

The Cybersecurity Analyst supports the Defense Advanced Research Projects Agency (DARPA) mission by executing advanced vulnerability management, compliance, and Continuous Monitoring (ConMon) within complex, multi-enclave Risk Management Framework (RMF) environments. Operating across all classification levels (Unclassified, Secret, TS/SCI, and SAP), this role ensures that standard enterprise systems and unique Research & Development (R&D) systems remain secure and compliant under both Department of Defense (DoD) and Intelligence Community (IC) directives. The analyst serves as the Assured Compliance Assessment Solution (ACAS) Subject Matter Expert (SME), ensuring complete network visibility, verifying directive compliance, and mitigating vulnerabilities across DoDI 8510.01, ICD 503, and JSIG governed environments.


Duties & Responsibilities:

Cybersecurity Analyst responsibilities include, but are not limited to:

Advanced ACAS Administration: Deploy, configure, and manage Tenable Security Center (Tenable.sc) and Nessus scanners across connected and air-gapped enclaves (NIPR, SIPR, JWICS, SAP).

Vulnerability, R&D & Directive Scanning: Execute and analyze credentialed and non-credentialed vulnerability scans. Tailor scan zones, profiles, and asset lists to ensure 100% visibility while preventing disruptions to fragile, experimental DARPA research systems. Perform targeted scanning to determine and verify system compliance with DCDC Communications Tasking Orders (CTOs).

Troubleshooting & Maintenance: Diagnose and resolve complex scanner connectivity issues, WMI/SSH credentialed scan failures, and perform manual/offline plugin and feed synchronizations for isolated, highly classified networks.

Multi-Framework Compliance Validation: Validate findings against DISA STIGs, CIS benchmarks, and specific IC/SAP security baselines. Conduct compliance checks using tools such as SCC, STIG Viewer, and Evaluate-STIG.

Risk & Remediation Tracking: Develop and maintain POA&M documentation. Monitor IAVA/IAVM notices and IC-specific vulnerability alerts. Collaborate with operations and engineering personnel to provide risk-based remediation strategies, tracking mitigation within systems of record (e.g., eMASS, Xacta).

Continuous Monitoring & Upstream Reporting: Execute ConMon activities, integrating ACAS outputs with local SIEM tools (e.g., Splunk) to maintain ongoing authorization and coordinate with the external Cybersecurity Service Provider (CSSP). Support upstream enterprise cybersecurity posture reporting, ensuring accurate data synchronization with the Continuous Monitoring and Risk Scoring (CMRS) system.

DoD & IC RMF Support: Support RMF lifecycle activities across multiple regulatory frameworks-including DoD RMF (DoDI 8510.01), Intelligence Community Directive 503 (ICD 503), and the Joint SAP Implementation Guide (JSIG). Maintain artifacts and map technical scan findings to NIST SP 800-53 and CNSSI 1253 controls.

The Cybersecurity Analyst is expected to have additional duties as assigned in support of corporate cybersecurity services and DARPA mission requirements. Additional details are reviewed in accordance with company policies.


Other:

This is typical office or administrative work, and there is no exposure to adverse environmental conditions.

This position requires sedentary work. Sedentary work is defined as: Exerting up to 10 pounds of force occasionally and/or a negligible amount of force frequently or constantly to lift, carry, push, pull or otherwise move objects, including the human body. Sedentary work involves sitting most of the time. Jobs are sedentary if walking and standing are required only occasionally, and all other sedentary criteria are met.

Apavo Corporation provides equal employment opportunities to all applicants and employees and strictly prohibits any type of harassment or discrimination in regards to race, religion, age, color, sex, disability status, national origin, genetics, sexual orientation, protected veteran status, gender expression, gender identity, or any other characteristic protected under federal, state, and/or local laws.

Consistent with the Americans with Disabilities Act (ADA), it is the policy of Apavo Corporation to provide reasonable accommodation when requested by a qualified applicant or employee with a disability, unless such accommodation would cause an undue hardship. The policy regarding requests for reasonable accommodation applies to all aspects of employment, including the application process. If reasonable accommodation is needed, please contact Apavo Human Resources at hr@apavo.com or 571-407-0069

Employment with Apavo Corporation is on an at-will basis, meaning either you or the Company can terminate the employment relationship, at any time, for any or no reason, and with or without cause or notice. As an at-will employee, your employment with Apavo Corporation is not guaranteed for any length of time.

Requirements

Qualifications:

  • Education/Experience: Bachelor's degree in Cybersecurity, Information Technology, or related field (or equivalent experience) with 5-7+ years of experience in DoD/IC cybersecurity, heavily focused on vulnerability management and RMF.
  • Clearance: Active Top Secret clearance with SCI eligibility. (Willingness to undergo a Counterintelligence (CI) or Full-Scope Polygraph for SAP readiness is highly preferred).
  • DoD Directive: DoD 8570.01-M / 8140.03 compliant for IAT Level II (e.g., Security+ CE, CySA+) or Level III (e.g., CASP+, CISSP).
  • ACAS Certification: Current DISA ACAS Operator and/or Administrator training certificate is required.
  • Technical Proficiency: Deep, hands-on administrative experience with ACAS (Nessus / Tenable.sc) infrastructure, including offline updates, CMRS integration, air-gapped deployments, and credentialed scan troubleshooting.
  • OS/Environment: Computing Environment (CE) certification (e.g., Linux+, Windows Server) or equivalent command-line experience is highly preferred for ACAS host management.
  • Framework Knowledge: Strong understanding of DoD RMF (DoDI 8510.01), IC RMF (ICD 503), JSIG, CNSSI 1253, NIST SP 800-53 controls, STIG implementation, and IAVA/IAVM/CTO remediation processes.
  • Tooling: Experience with SCC, STIG Viewer, eMASS, Xacta (heavily used in IC/SAP environments), and log aggregation tools (e.g., Splunk).
  • Communication: Strong analytical and problem-solving skills, with the ability to communicate technical cyber risks to non-technical program managers and research scientists.