1

Vulnerability Management Jobs in Reston, VA (NOW HIRING)

SOC Vulnerability Management ACAS Lead - Senior

Fairfax, VA · On-site

$105K - $143K/yr

Position Summary ECS is seeking a SOC Vulnerability Management ACAS Lead - Senior to support the Army National Guard (ARNG) Enterprise Network Operations and Cybersecurity Support (ENOCS) program. In ...

next page

Showing results 1-20

People also search for

Vulnerability Management information

What are the common challenges faced in a Vulnerability Management role?

Professionals in Vulnerability Management often encounter challenges such as rapidly evolving threat landscapes, prioritizing remediation efforts among numerous vulnerabilities, and ensuring continuous communication between technical and non-technical stakeholders. They may also need to adapt to changing regulatory requirements and work within tight deadlines to protect the organization from emerging risks. As part of this role, you'll collaborate regularly with IT, security, and business teams to ensure remediation steps are effectively implemented. Continuous learning and adaptability are important, as technologies and attack vectors change frequently in this field. Being proactive and detail-oriented will help you address these challenges and advance your career in cybersecurity.

Can you make $500,000 a year in cyber security?

Vulnerability Management professionals can potentially earn $500,000 annually with extensive experience, advanced certifications like CISSP or CISA, and leadership roles such as Security Director or Chief Information Security Officer. High salaries are often associated with senior positions, specialized skills, and working in large organizations or consulting firms.

What are the key skills and qualifications needed to thrive in the Vulnerability Management position, and why are they important?

To thrive in Vulnerability Management, you need a strong understanding of cybersecurity principles, network protocols, and risk assessment, typically supported by a relevant degree and experience in information security. Familiarity with vulnerability scanning tools (such as Nessus or Qualys), security frameworks, and industry certifications like CISSP or CompTIA Security+ is highly valued. Exceptional analytical thinking, communication skills, and an ability to work collaboratively across IT and business teams help professionals excel in this field. These competencies are crucial to effectively identifying, prioritizing, and mitigating security risks in dynamic organizational environments.

Can I make $200,000 a year in cyber security?

Vulnerability Management professionals can potentially earn $200,000 or more annually, especially with extensive experience, advanced certifications like CISSP, and working in high-demand industries or senior roles. Salary levels vary based on location, company size, and individual expertise, but high-level cybersecurity roles often reach or exceed this income level.

Is vulnerability management a good career?

Vulnerability management is a valuable cybersecurity role focused on identifying and mitigating security weaknesses in systems. It requires knowledge of security tools, risk assessment, and often certifications like CISSP or CompTIA Security+; the field offers strong job growth and demand for skilled professionals.

What is a Vulnerability Management job?

A Vulnerability Management job involves identifying, assessing, prioritizing, and mitigating security vulnerabilities in an organization's systems, networks, and applications. Professionals in this role use tools like vulnerability scanners and threat intelligence to detect weaknesses and coordinate remediation efforts with IT and security teams. They also establish policies, monitor security risks, and ensure compliance with industry standards. The goal is to reduce the organization's exposure to cyber threats and improve overall security posture.

Is SOC an entry level job?

A Security Operations Center (SOC) analyst role can be entry level, but many positions require some experience with cybersecurity tools, network monitoring, or scripting. Entry-level SOC roles often focus on monitoring security alerts and basic incident response, while more advanced positions may require certifications like CompTIA Security+ or CISSP. The level of difficulty depends on the organization's requirements and the complexity of the security environment.
What are the most commonly searched types of Vulnerability Management jobs in Reston, VA? The most popular types of Vulnerability Management jobs in Reston, VA are:
What are popular job titles related to Vulnerability Management jobs in Reston, VA? For Vulnerability Management jobs in Reston, VA, the most frequently searched job titles are:
What job categories do people searching Vulnerability Management jobs in Reston, VA look for? The top searched job categories for Vulnerability Management jobs in Reston, VA are:
What cities near Reston, VA are hiring for Vulnerability Management jobs? Cities near Reston, VA with the most Vulnerability Management job openings:
Vulnerability Management Analyst- Secret Clearance Required

Vulnerability Management Analyst- Secret Clearance Required

Sherpa 6

Springfield, VA

$90K - $125K/yr

Other

Medical, Dental, Vision, Retirement, PTO

Posted 2 days ago


Job description

Description

Security Clearance: Active Secret clearance required (Interim ok)

Travel Requirement: Up to 10%

Citizenship: US Citizenship required


Sherpa 6 is seeking a highly motivated and skilled Vulnerability Management Analyst to join our team. We build mission critical systems for the Department of Defense (DoD) and other commercial customers. You'll be responsible for identifying, assessing, prioritizing, and tracking remediation of security vulnerabilities across our software development process. You will partner with infrastructure, application, and security teams to ensure risks are properly understood, addressed, and reported.


Responsibilities:

  • Perform regular vulnerability scans across cloud, on-prem, application, and endpoint environments.
  • Work alongside Software and DevSecOps teams to develop strategies for incorporating vulnerability detection and management in CI/CD pipelines as part of our software development process
  • Analyze scan results, validate findings, and assign severity based on industry standards (e.g., CVSS), business context, and exploitability.
  • Work collaboratively with engineering and operations teams to drive timely remediation of vulnerabilities.
  • Monitor external threat intelligence and evaluate emerging vulnerabilities (e.g., zero-days, trending exploits).
  • Maintain the vulnerability management platform and improve scanning coverage and accuracy.
  • Support patch management processes and ensure alignment with remediation SLAs.
  • Assist in developing and refining policies, procedures, and best practices for vulnerability management.
  • Participate in incident response efforts when vulnerabilities contribute to active threats.

Requirements

  • 7+ years of experience in cybersecurity, vulnerability management, or related fields.
  • 3+ years of experience working alongside software development and DevSecOps teams as part of the software development process
  • Hands-on experience with tools such as Tenable, Qualys, Rapid7, OpenVAS, or similar.
  • Strong understanding of CVE, CVSS, NIST, CIS benchmarks, and vulnerability classification frameworks.
  • Familiarity with cloud platforms (AWS, Azure, GCP)
  • Ability to interpret vulnerability findings, identify actual risk, and communicate clearly with technical and non-technical stakeholders.
  • Knowledge of patch management practices and change management workflows.
  • Understanding of network architecture, security controls, and common attack vectors.
  • Excellent analytical and problem-solving skills, with a keen attention to detail.
  • Strong communication and interpersonal skills, with the ability to effectively collaborate with cross-functional teams
  • Must be a US citizen

Qualities of Exceptional Candidates:

  • Relevant certifications (Security+, CySA+, CEH, GSEC, or similar).
  • Experience with automation or scripting (Python, PowerShell, Bash).
  • Background in secure configuration management, container security, or DevSecOps tooling.
  • Knowledge of SIEM or threat detection platforms.

About Sherpa 6:

At Sherpa 6 we love to solve problems and provide the best solutions for our customers. Our approach to a problem is to find a user-focused and design-driven solution that is simple yet functional and effective. We are a group of enthusiastic forward-thinkers who are excited to build amazing solutions with bleeding-edge technology. We hire people who are forward thinkers, passionate about what they do, love to collaborate and want to constantly learn. We enjoy what we do and we're not afraid to put the extra effort in to accomplish the mission; call us Sherpas. As a Service-Disabled Veteran Owned Small Business, we know what it means to serve. We have made it our mission to be the leaders in solutions that protect and give our Warfighters the edge they need when put into harm's way.

Background Screening/Check/Investigation:

Successful completion of a background screening/check/investigation will/may be required as a condition of hire.

ADA:

Sherpa 6 will make reasonable accommodations in compliance with the Americans with Disabilities Act 1990.

EEO/AA:

Sherpa 6 does not discriminate based on race, color, national origin, sex, religion age, disability, sexual orientation, gender identity, veteran status, height, weight, or marital status in employment or the provision of services and is an equal access/opportunity/affirmative action employer.

Benefits:

We offer a competitive benefits package, covering the cost of medical for you and your family; we also offer dental, vision, health and wellness benefits and a generous retirement savings plan. We believe that our employees can manage their workload and their personal life, therefore we extend a generous PTO policy. This allows our employees to balance their lives as they see fit.

Salary Range

The proposed salary range is reflective across all Sherpa 6 locations, years of experience, and skill levels. Salary negotiations will be based on a host of factors including but not limited to your geographic location, prior experience, relevant skills, education, and certifications.