The Vulnerability Management Lead directs client's vulnerability management program across the Continuous Diagnostics and Mitigation (CDM), Web Application Surveillance Program (WASP), and Cyber ...
The Vulnerability Management Lead directs client's vulnerability management program across the Continuous Diagnostics and Mitigation (CDM), Web Application Surveillance Program (WASP), and Cyber ...
Manager, Vulnerability Management
Orlando, FL · On-site +1
$89K - $127K/yr
You will serve as a subject matter expert for cyber security in multiple domains including asset management, threat and vulnerability management, and risk management. You will direct and influence ...
Manager, Vulnerability Management
Orlando, FL · On-site +1
$89K - $127K/yr
You will serve as a subject matter expert for cyber security in multiple domains including asset management, threat and vulnerability management, and risk management. You will direct and influence ...
Vulnerability Management Remediator (Tanium Specialist) Atlanta, GA - Onsite Long Term Contract Role Overview Seeking a hands-on Vulnerability Management Remediator with strong expertise in Tanium ...
Vulnerability Management Remediator (Tanium Specialist) Atlanta, GA - Onsite Long Term Contract Role Overview Seeking a hands-on Vulnerability Management Remediator with strong expertise in Tanium ...
The Vulnerability Management Lead directs client's vulnerability management program across the Continuous Diagnostics and Mitigation (CDM), Web Application Surveillance Program (WASP), and Cyber ...
The Vulnerability Management Lead directs client's vulnerability management program across the Continuous Diagnostics and Mitigation (CDM), Web Application Surveillance Program (WASP), and Cyber ...
Vulnerability Management Lead
Washington, DC · On-site +1
The Vulnerability Management Lead directs client's vulnerability management program across the Continuous Diagnostics and Mitigation (CDM), Web Application Surveillance Program (WASP), and Cyber ...
Vulnerability Management Lead
Washington, DC · On-site +1
The Vulnerability Management Lead directs client's vulnerability management program across the Continuous Diagnostics and Mitigation (CDM), Web Application Surveillance Program (WASP), and Cyber ...
A Vulnerability Management Professional will be responsible for identification, assessment, prioritization, and drive mitigation of security weaknesses across an organization's IT infrastructure, ...
A Vulnerability Management Professional will be responsible for identification, assessment, prioritization, and drive mitigation of security weaknesses across an organization's IT infrastructure, ...
The Principal Vulnerability Management Analyst serves as the program owner for vulnerability management, overseeing all aspects of vulnerability assessment, remediation, and reporting. This role is ...
The Principal Vulnerability Management Analyst serves as the program owner for vulnerability management, overseeing all aspects of vulnerability assessment, remediation, and reporting. This role is ...
Manager, Vulnerability Management
Orlando, FL · On-site +1
$89K - $127K/yr
You will serve as a subject matter expert for cyber security in multiple domains including asset management, threat and vulnerability management, and risk management. You will direct and influence ...
Manager, Vulnerability Management
Orlando, FL · On-site +1
$89K - $127K/yr
You will serve as a subject matter expert for cyber security in multiple domains including asset management, threat and vulnerability management, and risk management. You will direct and influence ...
A Vulnerability Management Professional will be responsible foridentification, assessment, prioritization, and drive mitigation of security weaknesses across an organization's IT infrastructure, ...
A Vulnerability Management Professional will be responsible foridentification, assessment, prioritization, and drive mitigation of security weaknesses across an organization's IT infrastructure, ...
Drive the evolution of Vulnerability Management program, adopting VulnOps concepts to defend against human & AI-driven threats - while infusing AI into team operations * Lead and develop a high ...
Drive the evolution of Vulnerability Management program, adopting VulnOps concepts to defend against human & AI-driven threats - while infusing AI into team operations * Lead and develop a high ...
The Vulnerability Management Lead directs client's vulnerability management program across the Continuous Diagnostics and Mitigation (CDM), Web Application Surveillance Program (WASP), and Cyber ...
The Vulnerability Management Lead directs client's vulnerability management program across the Continuous Diagnostics and Mitigation (CDM), Web Application Surveillance Program (WASP), and Cyber ...
Vulnerability Management Lead
Austin, TX · On-site
$101K - $133K/yr
Job Overview We're looking for a hands-on Vulnerability Management Lead to own Saronic's VM program end-to-end. You will be the technical authority for vulnerability discovery, triage, prioritization ...
Vulnerability Management Lead
Austin, TX · On-site
$101K - $133K/yr
Job Overview We're looking for a hands-on Vulnerability Management Lead to own Saronic's VM program end-to-end. You will be the technical authority for vulnerability discovery, triage, prioritization ...
This role is responsible for administration of vulnerability management platforms, agency coordination, risk documentation, and training. The consultant will help ensure state agencies manage and ...
Quick apply
This role is responsible for administration of vulnerability management platforms, agency coordination, risk documentation, and training. The consultant will help ensure state agencies manage and ...
Job Summary -- Essential Functions/Duties The Vulnerability Management Technician provides technical support to end users while supporting the organization's cybersecurity and vulnerability ...
Job Summary -- Essential Functions/Duties The Vulnerability Management Technician provides technical support to end users while supporting the organization's cybersecurity and vulnerability ...
Vulnerability Management Analyst Duration: 11 months Developer Enablement Experience Level: Intermediate (7 - 10) Job Summary: Vulnerability Management Analyst (2 openings) Stand up vulnerability ...
Vulnerability Management Analyst Duration: 11 months Developer Enablement Experience Level: Intermediate (7 - 10) Job Summary: Vulnerability Management Analyst (2 openings) Stand up vulnerability ...
Title: Vulnerability Management Administrator (14990) Location: Orlando, FL (100% onsite) 32837 Type: Direct Hire Position Rate: $85K + annual bonus + full benefits + full relocation Full The ...
Title: Vulnerability Management Administrator (14990) Location: Orlando, FL (100% onsite) 32837 Type: Direct Hire Position Rate: $85K + annual bonus + full benefits + full relocation Full The ...
Role Summary The Lead Vulnerability Management Analyst is responsible for overseeing the identification, assessment, prioritization, and remediation coordination of security vulnerabilities across ...
Role Summary The Lead Vulnerability Management Analyst is responsible for overseeing the identification, assessment, prioritization, and remediation coordination of security vulnerabilities across ...
Vulnerability Management • Own and engineer the enterprise Vulnerability Management platform, including configuration, optimization, coverage strategy, and continuous improvement of asset discovery ...
Vulnerability Management • Own and engineer the enterprise Vulnerability Management platform, including configuration, optimization, coverage strategy, and continuous improvement of asset discovery ...
Job Summary -- Essential Functions/Duties The Vulnerability Management Technician provides technical support to end users while supporting the organization's cybersecurity and vulnerability ...
Job Summary -- Essential Functions/Duties The Vulnerability Management Technician provides technical support to end users while supporting the organization's cybersecurity and vulnerability ...
Cyber Security Engineer - Vulnerability Management
New York, NY · On-site
$165K - $175K/yr
Senior Cybersecurity Engineer - Vulnerability Management & Incident Response Position Overview Our client is seeking a highly technical Cybersecurity Engineer to lead and mature enterprise ...
Quick apply
Cyber Security Engineer - Vulnerability Management
New York, NY · On-site
$165K - $175K/yr
Senior Cybersecurity Engineer - Vulnerability Management & Incident Response Position Overview Our client is seeking a highly technical Cybersecurity Engineer to lead and mature enterprise ...
Vulnerability Management information
What are the common challenges faced in a Vulnerability Management role?
Professionals in Vulnerability Management often encounter challenges such as rapidly evolving threat landscapes, prioritizing remediation efforts among numerous vulnerabilities, and ensuring continuous communication between technical and non-technical stakeholders. They may also need to adapt to changing regulatory requirements and work within tight deadlines to protect the organization from emerging risks. As part of this role, you'll collaborate regularly with IT, security, and business teams to ensure remediation steps are effectively implemented. Continuous learning and adaptability are important, as technologies and attack vectors change frequently in this field. Being proactive and detail-oriented will help you address these challenges and advance your career in cybersecurity.
What are the key skills and qualifications needed to thrive in the Vulnerability Management position, and why are they important?
To thrive in Vulnerability Management, you need a strong understanding of cybersecurity principles, network protocols, and risk assessment, typically supported by a relevant degree and experience in information security. Familiarity with vulnerability scanning tools (such as Nessus or Qualys), security frameworks, and industry certifications like CISSP or CompTIA Security+ is highly valued. Exceptional analytical thinking, communication skills, and an ability to work collaboratively across IT and business teams help professionals excel in this field. These competencies are crucial to effectively identifying, prioritizing, and mitigating security risks in dynamic organizational environments.
What is a Vulnerability Management job?
A Vulnerability Management job involves identifying, assessing, prioritizing, and mitigating security vulnerabilities in an organization's systems, networks, and applications. Professionals in this role use tools like vulnerability scanners and threat intelligence to detect weaknesses and coordinate remediation efforts with IT and security teams. They also establish policies, monitor security risks, and ensure compliance with industry standards. The goal is to reduce the organization's exposure to cyber threats and improve overall security posture.

Full-time
Medical, Dental, Vision, Life, Retirement, PTO
Posted 5 days ago
Job description
Valiant Solutions is seeking a Vulnerability Management Lead to join our rapidly growing and innovative cybersecurity team!
The Vulnerability Management Lead directs client's vulnerability management program across the Continuous Diagnostics and Mitigation (CDM), Web Application Surveillance Program (WASP), and Cyber Hygiene workstreams within the Cybersecurity Services Division. The lead owns the end-to-end process from discovery and scanning through remediation tracking and Plan of Action and Milestones (POA&M) closure, working across Information System Owners (ISOs), Information System Security Officers (ISSOs), the Policy, Risk & Compliance branch, and engineering teams. The role produces the dashboards, metrics, and reporting that give client leadership a current view of agency risk and progress against remediation targets.
Named one of the Best Places to Work in the Washington DC area for 12 consecutive years, Valiant is proud of our employee-centric culture and commitment to excellence. If you are interested in learning more about Valiant and this opportunity, we invite you to apply now!
Location: The Vulnerability Management Lead can expect 100% telework. Remote work requires a high level of trust in our employees, and we strictly adhere to the details outlined in our Remote Work Policy below.
Eligibility Requirements: U.S. Citizenship is required due to federal contract obligations, along with the ability to successfully pass a federal background investigation.
Required Experience:
- Six or more years of cybersecurity experience, including hands-on work with operating systems (Windows, Linux) and networking (TCP/IP, routing, firewalls, segmentation).
- At least one of the following certifications: GCIH, CISSP, CISM, or CRISC.
- Hands-on experience with Tenable (Tenable ONE, Nessus, or Tenable.io), AquaSec, and CDM integration in a federal or large enterprise environment.
- Working knowledge of DHS CDM Program requirements, NIST SP 800-137 (Information Security Continuous Monitoring), NIST SP 800-53 controls (in particular RA-5 and SA-11), DHS BOD 18-01, and CISA Cyber Hygiene Services.
- Experience supporting POA&M development, remediation tracking, and closure within Cyber Security Assessment and Management (CSAM) or a comparable governance, risk, and compliance system.
- Demonstrated ability to build dashboards and metrics that translate scan output into prioritized, executable remediation work for technical and executive audiences.
- Strong written and verbal communication skills, with the ability to coordinate across ISOs, ISSOs, compliance, and engineering stakeholders.
- Required to obtain and maintain a Non-Sensitive / High Risk (Public Trust) security clearance, Tier 4/6c.
Preferred Qualifications:
- Experience with AWS GovCloud and cloud-native vulnerability scanning, including container image and Infrastructure-as-Code (IaC) assessment.
- Familiarity with CI/CD pipeline security controls and policy-as-code enforcement.
- Experience integrating vulnerability data with SIEM and ticketing platforms such as ServiceNow.
- Familiarity with the client Technology Standards and Products Guide and client Lifecycle Management Methodology (LMM).
Responsibilities:
- Oversee enterprise vulnerability scanning across infrastructure, web applications, containers, and cloud workloads using Tenable ONE, AquaSec, and integrated CDM tooling.
- Direct remediation tracking from finding to closure, including communication and coordination with POA&M support within the Policy, Risk & Compliance branch.
- Coordinate with ISOs, ISSOs, compliance teams, and engineering teams to triage findings, assign ownership, and close gaps within agency and federal timelines.
- Lead Cyber Hygiene activities, including weekly scans of internet-facing interfaces and URLs, review of CISA Cyber Hygiene reports, and distribution of issue reports to ISSOs within two business days of receipt.
- Maintain the authoritative inventory of externally facing IPs and URLs, updated in real time and reconciled monthly.
- Monitor digital certificate expiration, generate alerts 30 days prior to expiration, and escalate unresolved items within 10 days.
- Lead WASP activities, including static and dynamic scans of client web applications in development and production environments, vendor plugin updates, and integration of CISA Known Exploited Vulnerabilities (KEVs) into scan coverage.
- Deliver threat modeling analysis for critical applications and ensure WASP findings feed remediation and Cyber Hygiene dashboards.
- Operate and maintain the CDM integration layer and ensure CDM data flows into SIEM for centralized visibility, supporting the Vulnerability (VUL) capability area and AWARE-based prioritization.
- Develop and maintain dashboards and metrics for vulnerability management, including remediation cycle time, scan coverage, KEV exposure, certificate health, and POA&M aging.
- Coordinate with OCIO, Cyber Risk, client Vulnerability Management, and the DHS CDM PMO on program reporting and integration changes.
- Update Vulnerability Management standard operating procedures, playbooks, and runbooks at least quarterly, or sooner when a gap or improvement is identified, with major changes reviewed by the Change Control Board.
About Valiant Solutions
Valiant Solutions is a security-focused IT solutions provider with public clients nationwide. Named one of the fastest growing privately held companies by Inc. 5000, Washington Technology’s Fast 50, and Washington Business Journal’s Best Places to Work in the D.C. area, Valiant Solutions prides itself on providing its employees with great benefits and career development opportunities. As a company, we are just as committed to growing careers as we are to building world-class IT solutions, all while enjoying an unparalleled work-life balance. We are in a phase of tremendous growth and building the team that will take us to the next level. We seek people whose talents and accomplishments will contribute to a thriving company, who have the character to support their capacity, and can make a positive impact on our culture. Alongside our talented team, you’ll learn to think quickly on your feet and expand your own personal and professional skill set. Our management team will inspire you to consider new perspectives and challenge you to become a better practitioner in the fast-paced industry of IT security. We hire people we respect – and we trust them to deliver results leveraging their expertise. If you would enjoy working in a dynamic environment as part of a stellar team of professionals, then we invite you to apply online today.
Benefits Snapshot (includes, but not limited to)
Valiant pays 99% of the Medical, Dental, and Vision Coverage for Full-time Employees
Valiant contributes 25% towards Health Coverage for Family and Dependents
100% Paid Short Term Disability and Life Insurance Policy for Full-time Employees
100% Paid Certifications
401K Matching up to 4%
Paid Time Off
Paid Federal Holidays
Wellness & Fitness Program
Valiant University – Online Education and Training Portal
FSA programs for: Medical Costs, Dependent Care, Transit, and Parking
Referral Bonuses
Remote Work Policy
Remote work necessitates a high level of trust in our employees. To ensure that employee performance does not suffer in a remote work environment, all employees who telecommute are expected to have a quiet and distraction-free workspace with adequate internet, dedicate their full attention and availability to their job duties during working hours, and maintain a schedule during core business hours that align with those of their coworkers and Valiant's clients. In alignment with Valiant's inclusive and engaging environment, cameras are encouraged and can be required to be on during virtual video conferences. Additionally, in alignment with the Office of the Inspector General’s effort to eliminate conflicting employment, all Valiant employees are required to disclose any current or future outside employment engagements. During onboarding and throughout employment, employees must disclose any current activities or intent to engage in outside employment or other professional activities and obtain written approval. Employees may not solicit or conduct any outside business during core business hours for Valiant Solutions and our clients.
Equal Employment Opportunity
Valiant Solutions is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, age, disability, genetic information, marital status, or veteran status, in accordance with applicable law.
Physical Demands
Sitting or standing at a desk for prolonged periods of time and consistent operation of a computer. Frequent communication and exchanging of accurate information via electronic communication, phones, and in person. Occasionally lift and/or move moderate amounts of weight, typically less than 20 pounds. Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions of the job.
Authorization to Share Resume and Personal Information
By submitting your resume for this position, you authorize Valiant Solutions to share your resume, as well as, personal information included on the resume, with its subsidiaries, affiliates and teaming partners for the purpose of considering you for this position and other available positions requiring comparable skills, education and experience. Should Valiant Solutions or its affiliates and teaming partners wish to initiate pre-employment discussions, you will be asked to complete an employment application and related employment documents.
#LI-JM1
About Valiant Solutions
Sourced by ZipRecruiter
Company size
51 - 200 Employees
Headquarters location
Henderson, NC, US
Year founded
2005