1

Xpanse Jobs in Virginia (NOW HIRING)

Xpanse information

What is the difference between Xpanse vs Penetration Tester?

AspectXpansePenetration Tester
CertificationsCertified Ethical Hacker (CEH), OSCPCEH, OSCP, CISSP
Work EnvironmentCybersecurity firms, consulting companies, in-house security teamsSecurity consulting firms, corporate security teams, freelance roles
Industry UsageUsed across various industries for security assessmentsPrimarily in cybersecurity and IT sectors

Both Xpanse and Penetration Testers focus on identifying security vulnerabilities. Xpanse often refers to a platform or tool used for attack surface management, while Penetration Testers perform manual and automated security testing. The roles overlap in skills and certifications but differ in scope: Xpanse may be part of a broader security strategy, whereas Penetration Testers conduct specific testing engagements.

What are the key skills and qualifications needed to thrive as an Xpanse security engineer?

To thrive as an Xpanse Security Engineer, you need a strong foundation in cybersecurity principles, network protocols, and vulnerability assessment, typically supported by a degree in computer science or a related field. Familiarity with tools such as Xpanse Expander, SIEM systems, and relevant security certifications like CISSP or CEH is highly valuable. Analytical thinking, problem-solving, and effective communication are vital soft skills that help in interpreting data and collaborating with cross-functional teams. These skills ensure robust identification and mitigation of cyber threats, protecting organizational assets in a dynamic security landscape.

What is an Xpanse?

Xpanse is not a traditional job title, but rather the name of a cybersecurity company (now part of Palo Alto Networks) that specializes in attack surface management. Professionals working at Xpanse, or in similar roles, focus on identifying and managing all external-facing assets of an organization to reduce cybersecurity risks. Their job is to discover, monitor, and remediate vulnerabilities across a company’s internet-connected systems, helping to prevent cyberattacks. Employees may work in roles such as security analysts, engineers, or product managers, all aiming to protect organizations from external threats.

What are some common challenges faced by cybersecurity professionals working with Xpanse, and how can they be addressed?

Cybersecurity professionals using Xpanse often encounter challenges related to accurately mapping and monitoring a constantly evolving attack surface, especially in large or decentralized organizations. Keeping up with asset discovery and ensuring that all newly exposed assets are quickly identified can be demanding. To address these challenges, teams should prioritize regular scans, automate asset inventory updates, and maintain clear communication with IT and other business units. Continuous collaboration and using Xpanse's integrations with existing security tools can also help streamline workflows and reduce blind spots.

What are the most commonly searched types of Xpanse jobs in Virginia?

The most popular types of Xpanse jobs in Virginia are:

What cities in Virginia are hiring for Xpanse jobs?

Cities in Virginia with the most Xpanse job openings:

Infographic showing various Xpanse job openings in Virginia as of August 2026, with employment types broken down into 80% Full Time, and 20% Contract. Highlights an 60% In-person, and 40% Hybrid job distribution.

Cybersecurity Engineer With Elastic search with Security Clearance

NasTech Global, Inc.

Suffolk, VA • On-site

$70 - $75/hr

Other

Re-posted 6 days ago


Job description

Company: Information Systems Solutions
Role: IS/IT SME
Location: Suffolk, VA (Onsite 5 days per week)
Duration: Contract to Hire (6 months)
Citizenship: USC able to obtain clearance
Rate: $70-75 an hour (some flex) up to 165k conversion salary Top Skills: Strong in Elasticsearch Vulnerability experience
Level II IAT Cert Serve as the primary Subject Matter Expert (SME) for all aspects of the Continuous Network Defense cybersecurity tools in accordance with all applicable DoD Instructions (DoDI), policies and regulations. · Utilize Tenable and Nessus to perform regularly scheduled discovery and vulnerability scans, provide analysis of results, and development mitigation strategies to reduce overall risk surface. · Manage Trellix ePO and deploy endpoint products such as ENS, PA, DLP, etc., to implement and enforce endpoint security policies in accordance with response to and mitigation of potential threats.
· Implementation of ForeScout policies for Comply-To-Connect (C2C) initiative, to ensure continuous compliance and quarantining of unauthorized, noncompliant devices.
· Monitoring of Cortex Xpanse to identify and assess external-facing assets and respond to alerts with the corrective action to mitigate the findings.
· Ensure continuous data flow is active for the Continuous Monitoring and Risk Scoring (CMRS) DoD system, including endpoint security data (Trellix), vulnerability and flaw remediation (Tenable), and security compliance data (ForeScout). · Configuration, modification and deployment of security policies on Cisco Firepower Management Console (FMC) to ensure intrusion prevention (IPS) is enforced at the network security level.
· Utilize and validate DNS and DHCP data within Infoblox, monitoring for anomalous records, unauthorized entries, and removal of duplicate records.
· Implementation of AD Audit Engine to detect and investigate anomalous, malicious or malformed activity within Active Directory, to identify potential insider threats and/or compromised accounts.
· Conduct threat hunts and active/passive reconnaissance using network traffic analysis, heuristic analysis, and cybersecurity data analysis to identify and mitigate indicators of compromise (IoC), misconfigured systems, and advanced persistent threat actors (APTs). Certifications (IAT Level II) One of the following:
· CySA+ · Security+ · CCNA – Security · GICSP · GSEC · SSCP Required Skills and Experience · A master’s of Cybersecurity or related degree, or 10 years of experience in cybersecurity engineering focused on Government-approved cybersecurity tools.
· At least 5 years of experience related to DoD cybersecurity vulnerability detection and response utilizing tools within FISMA compliance.
· Experience with big data analytical tools such as Elasticsearch and Splunk. Thanks and Regards
Murali Sharma
202.828.3494