Lead Vulnerability Management Analyst: Tenable & Cloud

General Dynamics - IT

Fort Bragg (NC)

On-site

USD 110,000 - 160,000

Full time

11 days ago

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

401K with company match
Comprehensive benefits
Paid time off

Job summary

GDIT seeks a SME Information Security Analyst (Vulnerability Management) to lead Tenable Security Center deployment and optimization on Linux/Red Hat. The role ensures DISA STIG/NSA compliance, manages scans, analyzes results, and produces leadership-ready reports for secure hybrid environments across cloud and on-prem.

The candidate must have deep technical expertise, strong analytical skills, and ability to collaborate with engineering, cybersecurity, and leadership teams across the command.

Qualifications

  • Technical Training, Certification(s) or Degree with 10+ years of experience.
  • Splunk or Elastic for Cloud.
  • Endpoint Detection & Response (EDR) tools.
  • Antivirus platforms.
  • ServiceNow, Remedy, or similar ticketing systems.

Responsibilities

  • Install, configure, and maintain Tenable Security Center on Linux/Red Hat.
  • Ensure vulnerability management systems meet DISA STIG, NSA, and cybersecurity policy requirements.
  • Manage credentialed and non-credentialed scans, schedules, asset groups, and plugin updates.
  • Troubleshoot scanner/system issues to ensure accurate and continuous vulnerability detection.
  • Analyze scan results to identify weaknesses, misconfigurations, and emerging threats.
  • Validate findings, assess severity, and prioritize remediation based on mission needs.
  • Produce recurring reports, dashboards, and metrics for Command Leadership.
  • Translate complex technical findings into clear remediation guidance for engineering teams.
  • Provide expert guidance on mitigation, configuration hardening, and patching strategies.
  • Support development and maintenance of POA&M for unresolved vulnerabilities.
  • Track remediation progress to ensure compliance with published cyber directives.
  • Support enterprise communications systems and services to ensure secure hybrid operations.
  • Assist with monitoring and securing cloud/on-prem workloads using enterprise security tools.
  • Collaborate with cloud, network, and communications teams to ensure secure configurations and continuous monitoring.
  • Support threat detection using Microsoft Defender for Endpoint and cloud environments including AWS, Azure, and Google Cloud.
  • Conduct log analysis, event correlation, and investigation of suspicious activity.
  • Assist with incident reporting, documentation, and escalation procedures.
  • Contribute to detection rule tuning, alert fidelity improvements, and endpoint hardening.
  • Identify coverage gaps and recommend improvements; document findings in After-Action Reports with SOC, EPT, and CTI partners.
  • Develop guardrails, configuration baselines, and automation artifacts to reduce vulnerability recurrence.
  • Support surge response activities through rapid scanning, validation, and remediation assistance.

Skills

Tech cert/degree
Splunk/Elastic
EDR tools
Antivirus platforms
IT ticketing

Education

DoD 8570 / 8140 certified
CompTIA Security+
CySA+
Network+
CASP+
GIAC certifications

Tools

Microsoft Defender for Endpoint
AWS/Azure/Google Cloud

Job description

GDIT seeks a SME Information Security Analyst (Vulnerability Management) to lead Tenable Security Center deployment and optimization on Linux/Red Hat. The role ensures DISA STIG/NSA compliance, manages scans, analyzes results, and produces leadership-ready reports for secure hybrid environments across cloud and on-prem.

The candidate must have deep technical expertise, strong analytical skills, and ability to collaborate with engineering, cybersecurity, and leadership teams across the command.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Vulnerability Management SME - Cloud & Threat Detection
Vulnerability Management SME - Cloud & Threat Detection

General Dynamics Information Technology • Fort Bragg (NC)

On-site
USD 110,000 - 150,000
SME Cyber Vulnerability Management
SME Cyber Vulnerability Management

General Dynamics Information Technology • Fort Bragg (NC)

On-site
USD 110,000 - 150,000
SME Cyber Vulnerability Management
SME Cyber Vulnerability Management

General Dynamics - IT • Fort Bragg (NC)

On-site
USD 110,000 - 160,000
401K with company match
Comprehensive benefits
Paid time off
Security Engineer: Vulnerability Management (Secret Clearance)
Security Engineer: Vulnerability Management (Secret Clearance)

PGTEK • Montgomery (AL)

Hybrid
USD 130,000 - 160,000
Health insurance
401(k) match
PTO & Holidays
+1
DoD Vulnerability Management Engineer - Tenable / ACAS Expert
DoD Vulnerability Management Engineer - Tenable / ACAS Expert

PGTEK • Mechanicsburg

Hybrid
USD 130,000 - 160,000
PPO medical with HSA
Vision plan
Dental insurance
+6
DoD Vulnerability Management Engineer (Tenable/ACAS)
DoD Vulnerability Management Engineer (Tenable/ACAS)

PGTEK • Oklahoma City (OK)

Hybrid
USD 130,000 - 160,000
Health Insurance
Vision Plan
Dental Insurance
+7
Lead Vulnerability & Threat Engineer – Remote
Lead Vulnerability & Threat Engineer – Remote

11:11 Systems Inc. • Northern (KY)

Hybrid
USD 120,000 - 160,000
Infrastructure Vulnerability Scanning Engineer (Tenable Expert)
Infrastructure Vulnerability Scanning Engineer (Tenable Expert)

att • Charlotte (NC)

On-site
USD 141,300 - 211,900
Medical/Dental/Vision coverage
401(k) plan
Tuition reimbursement program
+6
Vulnerability Management Analyst — Hybrid/Remote Options
Vulnerability Management Analyst — Hybrid/Remote Options

DANE, LLC • Chantilly (VA)

Hybrid
USD 75,000 - 95,000
Life/STD/LTD
FSA/DCA
401(k)
+7
Vulnerability Management Analyst
Vulnerability Management Analyst

DANE, LLC • Chantilly (VA)

Hybrid
USD 75,000 - 95,000
Life/STD/LTD
FSA/DCA
401(k)
+7