SME Cyber Vulnerability Management

General Dynamics Information Technology

Fort Bragg (NC)

On-site

USD 110,000 - 150,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

General Dynamics Information Technology is seeking an SME Information Security Analyst to lead vulnerability management and optimize Tenable Security Center on Linux/Red Hat environments. The role supports hybrid cloud stacks across AWS, Azure, and Google Cloud, ensuring compliance with DISA STIGs, NSA, and organizational policies.

You will translate advanced findings into actionable remediation plans, prepare dashboards for Command Leadership, and collaborate with cross-functional teams across

Qualifications

  • Experience with vulnerability management and security monitoring.
  • Proven ability to translate technical findings into remediation actions.
  • Know-how to operate in DISA/NSA-aligned compliance environments.

Responsibilities

  • Lead vulnerability management operations and Tenable Security Center maintenance on Linux/Red Hat.
  • Analyze scan results and prioritize remediation for mission needs.
  • Develop and maintain POA&Ms and mitigation guidance.
  • Collaborate with engineering, cybersecurity, and leadership teams.

Skills

Splunk/Elastic for Cloud
EDR tools
Antivirus platforms
ServiceNow/Remedy

Education

DoD 8570/8140 compliant certifications
CompTIA Security+
CySA+
Network+
CASP+
GIAC certifications (GCIH, GCFA)

Tools

Splunk
Elastic
EDR tools
Antivirus platforms
ServiceNow/Remedy

Job description

The SME Information Security Analyst (Vulnerability Management) serves as the technical lead for deploying, configuring, and maintaining the enterprise vulnerability management environment. This position focuses on optimizing Tenable Security Center within Linux/Red Hat infrastructures and ensuring compliance with DISA STIGs, NSA guidelines, and organizational cybersecurity policies. The analyst supports Enterprise Communications and hybrid environments across AWS, Microsoft Azure, and Google Cloud. This role requires deep technical expertise, strong analytical skills, and collaboration with engineering, cybersecurity, and leadership teams across the command.

Responsibilities
Vulnerability Management Operations
  • Install, configure, and maintain Tenable Security Center and scanning components on Linux/Red Hat platforms.
  • Ensure vulnerability management systems meet DISA STIG, NSA, and cybersecurity policy requirements.
  • Manage credentialed and non-credentialed scans, schedules, asset groups, and plugin updates.
  • Troubleshoot scanner/system issues to ensure accurate and continuous vulnerability detection.
Analysis & Reporting
  • Analyze scan results to identify weaknesses, misconfigurations, and emerging threats.
  • Validate findings, assess severity, and prioritize remediation based on mission needs.
  • Produce recurring reports, dashboards, and metrics for Command Leadership.
  • Translate complex technical findings into clear remediation guidance for engineering teams.
Mitigation Support & POA&M Management
  • Provide expert guidance on mitigation, configuration hardening, and patching strategies.
  • Support development and maintenance of POA&M for unresolved vulnerabilities.
  • Track remediation progress to ensure compliance with published cyber directives.
Enterprise Communications Support
  • Support enterprise communications systems and services to ensure secure hybrid operations.
  • Assist with monitoring and securing cloud/on-prem workloads using enterprise security tools.
  • Collaborate with cloud, network, and communications teams to ensure secure configurations and continuous monitoring.
Threat Detection & Response
  • Support threat detection using Microsoft Defender for Endpoint and cloud environments including AWS, Azure, and Google Cloud.
  • Conduct log analysis, event correlation, and investigation of suspicious activity.
  • Assist with incident reporting, documentation, and escalation procedures.
  • Contribute to detection rule tuning, alert fidelity improvements, and endpoint hardening.
  • Identify coverage gaps and recommend improvements; document findings in After-Action Reports with SOC, EPT, and CTI partners.
  • Develop guardrails, configuration baselines, and automation artifacts to reduce vulnerability recurrence.
  • Support surge response activities through rapid scanning, validation, and remediation assistance.
Required Skills & Experience
  • Splunk or Elastic for Cloud
  • Endpoint Detection & Response (EDR) tools
  • Antivirus platforms
  • ServiceNow, Remedy, or similar ticketing systems
Compliance / Certifications (Preferred)
  • DoD 8570 / 8140 compliant certification
  • CompTIA Security+
  • CySA+
  • Network+
  • CASP+
  • GIAC certifications (GCIH, GCFA, etc.)
Security Clearance Level
  • TS/SCI Required
Location
  • On Customer Site
Citizenship Requirement
  • US citizenship
GDIT IS YOUR PLACE

At GDIT, the mission is our purpose, and our people are at the center of everything we do.

  • Growth: AI-powered career tool that identifies career steps and learning opportunities
  • Support: An internal mobility team focused on helping you achieve your career goals
  • Rewards: Comprehensive benefits and wellness packages, 401K with company match, and competitive pay and paid time off
  • Community: Award-winning culture of innovation and a military-friendly workplace
OWN YOUR OPPORTUNITY

Explore a career in cyber at GDIT and you’ll find endless opportunities to grow alongside colleagues who share your focus on defending and protecting what matters.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

SME Cyber Vulnerability Management
SME Cyber Vulnerability Management

General Dynamics - IT • Fort Bragg (NC)

On-site
USD 110,000 - 160,000
401K with company match
Comprehensive benefits
Paid time off
Vulnerability Management SME - Cloud & Threat Detection
Vulnerability Management SME - Cloud & Threat Detection

General Dynamics Information Technology • Fort Bragg (NC)

On-site
USD 110,000 - 150,000
Lead Vulnerability Management Analyst: Tenable & Cloud
Lead Vulnerability Management Analyst: Tenable & Cloud

General Dynamics - IT • Fort Bragg (NC)

On-site
USD 110,000 - 160,000
401K with company match
Comprehensive benefits
Paid time off
Vulnerability Management Analyst
Vulnerability Management Analyst

DANE, LLC • Chantilly (VA)

Hybrid
USD 75,000 - 95,000
Life/STD/LTD
FSA/DCA
401(k)
+7
Security Engineer, Vulnerability Management (ACAS/Tenable.sc) - Secret clearance
Security Engineer, Vulnerability Management (ACAS/Tenable.sc) - Secret clearance

PGTEK • Fort Meade (MD)

Hybrid
USD 130,000 - 160,000
Health insurance
401(k) matching
PTO and Holidays
+1
Security Engineer, Vulnerability Management (ACAS/Tenable.sc) - Secret clearance
Security Engineer, Vulnerability Management (ACAS/Tenable.sc) - Secret clearance

PGTEK • Montgomery (AL)

Hybrid
USD 130,000 - 160,000
Health insurance
401(k) match
PTO & Holidays
+1
Cyber Threat Intelligence (Fusion) Analyst - TS/SCI with Polygraph
Cyber Threat Intelligence (Fusion) Analyst - TS/SCI with Polygraph

General Dynamics Information Technology • Reston (VA)

On-site
USD 145,000 - 196,000
Cyber Security SOC Manager
Cyber Security SOC Manager

General Dynamics Information Technology • Bossier City (LA)

On-site
USD 120,000 - 180,000
AI career tool
Internal mobility team
401K with company match
+3
Incident Responder (IR Specialist)
Incident Responder (IR Specialist)

Socket.dev • Arlington (VA)

Hybrid
USD 132,000 - 178,000
Security Engineer, Vulnerability Management (ACAS/Tenable.sc)
Security Engineer, Vulnerability Management (ACAS/Tenable.sc)

The Podmilsak Group • Oklahoma City (OK)

Hybrid
USD 130,000 - 160,000
Health and dental coverage
Vision plan
401(k) with company match
+2