Vulnerability Assessment Analyst - Information Systems Security Engineer

CACI

Maryland

On-site

USD 110,000 - 150,000

Full time

3 days ago
Be an early applicant
Application generator

Don’t send a generic resume — generate a resume and cover letter tailored to this exact role.

Get past ATS filters

Benefits offered by this job

Flexible time off
Robust learning resources

Job summary

CACI is seeking a Vulnerability Assessment Analyst - Information Systems Security Engineer to work on-site in Annapolis Junction, MD, supporting enterprise vulnerability management and cybersecurity operations. The role requires hands-on experience with Tenable Security Center and Nessus, Linux and Windows environments, and a strong understanding of vulnerabilities and remediation.

The ideal candidate will have DoD 8570 IAT Level II certification, CEH or CompTIA Security+ CE, and the ability to

Qualifications

  • Hands-on experience with vulnerability management and scanning solutions.
  • Strong analytical, troubleshooting, and problem-solving skills.

Responsibilities

  • Maintain, optimize, and administer Tenable Security Center infrastructure.
  • Conduct vulnerability assessments and Nessus scans across Linux/Windows environments.
  • Identify and support remediation of DISA STIGs and vulnerabilities.

Skills

Vulnerability management
Analytical skills
Independent work
Collaboration

Education

Bachelor's degree

Tools

Tenable/Nessus

Job description

Job Title: Vulnerability Assessment Analyst - Information Systems Security Engineer
The Opportunity:

CACI is seeking a highly skilled Systems Security Engineer to work on-site in Annapolis Junction, MD , supporting enterprise vulnerability management and cybersecurity operations. The ideal candidate will have hands‑on experience with Tenable Security Center and Nessus , Linux and Windows environments, vulnerability assessments, STIG remediation, and continuous security monitoring. This role requires a strong understanding of system and application vulnerabilities, excellent analytical skills, and the ability to work independently while collaborating effectively with ISS and other technical teams.

Responsibilities:
  • Maintain, optimize, and administer the Tenable Security Center infrastructure and associated scanning environments.
  • Conduct security patching, vulnerability assessments, and Nessus scans across Linux Security Center servers and Windows/Linux scanning servers.
  • Install, configure, maintain, and update Tenable Nessus and Tenable Security Center software.
  • Configure and fine‑tune scanning policies, asset lists, and security configurations to provide comprehensive vulnerability coverage.
  • Perform vulnerability assessments across multiple device types and operating systems using Tenable Security Center.
  • Conduct continuous monitoring of customer assets using Nessus to identify and evaluate security vulnerabilities.
  • Review and analyze Nessus/ACAS scan results , including successful, unsuccessful, and potential scan results.
  • Identify and support remediation of DISA STIGs and system vulnerabilities across Tenable servers and scanning infrastructure.
  • Analyze vulnerability data and prepare clear, comprehensive reports for management and technical stakeholders.
  • Monitor and track vulnerability remediation activities to support timely resolution.
  • Collaborate with ISS and other technical teams to address vulnerabilities and strengthen the customer's security posture.
  • Communicate security risks, assessment findings, and remediation status to stakeholders.
  • Maintain accurate records of vulnerabilities, security activities, and related findings.
Qualifications:
  • Required: Bachelor's degree with 7 years of experience .
  • Required: DoD 8570 IAT Level II certification requirements.
  • Required: CEH or CompTIA Security+ CE certification.
  • Required: Hands‑on experience with enterprise vulnerability management and scanning solutions, particularly Tenable/Nessus .
  • Required: Familiarity with DISA STIGs, Tenable Audit Files, and/or CIS Benchmarks .
  • Required: Knowledge of system and application security threats, vulnerabilities, and remediation practices.
  • Required: Working knowledge of Linux/Unix and Windows administration .
  • Required: Experience with patch deployment and system configuration.
  • Required: Understanding of networking and enterprise IT environments.
  • Required: Strong analytical, troubleshooting, and problem‑solving skills with exceptional attention to detail.
  • Desired: In‑depth knowledge of vulnerability assessment methodologies, tools, and industry best practices.
  • Desired: Experience managing vulnerability remediation across complex enterprise environments.
  • Desired: Ability to independently manage assignments and take ownership of tasks from initiation through completion.
  • Desired: Demonstrated ability to collaborate effectively with ISS, engineering, and other technical teams.
  • Desired: Strong communication skills with the ability to clearly present technical findings and security risks to management and stakeholders.
What You Can Expect:
  • A culture of integrity.
  • At CACI, we place character and innovation at the center of everything we do. As a valued team member, you'll be part of a high‑performing group dedicated to our customer's missions and driven by a higher purpose - to ensure the safety of our nation.
  • An environment of trust.
  • CACI values the unique contributions that every employee brings to our company and our customers - every day. You'll have the autonomy to take the time you need through a unique flexible time off benefit and have access to robust learning resources to make your ambitions a reality.
  • A focus on continuous growth.
  • Together, we will advance our nation's most critical missions, build on our lengthy track record of business success, and find opportunities to break new ground - in your career and in our legacy.
Pay Range:

There are a host of factors that can influence final salary including, but not limited to, geographic location, Federal Government contract labor categories and contract wage rates, relevant prior work experience, specific skills and competencies, education, and certifications. Our employees value the flexibility at CACI that allows them to balance quality work and their personal lives. We offer competitive compensation, benefits and learning and develop

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Vulnerability Assessment Analyst - Information Systems Security Engineer
Vulnerability Assessment Analyst - Information Systems Security Engineer

CACI International Inc. • Maryland

On-site
USD 87,000 - 182,000
Endpoint Security Engineer III - Nessus Springfield, VA, US + 1 more
Endpoint Security Engineer III - Nessus Springfield, VA, US + 1 more

CACI International Inc. • Springfield (VA), Northern (KY)

Hybrid
USD 75,000 - 158,000
Endpoint Security Engineer III - Nessus
Endpoint Security Engineer III - Nessus

CACI International Inc • St. Louis (MO)

On-site
USD 95,000 - 158,000
Cyber Security Engineer
Cyber Security Engineer

CACI International Inc • North Charleston (SC)

On-site
USD 72,000 - 150,000
Cyber Security Engineer
Cyber Security Engineer

CACI International Inc. • North Charleston (SC)

On-site
USD 72,000 - 150,000
Vulnerability Analyst - Security Engineer (Part-Time, TS/SCI)
Vulnerability Analyst - Security Engineer (Part-Time, TS/SCI)

CACI International Inc. • Maryland

On-site
USD 87,000 - 182,000
Vulnerability Assessment Analyst - Tenable Expert
Vulnerability Assessment Analyst - Tenable Expert

CACI • Maryland

On-site
USD 110,000 - 150,000
Flexible time off
Robust learning resources
Vulnerability Management Engineer Washington, DC, US + 1 more
Vulnerability Management Engineer Washington, DC, US + 1 more

CACI International Inc. • Washington, Northern (KY)

Hybrid
USD 75,000 - 158,000
Endpoint Security Engineer III - Nessus St. Louis, MO, US
Endpoint Security Engineer III - Nessus St. Louis, MO, US

CACI International Inc. • St. Louis (MO)

On-site
USD 75,000 - 159,000
Cybersecurity Engineer
Cybersecurity Engineer

CACI International Inc. • Sterling (VA)

On-site
USD 73,000 - 149,000