Vulnerability Management Analyst

absc-us

Arlington (VA)

On-site

USD 90,000 - 155,000

Full time

14 days+
Application generator

Get a reply from this employer — a resume and cover letter tailored to exactly what they’re hiring for.

Get past ATS filters

Benefits offered by this job

PTO + Holidays
401k with match
Health & wellness allowance
Education and Training funds
Volunteer time off
Charitable match
Referral program
LOV Awards

Job summary

Absolute Business Solutions Corp (ABSC) seeks a Vulnerability Management Analyst to strengthen Air Force networks in the AFNCR ITS2 program. On-site work in the National Capital Region with some remote tasks possible with client approval.

You will support vulnerability detection, assessment, remediation, and RMF guidance, collaborating with ISSOs, engineers, and mission stakeholders to keep critical systems secure and compliant.

Qualifications

  • Experience working in a regulated DoD environment.
  • Strong analytical, troubleshooting, documentation, and communication skills.
  • Ability to coordinate across technical teams and mission stakeholders.

Responsibilities

  • Conduct vulnerability detection, assessment, analysis, and remediation using DoD- and Air Force-approved tools.
  • Maintain ACAS capabilities and ensure proper scan configuration and execution.
  • Prepare recurring vulnerability reports and trend analyses.
  • Analyze scan data and logs to identify vulnerabilities and incidents.
  • Coordinate remediation activities with cybersecurity offices and engineers.

Skills

Vulnerability management
Cybersecurity analysis
RMF knowledge
ACAS tooling
Incident response

Education

Bachelor’s degree in CS or related
Master’s degree in technical field
No degree required with 5+ years experience

Tools

ACAS
Tenable Security Center
Nessus
MECM

Job description

Absolute Business Solutions Corp (ABSC) is not just another tech company. We’re a community of innovators, engineers, analysts and business professionals working together with our customers to tackle the most complex national security challenges. For more than 20 years we’ve supported critical Department of Defense (DoD), Intelligence Community (IC), Federal Civilian missions and global, multi-national corporations. We specialize in supporting our clients in the Intelligence, Technology, Defense, AI/ML, and Data Science fields. As we continue to grow at a rapid pace, we need some amazing new professionals to join our team.

ABSC is seeking a Vulnerability Management Analyst to join our team supporting the Air Force National Capital Region (AFNCR) Information Technology Services (ITS2) program, delivering secure, resilient technology supporting Air Force operations across the National Capital Region, including the Pentagon, Joint Base Andrews, and Joint Base Anacostia-Bolling. Spanning cybersecurity, engineering, enterprise operations, infrastructure modernization, logistics, and 24/7 mission support, AFNCR ITS2 also supports the National Military Command Center (NMCC), Joint Staff, and other mission partners—giving technical professionals the opportunity to solve complex challenges while helping keep critical national-defense capabilities connected, protected, and operational.

As a Vulnerability Management Analyst, you will help strengthen the cybersecurity posture of the AFDW environment through vulnerability detection, assessment, analysis, remediation, and compliance activities across Air Force networks and systems. You will work closely with ISSOs, ISSMs, cybersecurity teams, engineers, system and network administrators, program offices, and mission owners to identify risk, drive remediation, support compliance, and help keep critical Air Force systems secure, resilient, and mission ready.

The majority of work is conducted on-site at our client location in the National Capital Region – primarily Pentagon, Joint Base Andrews and/or Joint Base Anacostia-Bolling (JBAB), based on each assignment. We offer a flexible schedule and, occasionally, some tasks may be performed remotely with prior client approval.

Security clearance required for this role:

An Active Secret security clearance is required.

Responsibilities:
  • Conduct and support vulnerability detection, assessment, analysis, and remediation using DoD-, Air Force-, and AFDW-approved systems and tools.
  • Maintain and support Assured Compliance Assessment Solution (ACAS) capabilities and ensure vulnerability scans are properly configured and executed.
  • Prepare and provide recurring vulnerability scan results, cybersecurity reports, and vulnerability trend analysis.
  • Analyze scan data and security logs to identify vulnerabilities, anomalies, policy violations, unauthorized activity, and potential cybersecurity incidents.
  • Configure vulnerability assessment tools in accordance with NIST, DoD, Air Force, and DISA cybersecurity guidance.
  • Review and track vulnerability reports, IAVMs, TCNOs, TASKORDs, and other DoD/USAF cybersecurity directives.
  • Support remediation of identified vulnerabilities, including Critical and Zero-Day vulnerabilities, within required compliance timelines.
  • Review and validate Security Technical Implementation Guide (STIG) checklists and recommend appropriate remediation actions.
  • Develop, coordinate, track, and manage Plans of Action and Milestones (POA&Ms) through closure.
  • Review and track Risk Management Framework (RMF)-related POA&Ms and security controls.
  • Support periodic reviews and testing of RMF security controls.
  • Configure, manage, operate, and maintain approved automated vulnerability management and endpoint security capabilities, including Microsoft Endpoint Configuration Manager (MECM) or equivalent tools.
  • Coordinate vulnerability remediation activities with cybersecurity offices, engineering teams, system/network administrators, PMOs, customers, mission owners, and external Air Force/DoD organizations.
  • Provide weekly vulnerability remediation status reporting, including open/closed IAVMs, STIG findings, RMF POA&Ms, and other compliance metrics.
  • Recommend technical and procedural solutions to improve the security posture of network, platform, and system environments.
  • Support the development and maintenance of cybersecurity policies, procedures, and standard operating procedures.
Requirements:
  • Education/Years’ Experience/Certifications:
    • Option 1 – Standard Qualification
      • Bachelor’s degree in Computer Science, Cybersecurity, Information Technology, Information Systems, Engineering, or a related technical discipline.
      • Current CompTIA Security+ CE or equivalent DoD 8570/8140 IAT Level II certification.
    • Option 2 – Master’s Degree Substitution
      • Master’s degree in a relevant technical discipline.
      • Ability to obtain Security+ CE or equivalent IAT Level II certification within six months of assignment.
    • Option 3 – Experience Substitution
      • No degree required with a minimum of 5 years of intensive, progressive relevant experience demonstrating the technical proficiency required for the position.
      • Security+ CE or equivalent DoD 8570/8140 IAT Level II certification in accordance with contract requirements.
  • Skills:
    • Must be able to work effectively in a highly regulated DoD environment.
    • Must possess strong analytical, troubleshooting, documentation, and communication skills.
    • Must be able to coordinate across technical teams, cybersecurity organizations, customers, and mission stakeholders.
    • Must maintain all certifications required for the assigned labor category before performing work.
    • Personnel with elevated privileges on Air Force networks must maintain applicable DoD cybersecurity workforce certifications.
    • Must be able to read, write, speak, and understand English.
    • On-call or after-hours support may be required based on mission
Desired Skills:

Strong candidates will have hands‑on experience with one or more of the following:

  • ACAS / Tenable Security Center / Nessus
  • Vulnerability scanning and remediation
  • DISA STIGs and SRGs
  • RMF and cybersecurity control assessment
  • POA&M development and management
  • IAVM / cybersecurity directive compliance
  • Microsoft Endpoint Configuration Manager (MECM/SCCM)
  • Endpoint Security products
  • NIPRNet and/or SIPRNet environments
  • DoD and Air Force cybersecurity policies
  • NIST cybersecurity standards and guidance
  • Security log analysis and incident identification
  • Vulnerability metrics, trend analysis, and compliance reporting

Salary is commensurate with education and years’ experience. Salary range for this requisition is: $90k-$155k annual.

Who we are:

ABSC is a technology and services company that combines the agility of a small business with proven processes refined over more than two decades in business. We specialize in supporting public sector clients in the Intelligence, Defense, Health, and Safety areas. Our team stands ready to deliver the next generation of programs, personnel, and solutions to help advance our federal government customers’ driving innovation, agility, and security across all mission areas.

Some of our benefits include:
  • Generous PTO plus 11 Federal Holidays
  • Retirement Planning – 401k Fully Vested with Match
  • Annual Health and Wellness Allowance – buy an Apple Watch, a treadmill, or hit the gym on us
  • Career Development – Annual Funds to spend on Education and Training
  • Volunteer Time Off – Annually, all employees can spend 8 hours directly supporting a charity of choice
  • Charitable Match – ABSC matches an employee’s donation to a qualifying charity
  • Referral Program – We pay for internal and external referrals!
  • LOV Awards – Earn bonus awards throughout the year from our Living Our Values awards program

*ABSC is a proud V3, Virginia Values Vets, member which recognizes our commitment to hiring Veterans.*

Equal Opportunity Employer, including veterans and individuals with disabilities.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

IT Systems Engineer
IT Systems Engineer

Absolute Business Solutions Corp. • Virginia (IL), Northern (KY)

Hybrid
USD 90,000 - 150,000
Retirement Planning – 401k Fully VESTe
Annual Health and Wellness Allowance –
Career Development – Annual Funds to教育
+4
Security Engineer Architect
Security Engineer Architect

Absolute Business Solutions Corp. • Bethesda (MD)

On-site
USD 150,000 - 285,000
401k Matching
Health & Wellness Allowance
Career Development
+4
Junior Cybersecurity Specialist
Junior Cybersecurity Specialist

Absolute Business Solutions Corp. • Alexandria (VA)

On-site
USD 75,000 - 115,000
401k with match
Wellness allowance
Education funds
+4
Vulnerability Management Analyst
Vulnerability Management Analyst

Abacus-Technolog • Lincoln (MA)

On-site
USD 85,000 - 120,000
Senior Dissemination Specialist
Senior Dissemination Specialist

ABSC (Absolute Business Solutions Corp.) • Fort Belvoir (VA)

On-site
USD 90,000 - 120,000
Generous PTO plus 11 Federal Holidays
Retirement planning – 401(k) fully vested with match
Annual Health and Wellness Allowance
+5
Vulnerability Management Analyst
Vulnerability Management Analyst

TIME Systems • Camp Springs (MD)

On-site
USD 90,000 - 130,000
Health coverage
Dental coverage
Vision coverage
+3
Senior Dissemination Specialist
Senior Dissemination Specialist

absc-us • Fort Belvoir (VA)

On-site
USD 80,000 - 120,000
Generous PTO plus 11 Federal Holidays
401k Fully Vested with Match
Annual Health and Wellness Allowance
+5
Senior Software Engineer
Senior Software Engineer

Absolute Business Solutions Corp. • Bethesda (MD)

On-site
USD 120,000 - 235,000
401k with match
Health & Wellness allowance
Education and training funds
+4
Junior Systems Administrator
Junior Systems Administrator

Absolute Business Solutions Corp. • Alexandria (VA)

On-site
USD 70,000 - 90,000
Retirement Planning – 401k
Health and Wellness Allowance
Career Development funds
+4
Mid to Senior All-Source Intelligence Analyst
Mid to Senior All-Source Intelligence Analyst

absc-us • Maryland

On-site
USD 104,000 - 157,000
PTO + Federal Holidays
401k with Company Match
Annual Health & Wellness Allowance
+5