Vulnerability Management Engineer

CACI International Inc

Washington (District of Columbia)

On-site

USD 75,000 - 158,000

Full time

2 days ago
Be an early applicant
Application generator

A complete application in a minute — tailored resume and cover letter, ready to send.

Get past ATS filters

Job summary

CACl International Inc. is seeking a Vulnerability Management Engineer to support FEMA OCISO in Washington, D.C.

The role focuses on vulnerability identification, assessment, remediation coordination, and closure validation across FEMA systems. The candidate will administer scanning processes, analyze findings for risk, monitor Remediation Work Plans, and produce dashboards and reports on critical vulnerabilities.

Qualifications

  • Strong analytical skills for vulnerability prioritization and trend analysis.
  • Experience with vulnerability management and cybersecurity.
  • BS/BA plus 6 years of applicable experience in vulnerability management and cybersecurity.
  • Experience with Qualys and other vulnerability scanning tools.

Responsibilities

  • Administer scanning processes across FEMA systems and analyze vulnerability findings for risk and accuracy.
  • Coordinate remediation efforts across Enterprise systems and provide daily technical remediation support services.
  • Produce dashboards and surge reporting for critical vulnerabilities and remediation validation.
  • Validate closure of vulnerabilities and provide monthly compliance remediation briefs.

Skills

Strong analytical skills
Vulnerability management

Education

BS/BA + 6 years experience

Tools

Qualys
dbProtect
Webinspect
Tenable
Tableau
Power BI
Splunk

Job description

Job Title: Vulnerability Management Engineer

Job Category: Security

Time Type: Full time

Minimum Clearance Required to Start: None

Employee Type: Regular

Percentage of Travel Required: None

Type of Travel: None

The Opportunity

CACI is searching for a Vulnerability Management Engineer to support the FEMA Office of the Chief Information Security Officer (OCISO) in Washington, D.C. As a Vulnerability Management Engineer, you will play a crucial role in ensuring the security and resilience of FEMA's information systems through comprehensive vulnerability identification, assessment, and remediation coordination. You will work in a dynamic environment, collaborating with system owners, cybersecurity professionals, and enterprise administrators to identify and eliminate security vulnerabilities. Your efforts will directly contribute to safeguarding FEMA's mission-critical systems and data. The Vulnerability Management Engineer will be responsible for leading vulnerability identification, prioritization, remediation coordination, and closure validation across the environment and assigned systems. This position requires administering scanning processes across FEMA systems and analyzing vulnerability findings for risk and accuracy. The Vulnerability Management Engineer will monitor all FEMA systems Remediation Work Plans (RWPs), coordinate remediation efforts across Enterprise systems, and provide daily technical remediation support services. This role is critical for producing dashboards and surge reporting for critical vulnerabilities and ensuring remediation validation.

Responsibilities

The Vulnerability Management Engineer will administer scanning processes across FEMA systems and analyze vulnerability findings for risk and accuracy while monitoring all FEMA systems Remediation Work Plans (RWPs). This position requires coordinating remediation efforts across Enterprise systems, providing daily technical remediation support services, and supporting all remediation activities in a detailed, technical, and audit manner. The Vulnerability Management Engineer will ensure remediation validation and produce dashboards and surge reporting for critical vulnerabilities, as well as provide vulnerability reduction reports and trend analysis reports. Responsibilities include analyzing vulnerability reports and remediation efforts and reporting to leadership as required, conducting monthly POA&M remediation test events, and developing test reports within 5 days after testing. The position involves validating closure of vulnerabilities and providing monthly compliance remediation briefs while utilizing automated security authorization tools for managing remediation efforts and managing POA&Ms using automated tools. The Vulnerability Management Engineer will support internal and external audit events, track and suggest technologies, processes, and practices designed to protect networks, devices, programs, and data from malicious attack, damage, or unauthorized access, and research and maintain proficiency in tools, techniques, countermeasures, and trends in computer and network vulnerabilities, data hiding, and network and device security and encryption.

Qualifications

Required:

  • U.S. Citizenship required
  • FEMA EOD suitability or Current DHS or FEMA EOD preferred
  • BS/BA + 6 years of applicable experience in vulnerability management and cybersecurity
  • Demonstrated expertise with Qualys
  • Experience with other vulnerability scanning tools (dbProtect, Webinspect, or Tenable)
  • Experience with automated security authorization tools
  • Knowledge of vulnerability assessment methodologies and risk analysis
  • Strong analytical skills for vulnerability prioritization and trend analysis

Desired:

  • Active Secret security clearance
  • Previous DHS or DoD experience
  • Experience with managing and administering automated scanning tools
  • Knowledge of DISA STIGs and security compliance frameworks
  • Experience with dashboard and reporting tools (Tableau, Power BI, Splunk)
  • Experience supporting audit activities
What You Can Expect
A culture of integrity.

At CACI, we place character and innovation at the center of everything we do. As a valued team member, you'll be part of a high-performing group dedicated to our customer’s missions and driven by a higher purpose - to ensure the safety of our nation.

An environment of trust.

CACI values the unique contributions that every employee brings to our company and our customers - every day. You'll have the autonomy to take the time you need through a unique flexible time off benefit and have access to robust learning resources to make your ambitions a reality.

A focus on continuous growth.

Together, we will advance our nation's most critical missions, build on our lengthy track record of business success, and find opportunities to break new ground - in your career and in our legacy.

Pay Range

There are a host of factors that can influence final salary including, but not limited to, geographic location, Federal Government contract labor categories and contract wage rates, relevant prior work experience, specific skills and competencies, education, and certifications. Our employees value the flexibility at CACI that allows them to balance quality work and their personal lives. We offer competitive compensation, benefits and learning and development opportunities. Our broad and competitive mix of benefits options is designed to support and protect employees and their families. At CACI, you will receive comprehensive benefits such as; healthcare, wellness, financial, retirement, family support, continuing education, and time off benefits.

The Proposed Salary Range For This Position Is

$75,200-$158,100

CACI is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, pregnancy, sexual orientation, age, national origin, disability, status as a protected veteran, or any other protected characteristic.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Vulnerability Management Engineer
Vulnerability Management Engineer

CACI International • Washington

On-site
USD 75,000 - 158,000
Vulnerability Management Engineer Washington, DC, US + 1 more
Vulnerability Management Engineer Washington, DC, US + 1 more

CACI International Inc. • Washington, Northern (KY)

Hybrid
USD 75,000 - 158,000
Windows System Administrator
Windows System Administrator

CACI International Inc • Washington

On-site
USD 114,000 - 190,000
Cyber Security Control Assessor
Cyber Security Control Assessor

CACI International Inc • Washington

On-site
USD 87,000 - 182,000
Linux System Administrator
Linux System Administrator

CACI International Inc • Washington

On-site
USD 90,000 - 190,000
Cyber Security Control Assessor Washington, DC, US
Cyber Security Control Assessor Washington, DC, US

CACI International Inc. • Washington, Northern (KY)

Hybrid
USD 87,000 - 182,000
Cyber Security Control Assessor
Cyber Security Control Assessor

CACI International • Washington

On-site
USD 87,000 - 182,000
Flexible time off
Learning resources
Comprehensive benefits
Linux System Administrator Washington, DC, US
Linux System Administrator Washington, DC, US

CACI International Inc. • Washington, Northern (KY)

Hybrid
USD 90,000 - 190,000
Senior Information System Security Officer
Senior Information System Security Officer

CACI International Inc. • Washington

On-site
USD 121,000 - 266,000
Windows System Administrator Washington, DC, US
Windows System Administrator Washington, DC, US

CACI International Inc. • Washington, Northern (KY)

Hybrid
USD 90,000 - 190,000