Stand out for this role — generate a tailored resume and cover letter in about a minute.
K2United seeks a senior Vulnerability Management professional to own and advance an enterprise-wide vulnerability program. You will translate scan output into risk-informed decisions, drive remediation with system owners, and align with risk and compliance activities across the organization.
Ideal candidate has 6+ years in vulnerability management, strong familiarity with Tenable/Qualys/Rapid7, and experience delivering executive-level vulnerability trends and remediation timelines within a
K2United is an organization that houses two distinct, national, customer-facing brands tied together by a shared purpose: setting the standard for an extraordinary workplace. Through our brands, K2Share and CareerSafe, we provide advisory services in cyber risk management and online education for workforce readiness.
Contract
K2United is an organization that houses two distinct, national, customer-facing brands tied together by a shared purpose: setting the standard for an extraordinary workplace. Through our brands, K2Share and CareerSafe, we provide advisory services in cyber risk management and online education for workforce readiness.
Our four core values define how we show up every day:
We believe in people who are accountable, curious, and motivated to make an impact that matters.
Our programs make a meaningful difference. CareerSafe supports more than two million users each year, while K2Share delivers cybersecurity and IT solutions that strengthen federal agencies. As part of our team, you'll help solve complex challenges in a mission-driven, small-business environment that values professional growth, collaboration, and work-life balance.
Own enterprise vulnerability management as a sustained program function — tracking, analysis, prioritization, remediation coordination, and trend reporting across systems, applications, devices, and other in-scope assets. This position converts scan output into risk-informed decisions, drives remediation to closure with system and business stakeholders, and integrates vulnerability data into the broader risk and compliance picture.
A relevant cybersecurity certification demonstrating competence in vulnerability management, risk, or operations support. Acceptable examples include CompTIA CySA+, GIAC GEVA or GCIH, a Tenable or Qualys vendor certification, CISSP, or CRISC.
Applicants must be willing to take a drug test and submit to a credit and background investigation as part of the selection process.
The U.S. government restricts access by Foreign Nationals to certain types of technology and technical data. Consequently, this posting is intended only for U.S. citizens.
K2United, LLC is an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, sexual orientation, gender identity, disability, or protected Veteran status.
This job description is not an exhaustive list of job responsibilities. K2United management reserves the right to change or alter this job description at any time without notice.