Vulnerability Management Team Lead

GovCIO

Bethesda (MD)

Hybrid

USD 150,000 - 180,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

GovCIO is seeking a Vulnerability Management Team Lead in Bethesda, MD for a Federal government contract. The role will oversee the vulnerability management program, lead a team of VM professionals, and drive proactive security postures across the organization.

The candidate will coordinate with ISSOs, System Owners, and leadership to prioritize remediation, improve processes, and report on security posture in a hybrid remote work environment.

Qualifications

  • 12+ years of professional work experience in cybersecurity
  • 3+ years managing a team of vulnerability management professionals
  • Information Security certifications such as GPEN, GEVA, CISSP are preferred

Responsibilities

  • Lead the redesign, build and day-to-day operations of the VM team.
  • Manage VM projects and ensure timely delivery to standards.
  • Provide SME guidance to ISSOs and System Owners during risk management.

Skills

Cybersecurity experience
Vulnerability management
Team leadership
Certifications (GPEN, GEVA, CISSP)

Education

BA/BS in CS/IT/EE or related field

Tools

Tenable
DB Protect
Netsparker
Qualys

Job description

Overview

GovCIO is currently hiring for a Vulnerability Management Team Lead to provide support to a Federal government contract. The Vulnerability Team Lead will be leading critical support for the Information Security’s vulnerability management program (VM) as part of the Office of the CIO. They will help create a robust proactive approach for preventing unauthorized access, changes, or exploitation of vulnerabilities through mitigation, active defenses, and automated responses. The VM team’s portfolio of activities includes providing vulnerability detection and remediation oversight, vulnerability research, secure baseline compliance, web application security, host-based security, network security, and acting as security subject matter experts for all of the organization. This position will be located in Bethesda, MD and will be a hybrid remote position.

Responsibilities
  • Perform Project Management activities, including assigning tasks, 1-1 coaching, timesheet reconciliation, performance evaluations, etc.).
  • Lead the redesign, build and day-to-day operations of the vulnerability management (VM) team to include standardization of processes and managing customer expectations.
  • Effectively manage a team of vulnerability management professionals who are focused on proactively preventing the exploitation of IT vulnerabilities that exist across the
  • Successfully assign and complete VM projects, tasks, and\or initiatives on time and to vulnerability management standards.
  • Maintain a schedule of all VM team projects, tasks, and/or initiatives.
  • Track all team projects, tasks, and/or initiatives in a centralized location (e.g., Microsoft Lists, Jira, etc.).
  • Provide presentations and/or communications on relevant security documents across multiple teams and various layers of Federal management. Includes preparation of VM weekly project status reports, updates to the ISSO Forum presentation, updates to the monthly Executive briefing, and ad hoc reports/presentations as required.
  • Drive actionable metrics which help ensure the team reduce the time and resources needed to detect, investigate, analyze and remediate vulnerabilities.
  • Manage performance of risk-based assessments of current and emerging information security issues to support the mission by prioritizing remediation efforts.
  • Proactively delegate support of regular vulnerability, compliance/configuration, database, and web application scanning.
  • Provide Subject Matter Expert support and guidance to Information Security Systems Officers (ISSO), System Owners and others as needed through the risk management process and secure configuration baseline management, including regulatory and remediation compliance monitoring.
  • Apply effective problem solving and critical thinking skills to evaluate applicable solutions, conduct pilot/evaluations for proof of concepts and ultimately implement better mitigating controls.
  • Research current and emerging information security exploits, threats, and vulnerabilities and disseminate contextual information to appropriate stakeholders.
  • Facilitate exception handling, waiver processing and escalations as needed.
  • Gather and organize technical information about the organization’s security posture, its mission goals and needs, information systems, and networks. Proactively identify & troubleshoot problems within managed security tools.
  • Maintain regular communication with security leaderships on process optimization, tools tuning and resetting of VM priorities as business needs prudently recommend.
Qualifications

Bachelor of Arts (B.A.) or Bachelor of Science (B.S.) degree, preferably in Computer Science, Information Technology, Electrical Engineering, or related field. with 12+ years (or commensurate experience)

Required Skills And Experience
  • 12 or more years of professional work experience in cybersecurity with at least 5 years in Vulnerability Management.
  • 3 or more years managing\supervising a team of vulnerability management professionals.
  • Information Security-related certification(s) such as GPEN, GEVA, CISSP, etc.
VM Lead Technical Competencies
  • Extensive knowledge and hands-on experience with a variety of Vulnerability Management Tools such as Tenable, DB Protect, Netsparker, Qualys, etc.
  • Expert knowledge of the Vulnerability Management lifecycle
  • Proven track record of designing, implementing, and managing a Fortune 100 level Vulnerability Management Program
  • Strong knowledge of networking, operating systems, databases, and web applications
  • Strong knowledge of cybersecurity operations (Cyber Threat Intelligence, Penetration testing, & Incident Response)
  • Deep knowledge and experience of performing both manual and automated asset discovery and enumeration
  • Deep knowledge and experience of systematic and data-driven asset prioritization
  • Expert knowledge and successful application of risk management frameworks
VM Lead Management Competencies
  • Track record of leading enterprise-level vulnerability management teams with a history of increasing responsibility
  • Expert project management skills
  • Ability to explain vulnerability management concepts to a wide range of audiences verbally and in writing
  • Expertise in developing and improving vulnerability management operations and processes
  • Strong interpersonal skills and the ability to collaborate with a variety of stakeholders to ensure vulnerability management compliance
  • Expert problem solving and critical thinking skills
  • Proactive disposition and ability to execute on leadership vision with minimal oversight
Clearance Required:

US Citizenship is required to obtain and maintain Public Trust

Posted Salary Range: USD $150,000.00 - USD $180,000.00 /Yr.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Vulnerability Management Team Lead (Hybrid/Remote)
Vulnerability Management Team Lead (Hybrid/Remote)

GovCIO • Bethesda (MD)

Hybrid
USD 150,000 - 180,000
Vulnerability Management Lead
Vulnerability Management Lead

K2Share LLC • Washington

On-site
USD 120,000 - 180,000
Vulnerability Management Lead
Vulnerability Management Lead

K2United, LLC. • Washington

On-site
USD 130,000 - 170,000
Manager, Vulnerability Management
Manager, Vulnerability Management

Optimum • Norwalk (CT)

On-site
USD 133,000 - 220,000
Vulnerability Management Engineer
Vulnerability Management Engineer

WideNet Consulting Group • Seattle (WA)

Hybrid
USD 103,000 - 117,000
Senior Vulnerability Analyst
Senior Vulnerability Analyst

PRI Global • O’Fallon (MO)

On-site
USD 110,000 - 160,000
Vulnerability Manager Lead
Vulnerability Manager Lead

Darkwolfsolutions • Herndon (VA)

Hybrid
USD 155,000 - 160,000
Vulnerability Management Manager
Vulnerability Management Manager

Considine Search • New York (NY)

On-site
USD 200,000 - 215,000
Senior Security Manager - Vulnerability Management
Senior Security Manager - Vulnerability Management

Alter Domus • Chicago (IL)

On-site
USD 140,000 - 190,000
Senior Security Analyst Vulnerability Management
Senior Security Analyst Vulnerability Management

Compass Pointe Consulting, LLC • Bethesda (MD)

On-site
USD 110,000 - 140,000