logo

View all jobs

Vulnerability Manager - Skill Level 2 (TS/SCI w/Full Scope Poly)

Annapolis Junction/Fort Meade, Maryland · Information Technology
The Kenjya-Trusant Group is seeking a Vulnerability Manager - Skill Level 2 to support a Government contract in the Annapolis Junction, MD area.

THIS POSITION IS CONTINGENT UPON CONTRACT AWARD

SECURITY REQUIREMENT: TS/SCI w/Full Scope Poly

Job Description:
  • Vulnerability management requires preemptive actions to identify, remediate, and mitigate vulnerabilities to prevent exploitation.
  • The VM receives vulnerability input, direction, and guidance from multiple sources and takes directed action to effectively mitigate vulnerabilities in order to protect networks.
  • Leverages an operational understanding of current vendor remediation’s to prioritize vulnerability escalation procedures and integrates continuous monitoring to ensure mitigations fall within prescribed timelines.
REQUIRED CAPABILITIES:
  • Knowledge of cyber threats and vulnerabilities.
  • Determine overall Common Vulnerabilities and Exposures (CVE) priority when threat activity is identified; report incidents that may cause immediate and/or ongoing impact to the environment.
  • Monitor and provide periodic system owners vulnerability mitigation completion updates.
  • Knowledge of system and application security threats, vulnerabilities, and cyber attackers. Monitor external data sources to determine which security issues may have an impact on the enterprise.(U) Identify, develop, and determine mitigation or remediation actions for system and network vulnerabilities.
  • Communicate written and verbal information in a timely, clear, and concise manner.
  • Apply cybersecurity and privacy principles to organizational requirements (relevant to confidentiality, integrity, availability, authentication, non-repudiation).
  • Knowledge of different classes of attacks (e.g., passive, active, insider, close-in, distribution attacks).
  • Knowledge of system administration, network, operating system hardening techniques, and the risk management process.
  • Knowledge of specific operational impacts of cybersecurity lapses and organization's threat environment.
  • Recommend impact/risk assessments to identify systemic security issues based on the analysis of vulnerability and configuration data.
  • Document and escalate incidents (including event’s history, status, and potential impact for further action); recommend mitigations that will have immediate impact to the environment.
  • Perform after-action reviews of team products to ensure completion of analysis.
  • Lead and mentor team members as a technical expert.

QUALIFICATIONS:
  • Four (4) years of demonstrated experience as a VM in programs and contracts of similar scope, type, and complexity is required.
  • Two (2) years of demonstrated experience in technical reporting.
  • Two (2) years of demonstrated experience in network and threat analysis.
  • A technical bachelor’s degree from an accredited college or university may be substituted for two (2) years of VM experience on projects of similar scope, type, and complexity.
  • Requires DoD 8570 compliance Information Assurance Technical (IAT) Level I or Level II certification, and Computing Environment (CE) certification. The CE certification requirements can be fulfilled with either Microsoft OS, Cent OS/Red Hat OS CE certifications.
  • Requires successful completion of the Splunk software training course "Fundamentals 1"


 
 
THE KENJYA-TRUSANT GROUP, LLC is a Service-Disabled Veteran-Owned Small Business that was established in 2015 as a merger between The Kenjya Group, Inc. and Trusant Technologies, LLC. Our mission is to implement, support and protect the nation’s advanced technology systems, business processes and high-technology facilities. Working with the Department of Defense, Department of Homeland Security, the Intelligence Community, state and local governments, and commercial clients, Kenjya-Trusant provides cyber protection, information technology, engineering, construction management and acquisition support services. We are a small company with big company benefits, including Health, Dental, Vision, 401K, Bonus Potential, Flexible Spending Account, Life Insurance, Short- and Long-Term Disability, Paid Time Off, and a culture of teamwork and continuous learning. Come grow with us!
 


  
 

More Openings

Senior Cyber Requirements Analyst (TS/SCI w/CI Poly)
Senior Budget Analyst (TS/SCI w/CI Poly)
Senior Portfolio Manager (TS/SCI w/CI Poly)
Systems Administrator III (TS/SCI w/Poly)
Proposal Manager

Share This Job

Powered by