Vulnerability Scan Administrator
Vulnerability Scan Administrator
Assist in identifying and implementing security controls, performing risk assessments, and developing artifacts to obtain Authority to Operate (ATO) as part of the Risk Management Framework (RMF). Candidate will also perform duties in support of cybersecurity initiatives, such as, Independent Research and Development (IR&D), and operating cybersecurity testing environment
Responsibilities
- Continuous upkeep, monitoring, analysis, and response to Information System, network and security events.
- Work with eMASS to manage Cyber Tasking Orders (CTO) and ATO requirements
- Contribute to the preparation and maintenance of the Risk Management Framework (RMF) package and other accreditation support documentation.
- Maintaining the NIPR and SIPR RMF packages for all enclaves within scope of the contract.
- Administer and operate enterprise vulnerability scanning tools, covering scan configuration, scheduling, execution, and results validation.
- Support application and code security scanning workflows, assisting teams in identifying, prioritizing, and remediating security findings.
- Participates in internal/external security audits/inspections; performs risk assessments and Continuous Monitoring.
- Ensure proper protection and / or corrective measures have been taken when an incident or vulnerability has been discovered.
Requirements
- DoD security clearance – Secret level
- Foundational knowledge of the Risk Management Framework (RMF) and an understanding of DoD/DoN cybersecurity directives.
- Familiarity with vulnerability scanning tools and patch management.
- Basic understanding of OS hardening, networking concepts, and system security engineering principles.
- Strong organizational skills with the ability to contribute to clear technical documentation, procedures, and reports.
- Excellent teamwork and communication skills with the ability to effectively support a lead engineer in a government contracting environment.Active Secret Clearance (must be able to obtain and maintain).
- Six or more years of experience