Find Jobs
Find Jobs Near You – Available Work in Your Location
Vulnerability Assessment Analyst - Information Systems Security
Career Insights for Vulnerability Analyst / Penetration Tester
See where this job fits in the broader career landscape. Knowing your career path helps you see what's possible from here.
Scorecard
Based on Maryland data
Review key factors to help you decide if this role fits your goals. How is this calculated?
What they do
A Vulnerability Analyst or Penetration Tester probes for and exploits security vulnerabilities in web-based applications, networks and systems. Penetration Tests are designed to achieve a specific, attacker-simulated goal and should be requested by customers who are already at their desired security posture. A typical goal could be to access the contents of the prized customer database on the internal network, or to modify a record in an HR system. Vulnerability Assessments are designed to yield a prioritized list of vulnerabilities and are generally for clients who already understand they are not where they want to be in terms of security. The customer already knows they have issues and simply need help identifying and prioritizing them.
$121,766 / year median in Maryland
+3% projected growth
Job Description
Job Requirements Jessup, MD Top Secret/SCI Polygraph Career Level not specified $86,600
- $181,800
Job Description Job Title:
Vulnerability Assessment Analyst
•
Information Systems Security Engineer Job Category:
Information Technology Time Type:
Part time Minimum Clearance Required to
Start:
TS/SCI with
Polygraph Employee Type:
Part-Time On-Call Percentage of Travel Required:
Up to 10%
Type of Travel:
None
•
The Opportunity:
CACI is seeking a highly skilled Systems Security Engineer to work on-site in Annapolis Junction, MD , supporting enterprise vulnerability management and cybersecurity operations. The ideal candidate will have hands-on experience with Tenable Security Center and Nessus , Linux and Windows environments, vulnerability assessments, STIG remediation, and continuous security monitoring. This role requires a strong understanding of system and application vulnerabilities, excellent analytical skills, and the ability to work independently while collaborating effectively with ISS and other technical teams.
Responsibilities:
Maintain, optimize, and administer the Tenable Security Center infrastructure and associated scanning environments. Conduct security patching, vulnerability assessments, and Nessus scans across Linux Security Center servers and Windows/Linux scanning servers. Install, configure, maintain, and update Tenable Nessus and Tenable Security Center software. Configure and fine-tune scanning policies, asset lists, and security configurations to provide comprehensive vulnerability coverage. Perform vulnerability assessments across multiple device types and operating systems using Tenable Security Center. Conduct continuous monitoring of customer assets using Nessus to identify and evaluate security vulnerabilities. Review and analyze Nessus/ACAS scan results , including successful, unsuccessful, and potential scan results. Identify and support remediation of DISA STIGs and system vulnerabilities across Tenable servers and scanning infrastructure. Analyze vulnerability data and prepare clear, comprehensive reports for management and technical stakeholders. Monitor and track vulnerability remediation activities to support timely resolution. Collaborate with ISS and other technical teams to address vulnerabilities and strengthen the customer's security posture. Communicate security risks, assessment findings, and remediation status to stakeholders. Maintain accurate records of vulnerabilities, security activities, and related findings.
Qualifications:
Required:
Bachelor's degree with 7 years of experience . DoD 8570 IAT Level II certification requirements. CEH or CompTIA Security+ CE certification. Hands-on experience with enterprise vulnerability management and scanning solutions, particularly Tenable/Nessus . Familiarity with DISA STIGs, Tenable Audit Files, and/or CIS Benchmarks . Knowledge of system and application security threats, vulnerabilities, and remediation practices. Working knowledge of Linux/Unix and Windows administration . Experience with patch deployment and system configuration. Understanding of networking and enterprise IT environments. Strong analytical, troubleshooting, and problem-solving skills with exceptional attention to detail.
Desired:
In-depth knowledge of vulnerability assessment methodologies, tools, and industry best practices. Experience managing vulnerability remediation across complex enterprise environments. Ability to independently manage assignments and take ownership of tasks from initiation through completion. Demonstrated ability to collaborate effectively with ISS, engineering, and other technical teams. Strong communication skills with the ability to clearly present technical findings and security risks to management and stakeholders.
- What You Can Expect: A culture of integrity. At CACI, we place character and innovation at the center of everything we do. As a valued team member, you'll be part of a high-performing group dedicated to our customer's missions and driven by a higher purpose
- to ensure the safety of our nation. An environment of trust. CACI values the unique contributions that every employee brings to our company and our customers
- every day. You'll have the autonomy to take the time you need through a unique flexible time off benefit and have access to robust learning resources to make your ambitions a reality. A focus on continuous growth. Together, we will advance our nation's most critical missions, build on our lengthy track record of business success, and find opportunities to break new ground
- in your career and in our legacy.
Pay Range :
There are a host of factors that can influence final salary including, but not limited to, geographic location, Federal Government contract labor categories and contract wage rates, relevant prior work experience, specific skills and competencies, education, and certifications. Our employees value the flexibility at CACI that allows them to balance quality work and their personal lives. We offer competitive compensation, benefits and learning and development opportunities. Our broad and competitive mix of benefits options is designed to support and protect employees and their families. At CACI, you will receive comprehensive benefits such as; healthcare, wellness, financial, retirement, family support, continuing education, and time off benefits. The proposed salary range for this position is: $86,600
- $181,800 CACI is an Equal Opportunity Employer.
All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, pregnancy, sexual orientation, age, national origin, disability, status as a protected veteran, or any other protected characteristic.
group id:
caci Apply now
Benefits
- Professional Development
- Dental Insurance