FSS - 3026 - Qualys System Administrator
Job
First Soft Solutions.
Rockville, MD (In Person)
Full-Time
Review key factors to help you decide if the role fits your goals.
Pay Growth
?
out of 5
Not enough data
Not enough info to score pay or growth
Job Security
?
out of 5
Not enough data
Calculating job security score...
Total Score
74
out of 100
Average of individual scores
Skill Insights
Compare your current skills to what this opportunity needs—we'll show you what you already have and what could strengthen your application.
Job Description
Job Code
FSS - 3026
Posted By Suresh Dakshinamoorthy Modified By Suresh Dakshinamoorthy Person Details Saravanan Kumar Qualys System Administrator (Rockville, MD, 20849) | 04/08/26 Easy Job Description In person interview is must. Our Client seeks to enhance its enterprise vulnerability and configuration assessment capabilities by procuring the services of a qualified Vulnerability Engineer with demonstrated experience in the administration and operational use of the QualysGuard platform. This role is critical to supporting the County's ongoing threat and vulnerability management program and will play a key role in reducing theanization's risk exposure. The Qualys System Administrator is responsible for the administration, configuration, and operational management of the Qualys Cloud Platform to support theanization's enterprise vulnerability management,pliance, and risk management programs. This role partners closely with Information Security, GRC, Infrastructure, and Application teams to ensure accurate asset discovery, vulnerability identification, risk prioritization, and remediation tracking in alignment with County policies.Scope of Work:
1. Qualys Platform Administration Administer and maintain the Qualys Cloud Platform, including (as applicable): Vulnerability Management (VMDR) Asset Inventory / Global AssetView Configure and manage scanners (internal, passive, and cloud-based). Maintain asset tagging strategies aligned with environments (Prod/Non-Prod), system owners, data classifications, andpliance scopes. Manage user roles, permissions, and access controls within Qualys. 2. Vulnerability Management Operations Execute scheduled and ad-hoc vulnerability scans across on-prem, cloud, and endpoint environments. Validate scan results, reduce false positives, and ensure data accuracy. Perform vulnerability triage and risk-based prioritization using CVSS, exploitability, threat intelligence, and business context. Support remediation efforts by working with infrastructure, application, and cloud teams to validate fixes and re-scan assets. 3. GRC & Compliance Integration Map Qualys findings to regulatory and control frameworks (e.g., NISTSP 800-53, HIPAA
Security Rule, ISO 27001). Provide vulnerability and exposure data to support: Risk register entries Policy exception requests Audit and assessment activities Generatepliance and executive-level reports for security leadership and governancemittees. 4. Automation & ing Develop and maintain custom dashboards, reports, and scorecards for operational, management, and executive audiences. Leverage Qualys APIs to automate data extraction, integrations, and reporting (e.g., ServiceNow GRC, ticketing, SIEM) Support continuous monitoring initiatives by improving scan coverage, frequency, and data\ quality 5. Operational Governance Maintain standard operating procedures (SOPs) and technical documentation for vulnerability management processes. Participate in incident response, risk review boards, and security working groups as a subject matter expert. Support internal and external audits by providing evidence, scan results, and remediation validation.Required Qualifications:
1. Technical Skills Hands-on experience administering the Qualys Cloud Platform (VMDR required). Strong understanding of vulnerability management concepts, CVEs, CVSS scoring, and remediation workflows. Experience managing large-scale scanning environments (enterprise networks, cloud, endpoints). Working knowledge of Windows, Linux, networking, and cloud platforms (AWS/Azure). Experience with asset inventory, tagging, and data normalization. Scripting or automation experience (Python, PowerShell, REST APIs). Experience integrating Qualys with ServiceNow (ITSM or GRC). 2. GRC & Risk Knowledge Familiarity withNIST SP 800-53, NIST RMF, HIPAA
Security Rule, or equivalent frameworks. Ability to translate technical vulnerabilities into business andpliance risk. Experience supporting audits, assessments, or risk exception processes.Desired Certifications:
Qualys certifications (VMDR, Policy Compliance, Asset Management) Security certifications such as Security+, CEH, CISSP, or CISASimilar remote jobs
All Care Therapies
Jersey City, NJ
Posted2 days ago
Updated16 hours ago
Fujifilm
Pierre, SD
Posted2 days ago
Updated16 hours ago
Oakland County Michigan
Madison Heights, MI
Posted2 days ago
Updated16 hours ago
Similar jobs in Rockville, MD
Lafayette Federal Credit Union
Rockville, MD
Posted2 days ago
Updated16 hours ago
Rockville Metals & Karville
Rockville, MD
Posted2 days ago
Updated16 hours ago
Hersha Hospitality Management, LP
Rockville, MD
Posted2 days ago
Updated16 hours ago
Similar jobs in Maryland
United Insurance Company of America
Salisbury, MD
Posted2 days ago
Updated16 hours ago