Vulnerability Analyst
USA GA Home Office (GAHOME), United States
Full Time Mid-level / Intermediate Clearance required USD 76K - 103K
General Dynamics Information Technology
Delivering technology solutions and mission services to every major agency across the U.S. government, defense and intelligence community.Type of Requisition:
RegularClearance Level Must Currently Possess:
OtherClearance Level Must Be Able to Obtain:
NonePublic Trust/Other Required:
OtherJob Family:
Cyber SecurityJob Qualifications:
Skills:
Security Tools, ServiceNow Security Vulnerability Response, Splunk (Inactive), Tenable Security Center, Vulnerability AssessmentsCertifications:
NoneExperience:
4 + years of related experienceUS Citizenship Required:
YesJob Description:
GDIT is seeking a Vulnerability Analyst with an active Public Trust clearance to work at our client's location at the Centers for Disease Control and Prevention (CDC) Cybersecurity Program Office (CSPO) in Atlanta, GA. The CSPO is responsible for identifying and responding to computer network security incidents, investigating, and correlating indicators of compromise associated with attacks against computers and computer networks, assessing and communicating the severity of security incidents, using network and network security tools.
This role performs assessments of systems and networks within the network environment or enclave and identifies where those systems/networks deviate from acceptable configurations, enclave policy, or local policy. Measures effectiveness of defense-in-depth architecture against known vulnerabilities.
WORK SCHEDULE:
- Must be within commuting distance to the CDC in Atlanta, GA as this role may require you to be onsite occasionally
- This will be an 80-hour bi-weekly schedule from 8a-5p
- You will work within a team of 2 to provide support to a 24x7x365 SOC, including Federal Holidays
- Schedule flexibility occurs within the team including rotating holiday coverage
HOW A VULNERABILITY ANALYST WILL MAKE AN IMPACT:
- Conduct regular vulnerability scans and assessments across systems, networks, and applications using industry-standard tools.
- Analyze scan results, identify potential security threats, and prioritize vulnerabilities based on risk and impact.
- Collaborate with IT and development teams to remediate identified vulnerabilities in a timely and effective manner.
- Monitor threat intelligence feeds and stays up to date with emerging vulnerabilities and exploit techniques.
- Prepare detailed reports and dashboards to communicate findings, trends, and remediation progress to stakeholders.
- Support compliance and audit efforts by ensuring systems meet organizational and regulatory security requirements.
- Develop and maintain vulnerability management policies, procedures, and best practices documentation.
WHAT YOU'LL NEED TO SUCCEED:
- Active Public Trust clearance required
- Bachelor’s Degree (BS degree can be substituted with 2 additional years of experience).
- Proficient Skill in using network analysis tools to identify vulnerabilities (i.e. Tenable Nessus. Nessus Manger, ServiceNow VR, Nmap)
- Help define management reporting requirements and metrics, including risk appetite metrics and key risk indicators.
- Prepare audit reports that identify technical and procedural findings, and provide recommended remediation strategies/solutions.
- Knowledge of network security architecture concepts including topology, protocols, components, and principles (e.g., application of defense-in-depth.
- Experience coordinating with customers to remediate system vulnerabilities.
- CompTIA Security+ Certification.
- Must be able to be onsite in Atlanta, GA as needed. Travel expenses are not reimbursed.
DESIRED SKILLS AND EXPERIENCE:
- Demonstrated project management experience, including setting milestones, managing timelines, and ensuring on-time delivery of objectives.
- Experience in ensuring compliance with federal standards such as FISMA, NIST 800-53, and DHS BODs (e.g., BOD 22-01)
- Knowledge of continuous monitoring, POA&M management, and ATO support.
- Monitored public and private threat intelligence sources (e.g., CISA, CVE databases, vendor advisories) to identify emerging vulnerabilities relevant to enterprise systems and coordinate internal risk assessments.
- CISSP or SANS Certifications.
- Strong written and verbal communication skills.
GDIT IS YOUR PLACE:
- Full-flex work week to own your priorities at work and at home.
- 401K with company match.
- Comprehensive health and wellness packages.
- Internal mobility team dedicated to helping you own your career.
- Professional growth opportunities including paid education and certifications.
- Cutting-edge technology you can learn from.
- Rest and recharge with paid vacation and holidays.
#GDITPublicHealthJobs
The likely salary range for this position is $76,500 - $103,500. This is not, however, a guarantee of compensation or salary. Rather, salary will be set based on experience, geographic location and possibly contractual requirements and could fall outside of this range.Scheduled Weekly Hours:
40Travel Required:
Less than 10%Telecommuting Options:
RemoteWork Location:
Any Location / RemoteAdditional Work Locations:
Total Rewards at GDIT:
Our benefits package for all US-based employees includes a variety of medical plan options, some with Health Savings Accounts, dental plan options, a vision plan, and a 401(k) plan offering the ability to contribute both pre and post-tax dollars up to the IRS annual limits and receive a company match. To encourage work/life balance, GDIT offers employees full flex work weeks where possible and a variety of paid time off plans, including vacation, sick and personal time, holidays, paid parental, military, bereavement and jury duty leave. GDIT typically provides new employees with 15 days of paid leave per calendar year to be used for vacations, personal business, and illness and an additional 10 paid holidays per year. Paid leave and paid holidays are prorated based on the employee’s date of hire. The GDIT Paid Family Leave program provides a total of up to 160 hours of paid leave in a rolling 12 month period for eligible employees. To ensure our employees are able to protect their income, other offerings such as short and long-term disability benefits, life, accidental death and dismemberment, personal accident, critical illness and business travel and accident insurance are provided or available. We regularly review our Total Rewards package to ensure our offerings are competitive and reflect what our employees have told us they value most.We are GDIT. A global technology and professional services company that delivers consulting, technology and mission services to every major agency across the U.S. government, defense and intelligence community. Our 30,000 experts extract the power of technology to create immediate value and deliver solutions at the edge of innovation. We operate across 30 countries worldwide, offering leading capabilities in digital modernization, AI/ML, Cloud, Cyber and application development. Together with our clients, we strive to create a safer, smarter world by harnessing the power of deep expertise and advanced technology.We connect people with the most impactful client missions, creating an unparalleled work experience that allows them to see their impact every day. We create opportunities for our people to lead and learn simultaneously. From securing our nation’s most sensitive systems, to enabling digital transformation and cloud adoption, our people are the ones who make change real.Equal Opportunity Employer / Individuals with Disabilities / Protected VeteransTags: Business Intelligence CISA CISSP Clearance Clearance Required Cloud Compliance CompTIA Exploit FISMA Monitoring Nessus Network security NIST NIST 800-53 Nmap POA&M Risk assessment SANS SOC Splunk Threat intelligence Vulnerabilities Vulnerability management Vulnerability scans
Perks/benefits: 401(k) matching Career development Competitive pay Flex hours Health care Home office stipend Insurance Medical leave Parental leave
More jobs like this
Explore more career opportunities
Find even more open roles below ordered by popularity of job title or skills/products/technologies used.