Назад
Company hidden
15 дней назад

Acas Lead (Air-Gapped Il6) / Staff Vulnerability Engineer

115 500 - 165 000$
Формат работы
onsite
Тип работы
fulltime
Грейд
lead
Английский
b2
Страна
US
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/

TL;DR

ACAS Lead (Air-Gapped IL6) / Staff Vulnerability Engineer: Building the vulnerability management engine, engineering the offline infrastructure, and establishing the governance playbook from the ground up for a new U.S. Federal IL6 (SCIF) environment with an accent on platform selection, sizing, and security control implementation strategy. Focus on enabling organizations worldwide to harness speed and agility while operating strictly within a U.S. SCIF and adhering to one-way diode transfer protocols.

Location: Fully onsite near Crystal City, VA. Must be a U.S. Citizen with an active U.S. Secret clearance.

Salary: $115,500 - $165,000 USD

Company

hirify.global accelerates digital transformation to ensure our customers can be more agile, efficient, resilient, and secure.

What you will do

  • Design and execute authenticated and unauthenticated network and host scanning using IL6-approved tools.
  • Advance the continuous security monitoring controls in the environment as autonomous and innovative systems.
  • Oversee patch and system hardening campaigns in collaboration with IL6 service owners.
  • Develop and deliver high-impact reports, integrating POA&M tracking and remediation status.
  • Maintain essential documentation within the SCIF environment.

Requirements

  • U.S. Citizenship with an active U.S. Secret clearance.
  • Experience in End-to-End Vulnerability Management, specifically building and administering Tenable.sc, Nessus Manager, or ACAS in disconnected/air-gapped environments.
  • Solid understanding of risk-based prioritization, remediation lifecycle, and SLA governance.

Nice to have

  • DoD 8570/8140 IAT Level II certification (e.g., Security+ CE, GSEC, SSCP, or CySA+).
  • Experience with modern scanning methodologies, including CSPM concepts, Web Application Scanning (WAS), and Container Security.
  • Scripting skills for automation in disconnected environments.
  • Understanding of government cloud and container operations, including classified environments and exposure to FedRAMP High/Moderate isolated ticketing workflows.

Culture & Benefits

  • Committed to building a team that reflects the communities we serve and the customers we work with.
  • Foster an inclusive environment that values all backgrounds and perspectives, emphasizing collaboration and belonging.
  • Comprehensive and inclusive benefits to meet the diverse needs of our employees and their families throughout their life stages.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →