Назад
Company hidden
15 часов назад

Cybersecurity Vulnerability Assessment Analyst II (DoD)

Формат работы
onsite
Тип работы
fulltime
Грейд
middle
Английский
b2
Страна
US
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/

TL;DR

Cybersecurity Vulnerability Assessment Analyst II (DoD): Identifying, analyzing, and reporting cybersecurity vulnerabilities across Department of the Army and DoD enterprise networks with an accent on vulnerability scanning, risk assessment, and compliance. Focus on executing ACAS/Nessus scans, ensuring STIG compliance, and collaborating with engineering teams on remediation strategies.

Location: On-site in Huntsville, AL

Company

hirify.global is a defense contractor providing adaptive innovation and technology integration to support critical national security missions.

What you will do

  • Execute routine and ad-hoc vulnerability, compliance, and discovery scans using ACAS (Tenable Nessus) and SCAP tools.
  • Analyze scan results to identify false positives, evaluate risk levels, and generate actionable reports for Army leadership.
  • Collaborate with Systems Administrators and Network Engineers to provide technical guidance on patching and mitigation.
  • Enforce compliance with IAVAs, STIGs, and Army Cyber Command (ARCYBER) directives.
  • Maintain and troubleshoot vulnerability scanning infrastructure within Impact Level 5 (IL5) secure environments.

Requirements

  • Secret security clearance (Must have to start).
  • DoD 8140/8570.01–M IAT Level II certification (e.g., CompTIA Security+ CE, CySA+ or equivalent).
  • 2-3 years of professional cybersecurity experience, with at least 1 year performing vulnerability assessments in a DoD/Army IT environment.
  • Bachelor's degree in Cybersecurity, Computer Science, IT, or a related technical field.
  • Hands-on experience operating ACAS (Tenable.sc/Nessus) and applying DISA STIGs.
  • Proficiency in RMF, POA&M management, and using eMASS for vulnerability control maintenance.

Nice to have

  • Advanced certifications such as CEH or CASP+.
  • Familiarity with Army-specific cyber regulations (e.g., AR 25-2).
  • Scripting experience with PowerShell, Python, or Bash to automate data parsing.
  • Experience with Agile project management methodologies.

Culture & Benefits

  • Culture driven by the "6Hs": Happy, Helpful, Honest, Humble, Hungry, and Hustle.
  • Commitment to a supportive, transparent, and collaborative team environment.
  • Opportunity to work on high-impact national security and critical civilian missions.
  • Focus on continuous improvement, innovation, and professional growth.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →