SME Cyber Vulnerability Management
Responsibilities for this Position
Location: USA NC Fort BraggFull Part/Time: Full time
Job Req: RQ225923 Type of Requisition:
Regular Clearance Level Must Currently Possess:
Top Secret/SCI Clearance Level Must Be Able to Obtain:
Top Secret/SCI Public Trust/Other Required:
None Job Family:
Cyber and IT Risk Management Job Qualifications: Skills:
Information Assurance, Scanning, Security Policies, Threat Detection
Certifications:
None
Experience:
8 + years of related experience
US Citizenship Required:
Yes Job Description: The SME Information Security Analyst (Vulnerability Management) serves as the technical lead for deploying, configuring, and maintaining the enterprise vulnerability management environment. This position focuses on optimizing Tenable Security Center within Linux/Red Hat infrastructures and ensuring compliance with DISA STIGs, NSA guidelines, and organizational cybersecurity policies. The analyst supports Enterprise Communications and hybrid environments across AWS, Microsoft Azure, and Google Cloud. This role requires deep technical expertise, strong analytical skills, and collaboration with engineering, cybersecurity, and leadership teams across the command. Responsibilities: Vulnerability Management Operations
- Install, configure, and maintain Tenable Security Center and scanning components on Linux/Red Hat platforms.
- Ensure vulnerability management systems meet DISA STIG, NSA, and cybersecurity policy requirements.
- Manage credentialed and non-credentialed scans, schedules, asset groups, and plugin updates.
- Troubleshoot scanner/system issues to ensure accurate and continuous vulnerability detection.
- Analyze scan results to identify weaknesses, misconfigurations, and emerging threats.
- Validate findings, assess severity, and prioritize remediation based on mission needs.
- Produce recurring reports, dashboards, and metrics for Command Leadership.
- Translate complex technical findings into clear remediation guidance for engineering teams.
- Provide expert guidance on mitigation, configuration hardening, and patching strategies.
- Support development and maintenance of POA&Ms for unresolved vulnerabilities.
- Track remediation progress to ensure compliance with published cyber directives.
- Support enterprise communications systems and services to ensure secure hybrid operations.
- Assist with monitoring and securing cloud/on-prem workloads using enterprise security tools.
- Collaborate with cloud, network, and communications teams to ensure secure configurations and continuous monitoring.
- Support threat detection using Microsoft Defender for Endpoint and cloud environments including AWS, Azure, and Google Cloud.
- Conduct log analysis, event correlation, and investigation of suspicious activity.
- Assist with incident reporting, documentation, and escalation procedures.
- Contribute to detection rule tuning, alert fidelity improvements, and endpoint hardening.
- Identify coverage gaps and recommend improvements; document findings in After-Action Reports with SOC, EPT, and CTI partners.
- Develop guardrails, configuration baselines, and automation artifacts to reduce vulnerability recurrence.
- Support surge response activities through rapid scanning, validation, and remediation assistance.
- Splunk or Elastic for Cloud
- Endpoint Detection & Response (EDR) tools
- Antivirus platforms
- ServiceNow, Remedy, or similar ticketing systems
- DoD 8570 / 8140 compliant certification
- CompTIA Security+
- CySA+
- Network+
- CASP+
- GIAC certifications (GCIH, GCFA, etc.)
- TS/SCI Required
- On Customer Site
- US citizenship
At GDIT, the mission is our purpose, and our people are at the center of everything we do.
Growth: AI-powered career tool that identifies career steps and learning opportunities
Support: An internal mobility team focused on helping you achieve your career goals
Rewards: Comprehensive benefits and wellness packages, 401K with company match, and competitive pay and paid time off
Community: Award-winning culture of innovation and a military-friendly workplace OWN YOUR OPPORTUNITY
Explore a career in cyber at GDIT and you'll find endless opportunities to grow alongside colleagues who share your focus on defending and protecting what matters. The likely salary range for this position is $144,500 - $195,500. This is not, however, a guarantee of compensation or salary. Rather, salary will be set based on experience, geographic location and possibly contractual requirements and could fall outside of this range. Scheduled Weekly Hours:
40 Travel Required:
10-25% Telecommuting Options:
Onsite Work Location:
USA NC Fort Bragg Additional Work Locations: Total Rewards at GDIT:
Our benefits package for all US-based employees includes a variety of medical plan options, some with Health Savings Accounts, dental plan options, a vision plan, and a 401(k) plan offering the ability to contribute both pre and post-tax dollars up to the IRS annual limits and receive a company match. To encourage work/life balance, GDIT offers employees full flex work weeks where possible and a variety of paid time off plans, including vacation, sick and personal time, holidays, paid parental, military, bereavement and jury duty leave. To ensure our employees are able to protect their income, other offerings such as short and long-term disability benefits, life, accidental death and dismemberment, personal accident, critical illness and business travel and accident insurance are provided or available. We regularly review our Total Rewards package to ensure our offerings are competitive and reflect what our employees have told us they value most. Our Identity Verification Process:
As part of the hiring process, we will ask you to complete an identity verification process that leverages advanced biometrics and artificial intelligence to ensure authenticity and protect against identity fraud. You are expected to be on camera during virtual interviews. We reserve the right to take your picture to verify your identity and prevent fraud. By proceeding, you authorize the collection, processing, and use of your biometric data for identity verification and security purposes. About Our Work:
We are GDIT. A global technology and professional services company that delivers technology solutions and mission services to every major agency across the U.S. government, defense and intelligence community. Our 26,000 experts extract the power of technology to create immediate value and deliver solutions at the edge of innovation. We operate across 50+ countries worldwide, offering leading mission-ready capabilities in AI, cloud, cyber and software development. Join our Talent Community to stay up to date on our career opportunities and events at
gdit.com/tc . Equal Opportunity Employer / Individuals with Disabilities / Protected Veterans
PI286529497
The SME Information Security Analyst (Vulnerability Management) serves as the technical lead for deploying, configuring, and maintaining the enterprise vulnerability management environment. This position focuses on optimizing Tenable Security Center within Linux/Red Hat infrastructures and ensuring compliance with DISA STIGs, NSA guidelines, and organizational cybersecurity policies. The analyst supports Enterprise Communications and hybrid environments across AWS, Microsoft Azure, and Google Cloud. This role requires deep technical expertise, strong analytical skills, and collaboration with engineering, cybersecurity, and leadership teams across the command.
Responsibilities:
Vulnerability Management Operations
- Install, configure, and maintain Tenable Security Center and scanning components on Linux/Red Hat platforms.
- Ensure vulnerability management systems meet DISA STIG, NSA, and cybersecurity policy requirements.
- Manage credentialed and non-credentialed scans, schedules, asset groups, and plugin updates.
- Troubleshoot scanner/system issues to ensure accurate and continuous vulnerability detection.
Analysis & Reporting
- Analyze scan results to identify weaknesses, misconfigurations, and emerging threats.
- Validate findings, assess severity, and prioritize remediation based on mission needs.
- Produce recurring reports, dashboards, and metrics for Command Leadership.
- Translate complex technical findings into clear remediation guidance for engineering teams.
Mitigation Support & POA&M Management
- Provide expert guidance on mitigation, configuration hardening, and patching strategies.
- Support development and maintenance of POA&Ms for unresolved vulnerabilities.
- Track remediation progress to ensure compliance with published cyber directives.
Enterprise Communications Support
- Support enterprise communications systems and services to ensure secure hybrid operations.
- Assist with monitoring and securing cloud/on-prem workloads using enterprise security tools.
- Collaborate with cloud, network, and communications teams to ensure secure configurations and continuous monitoring.
Threat Detection & Response
- Support threat detection using Microsoft Defender for Endpoint and cloud environments including AWS, Azure, and Google Cloud.
- Conduct log analysis, event correlation, and investigation of suspicious activity.
- Assist with incident reporting, documentation, and escalation procedures.
- Contribute to detection rule tuning, alert fidelity improvements, and endpoint hardening.
- Identify coverage gaps and recommend improvements; document findings in After-Action Reports with SOC, EPT, and CTI partners.
- Develop guardrails, configuration baselines, and automation artifacts to reduce vulnerability recurrence.
- Support surge response activities through rapid scanning, validation, and remediation assistance.
Required Skills & Experience:
- Splunk or Elastic for Cloud
- Endpoint Detection & Response (EDR) tools
- Antivirus platforms
- ServiceNow, Remedy, or similar ticketing systems
Compliance / Certifications (Preferred):
- DoD 8570 / 8140 compliant certification
- CompTIA Security+
- CySA+
- Network+
- CASP+
- GIAC certifications (GCIH, GCFA, etc.)
Security Clearance Level:
- TS/SCI Required
Location:
- On Customer Site
Citizenship Requirement:
- US citizenship
GDIT IS YOUR PLACE
At GDIT, the mission is our purpose, and our people are at the center of everything we do.
Growth: AI-powered career tool that identifies career steps and learning opportunities
Support: An internal mobility team focused on helping you achieve your career goals
Rewards: Comprehensive benefits and wellness packages, 401K with company match, and competitive pay and paid time off
Community: Award-winning culture of innovation and a military-friendly workplace
OWN YOUR OPPORTUNITY
Explore a career in cyber at GDIT and you'll find endless opportunities to grow alongside colleagues who share your focus on defending and protecting what matters.
The likely salary range for this position is $144,500 - $195,500. This is not, however, a guarantee of compensation or salary. Rather, salary will be set based on experience, geographic location and possibly contractual requirements and could fall outside of this range.
Scheduled Weekly Hours:
40
Travel Required:
10-25%
Telecommuting Options:
Onsite
Work Location:
USA NC Fort Bragg
Additional Work Locations:
Total Rewards at GDIT:
Our benefits package for all US-based employees includes a variety of medical plan options, some with Health Savings Accounts, dental plan options, a vision plan, and a 401(k) plan offering the ability to contribute both pre and post-tax dollars up to the IRS annual limits and receive a company match. To encourage work/life balance, GDIT offers employees full flex work weeks where possible and a variety of paid time off plans, including vacation, sick and personal time, holidays, paid parental, military, bereavement and jury duty leave. To ensure our employees are able to protect their income, other offerings such as short and long-term disability benefits, life, accidental death and dismemberment, personal accident, critical illness and business travel and accident insurance are provided or available. We regularly review our Total Rewards package to ensure our offerings are competitive and reflect what our employees have told us they value most.
Our Identity Verification Process:
As part of the hiring process, we will ask you to complete an identity verification process that leverages advanced biometrics and artificial intelligence to ensure authenticity and protect against identity fraud. You are expected to be on camera during virtual interviews. We reserve the right to take your picture to verify your identity and prevent fraud. By proceeding, you authorize the collection, processing, and use of your biometric data for identity verification and security purposes.
About Our Work:
We are GDIT. A global technology and professional services company that delivers technology solutions and mission services to every major agency across the U.S. government, defense and intelligence community. Our 26,000 experts extract the power of technology to create immediate value and deliver solutions at the edge of innovation. We operate across 50+ countries worldwide, offering leading mission-ready capabilities in AI, cloud, cyber and software development.
Join our Talent Community to stay up to date on our career opportunities and events at
gdit.com/tc .
Equal Opportunity Employer / Individuals with Disabilities / Protected Veterans
PI286529497
Recommended Jobs
Part-Time Gynecological Sonographer
Gynecological Sonographer - Part Time Job Summary: The Gynecological Sonographer performs ultrasound services and procedures to include setting up ultrasound machine and preparing for diagnostic …
Remote Sales ($100K+, Training Provided, No Cold Calls), United States
Stop Settling for Average Income If you’re driven, coachable, and ready to get paid based on your effort, this may be the opportunity you’ve been looking for. Meron Financial Agency is expanding …
Sr Finance Systems Analyst
: Join the industry leader to design the next generation of breakthroughs The future is what you make it. When you join Honeywell, you become a member of our global team of thinkers, innovators…
Senior Platform Engineer
Senior Platform Engineer (AWS / Kubernetes) Remote (United States) Security Journey is hiring a Senior Platform Engineer to help scale and operate the platform behind our secure coding training p…
CT Technologist - Outpatient & Inpatient
At Duke Health, we're driven by a commitment to compassionate care that changes the lives of patients, their loved ones, and the greater community. No matter where your talents lie, join us and discov…
Core Operator--2nd Shift
At ABB , we help industries run leaner and cleaner-and every person here makes that happen. You'll be empowered to lead, supported to grow, and proud of the impact we create together. Join us and he…
Sr Manager, Aftermarket Collaborative Forecasting
About Carrier Carrier Global Corporation, global leader in intelligent climate and energy solutions, is committed to creating innovations that bring comfort, safety and sustainability to life. Thr…
Electrical Instrumentation Designer - Energy
About Us At Larson Design Group (LDG), we’re more than an award-winning Architecture, Engineering, and Consulting firm; we’re a team of passionate professionals united by a bold purpose: creativel…