Job description
Responsibilities
Configure, operate, and maintain Tenable.sc and Nessus to identify and track vulnerabilities across all environments. Troubleshoot scans and/or coordinate with customer or program resources to resolve scanning issues. Conduct STIG compliance scans and interpret results to assist system administrators and ISSEs to validate system hardening and control effectiveness.
Analyze vulnerability data and trends; create actionable findings and coordinate remediation efforts with system administrators and ISSEs. May be required to perform job duties/responsibilities outside of normal work location. Integrate vulnerability and compliance data into Splunk for correlation, trend analysis, and automated compliance reporting.
Develop dashboards and reports to visualize system risk posture and track remediation progress. Support RMF (Risk Management Framework) activities, providing technical input for security controls (e.g., Tenable results). Assist in developing or refining scanning policies, baselines, and SOPs to improve security posture and compliance consistency.
Support audits and assessments by providing detailed vulnerability data, remediation evidence, and STIG compliance documentation. Implementing security vulnerability testing tools to provide continuous monitoring and patch verification. Test and evaluate configurations in a lab environment. Knowledge of servers, virtualization, routers, switches, and firewalls as well as VLANS, routing and network segmentation.
Working knowledge of DoD STIGs, and RMF process (NIST 800-53). Experience using Splunk for data ingestion, search queries, correlation, and report creation. Provide security operations support as needed. Candidates should possess excellent communication and teamwork skills. Competitive candidates are results oriented, high energy, and self-motivated.
Candidate may be required to respond to after-hours requests as required in a 24 x 7 environment.
Requirements
Active and current TS.SCI w FSP through MD Active DoD 8570.01-M compliance with Information Assurance Technical (IAT) Level II (Sec+) or Information Assurance Systems Architect and Engineer (IASAE) Level 1 (CASP or CISSP) is required Experience as an ISSE on programs and contracts of similar scope, type, and complexity within the Federal Government is desirable.
Bachelor’s degree in Computer Science, Information Assurance, Information Security System Engineering, or related discipline from an accredited college or university is required.
Education
An Associate’s degree in Computer Science, Information Assurance, Information Security System Engineering, or a related discipline from an accredited college or university and a technical certification such as Security + plus two (2) years of general IT experience. Highschool Diploma/GED and four (4) years of general IT experience, at least one (1) of which must be information systems security experience.
Salary range: $83,279.00 $88,939.00
More jobs at Lentech
Application Engineer (UI)
Lentech· Fort Meade, MD· $198k – $225kLead Software Developer 3
Lentech· Fort Meade, MD· $291k – $310kSoftware Developer 1
Lentech· Linthicum, MD· $150k – $160kDatabase Engineer 2
Lentech· Linthicum, MDSQL Database Administrator
Lentech· Laurel, MD· $144k – $154k
More jobs in Columbia
Preschool Director - Howard County
YMCA of Central Maryland· 7115 Columbia Gateway Dr, Columbia, MD 21046, USACeramics - Art Center Instructor
Columbia Association· Columbia, MD, USA· $73kResearch & Marketing Communications - Department Talent
LMD· Columbia, Maryland, United StatesAssociate, Business Development
Vheda Health· Columbia, Maryland, United States· $40k – $50k