OCT Consulting, LLC
OCT Consulting, LLCVerified Source

IT Security Vulnerability Specialist - OCT Consulting

Partially · Washington, District of Columbia
Posted July 30, 2026
payroll

Overview

OCT Consulting seeks an Associate IT Security Vulnerability Specialist to lead vulnerability remediation for federal clients. This hybrid role requires 3 days weekly presence in Suitland MD. The ideal candidate will drive efficiency in vulnerability management while articulating risk to leadership. You will conduct assessments monitor tools develop policies and participate in incident response. Experience with NIST RMF and security frameworks is essential.

What You'll Do14

  • 1Lead and drive remediation efforts within government environments to improve vulnerability management efficiency
  • 2Articulate risk and impact to product engineering and business leaders
  • 3Conduct internal assessments and analyze external reports zero day announcements and security incidents
  • 4Monitor vulnerability and code scanning tools maintain security configurations and recommend policies
  • 5Participate in audits to ensure regulatory compliance and industry standards adherence
  • 6Reproduce and validate vulnerability fixes
  • 7Maintain knowledge of current threats and remediation best practices
  • 8Create reports and dashboards to drive remediation and process improvements
  • 9Support security operations including detection and response activities
  • 10Participate in security incident response
  • 11Review and maintain Configuration Management Plans for program requirements
  • 12Provide guidance on Configuration Items and Computer Software Configuration Items
  • 13Establish monitor and maintain configuration baselines
  • 14Monitor effectiveness and compliance on assigned programs

Requirements9

  • 17+ years of experience with A&A support
  • 2Proficient in all steps of the NIST RMF framework
  • 3Knowledgeable in NIST special publications such as 800-53 and 800-53A
  • 4Bachelor's degree or equivalent experience
  • 5In-depth understanding of multiple vulnerability scanning platforms including STIG and CIS benchmarks
  • 6MS Excel proficiency
  • 7Related industry certification such as GIAC GEVA CASP CAP CISSP CISM GSEC GMON Security+
  • 8US citizenship
  • 9Secret clearance required

Salary Insight

Salary not disclosed in listing

Location

Typepartially
LocationWashington, District of Columbia

Required Skills

Vulnerability ManagementIntrusion PreventionIntrusion DetectionAccess ControlAuthorizationPolicy EnforcementApplication Security
Share:

Similar open positions

Explore active roles that match your skills and interests.

Xpect Solutions

13d agoWashington, District of Columbiapayroll

Information Systems Security Officer - Xpect Solutions

Lead compliance and security operations for government information systems. Navigate the full NIST Risk Management Framework and ensure adherence to NIST 800-53 controls and DHS 4300A requirements. Partner with Government Security Assurance Management teams to protect critical systems and maintain compliance posture.

Competitive salary
NIST RMFNIST 800-53NIST 800-37+6 more
General Dynamics Information Technology

General Dynamics Information Technology

11d agoWashington, District of Columbiapayroll

Cybersecurity Analyst Risk Management Framework TS/SCI

Own responsibility for protecting national safety and security by applying latest technologies securely. Support Government activities in Sterling VA or Annapolis Junction MD. Deliver on promise as a critical part of GDIT's mission.

128K–172K
Information AssuranceInformation SystemsInformation Technology+10 more
Peraton

Peraton

21d agoWashington, District of Columbiapayroll

Cybersecurity Vulnerability Analyst at Peraton

Peraton seeks a Cybersecurity Vulnerability Analyst in Linthicum MD to lead the Department of Defense Vulnerability Disclosure Program. The analyst will triage reports via HackerOne, evaluate severity, and coordinate mitigation efforts. This role combines offensive security research with collaboration to protect national security assets.

104K–166K
Kali LinuxHackerOneCVSS+7 more

Alutiiq, LLC

1d agoWashington, District of Columbiapayroll

Information Security Support Specialist

Shield Point LLC seeks an Information Security Support Specialist MID in Washington DC. This single seat owns classified document control up to TS/SCI level and leads document inspector duties. Responsibilities include supporting accreditation reviews risk assessments and advising on OPSEC CUI programs. Requires candidates with strong technical expertise and security clearance.

123K–136K
pythonawsreact+2 more

AGR LLC

1d agoWashington, District of Columbiapayroll

Senior-Level Cyber Systems Engineer (Vulnerab AGR LLC Washington DC

Senior-Level Cyber Systems Engineer (Vulnerab AGR LLC Washington DC offers a unique opportunity to join the Department of State Diplomatic Security Cyber Mission program. This role supports critical cyber infrastructure protection across global networks while leading innovative security solutions.

200K–220K
AWSAzureActive Directory Federation Services+4 more
Peraton

Peraton

1d agoWashington, District of Columbiapayroll

Senior Information System Security Officer Peraton

Peraton seeks a Senior ISSO to lead IT architecture support in Annapolis Junction MD. You will lead or co-lead ATO/reauthorization efforts mentor junior staff drive security engineering outcomes execute RMF activities maintain security artifacts operate continuous monitoring support incident response ensure least privilege governance translate security requirements provide qualifications required and preferred list.

135K–216K
NIST SP 800-53RMFATO+5 more