IT Security Vulnerability Specialist - OCT Consulting
Overview
OCT Consulting seeks an Associate IT Security Vulnerability Specialist to lead vulnerability remediation for federal clients. This hybrid role requires 3 days weekly presence in Suitland MD. The ideal candidate will drive efficiency in vulnerability management while articulating risk to leadership. You will conduct assessments monitor tools develop policies and participate in incident response. Experience with NIST RMF and security frameworks is essential.
What You'll Do14
- 1Lead and drive remediation efforts within government environments to improve vulnerability management efficiency
- 2Articulate risk and impact to product engineering and business leaders
- 3Conduct internal assessments and analyze external reports zero day announcements and security incidents
- 4Monitor vulnerability and code scanning tools maintain security configurations and recommend policies
- 5Participate in audits to ensure regulatory compliance and industry standards adherence
- 6Reproduce and validate vulnerability fixes
- 7Maintain knowledge of current threats and remediation best practices
- 8Create reports and dashboards to drive remediation and process improvements
- 9Support security operations including detection and response activities
- 10Participate in security incident response
- 11Review and maintain Configuration Management Plans for program requirements
- 12Provide guidance on Configuration Items and Computer Software Configuration Items
- 13Establish monitor and maintain configuration baselines
- 14Monitor effectiveness and compliance on assigned programs
Requirements9
- 17+ years of experience with A&A support
- 2Proficient in all steps of the NIST RMF framework
- 3Knowledgeable in NIST special publications such as 800-53 and 800-53A
- 4Bachelor's degree or equivalent experience
- 5In-depth understanding of multiple vulnerability scanning platforms including STIG and CIS benchmarks
- 6MS Excel proficiency
- 7Related industry certification such as GIAC GEVA CASP CAP CISSP CISM GSEC GMON Security+
- 8US citizenship
- 9Secret clearance required
Salary Insight
Salary not disclosed in listing
Location
Required Skills
Similar open positions
Explore active roles that match your skills and interests.
Xpect Solutions
VerifiedInformation Systems Security Officer - Xpect Solutions
Lead compliance and security operations for government information systems. Navigate the full NIST Risk Management Framework and ensure adherence to NIST 800-53 controls and DHS 4300A requirements. Partner with Government Security Assurance Management teams to protect critical systems and maintain compliance posture.
General Dynamics Information Technology
VerifiedCybersecurity Analyst Risk Management Framework TS/SCI
Own responsibility for protecting national safety and security by applying latest technologies securely. Support Government activities in Sterling VA or Annapolis Junction MD. Deliver on promise as a critical part of GDIT's mission.
Peraton
VerifiedCybersecurity Vulnerability Analyst at Peraton
Peraton seeks a Cybersecurity Vulnerability Analyst in Linthicum MD to lead the Department of Defense Vulnerability Disclosure Program. The analyst will triage reports via HackerOne, evaluate severity, and coordinate mitigation efforts. This role combines offensive security research with collaboration to protect national security assets.
Alutiiq, LLC
VerifiedInformation Security Support Specialist
Shield Point LLC seeks an Information Security Support Specialist MID in Washington DC. This single seat owns classified document control up to TS/SCI level and leads document inspector duties. Responsibilities include supporting accreditation reviews risk assessments and advising on OPSEC CUI programs. Requires candidates with strong technical expertise and security clearance.
AGR LLC
VerifiedSenior-Level Cyber Systems Engineer (Vulnerab AGR LLC Washington DC
Senior-Level Cyber Systems Engineer (Vulnerab AGR LLC Washington DC offers a unique opportunity to join the Department of State Diplomatic Security Cyber Mission program. This role supports critical cyber infrastructure protection across global networks while leading innovative security solutions.
Peraton
VerifiedSenior Information System Security Officer Peraton
Peraton seeks a Senior ISSO to lead IT architecture support in Annapolis Junction MD. You will lead or co-lead ATO/reauthorization efforts mentor junior staff drive security engineering outcomes execute RMF activities maintain security artifacts operate continuous monitoring support incident response ensure least privilege governance translate security requirements provide qualifications required and preferred list.