Vulnerability Management Team Lead #8647
Careers
- US-MD-Bethesda
- Cyber Security Services
- Suitability/Public Trust
Share
Overview
GovCIO is currently hiring for a Vulnerability Management Team Lead to provide support to a Federal government contract. The Vulnerability Team Lead will be leading critical support for the Information Security’s vulnerability management program (VM) as part of the Office of the CIO. They will help create a robust proactive approach for preventing unauthorized access, changes, or exploitation of vulnerabilities through mitigation, active defenses, and automated responses. The VM team’s portfolio of activities includes providing vulnerability detection and remediation oversight, vulnerability research, secure baseline compliance, web application security, host-based security, network security, and acting as security subject matter experts for all of the organization. This position will be located in Bethesda, MD and will be a hybrid remote position.
Responsibilities
- Perform Project Management activities, including assigning tasks, 1-1 coaching, timesheet reconciliation, performance evaluations, etc.).
- Lead the redesign, build and day-to-day operations of the vulnerability management (VM) team to include standardization of processes and managing customer expectations.
- Effectively manage a team of vulnerability management professionals who are focused on proactively preventing the exploitation of IT vulnerabilities that exist across the
- Successfully assign and complete VM projects, tasks, andor initiatives on time and to vulnerability management standards.
- Maintain a schedule of all VM team projects, tasks, and/or initiatives.
- Track all team projects, tasks, and/or initiatives in a centralized location (e.g., Microsoft Lists, Jira, etc.).
- Provide presentations and/or communications on relevant security documents across multiple teams and various layers of Federal management. Includes preparation of VM weekly project status reports, updates to the ISSO Forum presentation, updates to the monthly Executive briefing, and ad hoc reports/presentations as required.
- Drive actionable metrics which help ensure the team reduce the time and resources needed to detect, investigate, analyze and remediate vulnerabilities.
- Manage performance of risk‐based assessments of current and emerging information security issues to support the mission by prioritizing remediation efforts.
- Proactively delegate support of regular vulnerability, compliance/configuration, database, and web application scanning.
- Provide Subject Matter Expert support and guidance to Information Security Systems Officers (ISSO), System Owners and others as needed through the risk management process and secure configuration baseline management, including regulatory and remediation compliance monitoring.
- Apply effective problem solving and critical thinking skills to evaluate applicable solutions, conduct pilot/evaluations for proof of concepts and ultimately implement better mitigating controls.
- Research current and emerging information security exploits, threats, and vulnerabilities and disseminate contextual information to appropriate stakeholders.
- Facilitate exception handling, waiver processing and escalations as needed.
- Gather and organize technical information about the organization’s security posture, its mission goals and needs, information systems, and networks. Proactively identify & troubleshoot problems within managed security tools.
- Maintain regular communication with security leaderships on process optimization, tools tuning and resetting of VM priorities as business needs prudently recommend.
Qualifications
Bachelor of Arts (B.A.) or Bachelor of Science (B.S.) degree, preferably in Computer Science, Information Technology, Electrical Engineering, or related field. with 12+ years (or commensurate experience)
Required Skills and Experience
- 12 or more years of professional work experience in cybersecurity with at least 5 years in Vulnerability Management.
- 3 or more years managingsupervising a team of vulnerability management professionals.
- Information Security-related certification(s) such as GPEN, GEVA, CISSP, etc.
VM Lead Technical Competencies:
- Extensive knowledge and hands-on experience with a variety of Vulnerability Management Tools such as Tenable, DB Protect, Netsparker, Qualys, etc.
- Expert knowledge of the Vulnerability Management lifecycle
- Proven track record of designing, implementing, and managing a Fortune 100 level Vulnerability Management Program
- Strong knowledge of networking, operating systems, databases, and web applications
- Strong knowledge of cybersecurity operations (Cyber Threat Intelligence, Penetration testing, & Incident Response)
- Deep knowledge and experience of performing both manual and automated asset discovery and enumeration
- Deep knowledge and experience of systematic and data-driven asset prioritization
- Expert knowledge and successful application of risk management frameworks
VM Lead Management Competencies:
- Track record of leading enterprise-level vulnerability management teams with a history of increasing responsibility
- Expert project management skills
- Ability to explain vulnerability management concepts to a wide range of audiences verbally and in writing
- Expertise in developing and improving vulnerability management operations and processes
- Strong interpersonal skills and the ability to collaborate with a variety of stakeholders to ensure vulnerability management compliance
- Expert problem solving and critical thinking skills
- Proactive disposition and ability to execute on leadership vision with minimal oversight
Clearance Required: US Citizenship is required to obtain and maintain Public Trust
Company Overview
GovCIO is a team of transformers--people who are passionate about transforming government IT. Every day, we make a positive impact by delivering innovative IT services and solutions that improve how government agencies operate and serve our citizens.
But we can't do it alone. We need great people to help us do great things - for our customers, our culture, and our ability to attract other great people. We are changing the face of government IT and building a workforce that fuels this mission. Are you ready to be a transformer?
What You Can Expect
Interview & Hiring Process
If you are selected to move forward through the process, here’s what you can expect:
- During the Interview Process
- Virtual video interview conducted via video with the hiring manager and/or team
- Camera must be on
- A valid photo ID must be presented during each interview
- During the Hiring Process
- Enhanced Biometrics ID verification screening
- Background check, to include:
- Criminal history (past 7 years)
- Verification of your highest level of education
- Verification of your employment history (past 7 years), based on information provided in your application
Employee Perks
At GovCIO, we consistently hear that meaningful work and a collaborative team environment are two of the top reasons our employees enjoy working here. In addition, our employees have access to a range of perks and benefits to support their personal and professional well-being, beyond the standard company offered health benefits, including:
- Employee Assistance Program (EAP)
- Corporate Discounts
- Learning & Development platform, to include certification preparation content
- Training, Education and Certification Assistance*
- Referral Bonus Program
- Internal Mobility Program
- Pet Insurance
- Flexible Work Environment
*Available to full-time employees
Our employees’ unique talents and contributions are the driving force behind our success in supporting our customers, which ultimately fuels the success of our company. Join us and be a part of a culture that invests in its people and prioritizes continuous enhancement of the employee experience.
We are an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, gender, gender identity or expression, sexual orientation, national origin, disability, or status as a protected veteran. EOE, including disability/vets.
Posted Pay Range
The posted pay range, if referenced, reflects the range expected for this position at the commencement of employment, however, base pay offered may vary depending on multiple individualized factors, including market location, job-related knowledge, skills, education, experience, and internal equity. The total compensation package for this position may also include other compensation elements, to be discussed during the hiring process. If hired, employee will be in an “at-will position” and the GovCIO reserves the right to modify base salary (as well as any other discretionary payment or compensation program) at any time, including for reasons related to individual performance, GovCIO or individual department/team performance, and market factors.
Pay range: $150,000 - $180,000 Annually
Apply NowNot The Right Fit?
Is this not the job you’re looking for? That’s ok! We’ve got plenty of other opportunities for you to peruse. Search all of our open positions by your area of interest or location.