Position Summary
Runs and analyzes automated vulnerability scans across servers, workstations, web applications, and general devices, then validates, filters, and prioritizes results into actionable, management-ready findings.
Key Responsibilities
• Configure and run vulnerability scanning tools without causing system disruption or service degradation.
• Validate scan results, eliminate false positives, and prioritize critical/high/moderate findings.
• Produce both filtered curated reports and raw/unfiltered native scan output as required by the RFP.
• Document whether tools used are commercial, proprietary, or open source.
Required Qualifications
• 3+ years of vulnerability management or scan analysis experience.
• Proficiency with enterprise vulnerability scanners (Tenable/Nessus, Qualys, Rapid7, or equivalent).
• Strong analytical skills for false-positive triage and risk prioritization.
Preferred Qualifications
• GVMA, CompTIA PenTest+, or Security+ certification.
• Experience coordinating scan timing with client IT teams to minimize operational impact.
Travel
Fully remote; must remain within the continental United States.