Search Remote Jobs

Cybersecurity Vulnerability Management Lead

Job not on LinkedIn

🔥 0 minutes ago

Apply Now
Find Similar Remote Jobs

📊 Check your resume score for this job

Improve your chances of getting an interview by checking your resume score before you apply.

Logo of Cherokee Federal

Cherokee Federal

5001 - 10000 employees

Founded 1969

🏥 Healthcare

📦 Logistics

🏭 Manufacturing

Healthcare • Logistics • Manufacturing

Cherokee Federal is a U. S. federal systems integrator and government contractor that empowers mission success for more than 60 U. S. federal agencies. With a global workforce of over 5,000, it delivers advanced technology (cloud, cybersecurity, data & analytics), health services, intelligence analysis and operational support, logistics and sustainment, mission-critical manufacturing, program and engineering technical services, and dynamic contracting solutions to support federal priorities and national security. Cherokee Federal is part of Cherokee Nation Businesses and focuses on mission-focused, U. S. -made solutions.

đź“‹ Description

• Lead and mature NSF's Vulnerability Management capability across enterprise, cloud, containerized, application, and hybrid environments • Provide technical leadership to a team of vulnerability analysts • Develop and maintain a Vulnerability Management roadmap aligned with evolving threats and organizational priorities • Introduce and operationalize vulnerability prioritization using CISA KEV, EPSS, threat intelligence, asset criticality, internet-facing asset identification, attack path analysis, and MITRE ATT&CK mapping • Evaluate and recommend emerging technologies for vulnerability validation, attack surface visibility, and exposure management • Own discovery, validation, prioritization, remediation coordination, exception handling, verification, and executive reporting • Operate and optimize Tenable.sc, Tenable.io, and Nessus • Improve scan coverage, credential management, accuracy, and false-positive reduction • Integrate findings from AWS Inspector, Security Hub, GuardDuty, Wiz, Prisma Cloud, and Microsoft Defender for Cloud • Partner with Application Security and DevSecOps teams on AppScan, DAST, SAST, CI/CD integrations, and container image scanning • Mature ServiceNow Vulnerability Response capabilities, including CMDB enrichment, automated ticket creation, SLA tracking, ownership assignment, and escalation workflows • Develop automation through APIs, Python, PowerShell, and orchestration capabilities • Build executive dashboards and metrics covering MTTR, SLA adherence, vulnerability aging, exposure trends, scan coverage, and remediation effectiveness • Brief cybersecurity leadership on emerging risks, remediation progress, and program maturity initiatives

🎯 Requirements

• 8+ years of cybersecurity experience • 4+ years of direct Vulnerability Management experience in a federal or large enterprise environment • 3+ years leading vulnerability analysts, remediation programs, or enterprise VM initiatives • Deep hands-on expertise with Tenable.sc, Tenable.io, and Nessus • Experience implementing or significantly improving a Vulnerability Management or Exposure Management capability • Experience with ServiceNow Vulnerability Response and CMDB integrations • Experience with CISA KEV, EPSS, threat intelligence, asset criticality, and attack path analysis • Experience supporting AWS, Azure, or hybrid cloud environments • Experience collaborating with Security Operations and Incident Response teams to identify and rapidly remediate actively exploited vulnerabilities • Experience briefing technical teams, executives, and federal stakeholders • Highly desired: SafeBreach, AttackIQ, Pentera, XM Cyber, Wiz, Prisma Cloud, AppScan, BAS, CCV, EASM, Kubernetes Security, and Detection Engineering • Preferred certifications: CISSP, GCIH, CySA+, Security+, Tenable Certified Professional, AWS Security Specialty, and ServiceNow Vulnerability Response Certification • Must pass pre-employment qualifications of Cherokee Federal

🏖️ Benefits

• Equal opportunity employer • Pre-employment qualifications required • Potential access to government buildings or military installations as part of job requirements

Apply Now

Similar Jobs

🔥 8 minutes ago

General Dynamics Information Technology

10,000+ employees

đź’Ľ Consulting

🏥 Healthcare

📦 Logistics

Cybersecurity Architect securing GDIT’s global government and defense IT services. Designing SIEM, Zero Trust, compliance, and infrastructure security architectures.

🔥 29 minutes ago

OneStream Software

1001 - 5000

đź’¸ Finance

🏢 Enterprise

Cloud Security Engineer securing OneStream’s Azure and Microsoft 365 environments. Protecting enterprise finance data through threat detection, vulnerability management, and cloud governance.

🔥 1 hour ago

Coupa Software

1001 - 5000

đź’Ľ Consulting

📦 Logistics

🏥 Healthcare

Senior Security Engineer securing Coupa’s AI-powered spend management platform. Building cloud controls, vulnerability remediations, Kubernetes defenses, and compliance evidence.

🔥 1 hour ago

Box Inc Deutschland

11 - 50

🏭 Manufacturing

🛍️ eCommerce

🤝 B2B

Enterprise Security Engineer II protecting Box’s intelligent content management platform. Deploying security controls, monitoring, automation, and incident-response capabilities across corporate and cloud environments.

🔥 2 hours ago

OpenLoop

201 - 500

đź’Ľ Consulting

⚖️ Legal

📦 Logistics

Senior security architect defining secure-by-default standards for OpenLoop’s nationwide telehealth and PHI systems. Leading threat modeling, architecture reviews, zero trust, and compliance controls.