Security Engineer, Vulnerability Management (ACAS/Tenable.sc) - Secret clearance
PGTEK · Ogden, UT · 3 days ago
$130k–$160k/yrFull-time
Vulnerability Management
- Tenable Security Center / ACAS Administer and optimize Tenable.sc and Nessus, including scan policies, scan zones, repositories, credentials, and audit files.
- Perform credentialed vulnerability scans, STIG compliance scans, discovery scans, and port scans.
- Analyze and interpret STIGs, CKLs, ACAS/Tenable findings, and vulnerability results to support compliance and risk reduction.
- Leverage Windows and Linux administration skills to support and troubleshoot authenticated vulnerability scanning.
- Conduct false-positive analysis and validation to ensure accurate vulnerability reporting.
- Collaborate with Cloud, Network, Platform, Security, and Engineering teams to drive vulnerability remediation and system hardening.
Vulnerability Coverage & Asset Discovery
- Identify and close gaps in vulnerability scan coverage to ensure comprehensive visibility across the environment.
- Perform asset discovery and maintain accurate inventories to ensure all in-scope systems are included in scanning cycles.
- Analyze scan results to identify coverage gaps, unscanned assets, and compliance blind spots.
- Recommend corrective actions to improve vulnerability visibility, scanning effectiveness, and overall security posture.
Requirements
- 5+ years of experience in vulnerability management, information assurance, or systems security, preferably within a DoD or federal environment.
- Hands-on experience administering Tenable.sc, Nessus, and ACAS in a DoD or federal environment.
- Working knowledge of DoD STIGs, CKLs, and RMF processes.
- Strong Windows and Linux administration experience.
- Active DoD Secret clearance required; clearance must be current and verifiable.
- DoD 8570/8140 IAT Level II baseline certification required, such as: CompTIA Security+, CySA+, GSEC, SSCE, CCNA-Security.
- Strong written and verbal communication skills with the ability to collaborate effectively across technical teams.