Jobs · Engineering · North Carolina

SME Cyber Vulnerability Management

General Dynamics Information Technology · Fort Liberty, North Carolina, United States · 2 wk ago
Engineering$145k–$196k/yrFull-time

US citizenship required. Active Top Secret/SCI security clearance is required for this role.

About the role

The SME Information Security Analyst (Vulnerability Management) serves as the technical lead for deploying, configuring, and maintaining the enterprise vulnerability management environment. This position focuses on optimizing Tenable Security Center within Linux/Red Hat infrastructures and ensuring compliance with DISA STIGs, NSA guidelines, and organizational cybersecurity policies. The analyst supports Enterprise Communications and hybrid environments across AWS, Microsoft Azure, and Google Cloud. This role requires deep technical expertise, strong analytical skills, and collaboration with engineering, cybersecurity, and leadership teams across the command.

Responsibilities

  • Vulnerability Management Operations
    • Install, configure, and maintain Tenable Security Center and scanning components on Linux/Red Hat platforms.
    • Ensure vulnerability management systems meet DISA STIG, NSA, and cybersecurity policy requirements.
    • Manage credentialed and non-credentialed scans, schedules, asset groups, and plugin updates.
    • Troubleshoot scanner/system issues to ensure accurate and continuous vulnerability detection.
  • Analysis & Reporting
    • Analyze scan results to identify weaknesses, misconfigurations, and emerging threats.
    • Validate findings, assess severity, and prioritize remediation based on mission needs.
    • Produce recurring reports, dashboards, and metrics for Command Leadership.
    • Translate complex technical findings into clear remediation guidance for engineering teams.
  • Mitigation Support & POA&M Management
    • Provide expert guidance on mitigation, configuration hardening, and patching strategies.
    • Support development and maintenance of POA&Ms for unresolved vulnerabilities.
    • Track remediation progress to ensure compliance with published cyber directives.
  • Enterprise Communications Support
    • Support enterprise communications systems and services to ensure secure hybrid operations.
    • Assist with monitoring and securing cloud/on-prem workloads using enterprise security tools.
    • Collaborate with cloud, network, and communications teams to ensure secure configurations and continuous monitoring.
  • Threat Detection & Response
    • Support threat detection using Microsoft Defender for Endpoint and cloud environments including AWS, Azure, and Google Cloud.
    • Conduct log analysis, event correlation, and investigation of suspicious activity.
    • Assist with incident reporting, documentation, and escalation procedures.
    • Contribute to detection rule tuning, alert fidelity improvements, and endpoint hardening.
    • Identify coverage gaps and recommend improvements; document findings in After-Action Reports with SOC, EPT, and CTI partners.
    • Develop guardrails, configuration baselines, and automation artifacts to reduce vulnerability recurrence.
    • Support surge response activities through rapid scanning, validation, and remediation assistance.

Requirements

  • 8+ years of related experience in information security or vulnerability management.
  • Experience with Splunk or Elastic for Cloud.
  • Experience with Endpoint Detection & Response (EDR) tools.
  • Experience with antivirus platforms.
  • Experience with ServiceNow, Remedy, or similar ticketing systems.
  • Deep technical expertise in Linux/Red Hat platforms and Tenable Security Center.
  • Knowledge of DISA STIGs, NSA guidelines, and organizational cybersecurity policies.

Preferred Qualifications

  • DoD 8570 / 8140 compliant certification.
  • CompTIA Security+, CySA+, Network+, or CASP+.
  • GIAC certifications (GCIH, GCFA, etc.).

Benefits

  • Comprehensive medical, dental, and vision plan options, some with Health Savings Accounts.
  • 401(k) plan with company match (pre and post-tax contributions up to IRS annual limits).
  • Paid time off including vacation, sick, personal time, holidays, parental leave, military leave, bereavement, and jury duty.
  • Flexible work weeks where possible.
  • Short and long-term disability benefits, life insurance, accidental death and dismemberment, personal accident, critical illness, and business travel and accident insurance.
  • AI-powered career tool for identifying career steps and learning opportunities.
  • Internal mobility team focused on career growth.

Pay

The likely salary range for this position is $144,500 - $195,500. Salary will be set based on experience, geographic location, and possibly contractual requirements.

Schedule

  • Scheduled weekly hours: 40.
  • Travel required: 10-25%.
  • Telecommuting options: Onsite.

Similar jobs

Cybersecurity SME

KaiHonuaDenver, CO· 2 mo ago
Engineering$135k/yrapply on de.jobsyn.org

Cybersecurity SME

KaiHonuaDenver, CO· 6 days ago
Engineering$135k/yrapply on de.jobsyn.org

Cybersecurity SME

IPTAFort Belvoir, VA· 2 wk ago
Information Technologyapply on ipta.isolvedhire.com

Cybersecurity SME

JobgetherUnited States· 1 mo ago
RemoteEngineering$155k–$185k/yrapply on jobs.lever.co

Cybersecurity SME

Lucayan Technology Solutions LLCTampa, FL· 3 mo ago
Engineeringapply on ats.rippling.com

Cybersecurity SME

KBR CareersDulles, VA· 1 mo ago
Engineering$176k–$215k/yrapply on careers.kbr.com