Vulnerability Management Lead
Unissant, Inc. delivers innovative capabilities to the agencies that keep our nation healthy and safe. We apply our domain expertise, data acumen, and technology know-how to achieve breakthrough results for our clients. Working collaboratively, we advance missions and careers through a focus on honesty, integrity, and dependability.
About the role
The Vulnerability Management Lead will support our client as a proactive cybersecurity professional with deep experience leading enterprise vulnerability management efforts in complex environments. This individual brings strong technical judgment, a risk-based mindset, and the ability to collaborate across teams to improve visibility, accelerate remediation, and strengthen the organization's overall security posture.
Responsibilities
- Lead the planning, execution, and continuous improvement of the vulnerability management program across the enterprise environment.
- Oversee vulnerability scanning, prioritization, remediation coordination, reporting, and compliance alignment across a large and diverse asset base.
- Work closely with stakeholders to identify vulnerabilities, prioritize actions, and track progress toward remediation goals.
- Develop and maintain risk-based prioritization methods that account for exploitability, impact, asset criticality, and threat intelligence.
- Support automation, dashboarding, and process improvement initiatives that strengthen vulnerability visibility and reporting.
- Develop and maintain SOPs, templates, risk mitigation approaches, and improvement plans that support program maturity.
Requirements
- Minimum of 5 years of hands-on experience in enterprise vulnerability management, security operations, or risk remediation workflows.
- Experience supporting large-scale environments that include servers, workstations, network infrastructure, HPC environments, and cloud platforms.
- Strong understanding of risk-based remediation, vulnerability prioritization, and federal cybersecurity expectations.
- Experience with dashboarding, workflow automation, and reporting tools such as Power BI, SharePoint, and Power Apps.
- Ability to assess gaps in tools, processes, and data flows and recommend practical improvements.
Qualifications
- Bachelor's Degree is required. Preferred field of study in Computer Science, Information Technology, Information Systems, Operations Management, or related field.
- MBA/Master's Degree in a relevant field of study preferred.
- Desired certifications include CompTIA Security+, CISSP, CISM, CISA, CCSP, and OSCP.
Skills
- Excellent verbal and written communication skills, with the ability to present proposals and performance data.
- Comfortable interfacing at all levels of the organization.
- Ability to write clear and concise creative content in a highly confidential manner.
Clearance
Ability to obtain and maintain a Public Trust clearance.
Schedule
- Work is expected to be performed primarily remotely at the contractor's non-Federally controlled facility.
- Key personnel are expected to work onsite in Bethesda, Maryland two days per week, with onsite schedules and working hours subject to approval by Federal staff.
- Additional onsite meetings or temporary support within Federally controlled facilities may be required based on program needs.
- Flexible in working extended hours.
Environmental Requirements
- Mainly a routine office environment.
- May be required to lift up to ten (10) pounds.