This Cybersecurity Vulnerability Analyst supports the Vulnerability Disclosure Program (VDP) within the Defense Cyber Crime Center (DC3) and is responsible for reviewing and vetting security vulnerability reports submitted to the DoD VDP from outside hackers. The Analyst will evaluate the reports to ensure the vulnerability is reproducible and therefore valuable to the customer. They will assess each vulnerability for severity and assign an associated risk statement. The HackerOne Triage console tool will be utilized to assist in assigning and prioritizing reports. It will also assist the Analyst in helping identify duplicate submissions. Valid reports will be written in a DOD approved format and sent to the Vulnerability Management Analyst team for system owner coordination and mitigation. The Vulnerability Analyst will be a VDP liaison with the hacker community.
The Vulnerability Analyst will also:
Qualifications
Minimum Bachelor’s degree and 5+ years of experience; OR Master’s Degree and 3+ years of experience; OR 0 years with PhD. Bachelor's degree must be one of the following fields: Information Technology, Cybersecurity, Computer Science, Information Systems, Data Science, or Software Engineering.
Strong understanding of information security principles and practices,
Understand basic IDS/IPS rules to identify and prevent malicious activity,
Utilize MITRE ATT&CK, CVSS, and NIST frameworks to assess vulnerability severity and risk impact.
Basic understanding of web exploitation concepts and techniques.
Knowledge and understanding of the Open Web Application Security Project (OWASP) top 10.
Experience operating in a professional IT or cybersecurity environment.
Experience investigating security events, threats and/or vulnerabilities.
Understand information security principles, technologies and practices.
Excellent customer service skills.
IAT Level II certification required.
Active Secret security clearance required.
Preferred Additional Skills
CEH, CCNA-Security, CySA+, GCIH, GICSP, PenTest+ or similar certification a plus.
Target Salary Range: $80,000 - $128,000. This represents the typical salary range for this position based on experience and other factors.
EEO: Equal opportunity employer, including disability and protected veterans, or other characteristics protected by law.
...added benefit is that this position is work at home. So, you get to enjoy helping people from... ...Youll Make a Difference Answer 40+ calls per day on average from customers and help... ...to fix issues in one call. Meet call center goals and provide accurate information...
...Position : Front end Web Developer Location : Chapel Hill, NC (Onsite) Term : W2/Full Time role only Job Description : Desired Characteristics & Qualifications of Consultant: Web development fundamentals, such as HTML, CSS, and JavaScript...
...InSynch Health offers a continuum of psychiatric services for adults aged 18 and older. Located... ...opportunity for a dedicated Psychiatric Nurse Practitioner to join our inpatient... ...Texas DEA License required. Ability to travel within the Beaumont, Baytown, and Southeast...
...Overview Major League Soccer is seeking a Chief Information Security Officer (CISO) to lead all aspects of its enterprise information security strategy. The CISO will manage and develop strategies that protect our physical and digital information assets, application...
...This is a remote position. Are you a digital nomad who loves helping others explore the... ... Suggest personalized travel experiences and packages Communicate with clients... ...communication A passion for travel and remote work freedom High school diploma or...