Vulnerability Management Analyst
Listed on 2026-07-30
-
IT/Tech
Cybersecurity, Information Security & Data Protection
Vulnerability Management Analyst
Location - Joint Base Andrews, MD
Clearance - Secret
Certifications - CompTIA Security+ or equivalent
At TIME Systems, we are at the forefront of Technology, Innovation, Management, and Engineering solutions. Our commitment to empowering our team and fostering impactful leadership has established us as a leader in our field. Our work extends beyond business, actively contributing to local charities. We are proud of our CMMI Level 3 for Services and Development, ISO 9001:2015 certification, and our regular presence on Inc.
Magazine’s “Inc. 5000 List” and Syracuse University’s IVMF “Vet 100 List”.
- Health Coverage:
Select from three plans, including a 100% company-funded employee-only plan. - Dental Coverage:
Our dental plan offers extensive care with no annual maximum. - Vision:
Our vision plan covers regular eye exams and corrective eyewear. - Life Insurance and AD&D and other customizable coverage options!
- 401(k) Retirement Plan
- Health Savings Account (HSA), Flexible Spending Account (FSA), Short- and Long-Term Disability Insurance, Employee Assistance Plan, and more!
- Veteran Preference – Strong value placed on military veterans and their skills.
- Career Growth – Opportunities for professional development in a supportive environment.
- Innovative Culture – Be part of a team that pushes boundaries and makes tangible impacts.
TIME Systems is looking for a Vulnerability Management Analyst to join our Cybersecurity Operations team supporting the Air Force National Capital Region (AFNCR) Information Technology Services (ITS) program. The selected candidate will support enterprise vulnerability management operations by performing vulnerability assessments, reviewing DISA STIG compliance, coordinating remediation activities, and assisting with Risk Management Framework (RMF) compliance across Department of Defense environments.
This role will work closely with cybersecurity engineers, ISSOs, system administrators, and engineering teams to improve the organization’s security posture while supporting mission-critical systems throughout the AFNCR enterprise.
- Perform vulnerability assessments utilizing Tenable Security Center, Nessus, and Assured Compliance Assessment Solution (ACAS) across classified and unclassified environments.
- Review vulnerability scan results to identify CAT I, CAT II, and CAT III vulnerabilities, validate findings, identify false positives, and prioritize remediation activities.
- Coordinate vulnerability remediation efforts with system administrators, ISSOs, engineering teams, and Queue Managers to ensure timely resolution of identified security findings.
- Support the development, maintenance, and tracking of Plans of Action and Milestones (POA&Ms) in accordance with Risk Management Framework (RMF) requirements.
- Validate and review DISA Security Technical Implementation Guides (STIGs), Security Content Automation Protocol (SCAP) results, and secure configuration baselines.
- Generate vulnerability assessment reports, compliance metrics, executive summaries, and dashboards supporting leadership reporting and cybersecurity readiness inspections, including CCRI and CORA assessments.
- Maintain ACAS asset inventories, credentialed scan configurations, asset groups, repositories, scan zones, and vulnerability data accuracy.
- Assist with vulnerability trend analysis, risk scoring, and continuous monitoring activities to improve enterprise cybersecurity posture.
- Support cybersecurity audits, inspections, accreditation activities, and system authorization efforts by providing required vulnerability documentation and evidence.
- Collaborate with cybersecurity engineers, system administrators, network engineers, and ISSOs to implement remediation strategies and security best practices.
- Maintain documentation including Standard Operating Procedures (SOPs), vulnerability management processes, scan schedules, and operational procedures.
- Ensure compliance with Department of Defense (DoD), Air Force, DISA, RMF, and organizational cybersecurity policies and standards.
- Bachelor’s degree in Cybersecurity, Information…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).