×
Register Here to Apply for Jobs or Post Jobs. X
More jobs:

Vulnerability Management Lead, Top Secret

Job in Herndon, Fairfax County, Virginia, 22070, USA
Listing for: Dormont Manufacturing Co
Full Time position
Listed on 2026-07-30
Job specializations:
  • IT/Tech
    Cybersecurity
Salary/Wage Range or Industry Benchmark: 170000 - 230000 USD Yearly USD 170000.00 230000.00 YEAR
Job Description & How to Apply Below

Type of Requisition: Regular

Clearance Level Must Currently Possess: Top Secret/SCI

Clearance Level Must Be Able to Obtain: Top Secret

Public Trust/Other

Required:

None

Job Family: Cyber and IT Risk Management

Job Qualifications:

  • Skills: AI Red Teaming, Malware Reverse Engineering, Team Leadership, Threat and Vulnerability Management, Vulnerability Assessments
  • Certifications: None
  • Experience: 10 + years of related experience
  • US Citizenship

    Required:

    Yes
Position Summary

The Vulnerability Management Lead oversees teams that deliver comprehensive, standards‑aligned security assessments and validation services across cloud, operational technology OT, industrial control systems (ICS), and enterprise environments identifying vulnerabilities, evaluating control effectiveness, and measuring readiness to strengthen the cybersecurity posture of government and commercial information systems. The successful lead directs tailored test plans (e.g., vulnerability assessments, penetration testing, SOC evaluations, phishing exercises), ensures actionable findings, and prioritizes mitigation guidance.

Key Responsibilities

Assessment & Security Validation Leadership

  • Oversee teams conducting comprehensive site‑based and remote assessments supporting vulnerability management, compliance validation, and ad‑hoc inspection needs.
  • Ensure detailed assessments of technical and non‑technical controls across cloud, bare‑metal, and OT/ICS systems are aligned to NIST frameworks, Federal guidance, and Cyber Performance Goals.
  • Direct tailored test plans.
  • Oversee assessments of performance using red‑, blue‑, and purple‑team methodologies.
  • Manage automated system and web‑application scanning, phishing assessments, and development of customized plugin policies.
  • Enforce clear operational oversight practices—weekly status reports, daily assessment updates, formal kickoffs, and structured out‑briefs.

Remediation Orchestration & Risk Reduction

  • Oversee end‑to‑end management of assessment findings—advising system owners on corrective actions and ensuring vulnerabilities are prioritized, fixed, mitigated, or appropriately risk‑accepted (where/when applicable).
  • Direct delivery of automated remediation tracking, trend analysis, and documented mitigation strategies.
  • Ensure machine‑readable assessment outputs are produced and that CISA‑standard tools, techniques, and procedures are followed.
  • Integrate artificial intelligence/machine learning (AI/ML)-enabled vulnerability discovery and enrichment tools.
  • Leverage ML‑driven risk scoring models to support prioritization of remediation actions, incorporating threat intelligence, exploitability indicators, adversary behaviors, and mission impact.
  • Implement AI‑assisted analytics to evaluate remediation trends, predict control failures, and provide early warning indicators.
  • Employ automated reasoning and natural language processing (NLP) technologies.
  • Oversee integration of AI‑powered attack simulation, red‑team automation, and adversary emulation platforms.
  • Direct the use of AI‑based anomaly detection and behavior modeling.
  • Ensure assessment and remediation workflows are compatible with AI‑enabled orchestration platforms, allowing real‑time synchronization of findings, automated task assignment, and predictive remediation timelines.
  • Guide adoption of ML‑assisted configuration baselining and drift detection capabilities that alert teams to deviations from secure architectures and federal benchmarks.
  • Promote responsible and compliant use of AI/ML in vulnerability management.

Threat Emulation & Simulation Operations

  • Oversee teams that emulate and simulate real‑world threat actors in live and synthetic environments.
  • Ensure the creation and operation of realistic, secure, and rapidly reconfigurable emulated network environments for representative cyber‑range experimentation.
  • Direct reproduction of adversary behaviors (intelligence‑derived TTPs, open‑source reporting, government‑provided data) in test/evaluation environments to improve detection and prevention.
  • Oversee red‑ and blue‑team exercises on emulated networks using realistic tools, malware, and tradecraft.
  • Ensure adversary behavioral characteristics from emulation activities…
To View & Apply for jobs on this site that accept applications from your location or country, tap the button below to make a Search.
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
 
 
 
Search for further Jobs Here:
(Try combinations for better Results! Or enter less keywords for broader Results)
Location
Increase/decrease your Search Radius (miles)
0
200
Filters
Education Level
Experience Level (years)
Posted in last:
Salary