Vulnerability Management Team Lead
Bethesda, Montgomery County, Maryland, 20817, USA
Listed on 2026-08-07
-
IT/Tech
Cybersecurity, Information Security & Data Protection, IT Project Manager
GovCIO is currently hiring for a Vulnerability Management Team Lead to provide support to a Federal government contract. The Vulnerability Team Lead will be leading critical support for the Information Security’s vulnerability management program (VM) as part of the Office of the CIO. They will help create a robust proactive approach for preventing unauthorized access, changes, or exploitation of vulnerabilities through mitigation, active defenses, and automated responses.
The VM team’s portfolio of activities includes providing vulnerability detection and remediation oversight, vulnerability research, secure baseline compliance, web application security, host-based security, network security, and acting as security subject matter experts for all of the organization. This position will be located in Bethesda, MD and will be a hybrid remote position.
- Perform Project Management activities, including assigning tasks, 1-1 coaching, timesheet reconciliation, performance evaluations, etc.).
- Lead the redesign, build and day-to-day operations of the vulnerability management (VM) team to include standardization of processes and managing customer expectations.
- Effectively manage a team of vulnerability management professionals who are focused on proactively preventing the exploitation of IT vulnerabilities that exist across the
- Successfully assign and complete VM projects, tasks, and r initiatives on time and to vulnerability management standards.
- Maintain a schedule of all VM team projects, tasks, and/or initiatives.
- Track all team projects, tasks, and/or initiatives in a centralized location (e.g., Microsoft Lists, Jira, etc.).
- Provide presentations and/or communications on relevant security documents across multiple teams and various layers of Federal management. Includes preparation of VM weekly project status reports, updates to the ISSO Forum presentation, updates to the monthly Executive briefing, and ad hoc reports/presentations as required.
- Drive actionable metrics which help ensure the team reduce the time and resources needed to detect, investigate, analyze and remediate vulnerabilities.
- Manage performance of risk‐based assessments of current and emerging information security issues to support the mission by prioritizing remediation efforts.
- Proactively delegate support of regular vulnerability, compliance/configuration, database, and web application scanning.
- Provide Subject Matter Expert support and guidance to Information Security Systems Officers (ISSO), System Owners and others as needed through the risk management process and secure configuration baseline management, including regulatory and remediation compliance monitoring.
- Apply effective problem solving and critical thinking skills to evaluate applicable solutions, conduct pilot/evaluations for proof of concepts and ultimately implement better mitigating controls.
- Research current and emerging information security exploits, threats, and vulnerabilities and disseminate contextual information to appropriate stakeholders.
- Facilitate exception handling, waiver processing and escalations as needed.
- Gather and organize technical information about the organization’s security posture, its mission goals and needs, information systems, and networks. Proactively identify & troubleshoot problems within managed security tools.
- Maintain regular communication with security leaderships on process optimization, tools tuning and resetting of VM priorities as business needs prudently recommend.
Bachelor of Arts (B.A.) or Bachelor of Science (B.S.) degree, preferably in Computer Science, Information Technology, Electrical Engineering, or related field. with 12+ years (or commensurate experience)
Required Skills and Experience
- 12 or more years of professional work experience in cybersecurity with at least 5 years in Vulnerability Management.
- 3 or more years managing upervising a team of vulnerability management professionals.
- Information Security-related certification(s) such as GPEN, GEVA, CISSP, etc.
VM Lead Technical Competencies:
- Extensive knowledge and hands-on experience with a variety of Vulnerability Management Tools such…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).