Vulnerability Analyst

Leidos

Confirmed live yesterday High trust

Quick summary

Work type
On-site
Location
Arlington, VA
Salary
$69,550–$125,725 / yr
Employment
Full-time
Posted
10 days ago
Freshness
Confirmed live yesterday

Market check

Salary context

Below market

How this pay compares to similar roles

Similar $143k
This role $98k
$57k most similar roles pay here $185k

This role pays less than 91% of similar roles. Most pay $117,000–$168,912 — the shaded band above. At the midpoint, this role pays about $98k versus about $143k for comparable roles.

Based on 240 similar postings.

Employer

About Leidos

Leidos is an industry and technology leader serving government and commercial customers with smarter, more efficient digital and mission innovations.

Leidos currently has 350 open roles on FindRole.

Listed pay typically runs $92,300–$166,850 across 299 roles with salary data.

Most-posted roles

View all roles at Leidos

At a glance

TL;DR · Vulnerability Analyst

The Vulnerability Analyst joins the Compartmented Enterprise Services Office team to support a secure web service operation migrating to a high security cloud environment. This role focuses on meeting regulatory and real-world threat reduction requirements by managing Information Assurance Vulnerability Alerts, enforcing information security policies, and conducting risk assessments using NIST, RMF, and Common Criteria frameworks. The analyst will perform vulnerability management tasks including scanning, assessment, reporting, and mitigation verification while maintaining RMF documentation and ensuring data privacy throughout the lifecycle. Key technical skills include experience with ACAS, SPLUNK, ACT, eMASS, and IAVA reporting. The role requires expertise in DISA security models, infrastructure, and application security settings for platforms like Oracle, SQL Server, and Red Hat to protect the integrity of the platform during its transition to a secure cloud environment.

What you'll do

  • Perform vulnerability management including scanning, assessment, reporting, and mitigation verification.
  • Manage and maintain the Information Assurance Vulnerability Alerts (IAVA) program for CESO systems.
  • Conduct security and risk assessments using NIST, RMF, and Common Criteria frameworks.
  • Develop, organize, and track Risk Management Framework (RMF) documentation based on customer data.
  • Enforce information security policies and provide training to end-users on proper practices.
  • Coordinate with infrastructure, storage, database, and application teams to align vulnerability management activities.
  • Maintain operational procedures and compliance reports supporting the secure cloud migration.
  • Execute business continuity and disaster recovery activities to ensure data privacy throughout its lifecycle.

What we're looking for

  • Bachelor's degree and 2+ years of related IT security experience (additional education or training may be considered in lieu of degree).
  • Active TS/SCI security clearance required.
  • DoDD 8140 compliant certification, at minimum IAT Level II (e.g., Security+ CE), at start.
  • Experience with DISA security model, controls, and authorization processes for standard and cloud computing systems.
  • Experience conducting activities associated with Information Assurance Vulnerability Alerts (IAVA).
  • Experience creating Information Assurance documentation such as SCTM, RAR, SAR, and maintaining POA&Ms.
  • Experience with ACAS and SIEM tools.
  • TS/SCI with CI Polygraph preferred; experience with SPLUNK, ACT, eMASS, and enterprise infrastructure vulnerability management preferred.

More like this

Similar roles

Vulnerability Analysis Subject Matter Expert

Leidos

Lorton, VA 15 days ago $131,300–$237,350
Vulnerability Management Tenable Security Center Nessus Splunk SIEM NIST RMF NIST SP 800-53 CNSSI DISA STIGs MITRE ATT&CK Windows Linux Active Directory UIPath Cyber Threat Intelligence CVSS EPSS CISA KEV Network Infrastructure Virtualization

Vulnerability Management Analyst, Associate

Deutsche Bank

Jacksonville, FL 43 days ago
Vulnerability Management Tenable Nessus Tanium Splunk Prisma Google Cloud Platform GCP AI Tools Data Analysis Cybersecurity Security+ CEH
Hybrid

Senior Vulnerability Advisor

Take-Two Interactive

Austin, TX 148 days ago
Vulnerability Management Risk Management AWS GCP Azure Prisma Cloud Qualys Tenable ServiceNow NIST CSF ISO 27001 CIS
5+ yrs exp

Vulnerability Management Engineer

SoFi

San Francisco, CA 28 days ago $99,200–$186,000
Vulnerability Management AppSec SAST DAST AWS Python Go Bash Java CI/CD OWASP CVE CVSS Agile