Senior Web Vulnerability Analyst

MD
Full Time
Mid Level
Job Title:  Senior Web Vulnerability Analyst

Location: Fort Meade, MD 20755
Clearance Level: Active Secret Clearance
Job Type: Full-Time

Must be U.S. Citizen

PD Inc International is seeking an experienced and mission-driven Senior
Web Vulnerability Analyst to provide Cybersecurity Management support in a U.S. government (DoD) environment

Education Requirement:
  • Bachelor's degree or equivalent work experience
Years of Experience:
  • Five + years of relevant/recent experience with Oracle Application Server, Oracle e-Business Suite, WebLogic, JBOSS, Java, IIS, Apache, SAP, or Tomcat, and cyber- security.
  • Three + years of relevant/recent experience with Microsoft Office products.
Certification Requirements:
  • Current 8570/8140 requirement certification
Clearance Requirements:
  • Active Secret Clearance
Requirements:
Subtask 1 – Web Specialist Support.
  • Serve as a Web technical specialist for assets connected to isolated environments, NIPRNet and SIPRNet to support cybersecurity and IT services.
  • Review, identify, and report problems with the installation and operations of web instances to include system options, software used and not used, default security controls that are enabled, disabled, or bypassed, and system wide options or parameters that may create security vulnerabilities.
  • Determine the impact and risk of submitted change requests prior to implementation and participate in CAB meetings (up to daily) to provide cyber oversight for database changes that affect the level of risk.
  • Recommend security countermeasures to mitigate identified web risks.
Subtask 2 – Web Vulnerability Analysis.
  • Identify, monitor, analyze, report, and brief status of vulnerabilities.
  • Ensure high risk and high severity vulnerabilities are managed with increased visibility and escalated.
  • Analyze, validate, monitor, and report compliance status of DoD and DISA directives and orders.           
  • Create, maintain, and provide automated and customized vulnerability reports.
  • Analyze mission requirements and organizational feedback to improve vulnerability reports and processes.
  • Provide recommendations for web vulnerability analysis, guidance, deficiency resolution, and implementation suggestions to DISA customers and Mission Partners.
Subtask 3 – Web Compliance Validation and Support.
  • Assess, audit, review, analyze, validate, and report database SRG and STIG vulnerabilities, and ensure security controls are implemented within databases IAW DoD, DISA and cybersecurity policies and procedures.
  • Evaluate discrepancies as they relate to policy, orders, and database SRG and/or STIGs, and document recommended additions, deletions, or changes.
  • Identify and report the need to add technical guidance for modification of policies and orders.
  • Review and validate the installation and configuration of cyber tools on assets, and report deficiencies.
  • Review database SRG and/or STIGs as updates are released, and report changes with the potential to have significant impact.
  • Determine the impact and risk of submitted change requests prior to implementation and participate in meetings to provide cyber oversight for web changes that affect the level of risk.
  • Recommend security countermeasures to mitigate identified web risks.
  • Participate in audits and provide documentation (up to daily).

Deliverables:

  • Daily/weekly/monthly/quarterly/annual vulnerability analysis reports
  • Also includes Deliverables that apply to all tasks listed in section 6, Performance Requirements.
~~~~~~~~~~~~~~~
About PD Inc International (PD Inc): PD Inc is a leading high-tech firm as well as an applied think tank and solutions provider.  Our team has been providing expertise and solutions to the US Government (Department of Defense, Department of State, Department of Homeland Security, Veterans Affairs, etc.) and to commercial clients for over 20-years.  

We perform software development and complex technical implementation daily.  We conduct R&D, prototyping, and develop hardware and software solutions for our clients.  Our qualified personnel--including engineers and technical managers--are capable of performing system integration, technology implementation, and services throughout the federal government and in the private sector.

We have a highly innovative environment, and we foster consistent learning and growth. We encourage our employees to innovate while teaching them discipline and principles. 

PD Inc benefits include highly competitive salary, 401K, health care, paid time off, no-limit Student loan forgiveness (merit based), and we sponsor new/qualified employees for Security Clearance.
Employees can also take advantage of casual dress code, free parking, corporate discounts, and gym memberships.





 


 
Share

Apply for this position

Required*
We've received your resume. Click here to update it.
Attach resume as .pdf, .doc, .docx, .odt, .txt, or .rtf (limit 5MB) or Paste resume

Paste your resume here or Attach resume file

Human Check*