Cybersecurity Consultant

GuidehouseBethesda, MD
$85,000 - $141,000

About The Position

Lead vulnerability management efforts across a portfolio of client applications, including analyzing findings, identifying affected versions, providing remediation guidance, assigning issues to teams, and tracking vulnerabilities through closure. Build and maintain strong working relationships with business, engineering, and security teams to validate fixes, resolve blockers, and support timely remediation. Support POA&M activities, patching timelines, remediation deadlines, and related federal cybersecurity and compliance requirements. Develop and maintain automated vulnerability reports, dashboards, KPIs, and metrics to track remediation progress, compliance gaps, and asset risk. Prepare reports and briefings for leadership and federal oversight stakeholders. Monitor suspicious activity and security alerts in Splunk and coordinate follow-up actions with relevant teams. Support secure development efforts through security documentation, secure coding guidance, annual training support, and evaluation of security tools and processes. Provide cyber subject matter expertise during information security audits and assessments.

Requirements

  • Must be able to OBTAIN and MAINTAIN a Federal or DoD "PUBLIC TRUST"; candidates must obtain approved adjudication of their PUBLIC TRUST prior to onboarding with Guidehouse. Candidates with an ACTIVE PUBLIC TRUST or SUITABILITY and maintain an active HHS/NIH clearance are preferred.
  • Minimum of THREE (3) years of cybersecurity or IT risk management experience, candidates with experience focused on vulnerability management and/or secure configuration are preferred.
  • Minimum of a Bachelors Degree is required.
  • Hands-on experience with Invicti, Splunk, and Atlassian tools (Jira & Confluence)
  • Deep understanding of NIST SP 800-53, FISMA requirements, and OWASP Top 10.
  • Active CompTIA Security+ CE preferred; CISSP, CEH, or cloud-related certifications are a plus.
  • Strong communication and analytical thinking; ability to manage multiple concurrent priorities and deadlines.

Nice To Haves

  • Experience developing automated data pipelines or integrating APIs into Power BI dashboards.
  • Knowledge of MITRE ATT&CK framework and vulnerability prioritization methodologies (e.g., EPSS, CVSS v3).
  • Prior experience supporting a federal agency or working in a Public Health environment.

Responsibilities

  • Lead vulnerability management efforts across a portfolio of client applications, including analyzing findings, identifying affected versions, providing remediation guidance, assigning issues to teams, and tracking vulnerabilities through closure.
  • Build and maintain strong working relationships with business, engineering, and security teams to validate fixes, resolve blockers, and support timely remediation.
  • Support POA&M activities, patching timelines, remediation deadlines, and related federal cybersecurity and compliance requirements.
  • Develop and maintain automated vulnerability reports, dashboards, KPIs, and metrics to track remediation progress, compliance gaps, and asset risk.
  • Prepare reports and briefings for leadership and federal oversight stakeholders.
  • Monitor suspicious activity and security alerts in Splunk and coordinate follow-up actions with relevant teams.
  • Support secure development efforts through security documentation, secure coding guidance, annual training support, and evaluation of security tools and processes.
  • Provide cyber subject matter expertise during information security audits and assessments.

Benefits

  • Medical, Rx, Dental & Vision Insurance
  • Personal and Family Sick Time & Company Paid Holidays
  • Position may be eligible for a discretionary variable incentive bonus
  • Parental Leave and Adoption Assistance
  • 401(k) Retirement Plan
  • Basic Life & Supplemental Life
  • Health Savings Account, Dental/Vision & Dependent Care Flexible Spending Accounts
  • Short-Term & Long-Term Disability
  • Student Loan PayDown
  • Tuition Reimbursement, Personal Development & Learning Opportunities
  • Skills Development & Certifications
  • Employee Referral Program
  • Corporate Sponsored Events & Community Outreach
  • Emergency Back-Up Childcare Program
  • Mobility Stipend
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service