Vulnerability Assessment (VA) Team Lead (CBP)

Agile DefenseAshburn, VA
Hybrid

About The Position

The Vulnerability Assessment (VA) Team Lead will lead the vulnerability assessment for the U.S. Customs and Border Protection (CBP) program. This role involves running scanning, assessment, and prioritization work to identify weaknesses across the environment and ensuring that identified vulnerabilities are remediated. The Team Lead will coordinate with network, cloud, and security engineering teams for remediation efforts and provide context to threat hunt and incident response teams for confirmed exploitable findings. The position requires a strong ability to influence engineering teams to prioritize fixes for potential issues and to maintain an accurate and current risk picture of the environment. The role also involves developing an assessment practice that keeps pace with environmental changes and new system deployments.

Requirements

  • Active CBP Background Investigation (CBP BI) and EOD strongly preferred.
  • U.S. Citizenship required.
  • Ability to lead vulnerability assessment or penetration testing work that produced findings engineering teams actually acted on.
  • Ability to prioritize findings by real exploitability rather than by scanner severity score alone.
  • Experience working in a federal or highly regulated environment.
  • Ability to get a team to fix something that had not caused a visible problem yet.
  • Hold an active CBP BI, a fitness determination at another DHS component, or an active DoD clearance.
  • Certifications such as OSCP, GPEN, or equivalent are useful.

Nice To Haves

  • Active CBP Background Investigation (CBP BI) and EOD.
  • Active DoD clearance.

Responsibilities

  • Lead vulnerability assessment for the U.S. Customs and Border Protection (CBP) program.
  • Run scanning, assessment, and prioritization work to find weaknesses across the environment.
  • Own the remediation of identified vulnerabilities, ensuring they are fixed rather than just reported.
  • Coordinate closely with network, cloud, and security engineering teams to fix identified weaknesses.
  • Hand confirmed exploitable findings to threat hunt and incident response leads.
  • Prioritize findings by real exploitability and impact to the environment, not just generic severity scores.
  • Ensure assessment coverage reaches the most critical systems.
  • Drive remediation of critical findings and show trends of closure over time.
  • Involve engineering teams in the fix process when remediation is not obvious.
  • Trace recurring finding types to root causes like build standards or process gaps and close them at the source.
  • Ensure reported risk status (open, in progress, accepted) matches reality.
  • Document accepted risk decisions with real justifications.
  • Provide leadership with an accurate picture of the environment's exposure, including unassessed areas.
  • Ensure new systems and changes are assessed before going live.
  • Improve assessment methodology based on the impact of real findings.
  • Identify areas with thin assessment coverage and determine what is needed to close those gaps.

Benefits

  • Health Insurance
  • Life Insurance
  • Paid Time Off
  • Holiday Pay
  • Short-term and long-term Disability
  • Retirement
  • Learning and Development opportunities
  • Other optional benefit elections
  • $10,000 signing bonus for candidates with an active CBP BI (Payable after 90 days; standard terms apply).
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service