Vulnerability Management Analyst- Secret Clearance Required

Sherpa 6Springfield, VA
19h$90,000 - $125,000

About The Position

Sherpa 6 is seeking a highly motivated and skilled Vulnerability Management Analyst to join our team. We build mission critical systems for the Department of Defense (DoD) and other commercial customers. You’ll be responsible for identifying, assessing, prioritizing, and tracking remediation of security vulnerabilities across our technology environment. You will partner with infrastructure, application, and security teams to ensure risks are properly understood, addressed, and reported.

Requirements

  • 7+ years of experience in cybersecurity, vulnerability management, or related fields.
  • Hands-on experience with tools such as Tenable, Qualys, Rapid7, OpenVAS, or similar.
  • Strong understanding of CVE, CVSS, NIST, CIS benchmarks, and vulnerability classification frameworks.
  • Familiarity with cloud platforms (AWS, Azure, GCP)
  • Ability to interpret vulnerability findings, identify actual risk, and communicate clearly with technical and non-technical stakeholders.
  • Knowledge of patch management practices and change management workflows.
  • Understanding of network architecture, security controls, and common attack vectors.
  • Excellent analytical and problem-solving skills, with a keen attention to detail.
  • Strong communication and interpersonal skills, with the ability to effectively collaborate with cross-functional teams
  • Must be a US citizen
  • Active Secret clearance required (Interim ok)
  • US Citizenship required

Nice To Haves

  • Relevant certifications (Security+, CySA+, CEH, GSEC, or similar).
  • Experience with automation or scripting (Python, PowerShell, Bash).
  • Background in secure configuration management, container security, or DevSecOps tooling.
  • Knowledge of SIEM or threat detection platforms.

Responsibilities

  • Perform regular vulnerability scans across cloud, on-prem, application, and endpoint environments.
  • Analyze scan results, validate findings, and assign severity based on industry standards (e.g., CVSS), business context, and exploitability.
  • Work collaboratively with engineering and operations teams to drive timely remediation of vulnerabilities.
  • Monitor external threat intelligence and evaluate emerging vulnerabilities (e.g., zero-days, trending exploits).
  • Maintain the vulnerability management platform and improve scanning coverage and accuracy.
  • Support patch management processes and ensure alignment with remediation SLAs.
  • Assist in developing and refining policies, procedures, and best practices for vulnerability management.
  • Participate in incident response efforts when vulnerabilities contribute to active threats.

Benefits

  • We offer a competitive benefits package, covering the cost of medical for you and your family; we also offer dental, vision, health and wellness benefits and a generous retirement savings plan.
  • We believe that our employees can manage their workload and their personal life, therefore we extend a generous PTO policy.
  • This allows our employees to balance their lives as they see fit.
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service