Vulnerability Management Analyst

Absolute Business Solutions CorpArlington, VA
Hybrid

About The Position

Absolute Business Solutions Corp (ABSC) is seeking a Vulnerability Management Analyst to join their team supporting the Air Force National Capital Region (AFNCR) Information Technology Services (ITS2) program. This role involves delivering secure, resilient technology supporting Air Force operations across the National Capital Region, including the Pentagon, Joint Base Andrews, and Joint Base Anacostia-Bolling. The analyst will strengthen the cybersecurity posture of the AFDW environment through vulnerability detection, assessment, analysis, remediation, and compliance activities across Air Force networks and systems. This position requires close collaboration with ISSOs, ISSMs, cybersecurity teams, engineers, system and network administrators, program offices, and mission owners to identify risk, drive remediation, support compliance, and ensure critical Air Force systems remain secure, resilient, and mission ready. The majority of the work is conducted on-site in the National Capital Region, with potential for occasional remote work with prior client approval. An Active Secret security clearance is required.

Requirements

  • Bachelor's degree in Computer Science, Cybersecurity, Information Technology, Information Systems, Engineering, or a related technical discipline, OR a Master's degree in a relevant technical discipline, OR a minimum of 5 years of intensive, progressive relevant experience demonstrating technical proficiency.
  • Current CompTIA Security+ CE or equivalent DoD 8570/8140 IAT Level II certification, OR ability to obtain Security+ CE or equivalent IAT Level II certification within six months of assignment.
  • Must be able to work effectively in a highly regulated DoD environment.
  • Must possess strong analytical, troubleshooting, documentation, and communication skills.
  • Must be able to coordinate across technical teams, cybersecurity organizations, customers, and mission stakeholders.
  • Must maintain all certifications required for the assigned labor category before performing work.
  • Personnel with elevated privileges on Air Force networks must maintain applicable DoD cybersecurity workforce certifications.
  • Must be able to read, write, speak, and understand English.
  • An Active Secret security clearance is required.

Nice To Haves

  • Hands-on experience with ACAS / Tenable Security Center / Nessus Vulnerability scanning and remediation
  • DISA STIGs and SRGs
  • RMF and cybersecurity control assessment
  • POA&M development and management
  • IAVM / cybersecurity directive compliance
  • Microsoft Endpoint Configuration Manager (MECM/SCCM)
  • Endpoint Security products
  • NIPRNet and/or SIPRNet environments
  • DoD and Air Force cybersecurity policies
  • NIST cybersecurity standards and guidance
  • Security log analysis and incident identification
  • Vulnerability metrics, trend analysis, and compliance reporting

Responsibilities

  • Conduct and support vulnerability detection, assessment, analysis, and remediation using DoD-, Air Force-, and AFDW-approved systems and tools.
  • Maintain and support Assured Compliance Assessment Solution (ACAS) capabilities and ensure vulnerability scans are properly configured and executed.
  • Prepare and provide recurring vulnerability scan results, cybersecurity reports, and vulnerability trend analysis.
  • Analyze scan data and security logs to identify vulnerabilities, anomalies, policy violations, unauthorized activity, and potential cybersecurity incidents.
  • Configure vulnerability assessment tools in accordance with NIST, DoD, Air Force, and DISA cybersecurity guidance.
  • Review and track vulnerability reports, IAVMs, TCNOs, TASKORDs, and other DoD/USAF cybersecurity directives.
  • Support remediation of identified vulnerabilities, including Critical and Zero-Day vulnerabilities, within required compliance timelines.
  • Review and validate Security Technical Implementation Guide (STIG) checklists and recommend appropriate remediation actions.
  • Develop, coordinate, track, and manage Plans of Action and Milestones (POA&Ms) through closure.
  • Review and track Risk Management Framework (RMF)-related POA&Ms and security controls.
  • Support periodic reviews and testing of RMF security controls.
  • Configure, manage, operate, and maintain approved automated vulnerability management and endpoint security capabilities, including Microsoft Endpoint Configuration Manager (MECM) or equivalent tools.
  • Coordinate vulnerability remediation activities with cybersecurity offices, engineering teams, system/network administrators, PMOs, customers, mission owners, and external Air Force/DoD organizations.
  • Provide weekly vulnerability remediation status reporting, including open/closed IAVMs, STIG findings, RMF POA&Ms, and other compliance metrics.
  • Recommend technical and procedural solutions to improve the security posture of network, platform, and system environments.
  • Support the development and maintenance of cybersecurity policies, procedures, and standard operating procedures.

Benefits

  • Generous PTO plus 11 Federal Holidays
  • Retirement Planning – 401k Fully Vested with Match
  • Annual Health and Wellness Allowance
  • Career Development – Annual Funds to spend on Education and Training
  • Volunteer Time Off
  • Charitable Match
  • Referral Program
  • LOV Awards
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service