Vulnerability Management

TekSynapMorningside, MD
$70,000 - $95,000Onsite

About The Position

We are seeking a Vulnerability Management to join our team supporting at Joint Base Andrews, MD. Vulnerability Management to support the Air Force National Capital Region IT Services program. The AFNCR IT Services program provides support services for information systems for Headquarters Air Force (HAF), Air Force District of Washington (AFDW), Office of the Secretary of Defense (OSD), Joint Chiefs of Staff, and other Air Force activities within the AFNCR, missions to include the Pentagon, Joint Base Andrews (JBA), Joint Base Anacostia-Bolling (JBAB), and other locations, leased spaces, and alternate sites. The major support areas required are IT Operations and Maintenance; Plans, Projects, and Engineering and National Military Command Center (NMCC). TekSynap is a fast-growing high-tech company that understands both the pace of technology today and the need to have a comprehensive well planned information management environment. “Technology moving at the speed of thought” embodies these principles – the need to nimbly utilize the best that information technology offers to meet the business needs of our Federal Government customers.

Requirements

  • Active DoD Secret clearance required.
  • CompTIA Security+CE or higher DoD 8570 IAT Level II certification must meet 8140 ISSM role qualification.
  • Bachelors Degree and 2-4 years of experience. Additional years of experience or certifications may be considered in lieu of a degree.
  • 3 years of cybersecurity or system administration experience, with at least 1 year of direct ACAS or Tenable experience.
  • Working knowledge of DISA STIGs, vulnerability risk levels, and POA&M remediation strategies.
  • Familiarity with NIST SP 800-53, RMF compliance, and Air Force cybersecurity policy (AFMAN 17-130).
  • Strong attention to detail, documentation skills, and the ability to interpret technical vulnerability data.
  • US Citizen

Nice To Haves

  • Experience supporting USAF, DISA, or other DoD mission systems.
  • Familiarity with ACAS, DISPATCH EaluateSTIG, STIGManager, Involvement in CCRI/CORA preparation or vulnerability remediation campaigns.
  • Ability to communicate risk-based recommendations to both technical and non-technical stakeholders.
  • Understanding of automation tools/scripts (e.g., PowerShell, Nessus APIs) to support scan or report optimization.

Responsibilities

  • Manage the POAM process for Vulnerabilities and STIG violations.
  • Analyze scan results to identify CAT I/II/III findings, false positives, and configuration errors.
  • Track and document remediation actions, POA&Ms, and exceptions in alignment with RMF guidance.
  • Validate and interpret DISA STIG checklists, collaborate with system admins and engineers to ensure secure configurations.
  • Prepare and deliver vulnerability reports, compliance dashboards, and metrics for leadership and inspection readiness (e.g., CCRI/CORA).
  • Support the development and maintenance of asset groupings, scan zones, credentialed scanning, and scan tuning strategies.
  • Work closely with Queue Managers, ISSOs, and Engineering teams to prioritize and close critical vulnerabilities.
  • Maintain data hygiene within ACAS, ensuring consistent tagging, grouping, and reporting structures.

Benefits

  • health
  • dental
  • vision
  • 401K
  • life insurance
  • short-term and long-term disability plans
  • vacation time
  • holidays
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service