Vulnerability Engineer
Core
Identify, analyze, and remediate vulnerabilities across Windows server infrastructure for U.S. Federal Government agencies.
Role type
Senior IC vulnerability engineer (Windows security)
Builds
Hardened, patched, and secure Windows server environments
Domain
Cybersecurity / Federal Government / Windows Infrastructure
Required skills
Windows OS administration, Active Directory, Group Policy, vulnerability scanning, root cause analysis, risk mitigation, PowerShell scripting, NIST-800 framework, DISA STIG, CIS Benchmark, FIPS 140-3, SCCM, Nessus Tenable, BigFix, SQL Server, TLS hardening, cipher suite configuration (via careerplan.io/jobs/79-00B-55-F60-vulnerability-engineer)
Preferred skills
Linux/Ansible, Unix, Security+, CISSP, CASP+, CISA, CISM, Azure CLI, AWS CLI, VBScript, hardware driver/firmware upgrades
Technologies
Windows Server, Active Directory, SCCM, Nessus Tenable, BigFix, PowerShell, Azure CLI, AWS CLI, Python, VBScript, SQL Server, Dell servers
Responsibilities
Perform security hardening, patching, and server certificate updates; run system scans and analyze vulnerability reports; maintain environmental and engineering documentation; provide support for outages and conduct root cause analysis; resolve known exploited vulnerabilities; facilitate coordination of remediations across the team; develop recommendations for vulnerability fixes; harden Windows OS with secure TLS and cipher suites; assist in developing POAMs for long-lead vulnerabilities; manage ticket queue and provide on-call support
Seniority
Senior, hands-on IC
