Vulnerability Management and Endpoint Security Administrator

Fort Belvoir, VA
Full Time
Experienced
Grow, innovate, and generate progress: Harness your expertise to solve challenges and celebrate success! 

Job Summary
CS Solutions LLC is seeking a Vulnerability Management and Endpoint Security Administrator to provide cybersecurity expertise supporting enterprise IT operations on a high-profile Department of War (DoW) contract supporting DTRA. This role serves as a cybersecurity subject matter resource across Vulnerability Management and Endpoint Security teams, helping modernize, secure, and continuously improve enterprise IT services and mission capabilities across CONUS and OCONUS environments.

The ideal candidate brings deep experience with ACAS/Nessus, Tanium, and enterprise endpoint security technologies, along with the ability to independently assess cybersecurity risks, evaluate remediation strategies, and provide risk-based recommendations that balance mission requirements, operational needs, and security objectives.

Location: Fort Belvoir, VA
Clearance Required: Active TS/SCI

Salary Range: $70,000 to $100,000

What’s in it for you: 
  • Analyze enterprise vulnerability and endpoint security posture across Windows, Linux, virtual, and enterprise environments.
  • Administer and optimize ACAS/Nessus capabilities, including scan architecture, credentialed scanning, vulnerability analysis, reporting, and troubleshooting.
  • Conduct in-depth vulnerability assessments and establish risk-based remediation priorities.
  • Evaluate cybersecurity risks, compensating controls, remediation alternatives, and exception requests.
  • Utilize Tanium to assess endpoint visibility, asset inventory, compliance posture, vulnerability exposure, and remediation requirements.
  • Analyze endpoint-security posture using Trellix and associated technologies.
  • Correlate security, compliance, vulnerability, and asset-management data to identify enterprise-wide risks and coverage gaps.
  • Develop and recommend solutions to complex vulnerability-management and endpoint-security challenges.
  • Assess vulnerability exceptions, risk-acceptance requests, and provide technical recommendations to leadership.
  • Evaluate endpoint configurations and recommend security-hardening strategies aligned with STIG requirements.
  • Develop dashboards, metrics, reporting, and executive-level cybersecurity summaries.
  • Support incident response, threat hunting, and endpoint containment activities.
  • Assess cybersecurity impacts of proposed infrastructure, software, and security-tool changes.
  • Recommend improvements to vulnerability-management processes, technologies, and operating procedures.
  • Develop and maintain technical standards, procedures, and knowledge documentation.
  • Advise engineers, system owners, cybersecurity personnel, and leadership on risk and remediation strategies.
  • Manage competing priorities while independently determining appropriate technical approaches within contractual and security requirements.
 
What you will do:
  • Bachelor's degree in Cybersecurity, Information Technology, Computer Science, Information Systems, or a related discipline and at least 4 years of relevant experience; or 8+ years of relevant experience in lieu of a degree.
  • 4+ years of progressively responsible experience in vulnerability management, endpoint security, cybersecurity engineering, information assurance, or related enterprise cybersecurity functions.
  • Demonstrated ability to independently assess cybersecurity vulnerabilities, evaluate risk, and recommend remediation strategies.
  • Strong hands-on experience with ACAS/Nessus, including scanning, policy administration, credentialed scanning, reporting, remediation, and validation.
  • Strong hands-on experience with Tanium for endpoint management, compliance analysis, visibility, asset inventory, and vulnerability remediation.
  • Working knowledge of Trellix endpoint-security technologies.
  • Experience conducting risk-based vulnerability analysis and establishing remediation priorities.
  • Experience administering and securing both Microsoft Windows and Linux environments.
  • Working knowledge of DISA STIG compliance, SCC, STIG Viewer, secure configuration baselines, and security-hardening methodologies.
  • Knowledge of NIST, ICD, CNSS, and DoD cybersecurity requirements and standards.
  • Excellent analytical, communication, organizational, and problem-solving skills.
  • Active DoD 8140 IAT Level II certification (Security+ CE or equivalent).
  • Ability to satisfy applicable DoD 8140 Cyber Workforce qualification requirements.
  • Active Top Secret/Sensitive Compartmented Information (TS/SCI) security clearance.
  
What you will bring: 
  • Direct experience supporting FISMA Security Authorization activities, A&A/RMF processes, ATOs, NIST SP 800-53 control assessments, and authorization package development or maintenance.
  • Experience developing, reviewing, or maintaining federal cybersecurity authorization documentation and artifacts.
  • Hands-on experience with vulnerability management and/or security monitoring activities, including scan review, validation, prioritization, remediation coordination, and status reporting.
  • Experience supporting incident response activities including alert triage, documentation, escalation, containment support, recovery coordination, and lessons learned.
  • Experience documenting findings, risks, corrective actions, control evidence, and POA&M activities in an audit-ready environment.
  • Ability to communicate cybersecurity and compliance requirements effectively to both technical and non-technical stakeholders.
  • Ability to obtain or maintain an HHS Public Trust Tier II background investigation.

How you will wow us:
  • Advanced expertise with Tanium Asset, Discover, Comply, Deploy, Patch, Interact, Reporting, and custom sensor development.
  • Advanced ACAS/Nessus architecture, administration, dashboarding, credentialed scan troubleshooting, and enterprise reporting experience.
  • Experience with Trellix ePO, Trellix Endpoint Security, Microsoft Defender for Endpoint, or comparable EDR platforms.
  • Previous experience as an ISSO, ISSM, Cybersecurity Engineer, or similar cybersecurity leadership role.
  • Experience supporting DoW environments, classified networks, or large-scale enterprise cybersecurity operations.
  • Experience creating vulnerability-management dashboards, automated reporting solutions, and integrations using PowerShell, Python, SQL, or similar technologies.
  • Experience evaluating POA&Ms, compensating controls, risk acceptance requests, and vulnerability exceptions.
  • Experience advising technical and program leadership on cybersecurity strategy and risk management decisions.
  • Relevant Microsoft, Linux, RHCSA, Linux+, or comparable technical certifications.
JCS Solutions (JCS) is a premier technology firm providing innovative solutions and high-quality services in defense, national security, and civilian sectors.  JCS offers enterprise-wide solutions including cloud computing, software development, cybersecurity, digital modernization, and management consulting for the federal government. At JCS, we elevate our customers’ mission through the application of technology and professional services. Our commitment to investing in our workforce drives innovation and progress for our clients, employees, and communities.
JCS is both a Great Place to Work and a Top Places to Work certified company.
  
Our employees embody our core values, and we are looking for others who do too!
  • Customer Experience: Strive for excellence and delight our clients 
  • Innovation: Embrace creative thinking to enable continual growth and powerful solutions 
  • Accountability: Take ownership of and pride in our actions and service delivery 
  • Inspire: Be inspired to be your best self and have fun in the process 
  • Integrity: Do the right thing, the right way, every time! 
  • Stewardship: The careful and responsible management of something entrusted to our care. 
 At JCS Solutions, compensation is based on a number of factors such as location, qualifications, and applicable contract terms. The general salary range for this position is as follows: $70,000.00 to $100,000.00

Commitment to Non-Discrimination
All qualified applicants will receive consideration for employment without regard to any protected status protected by applicable federal, state, or local laws.

 

NOTICE: Please be aware that all JCS Solutions communications related to job interviews and offers from our recruiting team will only come from @JCSSolutions.com. We want to emphasize that we do not conduct any interviews over Discord, Slack, Skype, Zoom, or any chat app.

Share

Apply for this position

Required*
We've received your resume. Click here to update it.
Attach resume as .pdf, .doc, .docx, .odt, .txt, or .rtf (limit 5MB) or Paste resume

Paste your resume here or Attach resume file

To comply with government Equal Employment Opportunity and/or Affirmative Action reporting regulations, we are requesting (but NOT requiring) that you enter this personal data. This information will not be used in connection with any employment decisions, and will be used solely as permitted by state and federal law. Your voluntary cooperation would be appreciated. Learn more.

Invitation for Job Applicants to Self-Identify as a U.S. Veteran
  • A “disabled veteran” is one of the following:
    • a veteran of the U.S. military, ground, naval or air service who is entitled to compensation (or who but for the receipt of military retired pay would be entitled to compensation) under laws administered by the Secretary of Veterans Affairs; or
    • a person who was discharged or released from active duty because of a service-connected disability.
  • A “recently separated veteran” means any veteran during the three-year period beginning on the date of such veteran's discharge or release from active duty in the U.S. military, ground, naval, or air service.
  • An “active duty wartime or campaign badge veteran” means a veteran who served on active duty in the U.S. military, ground, naval or air service during a war, or in a campaign or expedition for which a campaign badge has been authorized under the laws administered by the Department of Defense.
  • An “Armed forces service medal veteran” means a veteran who, while serving on active duty in the U.S. military, ground, naval or air service, participated in a United States military operation for which an Armed Forces service medal was awarded pursuant to Executive Order 12985.
Veteran status


Human Check*