Koniag IT Systems, a Koniag Government Services company , is seeking a Vulnerability Analyst with a TS/SCI clearance to support KITS and our government customer in Falls Church, VA.
We offer competitive compensation and an extraordinary benefits package including health, dental and vision insurance, 401K with company matching, flexible spending accounts, paid holidays, three weeks paid time off, and more.
Essential Functions, Responsibilities & Duties may include, but are not limited to:
Essential Functions, Responsibilities & Duties may include, but are not limited to:
Conduct advanced cyber vulnerability assessments of applications, systems, vendor IT networks, and cloud architectures in support of DoD and Intelligence Community (IC) missions.
Perform detailed analysis of system security logs, application data, and network packet captures to identify attack indicators, anomalies, and misconfigurations.
Support the development and maintenance of Program Protection Plans, Counterintelligence Support Plans, and Anti-Tamper Plans by providing vulnerability assessment inputs.
Deliver cyber vulnerability reports, risk assessments, and mitigation strategies, including annexes to Program Protection Plans.
Collaborate with cybersecurity engineers, DevOps teams, researchers, and program managers to identify, prioritize, and remediate vulnerabilities.
Apply threat modeling, penetration testing, and exploit development techniques to identify risks across on-premises and cloud environments.
Contribute to semi-annual cyber vulnerability updates and prepare executive-level summaries of findings for senior leadership.
Stay current with DoD and IC cybersecurity regulations, including DoD 8140/8570, Risk Management Framework (RMF), Continuous Diagnostics and Monitoring (CDM), Zero Trust Architecture (ZTA), DoDI 8500.01, DoDI 8510.01, and NIST SP 800-53.
Participate in incident response investigations and provide technical recommendations to strengthen system defenses.
Support ongoing security classification guidance development, ensuring vulnerabilities are properly documented and aligned with classification requirements.
Provide training and awareness support to team members and stakeholders on vulnerability identification, remediation, and secure system design practices.
Work Experience, Knowledge, Skills & Abilities:
Education/Experience:
Bachelor's degree in Cybersecurity, Computer Science, Information Technology, or related field (or equivalent hands-on experience).
5-7 years of cybersecurity experience, including at least 3+ years focused on vulnerability analysis, penetration testing, or cyber risk management.
Experience supporting DoD or IC systems in classified environments.
Knowledge & Skills:
Proficiency in vulnerability scanning tools (e.g., Nessus, Qualys, OpenVAS), SIEM platforms (e.g., Splunk, ELK, QRadar), and packet capture tools (e.g., Wireshark, Zeek).
Experience with penetration testing, exploit frameworks, and threat modeling methodologies.
Familiarity with cloud security assessments (AWS, Azure, DoD cloud environments).
Working knowledge of secure coding principles, container security (Docker, Kubernetes), and DevSecOps practices.
Strong understanding of network security, identity/access management, firewalls, encryption, and Zero Trust concepts.
Ability to synthesize technical findings into clear reports and executive-level briefings.
Abilities:
Strong analytical and problem-solving skills with the ability to think like an adversary.
Ability to manage multiple vulnerability assessments simultaneously while meeting mission-critical deadlines.
Strong interpersonal skills; able to work across multidisciplinary, cross-functional teams.
Excellent written and verbal communication skills, with the ability to brief senior DoD/IC stakeholders.
Security Clearance requirement:
Must be a U.S. Citizen with a current/active TS/SCI.
Our Equal Employment Opportunity Policy
The company is an equal opportunity employer. The company shall not discriminate against any employee or applicant because of race, color, religion, creed, ethnicity, sex, sexual orientation, gender or gender identity (except where gender is a bona fide occupational qualification), national origin or ancestry, age, disability, citizenship, military/veteran status, marital status, genetic information or any other characteristic protected by applicable federal, state, or local law. We are committed to equal employment opportunity in all decisions related to employment, promotion, wages, benefits, and all other privileges, terms, and conditions of employment.
The company is dedicated to seeking all qualified applicants. If you require an accommodation to navigate or apply for a position on our website, please get in touch with Heaven Wood via e-mail at accommodations@koniag-gs.com or by calling 703-488-9377 to request accommodations.
Koniag Government Services (KGS) is an Alaska Native Owned corporation supporting the values and traditions of our native communities through an agile employee and corporate culture that delivers Enterprise Solutions, Professional Services and Operational Management to Federal Government Agencies. As a wholly owned subsidiary of Koniag, we apply our proven commercial solutions to a deep knowledge of Defense and Civilian missions to provide forward leaning technical, professional, and operational solutions. KGS enables successful mission outcomes for our customers through solution-oriented business partnerships and a commitment to exceptional service delivery. We ensure long-term success with a continuous improvement approach while balancing the collective interests of our customers, employees, and native communities. For more information, please visit www.koniag-gs.com.
Equal Opportunity Employer/Veterans/Disabled. Shareholder Preference in accordance with Public Law 88-352
Job Details
Job Family IT, Cyber Security, Network Systems
Job Function Cyber Security Architect/Engineer
Pay Type Salary