Summit Technologies, Inc. (Hartford, CT)

Cybersecurity Vulnerability Scanning Analyst

Summit Technologies, Inc. (Hartford, CT)  •  Chambersburg, PA (Hybrid)  •  3 hours ago
Apply
AI can make mistakes so check important info. Chat history is never stored.

Job Description

Summit Technologies, Inc. has an opportunity for a Cybersecurity Vulnerability Scanning Analyst to maintain compliance with DoD vulnerability identification requirements for whitelisted websites and public-facing web presence. You will work as a team member to enhance the security posture of the DoD DMZ whitelisted websites, by conducting Web Vulnerability Scans (WVS) to identify and document gaps; and mitigate vulnerability. This hybrid position requires you to reside within 60 miles of Chambersburg, PA and be on site periodically. You must be a US citizen, as this is part of a government contract that requires a Secret security clearance.

Duties and Responsibilities:

  • Operate, maintain, and administer approved security scanners to plan, create, manage, and retire scheduled or ad hoc scan and scan groups for workloads across NIPRNet and SIPRNet.
  • Develop, distribute, and manage execution against the schedule of vulnerability scans.
  • Monitor, identify, report, and facilitate the resolution of scan performance impacting issues.
  • Maintain and ensure scans, accounts, and configurations are set in accordance with best practice guides and privileged access policies and procedures.
  • Analyze mission requirements and organizational feedback to create, maintain, and improve scan results.
  • Test and evaluate scanning tools and configurations.
  • Maintain client point of contact information, Internet Protocol (IP) ranges, and website/Universal Resource Locator (URL) information on the Data site via SharePoint.
  • Create and deliver a Collective Trend Analysis Report and trend analysis including resolution data aimed at influencing the development of security strategies.
  • Schedule, coordinate and perform vulnerability scans.
  • Determine Ports/Protocols and Services Management (PPSM) compliance; provide mitigations, strategies, and false positive determinations.
  • Create and deliver vulnerability scan reports, no later than two weeks after the scan is complete. Reports must include identified vulnerabilities, recommended resolutions/ mitigations, and trend analysis.
  • When initiated by the client, assist with a review of the report (i.e., answer questions, identify what was scanned, assist if assets were skipped).
  • Communicate and validate scan results in accordance with policies and procedures.
  • Help with vulnerability scan related issues/problem resolution with applicable Service desks.

Required Experience and Skills:

  • Minimum 4 years of Cybersecurity experience.
  • Experience utilizing BURP Suite (Enterprise Edition).
  • Experience configuring web browsers (e.g. Chrome, Firefox, etc.).
  • Experience injecting payloads to trigger vulnerabilities (e.g. SQL injection; XSS, Command Injection, Path Traversal, CSRF, IDOR).
  • Skilled at reviewing, interpreting, documenting, and developing mitigation strategy from the scan results.
  • Experience with STIGs and by-product analysis.
  • Proficiency in MS Office Suite products and SharePoint collaborative tools.
  • Working knowledge of government cybersecurity policies and procedures.
  • Strong interpersonal and communication skills (oral and written).

Education:

  • A Bachelor’s degree in fields such as Information Technology, Cybersecurity, or Computer Science; Or CEH certification.

Certification:

  • 8570 IAT Level II (CCNA Security, CySA+, GICSP, GSEC, Security+ CE, CNS, SSCP).

Security Clearance:

  • DoD Secret security clearance

If you feel you are qualified and want to be considered for this position, please supply the following to: 9jr4o39f3t649rb1amg5d4zrsr@crelate.net, and please put the job number ‘6781’ in the subject line:

  • Updated resume including MM/YYYY for each employer.
  • Best times/dates to interview (plus phone # you can best be contacted at).
  • Availability to start once given formal offers.

Summit Technologies Inc. appreciates your interest. We will contact the best matching prospects and will consider you for future opportunities. We will not submit your resume without your prior knowledge and consent. We are an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, gender, sexual orientation, gender identity, national origin, disability or veteran status.

Summit Technologies, Inc. (Hartford, CT)

About Summit Technologies, Inc. (Hartford, CT)

Simply put, we roll up our sleeves and get the job done.

As a U.S. Federal Government contractor, Summit has been providing information technology services and solutions to the Department of Defense and Federal Civilian agencies since 2002. Providing services throughout the United States and overseas via prime contracts and subcontracts, our reliable organization has a stable management and technical team which produces consistent results.

At Summit, our culture of team empowerment is our most valuable asset when it comes to supporting our customers. We’re a company with the tools and drive to forge lasting impacts on your organizations’ success, and the dedication to see it through to completion. We pride ourselves on our ability to deliver our innovative, cost-effective technical services and solutions with both the streamlined, professional approach of a large company and the considerate, personable touch of a small business.

Our Federally recognized SBA socio-economic designations include Small Business, HUBZone and Women Owned Small Business (WOSB). Summit’s CAGE code is 3FKG0.

Since 1997, Summit Technologies, Inc. has served Federal and Commercial customers in 40+ countries, providing cybersecurity, knowledge management, infrastructure and development services and solutions. Our customer base includes the Department of Defense, Department of Homeland Security, and Department of Transportation, as well as Fortune 1000 companies such as AIG, Aetna, Avery-Dennison, Barings, CIGNA, Compaq, HP, Leidos, Lockheed Martin, Pfizer, SAIC, Starbucks and UNISYS.

Industry
IT & Software
Company Size
51-200 employees
Headquarters
Hartford, Connecticut
Year Founded
1997
Social Media