cFocus Software seeks a Vulnerability Management Lead to join our program supporting the Federal Communications Commission (FCC). This position is remote. This position requires the ability a Public Trust clearance. Qualifications:
Bachelor’s degree in Cybersecurity, Computer Science, Information Technology, or related field (or equivalent experience).
Experience in enterprise cybersecurity, vulnerability management, or risk management environments.
Demonstrated experience supporting large-scale, complex IT and cybersecurity operations.
Proven experience leading or supporting enterprise-level cybersecurity service delivery.
Strong understanding of vulnerability management tools and methodologies
Experience with vulnerability scanning tools (e.g., Tenable/Nessus, Qualys).
Strong understanding of CVSS scoring, risk prioritization, and remediation workflows.
Familiarity with patch management and configuration management processes.
Knowledge of cloud and hybrid infrastructure security.
Experience with reporting tools, dashboards, and metrics development.
Strong analytical, problem-solving, and communication skills.
Required Certifications
Relevant cybersecurity certification demonstrating competence in vulnerability management, risk, or operations support.
Lead enterprise vulnerability management program across on-premises, cloud, and hybrid environments.
Coordinate vulnerability scanning, assessment, and continuous monitoring activities.
Oversee vulnerability tracking, remediation support, and lifecycle management.
Perform trend analysis, risk prioritization, and reporting to stakeholders.
Integrate vulnerability management with risk management and compliance programs (RMF, ISCM).
Collaborate with SOC, engineering, and operations teams to remediate vulnerabilities.
Develop metrics, dashboards, and reporting for executive and operational audiences.
Ensure alignment with federal cybersecurity frameworks (e.g., NIST, FISMA).
Identify systemic weaknesses and recommend remediation strategies.
Support audits, assessments, and POA&M management activities
About cFocus Software Incorporated
Established in 2006, we have over 18+ years of experience providing dozens of federal government agencies cybersecurity, cross-domain, geospatial, and IT services.