Logo for PingWind Inc. (SDVOSB)

Vulnerability Mgmt / Scan Operator

Role overview

Qualifications

  • Bachelors degree
  • 8 years of experience
  • Expertise in security scanning and vulnerability assessment
  • Knowledge of federal cybersecurity compliance frameworks

Responsibilities

  • Conduct and manage regular security vulnerability scans
  • Support federal compliance assessments
  • Review and manage Continuous Diagnostics and Monitoring scan results
  • Maintain and update Plans of Action and Milestones

About the company

PingWind Inc. (SDVOSB) logo

PingWind Inc. (SDVOSB)

IT Services & IT Consulting

Secure. Modernize. Optimize. PingWind is a CVE certified Service Disabled Veteran Owned Small Business (SDVOSB). We combine cybersecurity, information technology, and supply chain services to help our clients secure information, modernize systems, and optimize performance. Visit our webpage at www.PingWind.com for more information.

Company details

Company typeSME
IndustryIT Services & IT Consulting
Company size51 - 200

Your match analysis

See how your profile stacks up against this role.

We compared the job requirements to your profile to show where you're strong and where you fall short.

Job description

Location: Remote
Required Clearance: Public Trust 
Required Education: Bachelors
Required Experience: 8 years

Position Description

We are seeking a skilled and security‑focused Vulnerability Management / Scan Operator to support vulnerability identification, remediation, and security compliance efforts for a complex, mission‑critical federal Identity and Access Management (IAM) program within the U.S. Department of Education’s Federal Student Aid (FSA) office. The ideal candidate brings strong expertise in security scanning, vulnerability assessment, remediation planning, and federal cybersecurity compliance frameworks.


Responsibilities

This position plays a pivotal role in maintaining the security posture and compliance status of FSA's IAM systems. The Vulnerability Management / Scan Operator works closely with security teams, system administrators, and compliance officers to identify security findings, develop remediation strategies, and ensure adherence to federal cybersecurity standards including FISMA, CISA BOD directives, and NIST guidance.

Required Qualifications

•    Conduct and manage regular security vulnerability scans of IAM systems, applications, and databases using industry-standard scanning tools; analyze results and develop remediation plans.
•    Support federal compliance assessments including FISMA, A-123, Binding Operational Directives (BOD), and Safeguards reviews; develop corrective action plans and track remediation efforts.
•    Review and manage Continuous Diagnostics and Monitoring (CDM) scan results; respond to Common Vulnerabilities and Exposures (CVE) data calls within required timeframes.
•    Maintain and update Plans of Action and Milestones (POA&M) in Cyber Security Assessment and Management (CSAM); ensure security findings are accurately tracked from identification through resolution.
•    Monitor and maintain IAM Cybersecurity Framework Risk (CSF) Scorecard rating; notify FSA of any compliance gaps and provide remediation recommendations.
•    Manage IAM security control inheritance statements and ensure Inheritable Controls are properly configured in CSAM for use by other FSA systems.
•    Support Security Event and Incident Management (SEIM) and log management processes; coordinate with FSA Security Operations Centers to ensure proper data collection and real-time monitoring.
•    Verify encryption standards compliance for data-at-rest and data-in-transit, including AES-256, SHA-256, TLS protocols, and FIPS 140 requirements.
•    Track and report on privileged user access, including PIV card issuance, status changes, and security clearance compliance; maintain records of personnel with approved system access.
•    Ensure compliance with federal records management, PII protection, Section 508 accessibility standards, and Technology Business Management (TBM) reporting requirements.

 
About PingWind
 
PingWind is focused on delivering outstanding services to the federal government. We have extensive experience in the fields of cybersecurity, development, IT infrastructure, supply chain management and other professional services such as system design and continuous improvement. PingWind is an SBA certified Service-Disabled Veteran-Owned Small Business (SDVOSB) with offices in Northern Virginia and Huntsville AL.
www.PingWind.com
 
Our benefits include:
 
·       Eleven Federal Holidays
·       Paid Time Off accrued each pay period
·       Parental Leave
·       Three medical plan choices with generous employer contribution
·       Dental and Vision Insurance
·       Company paid Short-Term and Long-Term Disability
·       Company paid Life and AD&D Insurance
·       401k with competitive matching and vesting schedule 
·       Continuing education assistance
·       Short Term / Long Term Disability & Life Insurance
·       Medical, Dependent Care and Commuter Flexible Spending Accounts
·       Employee Assistance Program 
·       Wellness benefits include Calm Health app and WellHub gym subsidy (formerly GymPass)
·       529 College Savings Plan
·       Legal Insurance 
·       Pet Insurance
 

Salary Range

$93K-$128K

The pay range for this job is a general guideline only and not a guarantee of compensation or salary. Additional factors considered in extending an offer include (but are not limited to) job responsibilities, education, certifications, experience, as well as internal equity mapping and alignment with market data, or other applicable laws.


Veterans are encouraged to apply
 
PingWind, Inc. does not discriminate in employment opportunities, terms, and conditions of employment, or practices on the basis of race, age, gender, religious or political beliefs, national origin or heritage, disability, sexual orientation, or any characteristic protected by law.

Apply once. Then go straight to the hiring manager.

After you apply, unlock the direct contact details of the people who actually make the call. A quick follow-up makes you 5x more likely to land an interview.

MR

Marcus Rivera

Chief Revenue Officer

m.rivera@company.com
linkedin.com/in/marcusrivera
Unlocked after you apply
·

Related jobs

Other jobs at PingWind Inc. (SDVOSB)

Premium

Reach out to the hiring manager directly.

Gain access to the contact details of the hiring managers who actually decide, and reach out to network with them directly. That, plus more when you upgrade:

  • Full match report with fit score and gaps
  • Career diagnostics on how recruiters read you
  • Curated company matches and warm intros
  • 48h early access to new roles

Cancel anytime.