Skip to main content
PGTEK

Senior Vulnerability Management Engineer (Tenable) - Active Secret clearance

RemoteUnited States only
Published
Role
Security
Experience
Senior
Employment
Full-time
$145k–$170k/yr
Check eligibility

Open to US only. Set where you work from to check your eligibility.

No BS summary

Senior vulnerability management engineer with 7+ years in cybersecurity/vulnerability/systems engineering and deep Tenable administration. Must be U.S.-based remote with active Secret clearance; DoD/Federal experience is required/preferred. Needs Tenable.sc, Tenable Vulnerability Management, Nessus/Nessus Agents, scanning, remediation, compliance, and scripting/API automation.

Core skills

Tenable.scTenable Vulnerability ManagementNessus

Required skills

Nessus AgentsCVSSKEVPatch managementSTIGWindows ServerLinuxRHELCentOSUbuntuVMware vSphereAWS/AzureTCP/IPDNSVLANsNIST SP 800-53RMFDISA STIGsSRGsCMMCCIS BenchmarksDoD 8570DoD 8140

Optional skills

PowerShellPythonBashTenable APIServiceNowJiraSIEMSOAR

What you'll do

  • Administer and optimize the full Tenable platform, including Tenable.sc, Tenable Vulnerability Management, Nessus, and Nessus Agents.
  • Perform authenticated and unauthenticated vulnerability scans across Windows, Linux, network, and cloud environments.
  • Analyze vulnerability data, validate findings, eliminate false positives, and prioritize remediation efforts based on risk.
  • Coordinate remediation activities with infrastructure, networking, and application teams through closure.
  • Manage scan schedules, repositories, credentials, scan zones, and agent deployments.
  • Troubleshoot scanning issues, credential failures, performance bottlenecks, and platform health.
  • Develop executive dashboards, compliance reports, and security metrics.
  • Support RMF continuous monitoring, POA&M management, and audit activities.
  • Integrate Tenable with ServiceNow, SIEM, asset management, and automation platforms.
  • Develop automation using PowerShell, Python, Bash, and Tenable APIs.
  • Recommend system hardening improvements and security best practices.
  • Provide technical mentorship to junior engineers and vulnerability analysts.
  • Support security investigations and incident response activities requiring vulnerability analysis.

What they require

  • 7+ years of cybersecurity engineering, vulnerability management, or systems engineering experience.
  • Experience supporting Federal Government or DoD environments (5+ years preferred).
  • Active Secret Clearance (TS/SCI preferred).
  • Deep experience administering Tenable.sc, Tenable Vulnerability Management, Nessus, and Nessus Agents.
  • Strong understanding of vulnerability management lifecycle and remediation processes.
  • Experience with CVSS scoring, Known Exploited Vulnerabilities (KEV), patch management, STIG compliance scanning, and false-positive validation.
  • Working knowledge of Windows Server, Linux (RHEL, CentOS, Ubuntu), VMware vSphere, AWS and/or Azure, and enterprise networking (TCP/IP, DNS, VLANs, routing, switching).
  • Experience supporting one or more of the following: NIST SP 800-53, Risk Management Framework (RMF), DISA STIGs and SRGs, CMMC, CIS Benchmarks, DoD 8570 / 8140 requirements.
  • Preferred: TS/SCI clearance.
  • Preferred: 5+ years supporting Federal Government or DoD environments.
  • Preferred: Experience improving vulnerability remediation processes and reducing MTTR.

Benefits

  • Opportunity to take on technical leadership responsibilities and mentor junior engineers as the program grows.

PGTEK is a true consulting organization dedicated to helping clients achieve their business and technology objectives utilizing our decades of experience and business relationships. PGTEK invests in the educational advancements of our staff by providing the necessary resources to complete Professional and Business Certifications. Our company is our people, and we treat them like family. EOE, including disability/veterans

Cybersecurity
$145k–$170k/yr