Cybersecurity Vulnerability Analyst Job at Peraton, Baltimore, MD

YVF5eDBES1A5cVNFZVh4VkJoS2dHNXc4ZHc9PQ==
  • Peraton
  • Baltimore, MD

Job Description

Cybersecurity Vulnerability Analyst

Job Locations


US-MD-Linthicum

Requisition ID


2026-163818

Position Category


Intel and Threat Analysis

Clearance


Secret

Responsibilities

This Cybersecurity Vulnerability Analyst supports a Vulnerability Disclosure Program (VDP) within the federal government and is responsible for reviewing and vetting security vulnerability reports submitted to the DoD VDP from outside hackers. The Analyst will evaluate the reports to ensure the vulnerability is reproducible and therefore valuable to the customer. They will assess each vulnerability for severity and assign an associated risk statement. The HackerOne Triage console tool will be utilized to assist in assigning and prioritizing reports. It will also assist the Analyst in helping identify duplicate submissions. Valid reports will be written in a DoD approved format and sent to the Vulnerability Management Analyst team for system owner coordination and mitigation. The Vulnerability Analyst will be a VDP liaison with the hacker community.

The Vulnerability Analyst will also:

    Utilize offensive toolsets such as Kali Linux to safely analyze production networks and systems, documenting steps and procedures to produce usable vulnerability assessments for the customer.
  • Identify and investigate vulnerabilities, asses exploit potential, and document findings and remedies for presentation to facilitate mitigations on customer systems.
  • Conduct web application vulnerability assessment testing using both automated tools and manual web exploitation techniques, using tools such as Burp Suite and open-source toolsets.
  • Utilize a variety of industry standard security tools to conduct automated scans against systems and applications.
  • Develop and execute proof-of-concept exploits to demonstrate the real-world impact of identified vulnerabilities, utilizing various web exploitation methods.

*This position requires full-time, onsite attendance Monday through Friday in the Baltimore metropolitan area.

Qualifications

Qualifications

  • Bachelor's degree and 8+ years of experience; OR Master's Degree and 6+ years of experience; OR 3 years with PhD. Bachelor's or Master's degree must be one of the following fields: Information Technology, Cybersecurity, Computer Science, Information Systems, Data Science, or Software Engineering. In lieu of a degree in one of these fields, an additional 4 years of relevant experience or specialized training may be considered.
  • In-depth understanding of information security principles and practices,
  • Utilize MITRE ATT&CK, CVSS, and NIST frameworks to assess vulnerability severity and risk impact.
  • In-depth understanding of web exploitation concepts and techniques.
  • Knowledge and understanding of the Open Web Application Security Project (OWASP) top 10.
  • Experience operating in a professional IT or cybersecurity environment.
  • Experience investigating security events, threats and/or vulnerabilities.
  • Understand information security principles, technologies and practices.
  • Excellent customer service skills.
  • Active Security+ certification.
  • Active Secret security clearance required.

Preferred Additional Skills

  • CEH, CCNA-Security, CySA+, OSCP (or equivalent), PenTest+ or similar certification a plus.
  • Possess DoD 8570.01-M Information Assurance Technician (IAT) Level II Baseline Certification
  • Completed multiple Hack-The-Box penetration testing labs and challenges, developing handson expertise in vulnerability enumeration, exploitation, privilege escalation, and postexploitation techniques within realistic, adversarial environments.
  • Must possess an in-depth understanding of penetration testing methodology, including recon, exploit, persistence, etc.
  • Must have a solid understanding of networking protocols, their uses, and their potential misuses
  • Programming experience in one or more languages, experience in HTLM/CSS or SQL
  • Experience with one or more scripting languages such as PowerShell, Bash, Python or Perl

Peraton Overview

Peraton is a next-generation national security company that drives missions of consequence spanning the globe and extending to the farthest reaches of the galaxy. As the world's leading mission capability integrator and transformative enterprise IT provider, we deliver trusted, highly differentiated solutions and technologies to protect our nation and allies. Peraton operates at the critical nexus between traditional and nontraditional threats across all domains: land, sea, space, air, and cyberspace. The company serves as a valued partner to essential government agencies and supports every branch of the U.S. armed forces. Each day, our employees do the can't be done by solving the most daunting challenges facing our customers. Visit peraton.com to learn how we're keeping people around the world safe and secure.

Target Salary Range

$112,000 - $179,000. This represents the typical salary range for this position. Salary is determined by various factors, including but not limited to, the scope and responsibilities of the position, the individual's experience, education, knowledge, skills, and competencies, as well as geographic location and business and contract considerations. Depending on the position, employees may be eligible for overtime, shift differential, and a discretionary bonus in addition to base pay.

EEO

EEO: Equal opportunity employer, including disability and protected veterans, or other characteristics protected by law.

Job Tags

Full time, Contract work, Monday to Friday, Shift work

Similar Jobs

Red Antler

Paid Social Media Buyer Job at Red Antler

 ...Media Buyer Paid Social This role will be pivotal in driving success across paid social channels by executing and optimizing high-performance paid media strategies. As a key player, you will execute on paid social strategies, analyze campaign performance, identify... 

ServiceMaster 1st Choice

Sales Business Development Manager Job at ServiceMaster 1st Choice

 ...Business Development & Marketing Representative ServiceMaster 1st Choice &##128205; Hybrid Remote Lacey, WA 98503&##128338; Full...  ...strong relationships with: Insurance adjusters Property managers Contractors and other referral partners Represent the company... 

Quest Events

EVENT INSTALLER / DRIVER Job at Quest Events

Job Type Full-time Description The Event Installer/Driver is a driving and customer service position, with an emphasis on reliability and determination. The responsibilities include operating box trucks and vans, safely loading and unloading gear, dropping...

Altasciences

Clinical Research Nurse I Job at Altasciences

 ...discover your future at Altasciences. We are better together and together We Are Altasciences. About The Role The Clinical Research Nurse I will oversee the safety and consent of clinical trial participants during study conduct and the maintenance of safety equipment... 

Consultative Search Group

Accounting/Billing Assistant (Global Law Firm) Job at Consultative Search Group

 ...Remote with Flexibility (First 3 Months Hybrid) Global Law Firm is looking for an Accounting/Billing Assistant to join their billing...  ...experience or recent graduates with a degree in accounting, finance, economics, mathematics, or business . You will also have top...