Centuria Logo

Centuria

Vulnerability Management Analyst

Posted 8 Days Ago
Be an Early Applicant
In-Office
Hanscom Air Force Base, MA, USA
Junior
In-Office
Hanscom Air Force Base, MA, USA
Junior
Identify, assess, track, and remediate enterprise vulnerabilities using ACAS, Tanium, and related tools. Coordinate patching with system administrators, automate remediation and configuration tasks with PowerShell, and manage secure Windows and Active Directory baselines. Track closures in ServiceNow, prepare compliance and risk reports, and support RMF, STIG, endpoint management, and patch deployment activities. Communicate findings and remediation guidance to technical and non-technical stakeholders.
The summary above was generated by AI

Job Title: Vulnerability Management Analyst

Location: Hanscom AFB, MA

Clearance: Secret

Program: BLITS 3.0

 

Company/ Program Description:

 

Centuria, a Service-Disabled Veteran-Owned Small Business (SDVOSB), has been delivering IT, Engineering, and Scientific solutions to the Federal Government since 2002. During our two decades of service, we have earned the trust and respect of our government clients for the simple reason that we have great people who are experts in their fields and take pride and ownership in everything they do.

 

 

BLITS 3.0 PROGRAM DESCRIPTION: This role will be to directly support the mission of the 66th Air Base Group (66 ABG) to secure information and information systems; to support mission success through effective and efficient service delivery; and to sustain required infrastructure and capabilities. As one part of the greater Air Force Information Network (AFIN) enterprise, the 66 ABG Communications and Information Division (66 ABG/SC) has responsibilities in two categories (1) direct actions in support of Hanscom Air Force Base (HAFB) and geographically separated units (GSUs); and (2) indirect actions to support the AFIN enterprise. Successful solutions for this requirement are expected to have strengths in four areas: integration, flexibility, AFIN knowledge, and technical expertise.

 

 

Position Summary

The Vulnerability Management Analyst will identify, analyze, and remediate vulnerabilities across enterprise systems. This position requires strong technical and communication skills, with a focus on proactive collaboration and automation-driven patch management. The analyst will leverage ACAS, ARAD (Tanium), and PowerShell scripting to maintain system compliance and reduce risk exposure.

 

Key Responsibilities:

  • Perform vulnerability scanning, assessment, and remediation tracking using ACAS (Nessus/Security Center), ARAD (Tanium), or similar tools.
  • Analyze scan data and coordinate patching activities with system administrators and functional owners.
  • Develop and maintain PowerShell scripts to automate configuration management and patch deployment tasks.
  • Work in Active Directory and Windows Server environments to implement secure baselines and GPO configurations.
  • Coordinate vulnerability closure through ServiceNow or equivalent ticketing systems, ensuring timely and accurate updates.
  • Prepare tracking and status reports on vulnerability status, patch compliance, and risk posture for leadership and compliance reviews.
  • Collaborate with Cybersecurity, IT Operations, and Compliance teams to support RMF and STIG compliance requirements.
  • Proactively communicate findings, remediation guidance, tracking insights, and risk impacts to both technical and non-technical stakeholders.
  • Support HBSS/MECM and related endpoint management tools as required to deploy patches or security updates.

Required Skills and Qualifications

  • Strong understanding of Windows OS (Windows 10/11) and Windows Server environments.
  • Experience with vulnerability management tools (e.g., ACAS, Tenable, Nessus, Tanium, Qualys).
  • Demonstrated experience with patch management and configuration management processes.
  • Intermediate to advanced PowerShell scripting for automation and remediation workflows.
  • Working knowledge of Active Directory, Group Policy, and system hardening techniques.
  • Familiarity with enterprise ITSM platforms (ServiceNow preferred).
  • Excellent written and verbal communication skills, including the ability to convey technical details clearly.
  • Proven ability to manage competing priorities in a mission-focused environment.

Education and Certifications

  • Active DoD Secret clearance required.
  • CompTIA Security+ CE (or higher certification such as CISSP, CISM)
  • Associate’s degree in Information Technology or related field; additional experience may substitute for education.
  • 2+ years of experience in vulnerability management, patch management, or system administration within a DoD or enterprise environment.

Preferred Qualifications

  • Experience supporting DoD cybersecurity programs and compliance frameworks (RMF, STIGs, DISA, NIST 800-53).
  • Familiarity with automation/orchestration platforms for patch and configuration management.
  • Excel expertise.
  • Experience creating dashboards and reports for leadership visibility using tools such as Power BI, Tanium, and ServiceNow Performance Analytics.

 

Similar Jobs

Yesterday
In-Office
Lincoln, MA, USA
Junior
Junior
Information Technology
Perform vulnerability scanning, assessment, remediation tracking, patch coordination, and compliance reporting in DoD enterprise environments. Develop PowerShell automation, manage Windows and Active Directory security configurations, coordinate remediation through ServiceNow, and support endpoint patching with HBSS/MECM. Collaborate with cybersecurity, IT operations, and compliance teams on RMF and STIG requirements while communicating risks and findings to technical and non-technical stakeholders.
Top Skills: AcasActive DirectoryAradGroup PolicyHbssMecmNessusPower BIPowershellSecurity CenterServicenowTaniumWindows 10Windows 11Windows Server
39 Minutes Ago
Hybrid
Boston, MA, USA
Internship
Internship
Artificial Intelligence • Big Data • Healthtech • Software • Biotech
Paid IT internship in Boston focused on redesigning and automating an internal Jira Cloud Service Desk portal. Responsibilities include supporting employees with technical requests, assisting with system administration, cloud environments, access management, asset management, automation, dashboards, and IT initiatives alongside security and network teams. The role offers practical experience with Azure, Microsoft 365, Apple ecosystems, JAMF, ITSM, scripting, and operational support.
Top Skills: Apple EnvironmentsAzure CloudBash/ShellItsmJAMFJira CloudMicrosoft 365PowershellPythonRbac
An Hour Ago
Remote or Hybrid
United States
82K-100K Annually
Senior level
82K-100K Annually
Senior level
Fintech • Information Technology • Insurance • Financial Services • Big Data Analytics
Oversee DHMO quality management and utilization management governance, regulatory committees, audit readiness, corrective action monitoring, compliance reporting, and quality improvement. Analyze operational, financial, regulatory, satisfaction, grievance, and performance data to identify risks and trends. Develop governance processes, policies, reporting frameworks, and documentation standards. Partner with cross-functional stakeholders and leadership to improve compliance, organizational performance, member experience, and provider outcomes.
Top Skills: ExcelMicrosoft PowerpointMicrosoft SharepointMicrosoft TeamsMicrosoft Word

What you need to know about the Boston Tech Scene

Boston is a powerhouse for technology innovation thanks to world-class research universities like MIT and Harvard and a robust pipeline of venture capital investment. Host to the first telephone call and one of the first general-purpose computers ever put into use, Boston is now a hub for biotechnology, robotics and artificial intelligence — though it’s also home to several B2B software giants. So it’s no surprise that the city consistently ranks among the greatest startup ecosystems in the world.

Key Facts About Boston Tech

  • Number of Tech Workers: 269,000; 9.4% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Thermo Fisher Scientific, Toast, Klaviyo, HubSpot, DraftKings
  • Key Industries: Artificial intelligence, biotechnology, robotics, software, aerospace
  • Funding Landscape: $15.7 billion in venture capital funding in 2024 (Pitchbook)
  • Notable Investors: Summit Partners, Volition Capital, Bain Capital Ventures, MassVentures, Highland Capital Partners
  • Research Centers and Universities: MIT, Harvard University, Boston College, Tufts University, Boston University, Northeastern University, Smithsonian Astrophysical Observatory, National Bureau of Economic Research, Broad Institute, Lowell Center for Space Science & Technology, National Emerging Infectious Diseases Laboratories

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account