Pingwind
Pingwind8h ago
New

Vulnerability Mgmt / Scan Operator

RemoteFull-Timemid
OtherOperator
0 views0 saves0 applied

Quick Summary

Technical Tools
OtherOperator

We are seeking a skilled and security‑focused Vulnerability Management / Scan Operator to support vulnerability identification, remediation, and security compliance efforts for a complex, mission‑critical federal Identity and Access Management (IAM) program within the U.S. Department of Education’s Federal Student Aid (FSA) office. The ideal candidate brings strong expertise in security scanning, vulnerability assessment, remediation planning, and federal cybersecurity compliance frameworks.

Responsibilities

~1 min read

This position plays a pivotal role in maintaining the security posture and compliance status of FSA's IAM systems. The Vulnerability Management / Scan Operator works closely with security teams, system administrators, and compliance officers to identify security findings, develop remediation strategies, and ensure adherence to federal cybersecurity standards including FISMA, CISA BOD directives, and NIST guidance.

Requirements

~2 min read

•    Conduct and manage regular security vulnerability scans of IAM systems, applications, and databases using industry-standard scanning tools; analyze results and develop remediation plans.
•    Support federal compliance assessments including FISMA, A-123, Binding Operational Directives (BOD), and Safeguards reviews; develop corrective action plans and track remediation efforts.
•    Review and manage Continuous Diagnostics and Monitoring (CDM) scan results; respond to Common Vulnerabilities and Exposures (CVE) data calls within required timeframes.
•    Maintain and update Plans of Action and Milestones (POA&M) in Cyber Security Assessment and Management (CSAM); ensure security findings are accurately tracked from identification through resolution.
•    Monitor and maintain IAM Cybersecurity Framework Risk (CSF) Scorecard rating; notify FSA of any compliance gaps and provide remediation recommendations.
•    Manage IAM security control inheritance statements and ensure Inheritable Controls are properly configured in CSAM for use by other FSA systems.
•    Support Security Event and Incident Management (SEIM) and log management processes; coordinate with FSA Security Operations Centers to ensure proper data collection and real-time monitoring.
•    Verify encryption standards compliance for data-at-rest and data-in-transit, including AES-256, SHA-256, TLS protocols, and FIPS 140 requirements.
•    Track and report on privileged user access, including PIV card issuance, status changes, and security clearance compliance; maintain records of personnel with approved system access.
•    Ensure compliance with federal records management, PII protection, Section 508 accessibility standards, and Technology Business Management (TBM) reporting requirements.

What We Offer

~1 min read

$93K-$128K

The pay range for this job is a general guideline only and not a guarantee of compensation or salary. Additional factors considered in extending an offer include (but are not limited to) job responsibilities, education, certifications, experience, as well as internal equity mapping and alignment with market data, or other applicable laws.


Veterans are encouraged to apply
 
PingWind, Inc. does not discriminate in employment opportunities, terms, and conditions of employment, or practices on the basis of race, age, gender, religious or political beliefs, national origin or heritage, disability, sexual orientation, or any characteristic protected by law.

Location & Eligibility

Where is the job
Worldwide
Fully remote, anywhere in the world
Who can apply
Same as job location

Listing Details

Posted
August 24, 2026
First seen
August 24, 2026
Last seen
August 24, 2026

Posting Health

Days active
0
Repost count
0
Trust Level
76%
Scored at
August 24, 2026

Signal breakdown

freshnesssource trustcontent trustemployer trust
Pingwind

PingWind, Inc. is a Service-Disabled Veteran-Owned Small Business (SDVOSB) specializing in cybersecurity, information technology, and supply chain services for federal government partners. They focus on securing information, modernizing systems, and optimizing performance.

Employees
350
Founded
2012
View company profile
Newsletter

Stay ahead of the market

Get the latest job openings, salary trends, and hiring insights delivered to your inbox every week.

A
B
C
D
Join 12,000+ marketers

No spam. Unsubscribe at any time.

PingwindVulnerability Mgmt / Scan Operator