Why This Role Stands Out
Leverage your Tenable expertise in a hybrid role with significant career growth potential, supporting crucial cybersecurity operations within a secure government environment. You'll thrive here if you are a proactive security professional with a DoD clearance seeking to deepen your skills in vulnerability management and compliance. This is an excellent opportunity to contribute to national security and potentially transition to a full-time role.
Quick Overview
Job Description
- ***This position requires an active DoD Clearance (Secret, Top Secret, Top Secret/SCI)**** ***Because an active DoD clearance is required, U.S. Citizenship is required*** Tenable Engineer
Duration: 12-Month Contract
Travel: Up to 25%
Security Clearance: Active Secret Clearance Required
Citizenship Requirement: U.S.
Citizenship Required Important: The customer reserves the right to extend a full-time employment offer after 90 days. Candidates submitted should be open to potential direct hire conversion. Position Overview
We are seeking an experienced Tenable Engineer to support enterprise vulnerability management, compliance assessment, and cybersecurity operations within a secure government environment.
The ideal candidate will possess deep expertise with Tenable Security Center (Tenable.sc) and Nessus, along with a strong understanding of vulnerability management, STIG compliance, and remediation processes across Windows and Linux environments. This position requires a proactive security professional who can collaborate across infrastructure, cloud, engineering, and security teams to identify, validate, prioritize, and remediate vulnerabilities while maintaining compliance with federal cybersecurity requirements.
Key Responsibilities
Tenable Administration & Vulnerability Management • Serve as the subject matter expert (SME) for Tenable.sc (Security Center) and Nessus administration. • Configure and maintain scan policies, scan zones, repositories, credentials, dashboards, schedules, and reporting capabilities. • Develop and optimize vulnerability scanning strategies across enterprise environments. • Manage and tune authenticated and unauthenticated scanning activities to improve coverage and accuracy. • Troubleshoot scanning issues, credential failures, and asset discovery challenges.
Vulnerability Assessment & Compliance • Perform and manage: ○ Credentialed vulnerability scans ○ Discovery scans ○ Port scans ○ Configuration compliance scans ○ STIG compliance assessments • Analyze scan results and provide actionable remediation guidance to stakeholders. • Validate remediation efforts through rescanning and verification activities. • Monitor vulnerability trends and identify high-risk exposures requiring immediate attention.
Security Compliance & Hardening • Apply expertise in: ○ Security Technical Implementation Guides (STIGs) ○ Assured Compliance Assessment Solution (ACAS) ○ Checklist (CKL) management ○ DoD cybersecurity compliance requirements • Assist system owners and administrators with system hardening efforts. • Support audit readiness initiatives and security compliance reporting. • Ensure vulnerability management processes align with organizational and regulatory requirements.
False Positive Analysis & Validation • Conduct detailed analysis of vulnerability findings to identify and validate false positives. • Review scan evidence and system configurations to determine vulnerability applicability. • Document findings and coordinate with remediation teams to ensure accurate risk reporting. • Recommend scan tuning and optimization improvements to reduce recurring false positives.
Cross-Functional Collaboration • Partner with Cloud, Network, Platform, Security, and Engineering teams to drive remediation efforts. • Provide technical guidance on vulnerability mitigation strategies and compensating controls. • Participate in security reviews, risk assessments, and remediation planning sessions. • Communicate technical findings to both technical and non-technical stakeholders. Required Qualifications • Active Secret Security Clearance • U.S.
Citizenship • 5+ years of cybersecurity, vulnerability management, or security engineering experience • 3+ years of hands-on experience administering Tenable.sc and Nessus • Experience conducting credentialed vulnerability assessments in large enterprise environments • Strong knowledge of: ○ Vulnerability management lifecycle ○ ACAS/Tenable findings analysis ○ STIG implementation and compliance validation ○ Risk-based remediation methodologies • Strong Windows Server administration experience • Strong Linux administration experience • Experience managing authenticated scanning credentials and troubleshooting scan failures • Excellent analytical, documentation, and communication skills
Preferred Qualifications • Experience supporting Department of Defense (DoD) or Federal Government environments • Familiarity with RMF, NIST 800-53, and DoD cybersecurity frameworks • Experience with vulnerability remediation tracking and reporting tools • Knowledge of cloud security platforms and hybrid infrastructure environments • Security certifications such as: ○ Security+ ○ CySA+ ○ CASP+ ○ CISSP ○ Tenable Certified Professional (TCP)
Required Technical Skills • Tenable.sc (Security Center) • Nessus • ACAS • STIG Viewer / CKLs • Windows Administration • Linux Administration • Vulnerability Assessment & Management • Compliance Scanning • Security Hardening • False Positive Validation • Risk Analysis & Remediation Ideal Candidate:
The ideal candidate is a highly technical vulnerability management professional with extensive Tenable experience, strong knowledge of DoD compliance requirements, and a proven ability to collaborate across multiple technical teams to improve security posture, reduce risk, and maintain compliance in complex enterprise environments. **Eligibility requirements apply to some benefits and may depend on your job classification and length of employment.
Benefits are subject to change and may be subject to specific elections, plan, or program terms. If eligible, the benefits available for this temporary role may include the following:
Medical, dental & vision
Critical Illness, Accident, and Hospital
401(k) Retirement Plan – Pre-tax and Roth post-tax contributions available
Life Insurance (Voluntary Life & AD&D for the employee and dependents)
Short and long-term disability
Health Spending Account (HSA)
Transportation benefits
Employee Assistance Program
Time Off/Leave (PTO, Vacation or Sick Leave) This job posting will end: 8/14/26
Similar jobs
- DP
Appian Security Business Analyst- Secret Clearance with Security Clearance
Dunhill Professional Search
Arlington, VA🇺🇸$115k - $132k/yrRemote1 week agoOperations & Project Management - SP
Product Security Engineer (Starlink)
SpaceX
Hawthorne, CA🇺🇸$130k - $155k/yrHybrid4 weeks agoTCP/IPC++Go+1Technology - AI
Information Systems Security Officer with Security Clearance
Anduril Industries
Irvine, CA🇺🇸$113k - $149k/yrHybrid6 weeks agoEncryptionSplunkBash+4Technology - AI
Manager, Security Software Engineering with Security Clearance
Anduril Industries
Costa Mesa, CA🇺🇸$191k - $253k/yrHybrid6 weeks agoRustComputer VisionC+++3Technology - CG
Information System Security Officer (ISSO) with Security Clearance
CCS Global Tech
Scott AFB, IL🇺🇸Remote6 weeks agoTechnology - SP
Embedded Security Engineer (Starlink)
SpaceX
Hawthorne, CA🇺🇸$130k - $155k/yrHybrid7 weeks agoTCP/IPC++Go+1Technology