Job Description
Job Description Everforth ECS is seeking a Top Secret Cleared AI-focused Enterprise Vulnerability Assessment Program with deep experience in vulnerability assessments to support a premier Law Enforcement Agency in Washington, DC. This position is contingent upon additional funding. The team member will perform unbiased comprehensive assessments that produce actionable security recommendations that are tailored to the assessed environment, to include vulnerability assessment and vulnerability management. This role will support advanced vulnerability screening assessments across infrastructure and application-level vulnerabilities while leveraging AI to identify system vulnerabilities. Active Top-Secret clearance required; SCI eligibility preferred. Salary Range: $160,000 - $205,000 Required Skills * Active Top Secret clearance * Ability to conduct Vulnerability Assessments using industry tools - NESSUS, Tenable, etc. Experience with Tenable (Tenable.io or Tenable.sc) in an enterprise environment highly preferred. * Experience in vulnerability management strategies, standards, procedures and technologies across infrastructure and application-level vulnerabilities. * Experience scanning Windows, RHEL and Centos Operating Systems and troubleshooting scans, to include the ability to communicate with customers on a daily basis describing the results of scans. * Experience scanning Virtual environments to include VMware vSphere infrastructures, Network devices, Databases (Oracle, MSSQL, MySql, Postgres), and websites web with tenable.sc * Intermediate to advanced knowledge of the following platforms in an enterprise environment: Windows and RHEL, routing, switching, IDS, IPS, Firewalls. * An understanding of mapping and scanning applications and systems, including port scanning, identifying services and configurations, application flow charting, and session analysis. * Experience leveraging AI enabled tools, assessing or securing AI/ML systems, large language model integrations, or AI-enabled applications. * Ability to communicate highly technical issues clearly to both technical and non-technical stakeholders. * Prompt engineering to optimize AI-driven security tools, and familiarity with prompt injection/jailbreaking defensive mitigation strategies. * U.S. citizenship required due to clearance requirements. AI/ML Security * Model and pipeline assessment for OWASP LLM Top 10 and AI-specific threat models * Defending AI systems: guardrails, content filtering, evaluation harnesses, monitoring * Use of AI for offense: agent-driven recon, code analysis, payload generation, recon at scale * Use of AI for defense: anomaly detection, alert triage, automated enrichment, LLM-assisted hunting AI Engineering & Automation * Building agentic workflows for triage, detection tuning, and report generation * Fine-tuning and evaluation of security-tuned language models Desired Skills * Knowledge of network security architecture concepts including topology, protocols, components, and principles (e.g., application of defense-in-depth) * Knowledge of adversarial machine learning, model security testing, AI governance, or secure AI deployment patterns. * Comprehensive knowledge in one or more of the following areas: information security, network security, Windows security, UNIX/Linux security, and web application security. * Demonstrated success and understanding of accepted frameworks such as, ISO/IEC 27001, COBIT, and NIST, including 800-53 rev 5 and the ATO process * Research new trends, techniques, and packaging of malicious software to stay current and ready to identify and handle zero-day exploits. * Provide technical solutions to a wide range of difficult problems * Ability to manage time with minimal supervision * Excellent communication skills, both written and verbal. * Certifications: * MCSE (Microsoft Certified Solutions Expert), RHCSA (Red Hat Certified System Administrator), AWS CSAA (Certified Solutions Architect - Associate), CCSP (Certified Cloud Security Professional), Microsoft 365 Certified: Enterprise Administrator Expert, GIAC Public Cloud Security (GPCS), GIAC Cloud Penetration Tester (GCPN), GIAC Cloud Security Essentials (GCLD), Certified Information Security Professional (CISSP), ISACA Certified Information Systems Auditor (CISA), SANs GIAC certification ( e.g., GPEN or GW APT), and EC-Council Certified Ethical Hacker (CEH). AI security coursework (e.g., AI security fundamentals, LLM red teaming labs) ECS Federal LLC is an equal opportunity employer and does not discriminate or allow discrimination on the basis any characteristic protected by law. All qualified applicants will receive consideration for employment without regard to disability, status as a protected veteran or any other status protected by applicable federal, state, or local jurisdiction law. is the federal segment of , a $4B global organization with over 10,000 employees. Our nearly 3,500 professionals deliver advanced technology solutions in data and AI, cybersecurity, and enterprise transformation, serving defense, intelligence, and federal civilian agencies. Our work powers mission-critical outcomes, strengthens technology partnerships, and creates meaningful opportunities for our people. We are defined by a commitment to excellence in delivery, a culture of innovation, and an environment where talent can thrive and grow. We value: * Attracting and developing top talent and high-performing teams * Fostering a culture that is engaging, accountable, and mission-driven Meet the challenge. Make a difference with Everforth ECS!