Hiring.Camp

Cybersecurity SME - KEV/BOD Analysis; Pen-Test Governance

Qbe Llc

·

Today

Salary
$115k – $130k
Location
Haymarket, VA
Workplace
Remote, Hybrid
Department
IT
Experience
10+ years
Education
Associate
Source
Paylocity

Description

Description

About QBE, LLC

QBE, LLC is a small business dedicated to delivering innovative technology, cybersecurity, and mission-support solutions to federal government customers. Our experienced professionals work closely with our customers to solve complex challenges, protect critical information, and support essential government missions.

At QBE, we turn the possible into the proven.


Overview

QBE, LLC is seeking a Cybersecurity SME - KEV/BOD Analysis; Pen-Test Governance to provide expert vulnerability risk analysis, federal directive support, and penetration-testing governance for NIH/OD-OIT.


This position is primarily remote but will require some TDY.


Responsibilities

• Analyze Known Exploited Vulnerabilities and applicable federal cybersecurity directives.

• Determine organizational impact and support prioritization of required remediation activities.

• Track compliance with vulnerability-related directives and remediation deadlines.

• Provide expert risk analysis for critical and actively exploited vulnerabilities.

• Develop reports, dashboards, and executive briefings on KEV and directive compliance.

• Establish governance processes for penetration testing activities.

• Review penetration-test scope, rules of engagement, methods, and deliverables.

• Track penetration-test findings through remediation and closure.

• Evaluate risk exceptions and compensating controls.

• Advise leadership on vulnerability risk and remediation priorities.

#qf

#qg


Requirements

Minimum Qualifications

• Associate degree in cybersecurity, information technology, computer science, information systems, business, communications, or a related field, or an additional two or more years of relevant experience in place of the degree requirement.

• At least 10 years of relevant experience aligned to the responsibilities of this position.

• Expert knowledge of vulnerability risk management and remediation processes.

• Experience analyzing high-impact vulnerabilities and federal cybersecurity directives.

• Experience overseeing or governing penetration-testing activities.

• Strong risk-analysis and executive communication skills.

• CompTIA Security+ certification.

• Certified in Risk and Information Systems Control (CRISC) certification.

• Ability to obtain and maintain the required federal background investigation, Public Trust determination, or security clearance associated with the position.


Preferred Qualifications

• Federal vulnerability management experience.

• Familiarity with CISA Known Exploited Vulnerabilities and Binding Operational Directives.

• Experience coordinating enterprise penetration testing.


Physical Requirements

• Ability to remain in a stationary position for extended periods while working at a computer.

• Ability to communicate effectively through virtual and in-person meetings.

• Ability to perform duties in an office, remote, or hybrid environment based on program requirements.

• Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions of the position.


Equal Opportunity Employer

QBE, LLC is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to any characteristic protected by applicable federal, state, or local law.


The projected compensation range for this position is $115,000.00 - $130,000.00.  There are differentiating factors that can impact a final salary/hourly rate, including, but not limited to, Contract Wage Determination, relevant work experience, skills and competencies that align to the specified role, geographic location (for remote opportunities), education and certifications as well as Federal Government Contract Labor categories. In addition, QBE invests in its employees beyond just compensation. QBE's benefits offerings include, dependent upon position, Health Insurance, Life Insurance, Paid Time Off, Holiday Pay, short-term and long-term Disability, Retirement and Savings, Learning and Development opportunities, wellness programs as well as other optional benefit elections.


Skills

CybersecurityPenetration TestingRisk ManagementComplianceCompTIA

Similar Jobs

30

Cybersecurity SME

Zantech · Crystal City, VA, US · Remote

2 weeks ago

Cybersecurity SME

Diaconia · Wright Patterson AFB, OH

2 weeks ago

Cybersecurity SME

KBR Careers · USA, Vienna, 2650 Park Tower Drive, Suite 600, Virginia, United States of America · Onsite

1 month ago

Cybersecurity SME

VivSoft Technologies · Springfield, VA · Remote, Hybrid

2 months ago

Cybersecurity SME

Choice Consulting Associates · Herndon, VA

1+ year ago

Senior Cybersecurity SME/Security Control Assessor

Qinetiqus · Chantilly, VA, US

2 weeks ago

Cybersecurity SME / ISSO- Federal Health

rockITdata · Arlington, VA

1 month ago

Nuclear Cybersecurity SME

"K2 Group, Inc." · Arlington, VA

3 months ago

Private Equity and Venture Capital Cybersecurity SME - Senior Manager

Cfgi · United States · Hybrid

3 months ago

Private Equity and Venture Capital Cybersecurity SME - Manager

Cfgi · United States · Hybrid

3 months ago

HSBCJP00056855 (Cybersecurity) SME – Core Enterprise Platform Infrastructure [2FTE]

Antal | Rekrutacje

5 months ago

Cybersecurity Analyst SME

Gdit · USA HI Camp HM Smith - HQ USPACOM J395 (HIC024), United States of America

1 month ago

Cybersecurity Analyst SME

GDIT · USA HI Camp HM Smith - HQ USPACOM J395 (HIC024), United States of America

1 month ago

SITEC - Cybersecurity Analyst (SME) - Fort Bragg, NC

Peraton · Fort Bragg, NC, US · onsite

2 months ago

HSBCJP00056938 (Cybersecurity) Principal SME Web Application Security Protection

Antal | Rekrutacje

5 months ago

HSBCJP00056763 (Cybersecurity) Senior SME DLP Proofpoint Analyst

Antal | Rekrutacje

6 months ago

Cybersecurity- CTI SME (Cyber Threat Intelligence)

Professional Kyndryl · KIN51561 Uttar Pradesh (KIN51561) Regus Max Towers, India

7 months ago

Sr. Cybersecurity OT SME

Amyx · Washington, DC, US · Remote

1+ year ago

Cybersecurity Systems Engineer, SME

USfalcon · Omaha, NE

6 months ago

Cybersecurity Compliance Specialist - SME

Teksynap · Reston, VA, US

1+ year ago

Cybersecurity Operations Engineer (Endpoint SME)

Ensigninfosecurity · Client's Site, Singapore

Today

Cybersecurity Engineer, Data & AI SME

Gsknch · Poznan Business Garden, Poland

1 week ago

Senior Cybersecurity Subject Matter Expert (SME) w/PM Experience

TekSynap · San Antonio, TX, US

2 weeks ago

Cybersecurity Assessment and Authorization SME (DAAS API GW)

Horizonindustrieslimited · Remote · Remote

1 month ago

Cybersecurity Engineer / Cybersecurity Subject Matter Expert (SME) – Army Tactical System

Caci · 0AJ FORT BELVOIR VA, United States of America · Onsite

1 month ago

Senior Cybersecurity Engineer (ACAS/Trellix SME)

"ZTI Solutions, LLC" · Fort Meade, Maryland, US · Remote, Hybrid, Onsite

2 months ago

Senior Cybersecurity Technical Subject Matter Expert (SME)

Geeks & Nerds · Huntsville, Alabama

2 weeks ago

Senior Cybersecurity Engineer / Subject Matter Expert (SME)

ShorePoint · Albuquerque, New Mexico

2 weeks ago

Senior Cybersecurity Data Engineer - AI/ML SME

Workday · USA.VA.Reston, United States of America

2 months ago

Cybersecurity Operations Technical Lead (SOC Engineer/SME)

Koniag Government Services · Washington, DC, USA

1 month ago