Jobs and Careers
TE

Cyber Defense Incident Responder - SME (EVAP Team Lead)

TekSynap
Washington, United Statesfull_timeVerifiedPosted 29 Jan 2025

About the role

Responsibilities & Qualifications

This role requires a blend of strategic thinking, technical expertise, and effective team management to ensure the organization maintains a robust and proactive approach to vulnerability management in the government customer’s dynamic and fast-paced cybersecurity environment.

 

RESPONSIBILITIES

  • Technical Leadership and Expertise
    • Serve as the primary technical expert for enterprise vulnerability assessment tools and practices, overseeing the architecture, engineering, and operation of the EVAP scanning infrastructure.
    • Support hands-on configuration and optimization of vulnerability scanning solutions to ensure effectiveness and accuracy.
    • Stay current with the latest vulnerability assessment tools, technologies, and threat landscapes to continuously refine scanning methodologies.
  • Operational Oversight
    • Direct day-to-day operations of the EVAP team to ensure efficient and timely execution of vulnerability assessments.
    • Provide hands-on guidance in conducting complex scans, troubleshooting tool issues, and analyzing results.
    • Ensure scanning activities are aligned with organizational needs for maximum coverage and effectiveness.
  • Team Management and Development
    • Support, mentor, and support the team of Security and Vulnerability Assessment SMEs, fostering a collaborative environment and ensuring high performance.
    • Coordinate team tasks and manage workload distribution to optimize productivity and meet project deadlines.
    • Tool and Infrastructure Management
    • Maintain and support the government customer’s enterprise vulnerability scanning tools, ensuring they are up to date and effectively utilized.
    • Support the management and enhancement of the enterprise scanning infrastructure to ensure it is resilient and secure.
  • Comprehensive Vulnerability Assessments
    • Support technical execution of enterprise-wide vulnerability assessments, focusing on identifying and mitigating security risks across the government customer networks, systems, and infrastructure.
    • Conduct in-depth analysis of vulnerabilities to determine potential impacts and recommend remediation steps.
    • Ensure that assessments cover a variety of technologies, including network devices, databases, operating systems, and applications.
  • Collaboration and Cross-Team Coordination
    • Work closely with other government customer cybersecurity teams, such as the Red, Blue, and security operations center (SOC) teams, to share insights and coordinate on remediation efforts.
    • Facilitate the collaboration between the EVAP team and IT system owners and support teams for effective vulnerability mitigation and ensure scan results are appropriately integrated into the GRC tool.
    • Provide technical advice and expertise during incident response efforts, including the government customer’s annual cybersecurity tabletop exercise.
  • Training and Policy Implementation
    • Develop and deliver technical training programs for team members and other approved users on the effective use of vulnerability scanning tools.
    • Create and maintain detailed SOPs for tool usage and ensure compliance with established cybersecurity policies.
  • Reporting and Communication
    • Support the creation of technical reports and presentations that detail vulnerability findings and provide actionable insights
    • Act as a technical liaison to communicate vulnerabilities, risks, and remediation status to the CISO and senior leadership.
  • Continuous Technical Improvement
    • Drive the continuous improvement of the vulnerability management process through the implementation of innovative technical solutions and process enhancements.
    • Lead efforts to address challenges in patching and vulnerability management visibility across the organization.

 

REQUIRED QUALIFICATIONS

  • Active Top Secret Clearance Required
  • Experience: At least 5+ years of experience with at least 2 years in a management capacity or equivalent experience
  • Certifications preferred include:
    • CISSP
    • CISM
    • CISA
    • SANS GIAC certification (e.g., GPEN or GW APT)
    • OSCP
    • CEH

Overview

We are seeking a Cyber Defense Incident Responder-SME (EVAP Team Lead) to join our team supporting a government customer.

TekSynap is a fast-growing high-tech company that understands both the pace of technology today and the need to have a comprehensive well planned information management environment. “Technology moving at the speed of thought” embodies these principles – the n

Apply for this role

Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.

Apply Now →Generate Application Kit

Free account required — sign up in 30s

Company

TekSynap

View company profile →