Cybersecurity Vulnerability Assessment Engineer
Federal Reserve SystemAbout the role
Company
Federal Reserve Bank of RichmondWhen you join the Federal Reserve—the nation's central bank—you’ll play a key role, collaborating with leading tech professionals to strengthen and protect our economic, financial and payments systems. We invest in contemporary and emerging technology each year to support the Federal Reserve and our economy, and we’re building a dynamic and diverse team for our future.Bring your passion and expertise, and we’ll provide the opportunities that will challenge you and propel your growth—along with a wide range of benefits and perks that support your health, wealth, and life. In addition to competitive compensation, we offer a comprehensive benefits package that includes tuition assistance, generous paid time off, top-notch health care benefits, child and family care leave, professional development opportunities, a 401(k) match, pension, and more. All brought together in a flexible work environment where you can truly find balance.
About The Opportunity
Our National IT Office of the Chief Information Security Officer (OCISO) Vulnerability Assessment & Management team has an immediate opening for an intermediate Cybersecurity Vulnerability Assessment Engineer.
As a Vulnerability Assessment Engineer, you will be essential to maintaining the infrastructure associated with the Federal Reserve’s vulnerability assessment and compliance scanning tools. On a day to day basis you will perform health checks, troubleshoot issues, plan and execute software upgrades and maintenance, and help plan and deploy new features and other system enhancements.
What You Will Do:
Monitor for and resolve software problems affecting the vulnerability assessment scanning tool.
Test, debug, install, maintain, and document software enhancements.
Respond to user issues and inquiries, provision user access, and provide user instruction and assistance.
Participate in the design, planning, and implementation of system improvements and configuration changes.
Develop/maintain operational documentation.
Qualifications:
Bachelor's Degree or equivalent experience (Computer Science or Cyber Security Degree preferred).
3+ years of experience administering / maintaining a major vulnerability assessment scanning tool (examples: Tenable/Nessus, Qualys, Rapid7/Nexpose)
Progressive knowledge of information technology and cyber security concepts and principles.
Experience supporting cyber security tools, including vulnerability assessment scanning tools and compliance monitoring and reporting.
Foundational knowledge of cloud technology and system administration in cloud environments. Experience delivering and supporting security tools / services in cloud environments
Experience developing, maintaining, and troubleshooting automation code (examples: YAML, Python, Bash, Ansible)
Experience with administration and support of Operating Systems, including system configuration and hardening; familiarity with security benchmarks and hardening guidelines/procedures
Solid understanding of networking (OSI model, protocols, security controls, devices, tools, common problems)
Discover the Reason Why So Many People Love It Here!
When you join Federal Reserve’s National IT organization, not only will you find a challenging and purposeful career, you’ll also have access to a wide range of benefits and perks that support your health and wealth, including:
Great medical benefits
Pension and 401(k) with employer match
Paid time off
Tuition reimbursement
Employee resource networks
Paid volunteer leave
Flexible work options
Onsite amenities that make working here fun!
Other Requirements and Considerations:
Candidates should review the Bank’s Employee Code of Conduct to ensure compliance with conflict of interest rules and personal investment restrictions. · If you need assistance or an accommodation due to a disability, please notify rich.recruitment@rich.frb.org.
Employees who work at and/or visit another Federal Reserve entity or outside business as part of their job duties are required to comply with any onsite safety and health protocols of those organizations (including, but not limited to, requirements to vaccinate or test, mask, social distance, etc.).
Sponsorship is not available for this role. The selected candidate will be subject to a government security investigation and must meet eligibility requirements for access to classified information. Eligibility for this specific position requires U.S. Citizenship.
Apply for this role
Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.
Apply Now →Generate Application KitFree account required — sign up in 30s