user avatar

Vulnerability Management & Remediation Coordination Lead

Cayuse Technologies

Posted today

Job Requirements

Remote
Clearance Unspecified Polygraph Unspecified
Career Level not specified
$126,880 - $180,000

Job Description

Overview

JOB TITLE:

Vulnerability Management & Remediation Coordination Lead

CAYUSE COMPANY:

Cayuse Civil Services, LLC

DEPT/CONTRACT

TX DIR

LOCATION

Remote

SALARY:

$126,880.00-$180,000

EMPLOYEE TYPE:

Full-Time Salary Exempt

TRAVEL

No

RELOCATION

No

Employment in this role is conditional upon successful execution of the contract by the client.

The Work

The Vulnerability Management & Remediation Coordination Lead will take a lead role in establishing and governing enterprise risk management processes to ensure a robust security posture across the organization. This position is accountable for developing structured workflows, engaging stakeholders, supporting risk onboarding, and delivering audit-ready documentation, with an emphasis on sustainability and staff knowledge transfer.

This position aligns with Cayuse's core values of Innovation, Excellence, Collaboration, Adaptability, and Integrity by fostering technical solutions that meet customer needs, promoting teamwork, and prioritizing quality in deliverables.

Responsibilities

  • Vulnerability Inventory and Baseline Establishment
    • Review the Agency's existing vulnerability data, including vulnerabilities identified through scanning, assessments, or other security tools.
    • Establish and maintain a consolidated vulnerability baseline.
    • Develop and document a remediation timeline for all identified vulnerabilities, reflecting current risk posture and aging.
  • Risk Classification and Prioritization
    • Ensure that vulnerabilities are categorized and prioritized based on risk, severity, exploitability, and potential impact to Agency operations.
    • Align vulnerability classification and prioritization to applicable NIST guidance.
    • Validate that remediation timeframes align with Agency established expectations for different vulnerability risk levels.
  • Remediation Coordination and Communication
    • Coordinate remediation activities with system, server, and application owners.
    • Communicate clear remediation expectations, risk context, and required timelines to responsible parties.
    • Track remediation progress and identify blockers, dependencies, or delays impacting closure.
    • Escalate overdue, high risk, or critical vulnerabilities to appropriate Agency governance or oversight bodies, in accordance with Agency processes.
  • Tracking, Metrics, and Reporting
    • Maintain ongoing tracking of vulnerability remediation status.
    • Produce periodic status reports summarizing.
  • Validation and Closure
    • Validate remediation actions through available evidence, including vulnerability scan results or other supporting artifacts.
    • Confirm closure of vulnerabilities in tracking systems once remediation is completed and validated.
    • Ensure vulnerabilities that cannot be remediated within required timeframes are formally documented and supported by approved risk acceptance or exception documentation, in accordance with Agency policy.
  • Program Improvement Support
    • Identify process gaps, systemic issues, or control weaknesses affecting vulnerability remediation effectiveness.
    • Provide recommendations for improving vulnerability remediation processes and accountability, aligned with NIST standards and Agency governance requirements.
  • Other duties as assigned.


Qualifications

Here's What You Need

The qualifications and skills listed below are intended to provide a general overview of the requirements for this position. However, due to the anticipated nature of the contract and the absence of a finalized task order from the client, this list should not be considered all-encompassing. Additional qualifications, certifications, skills, or experience specific to the client's requirements may be identified and requested upon award of the task order. Candidates should demonstrate flexibility and a willingness to adapt to evolving responsibilities as outlined by the client.
  • 8 years of experience in Vulnerability Inventory and Baseline Establishment
  • 8 years of experience Risk Classification and Prioritization
  • 8 years of experience in tracking vulnerability remediation
  • 8 years of experience in producing status reports
  • 8 years of experience in validating remediation actions through available evidence, including vulnerability scan results
  • Must be able to pass a background check. May require additional background checks as required by projects and/or clients at any time during employment.


Minimum Skills:
  • Exceptional interpersonal skills with the ability to communicate in a clear, professional, and articulate manner.
  • Exceptional verbal and written communication skills.
  • Excellent organizational, analytical, and problem-solving skills with high-level attention to detail.
  • Proven ability to multitask and prioritize in a fast past environment with changing priorities; adaptable to change and a quick learner.
  • Must be self-motivated and able to work well independently as well as on a multi-functional team.
  • Ability to handle sensitive and confidential information appropriately
  • Proficient in MS Office, Word, Outlook, PowerPoint, and Excel.
  • Ability to build trust and maintain relationships across technical and business teams.


Our Commitment to you / overview of benefits
  • Medical, Dental and Vision Insurance; Wellness Program
  • Flexible Spending Accounts (Healthcare, Dependent Care, Commuter)
  • Short-Term and Long-Term Disability options
  • Basic Life and AD&D Insurance (Company Provided)
  • Voluntary Life and AD&D options
  • 401(k) Retirement Savings Plan with matching after one year
  • Paid Time Off


Reports to: Program Manager

Working Conditions
  • Professional remote office environment.
  • Normal business hours of Monday through Friday from 8:00 AM through 5:00 PM
  • Must be physically and mentally able to perform duties extended periods of time.
  • Ability to use a computer and other office productivity tools with sufficient speed to meet the demands of this position.
  • Must be able to establish a productive and professional workspace.
  • Must be able to sit for long periods of time looking at computer screen.
  • May be asked to work a flexible schedule which may include holidays.
  • May be asked to travel for business or professional development purposes.
  • May be asked to work hours outside of normal business hours.


Other Duties: Please note this job description is not designed to cover or contain a comprehensive list of activities, duties or responsibilities that are required of the employee for this job. Duties, responsibilities, and activities may change at any time with or without notice.

Cayuse is an Equal Opportunity Employer. All employment decisions are based on merit, qualifications, skills, and abilities. All qualified applicants will receive consideration for employment in accordance with any applicable federal, state, or local law.

Pay Range

USD $126,880.00 - USD $180,000.00 /Yr.
group id: 10323520
Find Cayuse Technologies on Social Media
Network Employers
user avatar
About Us
Cayuse Holdings through its subsidiaries employs over 600 amazing people who are based all around the United States, with a few locations overseas. Cayuse is owned by the Umatilla Indian Reservation – with a US-based delivery center in Pendleton Oregon. Founded initially in 2006, through a joint venture with Accenture, this company has significantly expanded its operations and contracts to include delivery in many locations beyond Oregon. Our company vision is to Grow the Company and Grow the People, enabling career development, economic growth and development for both our company and that of our tribal owners. We provide competitive benefits, including remote work for many of our positions, and excellent wellness and 401K matching programs.

Cayuse Technologies Jobs


Job Category
IT - Security
Clearance Level
Unspecified