waypointjobs

AV

Senior Cybersecurity Engineer

herndon, VA

Check who can apply and the requirements below before continuing.

About this opportunity

AV lists this Senior Cybersecurity Engineer opportunity in herndon, Virginia. Review the employer’s description below for duties, qualifications and application requirements.

Job description

Job Description

The Cybersecurity Engineer is responsible for supporting the organization's Vulnerability Management and Endpoint Security programs, with a primary focus on the administration, engineering, and optimization of Tanium.

Worker Type

Regular

Summary

The Cybersecurity Engineer is responsible for supporting the organization's Vulnerability Management and Endpoint Security programs, with a primary focus on the administration, engineering, and optimization of Tanium.

This position combines hands‑on security engineering with vulnerability identification, prioritization, remediation, patch management, asset visibility, endpoint compliance, and security automation. The engineer will work closely with Cybersecurity Operations, IT Infrastructure, application owners, and business stakeholders to identify security exposures and drive vulnerabilities through remediation.

The ideal candidate possesses strong technical troubleshooting skills, understands enterprise endpoint environments, and can translate vulnerability and asset data into actionable remediation activities.

Position Responsibilities

Vulnerability Management

Support the enterprise Vulnerability Management program across workstations, servers, cloud workloads, and other supported infrastructure.

Identify, analyze, validate, prioritize, and track vulnerabilities across the enterprise.

Use vulnerability intelligence, asset criticality, exploitability, business impact, and threat intelligence to prioritize remediation activities.

Perform risk‑based vulnerability prioritization rather than relying solely on CVSS scores.

Monitor newly disclosed vulnerabilities, zero‑day threats, CISA Known Exploited Vulnerabilities (KEV), and vendor security advisories.

Coordinate with IT, infrastructure, application, cloud, and system owners to remediate identified vulnerabilities.

Validate remediation and ensure vulnerabilities are successfully closed.

Identify recurring vulnerabilities and systemic remediation issues.

Develop vulnerability dashboards, metrics, KPIs, and executive reporting.

Support vulnerability remediation SLAs and exception/risk‑acceptance processes.

Assist with vulnerability management requirements associated with NIST, CMMC, CIS, and other applicable security frameworks.

Tanium Administration & Engineering

Serve as a technical administrator and subject matter resource for the Tanium platform.

Configure, maintain, troubleshoot, and optimize Tanium modules and services.

Develop and maintain Tanium sensors, questions, packages, actions, computer groups, dashboards, and reporting.

Use Tanium to identify hardware, software, operating systems, configurations, applications, and security posture across enterprise endpoints.

Develop dynamic computer groups to support security operations and targeted remediation.

Monitor Tanium client health, platform coverage, communication status, and endpoint participation.

Identify and remediate unhealthy, missing, stale, or non‑communicating Tanium clients.

Support deployment, upgrade, and maintenance of the Tanium Client.

Troubleshoot Tanium Client, server, module, sensor, package, and action issues.

Maintain Tanium role‑based access controls and administrative permissions.

Assist with platform upgrades, configuration changes, testing, and lifecycle management.

Tanium Comply & Vulnerability Assessment

Administer and optimize Tanium Comply for vulnerability and configuration assessment.

Configure vulnerability assessments and compliance scans across supported endpoint populations.

Analyze vulnerability findings and identify affected systems.

Support configuration assessments against applicable CIS Benchmarks, DISA STIGs, and organizational security standards.

Develop dashboards and reports showing vulnerability exposure and remediation progress.

Correlate Tanium vulnerability information with other vulnerability and security platforms.

Investigate discrepancies between Tanium and other vulnerability scanners or asset‑management systems.

Use Tanium data to validate remediation activities and identify residual exposure.

Patch & Remediation Management

Support enterprise patch and vulnerability remediation activities using Tanium Patch and Deploy or integrated endpoint‑management technologies.

Analyze missing patches and identify endpoints requiring remediation.

Develop and maintain patch deployment groups and maintenance windows.

Coordinate security patching with IT and system owners.

Support emergency remediation activities for critical and actively exploited vulnerabilities.

Test and validate security patches prior to broad deployment when appropriate.

Track patch deployment status, failures, exceptions, and remediation progress.

Troubleshoot failed patch installations and deployment issues.

Support automated remediation of vulnerabilities where technically and operationally appropriate.

Asset Visibility & Endpoint Hygiene

Use Tanium to maintain accurate visibility into enterprise endpoint assets.

Identify unmanaged, unknown, stale, duplicate, or non‑compliant devices.

Assist with reconciliation of Tanium data against CMDB, endpoint management, EDR, vulnerability management, and other asset sources.

Identify systems missing required security agents or controls.

Support security control coverage reporting for EDR, vulnerability scanning, patching, encryption, endpoint management, and other technologies.

Develop queries and dashboards that identify gaps in endpoint security coverage.

Assist with improving overall asset inventory accuracy and endpoint hygiene.

Security Engineering & Automation

Develop scripts and automation to improve vulnerability management and endpoint security processes.

Use PowerShell, Python, APIs, or similar technologies to automate repetitive security tasks.

Integrate Tanium with SIEM/XDR, vulnerability management, ITSM, CMDB, and other enterprise security platforms.

Support automated ticket generation and remediation workflows for vulnerability findings.

Develop queries, dashboards, and reporting that provide actionable security information.

Identify opportunities to reduce manual remediation activities through automation.

Document technical configurations, procedures, standards, and operational processes.

Security Operations Support

Support Cybersecurity Operations during vulnerability‑related incidents and emerging threats.

Rapidly identify systems affected by critical vulnerabilities or compromised software.

Use Tanium to query enterprise endpoints during incident investigations.

Support emergency containment or remediation actions when required.

Work with threat intelligence and SOC teams to determine organizational exposure to emerging threats.

Assist with identifying indicators, vulnerable software, configurations, or endpoint conditions associated with active threats.

Basic Qualifications (Required Skills & Experience)

Bachelor's degree in Cybersecurity, Information Technology, Computer Science, Engineering, or a related field, or equivalent professional experience.

3+ years of cybersecurity, endpoint engineering, vulnerability management, systems administration, or related technical experience.

Hands‑on experience administering or supporting Tanium in an enterprise environment.

Experience with vulnerability management and remediation processes.

Working knowledge of Windows enterprise environments.

Understanding of vulnerability scoring, CVSS, exploitability, and risk‑based vulnerability prioritization.

Experience with enterprise patch‑management processes.

Understanding of endpoint security technologies and architecture.

Strong troubleshooting and root‑cause analysis skills.

Ability to analyze large amounts of endpoint and vulnerability data.

Ability to communicate technical risks and remediation requirements to technical and non‑technical stakeholders.

Strong documentation and organizational skills.

Other Qualifications & Desired Competencies

Experience with several of the following is highly desirable:

Tanium

Microsoft Defender Vulnerability Management

Microsoft Defender for Endpoint

Microsoft Intune

Linux

PowerShell

Python

REST APIs

SQL / data analytics

SIEM/XDR platforms

Experience Supporting Large, Distributed Enterprise Environments Is Preferred.

Experience supporting aerospace, defense, manufacturing, government, or other regulated environments is also desirable.

Compliance Frameworks & Knowledge

CMMC

NIST SP 800-171

NIST Cybersecurity Framework

NIST SP 800-53

CIS Controls

CIS Benchmarks

DISA STIGs

Risk Management Framework (RMF)

Certifications

Tanium Certified Operator

Tanium Certified Administrator

CompTIA Security+

CompTIA CySA+

GIAC certifications

Microsoft security certifications

Other relevant cybersecurity or endpoint‑management certifications

Key Competencies

Tanium Administration

Vulnerability Management

Risk‑Based Vulnerability Prioritization

Patch Management

Endpoint Security

Asset Visibility

Security Configuration Management

Vulnerability Remediation

Security Automation

PowerShell / Scripting

Technical Troubleshooting

Security Metrics & Reporting

Cross‑Functional Collaboration

What Success Looks Like

The successful Cybersecurity Engineer provides the organization with accurate visibility into its endpoint attack surface and drives measurable reduction of vulnerability risk.

This individual does more than identify vulnerabilities. The engineer determines which vulnerabilities matter most, identifies the systems affected, coordinates remediation, validates successful resolution, and uses Tanium and automation to improve the speed and scalability of the vulnerability management lifecycle.

The role serves as a technical bridge between Cybersecurity Operations, Vulnerability Management, Endpoint Engineering, and IT Operations, helping transform vulnerability data into measurable risk reduction.

Physical Demands

Ability to work in an office environment (Constant)

Required to sit and stand for long periods; talk, hear, and use hands and fingers to operate a computer and telephone keyboard (Frequent)

Clearance Level

No Clearance

The Salary Range For This Role Is

$91,000 - $138,750

ITAR Requirement

This position requires access to information that is subject to compliance with the International Traffic Arms Regulations (“ITAR”) and/or the Export Administration Regulations (“EAR”). In order to comply with the requirements of the ITAR and/or the EAR, applicants must qualify as a U.S. person under the ITAR and the EAR, or a person to be approved for an export license by the governing agency whose technology comes under its jurisdiction. Please understand that any job offer that requires approval of an export license will be conditional on AeroVironment’s determination that it will be able to obtain an export license in a time frame consistent with AeroVironment’s business requirements. A “U.S. person” according to the ITAR definition is a U.S. citizen, U.S. lawful permanent resident (green card holder), or protected individual such as a refugee or asylee. See 22 CFR

120.15. Some positions will require current U.S. Citizenship due to contract requirements.

Benefits

AV offers an excellent benefits package including medical, dental vision, 401K with company matching, a 9/80 work schedule and a paid holiday shutdown.

For more information about our company benefit offerings please visit:

We also encourage you to review our company website at to learn more about us.

About AV

AV isn’t for everyone. We hire the curious, the relentless, the mission-obsessed. The best of the best.

We don’t just build defense technology— we redefine what’s possible. As the premier autonomous systems company in the U.S., AV delivers breakthrough capabilities across air, land, sea, space, and cyber. From AI-powered drones and loitering munitions to integrated autonomy and space resilience, our technologies shape the future of warfare and protect those who serve.

If you're ready to build technology that matters—with speed, scale, and purpose—there’s no better place to do it than AV.

We are proud to be an EEO/AA Equal Opportunity Employer, including disability/veterans. AeroVironment, Inc. is an Equal Employment Opportunity (EEO) employer and welcomes all qualified applicants. Qualified applicants will receive fair and impartial consideration without regard to race, sex, color, religion, national origin, age, disability, protected veteran status, genetic data, sexual orientation, gender identity or other legally protected status.

ITAR

U.S. Citizenship is required. Secret or Top Secret clearance, or the ability obtain a clearance is desired.

#J-18808-Ljbffr

Worksite address

herndon, VA, 22070, US

Who can apply

Review the original listing for work authorization, qualifications and employer requirements.

Ready for your next step?Apply on the official website
Apply on WhatJobs ↗

Explore related searches

Current related jobs

UF Health

WhatJobs

Information Technology Specialist

gainesville, FL

Salary not specified

UF Health is seeking an ECMO Specialist to provide expert support to critically ill adult and pediatric patients requiring extracorporeal life su…

Listing review due 2026-10-06View job

Johns Hopkins Applied Physics Laboratory (APL)

WhatJobs

Reverse Engineer and AI Workflow Developer

laurel, MD

See pay details in description

Description Are you passionate about reverse engineering complex software, firmware, and hardware? Do you enjoy developing agentic AI workflo…

Listing review due 2026-10-06View job

Johns Hopkins Applied Physics Laboratory (APL)

WhatJobs

AFSIM Developer

laurel, MD

See pay details in description

Description Are you passionate about building high-fidelity simulations that shape the future of U.S. Space Force capabilities and force design …

Listing review due 2026-10-06View job

Johns Hopkins Applied Physics Laboratory (APL)

WhatJobs

Senior Software Engineer/Architect - TS SCI cleared

laurel, MD

See pay details in description

Description Are you passionate about building solutions for our greatest national security challenges? Are you searching for engaging work wi…

Listing review due 2026-10-06View job

Johns Hopkins Applied Physics Laboratory (APL)

WhatJobs

Senior Software Engineer

laurel, MD

See pay details in description

Description Are you passionate about building solutions for our greatest national security challenges? Are you searching for engaging work wi…

Listing review due 2026-10-06View job

Johns Hopkins Applied Physics Laboratory (APL)

WhatJobs

Senior Embedded Systems Developer

laurel, MD

See pay details in description

Description Do you love working on a motivated team to solve complex problems in innovative ways? Do you enjoy creating embedded prototypes i…

Listing review due 2026-10-06View job