Guidehouse · 1 day ago
Cybersecurity Security Operations Consultant
Guidehouse is a consulting firm specializing in cybersecurity and risk management, and they are seeking a Cybersecurity Security Operations Consultant. The role involves leading vulnerability management, ensuring compliance with federal cybersecurity mandates, and collaborating with various teams to validate remediation actions.
AdviceConsultingManagement Consulting
Responsibilities
Lead vulnerability management and secure configuration operations, ensuring alignment with federal cybersecurity mandates
Manage, monitor, and report vulnerabilities across NIH/HHS systems using tools such as Tenable.sc / Tenable.io and coordinate timely remediation activities
Develop vulnerability prioritization models based on risk, exposure, and asset criticality
Develop secure configuration baselines and monitoring processes based on CIS Benchmarks
Ensure compliance with patching timelines and federal vulnerability directives
Collaborate with infrastructure, application, and security teams to validate remediation actions
Support preparation of reports for leadership and federal oversight bodies
Develop KPI metrics for vulnerability and compliance gap closure rates, asset risk scoring, and compliance tracking
Qualification
Required
Must be able to OBTAIN and MAINTAIN a Federal or DoD 'PUBLIC TRUST'; candidates must obtain approved adjudication of their PUBLIC TRUST prior to onboarding with Guidehouse
Minimum of THREE (3) years of cybersecurity or IT risk management experience, candidates with experience focused on vulnerability management and/or secure configuration are preferred
Tools: Hands-on experience with Tenable (Nessus, Tenable.sc, or Tenable.io)
Knowledge: Deep understanding of CIS Benchmarks, NIST SP 800-53, and FISMA requirements
Soft Skills: Strong communication and analytical thinking; ability to manage multiple concurrent priorities and deadlines
Preferred
Candidates with an ACTIVE PUBLIC TRUST or SUITABILITY and maintain an active HHS/NIH clearance are preferred
Active CompTIA Security+ CE preferred. Other certifications (CISSP, CEH, or cloud-related) are a plus
Minimum of THREE (3) years of cybersecurity or IT risk management experience, candidates with experience focused on vulnerability management and/or secure configuration are preferred
Experience developing automated data pipelines or integrating Tenable APIs into Power BI dashboards
Familiarity with ServiceNow Vulnerability Response or Splunk Security Essentials
Knowledge of MITRE ATT&CK framework and vulnerability prioritization methodologies (e.g., EPSS, CVSS v3)
Prior experience within a federal or HHS environment
Benefits
Medical, Rx, Dental & Vision Insurance
Personal and Family Sick Time & Company Paid Holidays
Position may be eligible for a discretionary variable incentive bonus
Parental Leave and Adoption Assistance
401(k) Retirement Plan
Basic Life & Supplemental Life
Health Savings Account, Dental/Vision & Dependent Care Flexible Spending Accounts
Short-Term & Long-Term Disability
Student Loan PayDown
Tuition Reimbursement, Personal Development & Learning Opportunities
Skills Development & Certifications
Employee Referral Program
Corporate Sponsored Events & Community Outreach
Emergency Back-Up Childcare Program
Mobility Stipend
Company
Guidehouse
Guidehouse offers consulting services for public and commercial markets with expertise in management, technology, and risk consulting.
Funding
Current Stage
Late StageTotal Funding
$0.75MKey Investors
Mission Daybreak
2023-11-06Acquired
2023-02-16Grant· $0.75M
Recent News
Washington Technology
2025-11-20
Washington Technology
2025-11-19
Company data provided by crunchbase