Skip to content
mimi

Cybersecurity Consultant

Guidehouse

Bethesda · On-site Full-time $85k – $141k/yr Today

About the role

What You Will Do:

  • Lead vulnerability management efforts across a portfolio of client applications, including analyzing findings, identifying affected versions, providing remediation guidance, assigning issues to teams, and tracking vulnerabilities through closure.
  • Build and maintain strong working relationships with business, engineering, and security teams to validate fixes, resolve blockers, and support timely remediation.
  • Support POA&M activities, patching timelines, remediation deadlines, and related federal cybersecurity and compliance requirements.
  • Develop and maintain automated vulnerability reports, dashboards, KPIs, and metrics to track remediation progress, compliance gaps, and asset risk.
  • Prepare reports and briefings for leadership and federal oversight stakeholders.
  • Monitor suspicious activity and security alerts in Splunk and coordinate follow-up actions with relevant teams.
  • Support secure development efforts through security documentation, secure coding guidance, annual training support, and evaluation of security tools and processes.
  • Provide cyber subject matter expertise during information security audits and assessments.

What You Will Need:

  • Must be able to OBTAIN and MAINTAIN a Federal or DoD "PUBLIC TRUST"; candidates must obtain approved adjudication of their PUBLIC TRUST prior to onboarding with Guidehouse. Candidates with an ACTIVE PUBLIC TRUST or SUITABILITY and maintain an active HHS/NIH clearance are preferred.
  • Minimum of THREE (3) years of cybersecurity or IT risk management experience, candidates with experience focused on vulnerability management and/or secure configuration are preferred.
  • Minimum of a Bachelors Degree is required.
  • Tools: Hands-on experience with Invicti, Splunk, and Atlassiantools (Jira & Confluence)
  • Knowledge: Deep understanding of NIST SP 800-53, FISMA requirements, and OWASP Top 10.
  • Certifications: Active CompTIA Security+ CE preferred; CISSP, CEH, or cloud-related certifications are a plus.
  • Soft Skills:Strong communication and analytical thinking; ability to manage multiple concurrent priorities and deadlines.

What Would Be Nice To Have:

  • Experience developing automated data pipelines or integrating APIs into Power BI dashboards.
  • Knowledge of MITRE ATT&CK framework and vulnerability prioritization methodologies (e.g., EPSS, CVSS v3).
  • Prior experience supporting a federal agency or working in a Public Health environment.

The annual salary range for this position is $85,000.00-$141,000.00. Compensation decisions depend on a wide range of factors, including but not limited to skill sets, experience and training, security clearances, licensure and certifications, and other business and organizational needs.

What We Offer:

Guidehouse offers a comprehensive, total rewards package that includes competitive compensation and a flexible benefits package that reflects our commitment to creating a diverse and supportive workplace.

Benefits include:

  • Medical, Rx, Dental & Vision Insurance
  • Personal and Family Sick Time & Company Paid Holidays
  • Position may be eligible for a discretionary variable incentive bonus
  • Parental Leave and Adoption Assistance
  • 401(k) Retirement Plan
  • Basic Life & Supplemental Life
  • Health Savings Account, Dental/Vision & Dependent Care Flexible Spending Accounts
  • Short-Term & Long-Term Disability
  • Student Loan PayDown
  • Tuition Reimbursement, Personal Development & Learning Opportunities
  • Skills Development & Certifications
  • Employee Referral Program
  • Corporate Sponsored Events & Community Outreach
  • Emergency Back-Up Childcare Program
  • Mobility Stipend

Skills

AtlassianCISSPCompTIA Security+CVSSDockerEPSSFISMAInvictiJiraMITRE ATT&CKNIST SP 800-53OWASP Top 10Power BISplunkVulnerability Management

Don't send a generic resume

Paste this job description into Mimi and get a resume tailored to exactly what the hiring team is looking for.

Get started free