ECS

SOC-Vulnerability Management AESS Technician - Journeyman

ECS$75K — $95K *
Information Technology
Less than 5 years of experience
Job Overview by Ladders

Qualifications

  • U.S. Citizenship is required
  • Secret Security Clearance eligible
  • Basic proficiency in DCWF Work Role 541-Vulnerability Assessment Analyst required
  • Must possess ONE OR MORE certifications such as CEH
  • 3+ years of cybersecurity experience
  • Experience with endpoint security scanning and compliance validation in enterprise settings
  • Proven ability to document technical findings and maintain tracking records

Responsibilities

  • Execute endpoint security scanning and compliance validation using AESS tools
  • Verify endpoint coverage and ensure scan configurations are accurate
  • Analyze scan results to identify vulnerabilities and compliance gaps
  • Document technical findings with evidence for vulnerability tracking
  • Coordinate remediation actions with system owners and cybersecurity teams
  • Perform follow-up validation to confirm corrective actions effectiveness
  • Support reporting activities aligned with STIGs, IAVMs, and RMF requirements
  • Contribute to vulnerability management deliverables for 24x7 cybersecurity operations

Benefits

  • Opportunities for professional development and continued learning
  • Support for a critical mission aiding in national defense
  • Work within a structured, high-stakes cybersecurity environment
  • Potential involvement in wide-reaching cybersecurity operations covering 54 states and territories
  • Access to cutting-edge cybersecurity tools and methodologies
Full Job Description
Position Summary

ECS is seeking a SOC-Vulnerability Management AESS Technician - Journeyman to support the Army National Guard (ARNG) Enterprise Network Operations and Cybersecurity Support (ENOCS) program. In this role, you will support Task 3 - Cybersecurity Operations Support by executing endpoint security scanning and compliance validation activities using AESS tools across supported enterprise environments. You will verify endpoint coverage, validate scan configurations and data accuracy, analyze findings to identify vulnerabilities and compliance gaps, document technical results with supporting evidence, and coordinate remediation with system owners, endpoint administrators, and broader cybersecurity operations personnel supporting ARNG Defensive Cyberspace Operations - Internal Defensive Measures (DCO-IDM).

Please Note: This position is contingent upon contract award.

This position directly supports the ARNG mission to defend classified and unclassified network environments serving more than 120,000 users and approximately 141,000 endpoints across roughly 2,800 sites in 54 states and territories. The role contributes to continuous monitoring, vulnerability management, and compliance activities that help sustain Title 10 and Title 32 missions, mobilization readiness, domestic emergency response, and SIPRNet and NIPRNet operations across the DoDIN-Army-NG area of responsibility. Working within the ENOCS cyber ecosystem, this technician helps maintain accurate risk visibility and supports reporting aligned with STIGs, IAVMs, RMF requirements, eMASS updates, and ARNG continuous monitoring objectives while coordinating with the SOC and external mission partners such as NETCOM Global Cyber Center and DISA DCDC.

Responsibilities

  • Execute endpoint security scanning and compliance validation activities using AESS tools across ARNG enterprise environments.
  • Verify endpoint coverage and confirm scan configurations and collected data are accurate, complete, and suitable for vulnerability analysis and reporting.
  • Analyze scan results to identify vulnerabilities, misconfigurations, and compliance gaps affecting supported classified and unclassified network environments.
  • Document technical findings with supporting evidence and maintain accurate records for vulnerability tracking, remediation status, and continuous monitoring activities.
  • Coordinate remediation actions with system owners, endpoint administrators, and cybersecurity operations personnel to address identified weaknesses and restore compliant configurations.
  • Perform follow-up validation to confirm corrective actions were implemented effectively and that residual risk is accurately reflected in tracking systems and POA&Ms.
  • Support reporting activities aligned with STIGs, IAVMs, RMF requirements, and ARNG continuous monitoring objectives across the DoDIN-Army-NG area of responsibility.
  • Contribute to Task 3 vulnerability management deliverables that support 24x7x365 cybersecurity operations defending approximately 141,000 endpoints across 54 states and territories.
  • Coordinate vulnerability management findings and status with the broader SOC and cybersecurity operations structure operating in coordination with NETCOM Global Cyber Center and DISA DCDC.


Required Qualifications

U.S. Citizenship is required

Security Clearance: Secret Eligible

Required Certifications: DCWF Work Role 541-Vulnerability Assessment Analyst - Basic proficiency; must hold ONE OR MORE of the following: CEH

Experience: 3+ years of experience in cybersecurity
  • Experience executing endpoint security scanning and compliance validation activities in enterprise environments.
  • Experience analyzing vulnerability findings to identify misconfigurations, compliance gaps, and remediation priorities.
  • Experience documenting technical results with supporting evidence and maintaining vulnerability tracking records and POA&Ms.
  • Experience supporting activities aligned to STIGs, IAVMs, RMF requirements, and DoD or ARNG continuous monitoring objectives.
  • Experience coordinating corrective actions with system owners, endpoint administrators, and cybersecurity operations teams.
  • Ability to validate scan coverage, review scan configuration integrity, and confirm remediation effectiveness through follow-up assessment.

About ECS

ECS is a leading provider of digital solutions and services to the federal government. The company was founded in 2001 by Roy Kapani and has since grown to become a trusted partner to a wide range of government agencies. ECS offers a broad range of services, including cloud computing, cybersecurity, and artificial intelligence. The company has been recognized for its innovative solutions and has won numerous awards, including the AWS Public Sector Partner of the Year award.
Learn more about ECS
Size
2,000 employees
Industry

Similar Jobs

More Jobs at ECS

More Information Technology Jobs

Find similar SOC-Vulnerability Management AESS Technician - Journeyman jobs: