Vulnerability Management Analyst US Federal

Workday

Not Interested
Bookmark
Report This Job

profile Job Location:

McLean, MD - USA

profile Monthly Salary: Not Disclosed
Posted on: 14 hours ago
Vacancies: 1 Vacancy

Job Summary

Your work days are brighter here.

Were obsessed with making hard work pay off for our people our customers and the world around us. As a Fortune 500 company and a leading AI platform for managing people money and agents were shaping the future of work so teams can reach their potential and focus on what matters most. The minute you join youll feel it. Not just in the products we build but in how we show up for each other. Our culture is rooted in integrity empathy and shared enthusiasm. Were in this together tackling big challenges with bold ideas and genuine care. We look for curious minds and courageous collaborators who bring sun-drenched optimism and drive. Whether youre building smarter solutions supporting customers or creating a space where everyone belongs youll do meaningful work with Workmates whove got your return well give you the trust to take risks the tools to grow the skills to develop and the support of a company invested in you for the long haul. So if you want to inspire a brighter work day for everyone including yourself youve found a match in Workday and we hope to be a match for you too.

About the Team

Workday has launched Workday Government a new wholly owned subsidiary dedicated to serving the U.S. Government to address its specific needs and accelerate modernization efforts. The Governance Risk and Compliance (GRC) team works on compliance with US Government security frameworks including FedRAMP IL-4 CMMC and others for our civilian and defense customers.

About the Role

This role will support one or more direct or indirect contracts with the U.S. Federal Government which due to federal government security requirements mandates that all Workday personnel working on the contracts be United States citizens (naturalized or native).

The GRC team is seeking a Vulnerability Management Analyst who will work with system owners and engineering teams to remediate issues. The role requires strong organization and interpersonal skills and the technical ability to understand interpret and prioritize findings from commercial scan tools. The role also requires contributing to the Planning of Actions and Milestones (POAMs) and communicating status to the leadership team.


Responsibilities:

  • Analyze and organize scan results and prioritize vulnerabilities for remediation based on risk requirements.
  • Establish strong relationships with engineering teams to track and report status and remediation timelines.
  • Contribute to the Planning of Actions and Milestones (POAMs).
  • Support Continuous Monitoring (ConMon) and participate in audit activities related to vulnerability management.
  • Report status to leadership teams.

About You

Required Qualifications:

  • Outstanding communication and organization skills.
  • Self-driven motivated professional with experience working with multiple stakeholders.
  • Strong ability to understand and interpret results from commercial scanning tools and provide related guidance for remediation.
  • Strong ability to manage complex datasets in spreadsheets.
  • Previous experience in managing POAMs for FedRAMP authorized environments.
  • Working knowledge of security standards like FedRAMP DoD IL-4/5 NIST 800-171 NIST 800-53 and the Risk Management Framework (RMF).
  • Experience in cloud computing preferably with a major hyperscaler like AWS Google etc.
  • Proficiency in using tools like Jira for managing tickets and tasks.


Preferred Qualifications:

  • Relevant industry certifications (e.g. Security CEH CISSP).
  • Previous experience as an assessor Information Systems Security Engineer (ISSE) with a 3PAO or Cloud Services Provider (CSP).
  • Previous experience with US Federal Government defense or civilian agencies.
  • Ability to write simple scripts (e.g. Python) to improve productivity.


Workday Pay Transparency Statement

The annualized base salary ranges for the primary location and any additional locations are listed below. Workday pay ranges vary based on work location. As a part of the total compensation package this role may be eligible for the Workday Bonus Plan or a role-specific commission/bonus as well as annual refresh stock grants. Recruiters can share more detail during the hiring process. Each candidates compensation offer will be based on multiple factors including but not limited to geography experience skills job duties and business need among other things. For more information regarding Workdays comprehensive benefits please click here.

Primary Location: (Tysons Corner)


Primary Location Base Pay Range: $111600 USD - $167500 USD


Additional US Location(s) Base Pay Range: $101000 USD - $179400 USD



Our Approach to Flexible Work

With Flex Work were combining the best of both worlds: in-person time and remote. Our approach enables our teams to deepen connections maintain a strong community and do their best work. We know that flexibility can take shape in many ways so rather than a number of required days in-office each week we simply spend at least half (50%) of our time each quarter in the office or in the field with our customers prospects and partners (depending on role). This means youll have the freedom to create a flexible schedule that caters to your business team and personal needs while being intentional to make the most of time spent together. Those in our remote home office roles also have the opportunity to come together in our offices for important moments that matter.

Pursuant to applicable Fair Chance law Workday will consider for employment qualified applicants with arrest and conviction records.

Workday is an Equal Opportunity Employer including individuals with disabilities and protected veterans.

Are you being referred to one of our roles If so ask your connection at Workday about our Employee Referral process!

At Workday we value our candidates privacy and data security. Workday will never ask candidates to apply to jobs through websites that are not Workday Careers.

Please be aware of sites that may ask for you to input your data in connection with a job posting that appears to be from Workday but is not.

In addition Workday will never ask candidates to pay a recruiting fee or pay for consulting or coaching services in order to apply for a job at Workday.


Required Experience:

IC

Your work days are brighter here.Were obsessed with making hard work pay off for our people our customers and the world around us. As a Fortune 500 company and a leading AI platform for managing people money and agents were shaping the future of work so teams can reach their potential and focus on w...
View more view more

Key Skills

  • Active Directory
  • Customer Service
  • End user
  • Access Points
  • Deskside Support
  • Windows
  • SCCM
  • Troubleshoot
  • User Accounts
  • Desktop
  • PC
  • Backup
  • Setup
  • hardware
  • Technical Support

About Company

Company Logo

Seamlessly manage your people, money, and agents on an open, unified platform with AI at the core. It’s a new work day.

View Profile View Profile