Cybersecurity SME - KEV/BOD Analysis; Pen-Test Governance
About QBE, LLC
QBE, LLC is a small business dedicated to delivering innovative technology, cybersecurity, and mission-support solutions to federal government customers. Our experienced professionals work closely with our customers to solve complex challenges, protect critical information, and support essential government missions.
At QBE, we turn the possible into the proven.
Overview
QBE, LLC is seeking a Cybersecurity SME - KEV/BOD Analysis; Pen-Test Governance to provide expert vulnerability risk analysis, federal directive support, and penetration-testing governance for NIH/OD-OIT.
This position is primarily remote but will require some TDY.
Responsibilities
• Analyze Known Exploited Vulnerabilities and applicable federal cybersecurity directives.
• Determine organizational impact and support prioritization of required remediation activities.
• Track compliance with vulnerability-related directives and remediation deadlines.
• Provide expert risk analysis for critical and actively exploited vulnerabilities.
• Develop reports, dashboards, and executive briefings on KEV and directive compliance.
• Establish governance processes for penetration testing activities.
• Review penetration-test scope, rules of engagement, methods, and deliverables.
• Track penetration-test findings through remediation and closure.
• Evaluate risk exceptions and compensating controls.
• Advise leadership on vulnerability risk and remediation priorities.
#qf
#qg