Demo

Qualys System Administrator

First Soft Solutions LLC
Rockville, MD Full Time
POSTED ON 4/14/2026
AVAILABLE BEFORE 10/5/2026
In person interview is must.

Our Client seeks to enhance its enterprise vulnerability and configuration assessment capabilities by procuring the services of a qualified Vulnerability Engineer with demonstrated experience in the administration and operational use of the QualysGuard platform. This role is critical to supporting the County’s ongoing threat and vulnerability management program and will play a key role in reducing the organization's risk exposure.

The Qualys System Administrator is responsible for the administration, configuration, and operational management of the Qualys Cloud Platform to support the organization’s enterprise vulnerability management, compliance, and risk management programs. This role partners closely with Information Security, GRC, Infrastructure, and Application teams to ensure accurate asset discovery, vulnerability identification, risk prioritization, and remediation tracking in alignment with County policies.

Scope Of Work

  • Qualys Platform Administration
  • Administer and maintain the Qualys Cloud Platform, including (as applicable):
    • Vulnerability Management (VMDR)
    • Asset Inventory / Global AssetView
  • Configure and manage scanners (internal, passive, and cloud-based).
  • Maintain asset tagging strategies aligned with environments (Prod/Non-Prod), system owners, data classifications, and compliance scopes.
  • Manage user roles, permissions, and access controls within Qualys.
  • Vulnerability Management Operations
  • Execute scheduled and ad-hoc vulnerability scans across on-prem, cloud, and endpoint environments.
  • Validate scan results, reduce false positives, and ensure data accuracy.
  • Perform vulnerability triage and risk-based prioritization using CVSS, exploitability, threat intelligence, and business context.
  • Support remediation efforts by working with infrastructure, application, and cloud teams to validate fixes and re-scan assets.
  • GRC & Compliance Integration
  • Map Qualys findings to regulatory and control frameworks (e.g., NIST SP 800-53, HIPAA Security Rule, ISO 27001).
  • Provide vulnerability and exposure data to support:
    • Risk register entries
    • Policy exception requests
    • Audit and assessment activities
  • Generate compliance and executive-level reports for security leadership and governance committees.
  • Automation & Reporting
  • Develop and maintain custom dashboards, reports, and scorecards for operational, management, and executive audiences.
  • Leverage Qualys APIs to automate data extraction, integrations, and reporting (e.g., ServiceNow GRC, ticketing, SIEM)
  • Support continuous monitoring initiatives by improving scan coverage, frequency, and data\ quality
  • Operational Governance
  • Maintain standard operating procedures (SOPs) and technical documentation for vulnerability management processes.
  • Participate in incident response, risk review boards, and security working groups as a subject matter expert.
  • Support internal and external audits by providing evidence, scan results, and remediation validation.
Required Qualifications

  • Technical Skills
  • Hands-on experience administering the Qualys Cloud Platform (VMDR required).
  • Strong understanding of vulnerability management concepts, CVEs, CVSS scoring, and remediation workflows.
  • Experience managing large-scale scanning environments (enterprise networks, cloud, endpoints).
  • Working knowledge of Windows, Linux, networking, and cloud platforms (AWS/Azure).
  • Experience with asset inventory, tagging, and data normalization.
  • Scripting or automation experience (Python, PowerShell, REST APIs).
  • Experience integrating Qualys with ServiceNow (ITSM or GRC).
  • GRC & Risk Knowledge
  • Familiarity with NIST SP 800-53, NIST RMF, HIPAA Security Rule, or equivalent frameworks.
  • Ability to translate technical vulnerabilities into business and compliance risk.
  • Experience supporting audits, assessments, or risk exception processes.

Desired Certifications

  • Qualys certifications (VMDR, Policy Compliance, Asset Management)
  • Security certifications such as Security , CEH, CISSP, or CISA

Salary.com Estimation for Qualys System Administrator in Rockville, MD
$81,663 to $103,304
If your compensation planning software is too rigid to deploy winning incentive strategies, it’s time to find an adaptable solution. Compensation Planning
Enhance your organization's compensation strategy with salary data sets that HR and team managers can use to pay your staff right. Surveys & Data Sets

What is the career path for a Qualys System Administrator?

Sign up to receive alerts about other jobs on the Qualys System Administrator career path by checking the boxes next to the positions that interest you.
Income Estimation: 
$83,502 - $107,152
Income Estimation: 
$104,896 - $133,785
Income Estimation: 
$123,198 - $153,566
Income Estimation: 
$79,991 - $102,697
Income Estimation: 
$102,492 - $128,675
Employees: Get a Salary Increase
View Core, Job Family, and Industry Job Skills and Competency Data for more than 15,000 Job Titles Skills Library

Job openings at First Soft Solutions LLC

  • First Soft Solutions LLC Jersey, NJ
  • AI Engineer (Enterprise AI Platforms) Location: [Onsite / Hybrid / Remote] Employment Type: Full-Time (W2 Only) No Corp-to-Corp (C2C) About The Role We are... more
  • 8 Days Ago

  • First Soft Solutions LLC Jersey, NJ
  • Location: [Onsite / Hybrid / Remote] Employment Type: Full-Time (W2 Only) No Corp-to-Corp (C2C) About The Role We are seeking a Java Full Stack Engineer to... more
  • 8 Days Ago

  • First Soft Solutions LLC Jersey, NJ
  • Data Engineer (Financial Services – Enterprise Data Platform) Location: [Onsite / Hybrid / Remote] Employment Type: Full-Time (W2 Only) No Corp-to-Corp (C2... more
  • 9 Days Ago

  • First Soft Solutions LLC Jersey, NJ
  • ServiceNow Developer / Engineer (Financial Services – Enterprise Platform) Location : [Onsite / Hybrid / Remote] Employment Type : Full-Time (W2 Only) No C... more
  • 9 Days Ago


Not the job you're looking for? Here are some other Qualys System Administrator jobs in the Rockville, MD area that may be a better fit.

  • System One Rockville, MD
  • Job Title: Qualys Vulnerability Management Analyst Location: Rockville, Maryland Type: Contract Compensation: Negotiable Contractor Work Model: Hybrid Scop... more
  • 9 Days Ago

  • assystinc Rockville, MD
  • ASSYST is seeking is seeking an experienced Qualys System Administrator to support and enhance enterprise vulnerability management and risk reduction initi... more
  • 3 Days Ago

AI Assistant is available now!

Feel free to start your new journey!