Demo

National Vulnerability Database Program Manager

National Institute of Standards and Technology (NIST)
Gaithersburg, MD Full Time
POSTED ON 5/8/2026
AVAILABLE BEFORE 6/6/2026
Summary

Join NIST as the National Vulnerability Database (NVD) Program Manager! You'll lead teams and software infrastructure while collaborating with global stakeholders to evolve vulnerability management standards. Identify ecosystem gaps and develop new technical guidelines and capabilities to strengthen our national cybersecurity posture. This notice is issued under direct-hire authority to recruit new talent to occupations for which NIST has a severe shortage of candidates.

Duties

ZP-IV: National Vulnerability Database Program Manager: As the National Vulnerability Database (NVD) Program Manager, you will lead information security projects and technical teams with limited oversight to support NIST's cybersecurity mission. Manage the NVD and its associated software infrastructure, overseeing project lifecycles and technical teams to ensure operational excellence. Interact with relevant stakeholder groups to anticipate and determine the needs of end users, planning and implementing new capabilities as required. Support the ongoing development of global standards, including CVSS, CVE, and CPE, through active participation in international standards organizations. Identify deficiencies in the existing vulnerability management ecosystem to suggest and develop new capabilities and technical guidelines. ZP-V: National Vulnerability Database Program Manager: As the National Vulnerability Database (NVD) Program Manager, you will provide expert leadership and strategic direction for the NVD portfolio and serve as a primary authority on vulnerability management standards. Define program goals and exercise wide latitude to influence the national security posture and the broader vulnerability management portfolio. Coordinate with high-level stakeholders to identify complex end-user requirements and plan the integration of next-generation capabilities. Influence and drive the development of standards (e.g., CVSS, CVE, CPE) through leadership roles and high-impact contributions within standards-developing organizations. Architect new NIST-developed guidelines and national-level capabilities by identifying and addressing critical gaps in the vulnerability management ecosystem.

Qualifications

Basic Requirements: Bachelor's degree in computer science or bachelor's degree with 30 semester hours in a combination of mathematics, statistics, and computer science. At least 15 of the 30 semester hours must have included any combination of statistics and mathematics that includes differential and integral calculus. All academic degrees and coursework must be from accredited or pre-accredited institutions. For the ZP-IV: In addition to the above basic requirements, all applicants must have one year (52 weeks) of specialized experience equivalent to at least the GS-12 level (ZP-III at NIST). The specialized experience is defined as: Experience working with vulnerability management identifiers and specifications such as CVE, CVSS, CPE, and CWE. Experience with CPE, Product-URL, SBOM, SWID, or different mechanisms of representing or modeling vulnerability information. Experience working with or in standards development to produce standards. For the ZP-V: In addition to the above basic requirements, all applicants must have one year (52 weeks) of specialized experience equivalent to at least the GS-14 level (ZP-IV at NIST). The specialized experience is defined as: Experience managing software projects. Experience leading the implementation of vulnerability identifiers and specifications (e.g., CVE, CVSS, CPE, CWE). Experience leading and implementing the use of SBOM, CPE, SWID, Product-URL, or other vulnerability information modeling mechanisms based on a critical evaluation of their benefits and limitations. Experience spearheading initiatives within standards development to produce and ratify new standards. Experience refers to paid and unpaid experience, including volunteer work done through National Service programs (e.g., Peace Corps, AmeriCorps) and other organizations (e.g., professional, philanthropic, religious, spiritual, community, student, social). Volunteer work helps build critical competencies, knowledge, and skills, and can provide valuable training and experience that translates directly to paid employment. You will receive credit for all qualifying experience, including volunteer experience. The qualification requirements in this vacancy announcement are based on the U.S. Office of Personnel Management (OPM) Qualification Standards Handbook. If requesting reconsideration of your qualification determination, please refer to the following site: Applicant Reconsideration

Salary.com Estimation for National Vulnerability Database Program Manager in Gaithersburg, MD
$170,395 to $212,613
If your compensation planning software is too rigid to deploy winning incentive strategies, it’s time to find an adaptable solution. Compensation Planning
Enhance your organization's compensation strategy with salary data sets that HR and team managers can use to pay your staff right. Surveys & Data Sets

What is the career path for a National Vulnerability Database Program Manager?

Sign up to receive alerts about other jobs on the National Vulnerability Database Program Manager career path by checking the boxes next to the positions that interest you.
Income Estimation: 
$168,545 - $198,692
Income Estimation: 
$182,502 - $249,036
Income Estimation: 
$207,946 - $249,343
Income Estimation: 
$175,165 - $219,883
Income Estimation: 
$182,642 - $260,237
Income Estimation: 
$130,034 - $179,473
Income Estimation: 
$176,131 - $238,730
Income Estimation: 
$172,979 - $241,697
Employees: Get a Salary Increase
View Core, Job Family, and Industry Job Skills and Competency Data for more than 15,000 Job Titles Skills Library

Job openings at National Institute of Standards and Technology (NIST)

  • National Institute of Standards and Technology (NIST) Boulder, CO
  • Summary NIST is seeking a Maintenance Worker to support the safe, reliable, and efficient operation of facilities and grounds that enable critical federal ... more
  • 4 Days Ago

  • National Institute of Standards and Technology (NIST) Boulder, CO
  • Summary NIST is seeking a Grants Sub Team Lead responsible for the management of financial assistance (Grants, Cooperative Agreements, and Other Transactio... more
  • 5 Days Ago

  • National Institute of Standards and Technology (NIST) Gaithersburg, MD
  • Summary Performs professional work to protect personnel and environments from ionizing radiation hazards by identifying and evaluating potential radiation ... more
  • 5 Days Ago

  • National Institute of Standards and Technology (NIST) Gaithersburg, MD
  • Summary NIST is seeking a Bioprocessing Specialist to develop standardized, quantitative measurement strategies for the expansion of induced pluripotent st... more
  • 5 Days Ago


Not the job you're looking for? Here are some other National Vulnerability Database Program Manager jobs in the Gaithersburg, MD area that may be a better fit.

  • Children's National Hospital Silver, MD
  • Play a pivotal role in orchestrating and managing strategic initiatives and projects from inception to completion for the Information Services department. ... more
  • 5 Days Ago

  • National Capitol Contracting LLC Washington, DC
  • Position Summary This is an ONSITE position located in Washington D.C. NCC is seeking a dynamic and experienced Program Manager with experience in IT Suppo... more
  • 1 Month Ago

AI Assistant is available now!

Feel free to start your new journey!