The Role: The Vulnerability Management Analyst will help us find, prioritise, and fix security vulnerabilities across our global business and all our products. You'll configure and tune our ...
The Role: The Vulnerability Management Analyst will help us find, prioritise, and fix security vulnerabilities across our global business and all our products. You'll configure and tune our ...
Vulnerability Management Analyst
Oak Ridge, TN · On-site
$131K - $154K/yr
Vulnerability Management Analyst Full Time Oak Ridge, TN, US 3 days ago Requisition ID: 1516 Salary Range: $131,316.00 To $154,489.00 Annually Boston Government Services, LLC. (BGS) has created this ...
Vulnerability Management Analyst
Oak Ridge, TN · On-site
$131K - $154K/yr
Vulnerability Management Analyst Full Time Oak Ridge, TN, US 3 days ago Requisition ID: 1516 Salary Range: $131,316.00 To $154,489.00 Annually Boston Government Services, LLC. (BGS) has created this ...
Maintain vulnerability management standard, procedures, and guidelines * Identify vulnerabilities ... Gather, validate, and analyze vulnerability data for governance and leadership reporting * Track ...
Maintain vulnerability management standard, procedures, and guidelines * Identify vulnerabilities ... Gather, validate, and analyze vulnerability data for governance and leadership reporting * Track ...
VULNERABILITY MGMT ANALYST
Falls Church, VA · On-site
$90K - $120K/yr
As our Vulnerability Management Analyst in Falls Church, VA, you will own the end-to-end remediation cycle -- scanning, prioritization, patch qualification, deployment, and verification -- across ...
Quick apply
VULNERABILITY MGMT ANALYST
Falls Church, VA · On-site
$90K - $120K/yr
As our Vulnerability Management Analyst in Falls Church, VA, you will own the end-to-end remediation cycle -- scanning, prioritization, patch qualification, deployment, and verification -- across ...
Associate's degree in a related field. Must be Security+ CE certified. Strong understanding of ... Experience with vulnerability management tools (e.g., ACAS, Tenable, Nessus, Tanium, Qualys)
Quick apply
Associate's degree in a related field. Must be Security+ CE certified. Strong understanding of ... Experience with vulnerability management tools (e.g., ACAS, Tenable, Nessus, Tanium, Qualys)
Associate's degree in a related field. Must be Security+ CE certified. Strong understanding of ... Experience with vulnerability management tools (e.g., ACAS, Tenable, Nessus, Tanium, Qualys)
Associate's degree in a related field. Must be Security+ CE certified. Strong understanding of ... Experience with vulnerability management tools (e.g., ACAS, Tenable, Nessus, Tanium, Qualys)
We are seeking a Vulnerability Management Analyst (Tenable/Nessus & Metrics) to support vulnerability tracking, remediation coordination, and security metrics reporting in a federal technology ...
We are seeking a Vulnerability Management Analyst (Tenable/Nessus & Metrics) to support vulnerability tracking, remediation coordination, and security metrics reporting in a federal technology ...
Vulnerability Management Analyst
Chantilly, VA · On-site
$70K - $85K/yr
We are seeking a Vulnerability Management Analyst (Tenable/Nessus & Metrics ) to support vulnerability tracking, remediation coordination, and security metrics reporting in a federal technology ...
Quick apply
Vulnerability Management Analyst
Chantilly, VA · On-site
$70K - $85K/yr
We are seeking a Vulnerability Management Analyst (Tenable/Nessus & Metrics ) to support vulnerability tracking, remediation coordination, and security metrics reporting in a federal technology ...
The Vulnerability Management Analyst is primarily responsible for identifying, assessing, and mitigating security vulnerabilities within Somerset Trust computer networks, servers and software.
The Vulnerability Management Analyst is primarily responsible for identifying, assessing, and mitigating security vulnerabilities within Somerset Trust computer networks, servers and software.
The Vulnerability Management Analyst is primarily responsible for identifying, assessing, and mitigating security vulnerabilities within Somerset Trust computer networks, servers and software.
The Vulnerability Management Analyst is primarily responsible for identifying, assessing, and mitigating security vulnerabilities within Somerset Trust computer networks, servers and software.
The Principal Vulnerability Management Analyst serves as the program owner for vulnerability management, overseeing all aspects of vulnerability assessment, remediation, and reporting. This role is ...
The Principal Vulnerability Management Analyst serves as the program owner for vulnerability management, overseeing all aspects of vulnerability assessment, remediation, and reporting. This role is ...
The Vulnerability Management Analyst is primarily responsible for identifying, assessing, and mitigating security vulnerabilities within Somerset Trust computer networks, servers and software.
The Vulnerability Management Analyst is primarily responsible for identifying, assessing, and mitigating security vulnerabilities within Somerset Trust computer networks, servers and software.
The Principal Vulnerability Management Analyst serves as the program owner for vulnerability management, overseeing all aspects of vulnerability assessment, remediation, and reporting. This role is ...
The Principal Vulnerability Management Analyst serves as the program owner for vulnerability management, overseeing all aspects of vulnerability assessment, remediation, and reporting. This role is ...
Vulnerability Management Analyst
Naples, NC · On-site +1
Web Application Security Analysis and Intrusion Testing * Vulnerability Management WHAT DO WE OFFER? * Join our team and culture GMV by entering into technological and innovative projects within ...
Vulnerability Management Analyst
Naples, NC · On-site +1
Web Application Security Analysis and Intrusion Testing * Vulnerability Management WHAT DO WE OFFER? * Join our team and culture GMV by entering into technological and innovative projects within ...
The Cybersecurity Vulnerability Governance Analyst is responsible for governing and overseeing the organization's Vulnerability Management Program from a risk, compliance, and accountability ...
The Cybersecurity Vulnerability Governance Analyst is responsible for governing and overseeing the organization's Vulnerability Management Program from a risk, compliance, and accountability ...
Mid-Level Vulnerability Management Analyst Location: Bethesda, Maryland Type: Direct Hire / Perm Work Model: 99% remote with occasional onsite for meetings Security Clearance: Public Trust Position ...
Quick apply
Mid-Level Vulnerability Management Analyst Location: Bethesda, Maryland Type: Direct Hire / Perm Work Model: 99% remote with occasional onsite for meetings Security Clearance: Public Trust Position ...
Job Summary The Cybersecurity Vulnerability Governance Analyst is responsible for governing and overseeing the organization's Vulnerability Management Program from a risk, compliance, and ...
Job Summary The Cybersecurity Vulnerability Governance Analyst is responsible for governing and overseeing the organization's Vulnerability Management Program from a risk, compliance, and ...
Mid-Level Vulnerability Management Analyst Location: Bethesda, Maryland Type: Direct Hire / Perm Work Model: 99% remote with occasional onsite for meetings Security Clearance: Public Trust Position ...
Quick apply
Mid-Level Vulnerability Management Analyst Location: Bethesda, Maryland Type: Direct Hire / Perm Work Model: 99% remote with occasional onsite for meetings Security Clearance: Public Trust Position ...
Vulnerability Management Analyst- Bilingual Japanese/English
Dallas, TX · On-site
$106K - $149K/yr
The Vulnerability Management Analyst is responsible for identifying, assessing, tracking, and coordinating remediation of security vulnerabilities across enterprise infrastructure, applications ...
Vulnerability Management Analyst- Bilingual Japanese/English
Dallas, TX · On-site
$106K - $149K/yr
The Vulnerability Management Analyst is responsible for identifying, assessing, tracking, and coordinating remediation of security vulnerabilities across enterprise infrastructure, applications ...
... analyses, and document findings with preventive recommendations • Participate in evaluation of ... vulnerability management standard, procedures, and guidelines • Identify vulnerabilities ...
... analyses, and document findings with preventive recommendations • Participate in evaluation of ... vulnerability management standard, procedures, and guidelines • Identify vulnerabilities ...
Associate Vulnerability Management Analyst information
See salary details
$29K - $37.8K
5% of jobs
$37.8K - $46.5K
7% of jobs
$46.5K - $55.3K
12% of jobs
$55.9K is the 25th percentile. Wages below this are outliers.
$55.3K - $64.1K
13% of jobs
The median wage is $69.6K / yr.
$64.1K - $72.9K
21% of jobs
$79.7K is the 75th percentile. Wages above this are outliers.
$72.9K - $81.6K
22% of jobs
$81.6K - $90.4K
7% of jobs
$90.4K - $99.2K
3% of jobs
$99.2K - $108K
3% of jobs
$108K - $116.7K
3% of jobs
$116.7K - $125.5K
3% of jobs
$29K
$73.7K
$125.5K
How much do associate vulnerability management analyst jobs pay per year?
What cities are hiring for Associate Vulnerability Management Analyst jobs?
Cities with the most Associate Vulnerability Management Analyst job openings:
What are the most commonly searched types of Vulnerability Management Analyst jobs?
The most popular types of Vulnerability Management Analyst jobs are:
What states have the most Associate Vulnerability Management Analyst jobs?
States with the most job openings for Associate Vulnerability Management Analyst jobs include:
What are popular job titles related to Associate Vulnerability Management Analyst jobs?
For Associate Vulnerability Management Analyst jobs, the most frequently searched job titles are:

Vulnerability Management Analyst
Birmingham, AL • On-site
Other
Medical, Retirement
Posted 9 days ago
Key responsibilities
Help configure, tune, and maintain vulnerability scanning tools and support day-to-day scanning schedules and integrations.
Triage vulnerability findings, confirm genuine issues, and prioritize fixes based on risk assessment.
Organize external IVS and penetration testing programs, including scheduling, scoping, and managing relationships with testing providers.
Job description
We are looking for an enthusiastic and detail-oriented Vulnerability Management Analyst to join our information security and data protection team. This is an ideal opportunity for someone with real-world experience in information security and data protection. It's a great opportunity to get hands-on with the tools and processes that keep all our products secure, and to make a genuinely visible difference to how we manage risk day to day.
The Role:The Vulnerability Management Analyst will help us find, prioritise, and fix security vulnerabilities across our global business and all our products. You’ll configure and tune our vulnerability tools, risk assessing detections, and prioritising findings for fix. You’ll cover code vulnerabilities (SAST, DAST, SCA, OSS licencing), Cloud Security Posture Management (CSPM), Internal Vulnerability Scanning (IVS), and penetration testing. You'll also help design and report on our detection and remediation activities. This is a full-time position. Occasional after-hours work may be required for incident response or urgent security tasks. Successful candidates will be enrolled on a fully funded training pathway and will be provided with mentoring support to help them grow and learn.
Responsibilities:
- 1. Configuring and tuning our tools
- Help configure, tune, and maintain our vulnerability tooling across scanning tools, working with platform and engineering teams to keep coverage accurate
- Support day-to-day scanning schedules and tooling integrations, including ticketing and CI/CD pipelines
- Look for opportunities to automate reporting, validation, and other repetitive tasks across the whole vulnerability lifecycle
2. Triage and risk assessment
- Triage findings from vulnerability sources, confirming genuine issues and filtering out false positives
- Risk-assess confirmed findings against severity, exploitability, and business context, to prioritise fixes
- Apply a consistent risk-scoring approach so findings are prioritised effectively, regardless of source
- Stay on top of current threats and trends (e.g. threat actors, new vulnerabilities etc.) to inform vulnerability management activities
3. Designing secure benchmarks and guidelines
- Develop and maintain secure configuration benchmarks and hardening guidelines for our software, infrastructure, and tooling
- Align benchmarks and guidelines to recognised industry frameworks for business
- Work with the right teams to help implement the secure configurations, providing practical advice, and facilitating deviations within our broader risk management framework
4. Working with Developers and Engineers
- Act as a primary contact point for Developers and Engineers to help them understand and fix issues
- Track remediation progress, chase owners on overdue items, escalate where necessary
- Support teams with practical remediation guidance, drawing on the OWASP Top 10, the Mitre Att&ck Framework, and our secure coding standards
5. Coordinating IVS, web application testing, and penetration testing
- Organise our externally delivered IVS and Penetration Testing programmes, from scheduling and scoping, through to day-to-day contact with our testing partners
- Help manage our relationships with testing providers, including engagement administration and reporting
6. SLAs, outcome driven metrics, and reporting
- Help design and report on remediation SLAs across vulnerability classes, severities, and products
- Produce regular reporting (monthly, quarterly, and ad-hoc) on SLA performance, open findings, and trends
- Feed data and insight into our wider security metrics and reporting processes
7. Continuous improvement and team support
- Suggest ways to improve how we manage vulnerabilities and the tools we use to do it
- Support the rollout of new scanning tools or process changes across our global product estate
- Help create and maintain our vulnerability management policies, standards, and procedures
Requirements:
- 2+ years' experience in vulnerability management, security operations, development, or a related security/IT role
- Hands-on experience with vulnerability scanning and management tooling (e.g. SAST, DAST, SCA, CSPM, or IVS)
- Solid understanding of common vulnerability types and remediation approaches, including familiarity with the Mitre ATT&CK Framework and OWASP Top 10
- Experience triaging and risk-assessing security findings, helping teams to prioritise remediation based on severity and business impact
- Comfortable coordinating third-party engagements, such as scheduling and scoping penetration tests
- Comfortable explaining technical findings to both Developers and non-technical stakeholders
- Organised enough to manage several scanning programmes, testing engagements, and remediation workstreams in parallel
- Comfortable working across a global, multi-product environment
- Comfortable working within an agile enterprise environment
- Ability to read and understand common coding languages is essential, the ability to write scripts and/or code is preferred
- Relevant certifications (e.g. CompTIA Security+, CompTIA CySA+, GIAC GFACT/GPEN, or CEH) are preferred but not essential
- Strong analytical and problem-solving mindset, with real attention to detail
- Ability to work autonomously, use good judgement, and know when to escalate
Perks at ITG — alongside a competitive salary, here\'s what you can look forward to:
- Time off that works for you — 25 days\' holiday + bank holidays, a paid Wellbeing Day, flexible bank holidays to honour cultural or religious observances, and the option to buy or carry over up to 5 extra days.
- Family & life milestones — Enhanced family friendly leave, 3 extra days for your wedding/honeymoon, and an Employee Assistance Programme whenever you need support.
- Financial perks — Pension scheme, Corporate Medical Cash Plan, electric car salary sacrifice scheme, and tax-efficient payroll giving to your favourite charities.
- Growth & recognition — Funding for professional qualifications, monthly Employee of the Month awards (£250 bonus), and referral bonuses of up to £1,500.
- Community & wellbeing — Regular Wellbeing Workshops, 30+ Wellbeing Champions, a paid Volunteer Day, and an online perks platform with discounts on top brands, days out, and gym memberships.
What next? Like what you see? Drop us your application and someone from our team will be in touch.
We Value Diversity
We champion and welcome diversity in our workforce and ensure all job applicants receive equal and fair treatment, regardless of age, race, gender or gender identity, religion, sexual orientation, disability, or nationality.
We are not only committed to increasing the visibility and recognition of talent from under-represented groups within our organisation, but the wider industry too.
At the end of the day, we make sure we take time to look after ourselves, each other, and the planet, because we’re always stronger together.
ITG have a number of community groups available to employees and exist to offer a safe space for like-minded colleagues, with shared interests to connect, socialise and check in with each other.
What next? If you found yourself interested in knowing more, drop us your application and someone from our team will be in touch.
#LI-NW1