Apply now: Vulnerability Analyst, location is Remote. The start date is ASAP for this 6 month contract-to-hire position.
Job Title: Vulnerability Analyst
Location-Type: Remote
Start Date Is: ASAP
Duration: 6-month contract-to-hire
Compensation Range: $50-$55/hour W2
Benefits: Eligible for Health, Dental, Vision, 401K
Must be authorized to work in the U.S. This position is not eligible for sponsorship .
Job Description:
Support vulnerability management and production operations by identifying, tracking, and reporting security risks while ensuring compliance within regulated environments.
Day-to-Day Responsibilities:
- Pull vulnerability data from tools (e.g., Wiz, scans, databases)
- Normalize, clean, and reconcile data across multiple sources
- Identify high-priority risks vs. noise across large datasets
- Build, maintain, and track POA&Ms (Plans of Action & Milestones)
- Assign ownership and monitor remediation progress with application teams
- Document exceptions, deviations, and compliance artifacts
- Produce risk summaries and reports for stakeholders
- Monitor production alerts and incidents (e.g., PagerDuty)
- Ensure resolution and document root cause analyses (RCAs)
- Identify opportunities to reduce alert noise and improve automation
Requirements:
- Must-Haves:
- Strong experience in vulnerability management (identification, tracking, prioritization)
- Hands-on experience with Wiz (vulnerability scanning tool)
- Experience creating and managing POA&Ms
- Experience with FedRAMP or regulated environments
- Ability to reconcile and normalize data from multiple tools/sources
- Experience managing large volumes of vulnerabilities (hundreds to thousands)
- Strong cross-functional collaboration with engineering/application teams
- Excellent documentation and reporting skills
- Must have a Bachelor's Degree
- Nice-to-Haves:
- AWS cloud and cloud security experience
- Experience with continuous monitoring (ConMon) programs
- Familiarity with automation of security or reporting processes
- Experience improving alerting systems and reducing operational noise