CyberSecurity - Vulnerability Assessment Analyst II Location: Huntsville, AL Clearance Level: Secret, Must Have Clearance to Start Required Certification(s): IAT2 Role Overview The Vulnerability ...
CyberSecurity - Vulnerability Assessment Analyst II Location: Huntsville, AL Clearance Level: Secret, Must Have Clearance to Start Required Certification(s): IAT2 Role Overview The Vulnerability ...
As a Cyber Security Analyst, a typical day will include the following duties: Cyber Security vulnerability analyst to help identify, analyze, and mitigate cyber vulnerabilities across networks and ...
As a Cyber Security Analyst, a typical day will include the following duties: Cyber Security vulnerability analyst to help identify, analyze, and mitigate cyber vulnerabilities across networks and ...
Tharros is seeking a Cyber Security Vulnerability Researcher to conduct research into fundamental ... Support cyber test and evaluation events with vulnerability analysis and exploitation expertise
Tharros is seeking a Cyber Security Vulnerability Researcher to conduct research into fundamental ... Support cyber test and evaluation events with vulnerability analysis and exploitation expertise
Vulnerability Analyst
Oak Ridge, TN · On-site
Creating detailed reports on the findings of vulnerability assessments and risk analyses ... Staying up to date with the latest cybersecurity threats, vulnerabilities, and best practices.
Vulnerability Analyst
Oak Ridge, TN · On-site
Creating detailed reports on the findings of vulnerability assessments and risk analyses ... Staying up to date with the latest cybersecurity threats, vulnerabilities, and best practices.
They are seeking a Vulnerability Assessment Analyst II responsible for identifying and analyzing cybersecurity vulnerabilities across Department of the Army and DoD enterprise networks, utilizing ...
They are seeking a Vulnerability Assessment Analyst II responsible for identifying and analyzing cybersecurity vulnerabilities across Department of the Army and DoD enterprise networks, utilizing ...
Cybersecurity Vulnerability Scanning Engineer
Charlotte, NC · On-site
$141K - $211K/yr
Ability to analyze vulnerability findings, prioritize based on risk/context, and communicate ... Bachelor's degree in Cybersecurity, Information Technology, Computer Science, or a related field is ...
Cybersecurity Vulnerability Scanning Engineer
Charlotte, NC · On-site
$141K - $211K/yr
Ability to analyze vulnerability findings, prioritize based on risk/context, and communicate ... Bachelor's degree in Cybersecurity, Information Technology, Computer Science, or a related field is ...
Research, analyze and brief management and team members on relevant Risk, CVE's, CVSS, Vector ... At least 10 years of experience in Cybersecurity, including vulnerability management scanning tools ...
Research, analyze and brief management and team members on relevant Risk, CVE's, CVSS, Vector ... At least 10 years of experience in Cybersecurity, including vulnerability management scanning tools ...
Tharros is seeking a Cyber Security Vulnerability Researcher, Forensic Analyst to conduct digital forensic analysis and incident response in support of NAWCAD Cyber Warfare Division programs at NAS ...
Tharros is seeking a Cyber Security Vulnerability Researcher, Forensic Analyst to conduct digital forensic analysis and incident response in support of NAWCAD Cyber Warfare Division programs at NAS ...
Cyber Security Anlst Adv (TS/SCI with Poly Required)
Mclean, VA · On-site
$145K - $189K/yr
As a Cyber Security Analyst, a typical day will include the following duties: Cyber Security vulnerability analyst to help identify, analyze, and mitigate cyber vulnerabilities across networks and ...
Cyber Security Anlst Adv (TS/SCI with Poly Required)
Mclean, VA · On-site
$145K - $189K/yr
As a Cyber Security Analyst, a typical day will include the following duties: Cyber Security vulnerability analyst to help identify, analyze, and mitigate cyber vulnerabilities across networks and ...
Vulnerability Analyst
Rockville, MD · On-site
$69K - $158K/yr
Serve as a Vulnerability and Threat Analyst responsible for supporting an enterprise cybersecurity program through continuous monitoring, vulnerability identification, risk analysis, and remediation ...
Vulnerability Analyst
Rockville, MD · On-site
$69K - $158K/yr
Serve as a Vulnerability and Threat Analyst responsible for supporting an enterprise cybersecurity program through continuous monitoring, vulnerability identification, risk analysis, and remediation ...
We are thought leaders, consultants, and cybersecurity experts, but above all else, we are a team ... Analyze scan results for false positives, document justifications, and prepare deviation requests ...
We are thought leaders, consultants, and cybersecurity experts, but above all else, we are a team ... Analyze scan results for false positives, document justifications, and prepare deviation requests ...
Description Tharros is seeking a Cyber Security Vulnerability Researcher, Forensic Analyst to conduct digital forensic analysis and incident response in support of NAWCAD Cyber Warfare Division ...
Description Tharros is seeking a Cyber Security Vulnerability Researcher, Forensic Analyst to conduct digital forensic analysis and incident response in support of NAWCAD Cyber Warfare Division ...
Vulnerability Analyst
Rockville, MD · On-site
$69K - $158K/yr
Serve as a Vulnerability and Threat Analyst responsible for supporting an enterprise cybersecurity program through continuous monitoring, vulnerability identification, risk analysis, and remediation ...
Vulnerability Analyst
Rockville, MD · On-site
$69K - $158K/yr
Serve as a Vulnerability and Threat Analyst responsible for supporting an enterprise cybersecurity program through continuous monitoring, vulnerability identification, risk analysis, and remediation ...
Vulnerability Analyst
Charleston, WV · Remote
We are thought leaders, consultants, and cybersecurity experts, but above all else, we are a team ... Analyze scan results for false positives, document justifications, and prepare deviation requests ...
Quick apply
Vulnerability Analyst
Charleston, WV · Remote
We are thought leaders, consultants, and cybersecurity experts, but above all else, we are a team ... Analyze scan results for false positives, document justifications, and prepare deviation requests ...
Cybersecurity Vulnerability Management Specialist Duration: 12+ months Location: NYC, NY or Mesa ... Build and maintain vulnerability dashboards and reports, including CVE tracking, aging analysis ...
Cybersecurity Vulnerability Management Specialist Duration: 12+ months Location: NYC, NY or Mesa ... Build and maintain vulnerability dashboards and reports, including CVE tracking, aging analysis ...
Cyber Security Analyst
Lexington Park, MD · On-site
This position will be on a Cybersecurity Vulnerability Assessment team. This position will be ... analyzing the vulnerability, engaging the system owners in the business, identifying systems ...
Cyber Security Analyst
Lexington Park, MD · On-site
This position will be on a Cybersecurity Vulnerability Assessment team. This position will be ... analyzing the vulnerability, engaging the system owners in the business, identifying systems ...
Cybersecurity Vulnerability Management Data Senior Specialist
Rosemead, CA · On-site
$143K - $215K/yr
In this job, you will apply your engineering and data analysis skills to find, prioritize, and ... As a Cybersecurity Vulnerability Management Data Senior Specialist , your work will help power our ...
Cybersecurity Vulnerability Management Data Senior Specialist
Rosemead, CA · On-site
$143K - $215K/yr
In this job, you will apply your engineering and data analysis skills to find, prioritize, and ... As a Cybersecurity Vulnerability Management Data Senior Specialist , your work will help power our ...
Vulnerability Analyst
Chicago, IL · On-site
Analyzing vulnerability scan results, assessing risk within the context of the enterprise ... Bachelor's degree in Cybersecurity, Computer Science, Engineering or other technical field
Vulnerability Analyst
Chicago, IL · On-site
Analyzing vulnerability scan results, assessing risk within the context of the enterprise ... Bachelor's degree in Cybersecurity, Computer Science, Engineering or other technical field
The Vulnerability Analyst shall possess the following capabilities: Analyze existing architecture ... Cyber Security, Information Technology, Information Assurance, and Information Security)
The Vulnerability Analyst shall possess the following capabilities: Analyze existing architecture ... Cyber Security, Information Technology, Information Assurance, and Information Security)
Senior Web Vulnerability Analyst
Fort George G Meade, MD · On-site
$92K - $107K/yr
Citizen PD Inc International is seeking an experienced and mission-driven Senior Web Vulnerability Analyst to provide Cybersecurity Management support in a U.S. government (DoD) environment
Quick apply
Senior Web Vulnerability Analyst
Fort George G Meade, MD · On-site
$92K - $107K/yr
Citizen PD Inc International is seeking an experienced and mission-driven Senior Web Vulnerability Analyst to provide Cybersecurity Management support in a U.S. government (DoD) environment
Cyber Security Vulnerability Analyst information
See salary details
$43K - $52.7K
1% of jobs
$52.7K - $62.5K
6% of jobs
$62.5K - $72.2K
10% of jobs
$78.8K is the 25th percentile. Wages below this are outliers.
$72.2K - $81.9K
12% of jobs
$81.9K - $91.6K
15% of jobs
The median wage is $95.8K / yr.
$91.6K - $101.4K
15% of jobs
$101.4K - $111.1K
10% of jobs
$115.3K is the 75th percentile. Wages above this are outliers.
$111.1K - $120.8K
16% of jobs
$120.8K - $130.5K
7% of jobs
$130.5K - $140.3K
5% of jobs
$140.3K - $150K
3% of jobs
$43K
$99.4K
$150K
How much do cyber security vulnerability analyst jobs pay per year?
What are the key skills and qualifications needed to thrive as a Cyber Security Vulnerability Analyst, and why are they important?
What is the difference between Cyber Security Vulnerability Analyst vs Penetration Tester?
| Aspect | Cyber Security Vulnerability Analyst | Penetration Tester |
|---|---|---|
| Certifications | CompTIA Security+, CEH, CISSP | OSCP, CEH, GPEN |
| Work Environment | Analyzes systems for vulnerabilities, reports findings | Simulates attacks to test security defenses |
| Employer & Industry Usage | Common in IT security teams across various industries | Often hired for security assessments and audits |
While both roles focus on cybersecurity, a Cyber Security Vulnerability Analyst primarily identifies and reports vulnerabilities, whereas a Penetration Tester actively exploits weaknesses to test security measures. The analyst's role is more about assessment and documentation, while the tester simulates real-world attacks to evaluate defenses.
What does a Cyber Security Vulnerability Analyst do?
What are some common challenges faced by Cyber Security Vulnerability Analysts when prioritizing vulnerabilities for remediation?

Other
Posted 5 days ago
Job description
- Execute routine and ad-hoc vulnerability, compliance, and discovery scans using DoD-mandated tools such as the Assured Compliance Assessment Solution (ACAS) / Tenable Nessus and SCAP Compliance Checker.
- Analyze scan results to identify false positives, evaluate risk levels, and generate actionable vulnerability reports, dashboards, and Contract Data Requirements List (CDRL) deliverables for Army leadership.
- Collaborate directly with Systems Administrators, Network Engineers, and Information System Security Officers (ISSOs) to provide technical guidance on patching, remediation, and mitigation strategies.
- Track and enforce compliance with Information Assurance Vulnerability Alerts (IAVAs), Security Technical Implementation Guides (STIGs), and Army Cyber Command (ARCYBER) directives.
- Assist in the configuration, troubleshooting, and maintenance of the vulnerability scanning infrastructure (e.g., Security Center, Nessus scanners) within an Impact Level 5 (IL5) or secure enclave environment.
- Performs assessments of systems and networks within the NE or enclave and identifies where those systems/networks deviate from acceptable configurations, enclave policy, or local policy.
- Measures effectiveness of defense-in-depth architecture against known vulnerabilities.
- Basic understanding and ability to identify vulnerabilities and risk levels. Must be able to assist Level 1 analysts.
- Typically has a bachelor degree, and 2-3 years of experience, or equivalent relevant work experience; e.g., each year of work experience may be substituted for each year of education required.
- Bachelor's Degree in Cybersecurity, Computer Science, Information Technology, or a related technical field.
- Â DoD Directive Compliance: Must meet DoD 8140/8570.01-M requirements for Information Assurance Technical (IAT) Level II (e.g., CompTIA Security+ CE, CySA+, or equivalent).
- Technical Proficiency: Hands-on experience operating ACAS (Tenable.sc/Nessus) and applying DISA STIGs using the SCAP toolset.
- RMF & POA&M Management: Demonstrated ability to generate, validate, and assess Plans of Action and Milestones (POA&Ms) for IT systems. Must support all aspects of the Risk Management Framework (RMF), leveraging eMASS and other Customer-utilized systems to ensure Cyber vulnerability controls are successfully maintained and sustained.
- Technical Oversight: Ability to provide technical oversight and risk mitigation recommendations, clearly conveying industry best-practice remediations to the Customer verbally and in formal written formats.
- Continuous Monitoring: Deep understanding and working familiarity with Continuous Monitoring (CONMON) practices, policies, and execution is required.
- Advanced Certifications: Certified Ethical Hacker (CEH), CompTIA Advanced Security Practitioner (CASP+), or ACAS-specific training certificates.
- Army Specific Systems: Familiarity with Army-specific cyber regulations (e.g., AR 25-2).
- Automation & Scripting: Experience using PowerShell, Python, or Bash to automate vulnerability data parsing or compliance checking.
- Process Optimization: Demonstrated ability to evaluate and recommend automation capabilities to processes to formalize and standardize validation and reporting, as well as design innovative approaches to displaying data analytics for an in-depth understanding of potential issues related to the Customer's Systems.
- Project & Team Dynamics: Experience with Agile project management methodologies, DoD Records Management tenets, and the ability to innovate in a highly fluid, fast-paced environment.
- Happy - Be Infectious. Happiness multiplies and creates a positive and connected environment where motivation and satisfaction have an outsized effect on everything we do.
- Helpful - Be Supportive. Being helpful is the foundation of teamwork, resulting in a supportive atmosphere where collaboration flourishes, and collective success is celebrated.
- Honest - Be Trustworthy. Honesty serves as our compass, ensuring transparent communication and ethical conduct, essential to who we are and the complex domains we support.
- Humble - Be Grounded. Success is not achieved alone, humility ensures a culture of mutual respect, encouraging open communication, and a willingness to learn from one another and take on any task.
- Hungry - Be Eager. Our hunger for excellence drives an insatiable appetite for innovation and continuous improvement, propelling us forward in the face of new and unprecedented challenges.
- Hustle - Be Driven. Hustle is reflected in our relentless work ethic, where we are each committed to going above and beyond to advance the mission and achieve success.
About Agile Defense
Sourced by ZipRecruiter
Industry
It services
Company size
201 - 500 Employees
Headquarters location
Reston, VA, US
Year founded
1998