1

Cyber Security Vulnerability Analyst Jobs (NOW HIRING)

Systems Vulnerability Analyst 4

Fort George G Meade, MD ยท On-site

$195K - $205K/yr

  • Medical

  • Dental

  • Vision

  • Life

  • Retirement

  • PTO

Apply NIST, ISO 27001, and other cybersecurity frameworks to support security assessments and compliance activities. * Develop Python scripts or automation tools to support vulnerability analysis ...

Vulnerability Analyst

Oak Ridge, TN ยท On-site

  • Medical

  • Dental

  • Vision

  • Retirement

Senior Specialist Job Specialty: Cyber Security What You'll Do The Vulnerability Analyst is responsible for analyzing key data streams and interpreting threats, vulnerabilities, impacts, and ...

We are thought leaders, consultants, and cybersecurity experts, but above all else, we are a team ... Analyze scan results for false positives, document justifications, and prepare deviation requests ...

Vulnerability Analyst

Charleston, WV ยท Remote

$80K - $134K/yr

We are thought leaders, consultants, and cybersecurity experts, but above all else, we are a team ... Analyze scan results for false positives, document justifications, and prepare deviation requests ...

Showing results 21-40

Cyber Security Vulnerability Analyst information

See salary details

$43K

$99.4K

$150K

How much do cyber security vulnerability analyst jobs pay per year?

As of Aug 14, 2026, the average yearly pay for cyber security vulnerability analyst in the United States is $99,400.00, according to ZipRecruiter salary data. Most workers in this role earn between $79,500.00 and $115,500.00 per year, depending on experience, location, and employer.

What are the key skills and qualifications needed to thrive as a cyber security vulnerability analyst, and why are they important?

To thrive as a Cyber Security Vulnerability Analyst, you need a solid understanding of network security, vulnerability assessment methodologies, and a background in information technology or computer science. Familiarity with tools like Nessus, Qualys, and Metasploit, as well as certifications such as CompTIA Security+ or CEH, is highly beneficial. Strong analytical thinking, attention to detail, and effective communication skills help analysts identify risks and convey findings to both technical and non-technical stakeholders. These skills ensure vulnerabilities are accurately discovered, prioritized, and addressed to protect organizational assets from cyber threats.

What is the difference between Cyber Security Vulnerability Analyst vs Penetration Tester?

AspectCyber Security Vulnerability AnalystPenetration Tester
CertificationsCompTIA Security+, CEH, CISSPOSCP, CEH, GPEN
Work EnvironmentAnalyzes systems for vulnerabilities, reports findingsSimulates attacks to test security defenses
Employer & Industry UsageCommon in IT security teams across various industriesOften hired for security assessments and audits

While both roles focus on cybersecurity, a Cyber Security Vulnerability Analyst primarily identifies and reports vulnerabilities, whereas a Penetration Tester actively exploits weaknesses to test security measures. The analyst's role is more about assessment and documentation, while the tester simulates real-world attacks to evaluate defenses.

What does a cyber security vulnerability analyst do?

A Cyber Security Vulnerability Analyst is responsible for identifying, assessing, and prioritizing security vulnerabilities in computer systems, networks, and software. They use specialized tools to scan for weaknesses, analyze security risks, and recommend mitigation strategies to protect against cyber threats. Their work is crucial in helping organizations prevent data breaches and maintain strong security postures by proactively addressing potential points of exploitation.

What are some common challenges faced by cyber security vulnerability analysts when prioritizing vulnerabilities for remediation?

Cyber Security Vulnerability Analysts often face the challenge of balancing limited resources with the need to address a high volume of vulnerabilities. Prioritization must consider factors like the severity of the vulnerability, the criticality of affected systems, and potential business impact. Analysts work closely with IT and development teams to ensure patches and mitigations are deployed effectively, often under tight deadlines and with evolving threat landscapes. Communication and collaboration skills are essential, as conveying risk to non-technical stakeholders is a key part of the role.
More about Cyber Security Vulnerability Analyst jobs

What cities are hiring for Cyber Security Vulnerability Analyst jobs?

Cities with the most Cyber Security Vulnerability Analyst job openings:

Infographic showing various Cyber Security Vulnerability Analyst job openings in the United States as of August 2026, with employment types broken down into 100% Full Time. Highlights an 100% In-person job distribution, with an average salary of $99,400 per year, or $47.8 per hour.

Systems Vulnerability Analyst 4

Markon

Fort George G Meade, MD โ€ข On-site

$195K - $205K/yr

Full-time

Medical, Dental, Vision, Life, Retirement, PTO

Posted 15 days ago


Job description

Markon is seeking a Systems Vulnerability Analyst to support the Fort Meade customer by identifying, assessing, and mitigating vulnerabilities across mission-critical systems and enterprise networks. This role conducts security assessments, analyzes network activity for indicators of malicious behavior, and develops mitigation strategies that strengthen the customer's cybersecurity posture. Working alongside Red, Blue, and Purple Teams, the Systems Vulnerability Analyst supports offensive and defensive cyber operations while helping implement security best practices and Zero Trust principles.


  • Conduct vulnerability assessments and Red Team activities to identify security weaknesses across enterprise systems and networks.
  • Analyze assessment results and develop detailed mitigation strategies and technical recommendations to reduce cyber risk.
  • Support Blue Team and Purple Team operations by validating defensive controls and improving detection capabilities.
  • Analyze network traffic, system logs, and security event data to identify malicious or unauthorized activity.
  • Perform threat hunting activities using Indicators of Compromise (IOCs), behavioral analysis, and the MITRE ATT&CK framework.
  • Assess network architectures and security controls to identify vulnerabilities and improve system resilience.
  • Support Zero Trust initiatives through evaluation of network infrastructure, system hardening, and cybersecurity architecture.
  • Apply NIST, ISO 27001, and other cybersecurity frameworks to support security assessments and compliance activities.
  • Develop Python scripts or automation tools to support vulnerability analysis, reporting, and security assessments.
  • Prepare technical assessment reports, risk analyses, and mitigation recommendations for Government stakeholders.
  • Travel OCONUS as required to support customer mission requirements.

Required

  • TS/SCI with Active Polygraph with this Customer.
  • Bachelor's degree and 11+ years of experience in cybersecurity, vulnerability analysis, or cyber operations.
  • Demonstrated experience conducting Red Team assessments and developing mitigation reports.
  • Experience supporting Blue Team and Purple Team operations.
  • Experience performing network analysis, anomaly detection, and identifying Indicators of Compromise (IOCs).
  • Experience applying the MITRE ATT&CK framework during vulnerability assessments and threat analysis.
  • Experience with NIST, ISO 27001, or comparable cybersecurity frameworks.
  • Experience developing automation or analysis tools using Python.
  • Strong analytical, communication, and technical writing skills.
  • Willingness to travel OCONUS in support of customer mission requirements.

Desired

  • Experience implementing or assessing Zero Trust architectures supporting Computer Network Exploitation (CNE), Computer Network Operations (CNO), network infrastructure, or system hardening.
  • Experience performing penetration testing or offensive security assessments.
  • Relevant cybersecurity certifications such as CISSP, GPEN, GXPN, GCIH, GCFA, GCIA, OSCP, or equivalent.
  • Experience supporting Intelligence Community or Department of Defense cyber operations.

USD $195,000.00 - USD $205,000.00 /Yr.
The Markon pay range for this position is a general guideline only and not a guarantee of compensation or salary. Additional factors considered in extending an offer include (but are not limited to) responsibilities of the job, education, experience, knowledge, skills, and abilities, as well as internal equity, alignment with market data, applicable bargaining agreement (if any), or other law.

Eager to join a team where your skills are valued, your growth is nurtured, and your impact is profound? Look no further than Markon, a premier consulting firm deeply dedicated to advancing our nation's most critical missions.

At Markon, we don't just offer jobs โ€“ we offer opportunities for personal and professional transformation. Empowering our employees to lead, innovate, and excel, we foster an environment where new ideas are not just welcomed but celebrated. As a perennial Washington Post Top Workplace, we prioritize the well-being and success of our team members, ensuring they can bring their best selves to work.

Headquartered in Falls Church, Virginia, Markon has garnered national recognition for our unwavering dedication to excellence in serving the intelligence community, as well as federal civilian and defense agencies. Our growing reach extends across 17 states, 116 countries, and 5 continents, where our team of dynamic professionals collaborates to deliver unparalleled program and project management services.

Markon values people and the tremendous impact each individual can make โ€“ which is why weโ€™re consistently recognized as one of the best places to work in federal government consulting. Here, you can help solve the nationโ€™s most important challenges, surrounded by colleagues who help you grow, advance, and succeed. We are deeply dedicated to what matters โ€“ bringing out the best in each other to advance our clientsโ€™ missions.
Join us and make a meaningful impact.

Markon is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, pregnancy, national origin, age, protected veteran status, or disability status. This job posting will remain open until the position is filled.

Benefits Offered: Medical, Dental, Vision, Life Insurance, Short-Term Disability, Long-Term Disability, 401(k) match, Flexible Spending Accounts, EAP, Training and Tuition Assistance, Paid Time Off, and Holidays.