1

Director Vulnerability Management Analyst Jobs in Florida

Cyber Operator

Orlando, FL · On-site +1

$55K - $75K/yr

Independently execute the day-to-day workflows of an assigned area of the vulnerability management program - finding validation, applicability analysis, remediation packaging and coordination ...

Cyber Operator

Orlando, FL · Remote

$55K - $75K/yr

Independently execute the day-to-day workflows of an assigned area of the vulnerability management program -- finding validation, applicability analysis, remediation packaging and coordination ...

next page

Showing results 1-20

Director Vulnerability Management Analyst information

What is the difference between Director Vulnerability Management Analyst vs Vulnerability Management Analyst?

AspectDirector Vulnerability Management AnalystVulnerability Management Analyst
CertificationsCertified Ethical Hacker (CEH), CISSP, CISACompTIA Security+, CEH, GIAC certifications
Work EnvironmentStrategic planning, team leadership, policy developmentOperational tasks, vulnerability scanning, reporting
ResponsibilitiesOversees vulnerability programs, manages teams, aligns security strategiesPerforms vulnerability assessments, analyzes findings, supports remediation

The main difference is that the Director Vulnerability Management Analyst focuses on strategic oversight, leadership, and policy development, while the Vulnerability Management Analyst handles day-to-day vulnerability assessments and technical analysis. The director role involves higher-level management and planning, whereas the analyst role is more technical and operational.

What are popular job titles related to Director Vulnerability Management Analyst jobs in Florida?

For Director Vulnerability Management Analyst jobs in Florida, the most frequently searched job titles are:

What job categories do people searching Director Vulnerability Management Analyst jobs in Florida look for?

The top searched job categories for Director Vulnerability Management Analyst jobs in Florida are:

What cities in Florida are hiring for Director Vulnerability Management Analyst jobs?

Cities in Florida with the most Director Vulnerability Management Analyst job openings:

Infographic showing various Director Vulnerability Management Analyst job openings in Florida as of August 2026, with employment types broken down into 58% Full Time, and 42% Contract. Highlights an 80% In-person, and 20% Remote job distribution.

Threat and Vulnerability Management Analyst

HEICO

Hollywood, FL • On-site

Full-time

Posted 11 days ago


Job description

For 68 years, HEICO Corporation, a NYSE traded company, has thrived by serving niche segments of the aviation, defense, space and electronics industries by providing innovative and cost-saving products and services. HEICO's high-energy culture focuses our Team Members on providing high quality products and services to our customer base, which is made up of most of the world's airlines, the defense industry, satellite manufacturers and other electronics companies. Our leadership approach creates a dynamic environment that continually challenges our Team Members to grow professionally and develop in an entrepreneurially-spirited setting.
HEICO is seeking a Threat and Vulnerability Management Analyst for a full time direct hire on-site role in Hollywood, FL.
ROLE: The Threat and Vulnerability Management Analyst is responsible for identifying, prioritizing, and coordinating the remediation of security weaknesses across HEICO's applications, endpoints, networks, and cloud environments. This role acts as a critical link between threat intelligence and the systems teams executing remediation. In addition to standard vulnerability management, this position proactively validates external defenses through security configuration testing and monitors for sensitive data exposure to ensure a robust overall data security posture.
ESSENTIAL DUTIES AND RESPONSIBILITIES
  • Scanning & Identification
    • Run regular vulnerability scans across on-premises, hybrid, and cloud environments.
    • Configure, maintain, and tune scanning tools to ensure accurate coverage and minimize false positives.
  • Data Security & Access Monitoring
    • Monitor for excessive or inappropriate access to sensitive data and verify compliance with data protection standards; collaborate with the GRC and Compliance functions to ensure findings are tracked and remediated appropriately.
    • Assess data flows and access permissions to identify over-privileged accounts and potential data exposure risks.
  • Active Defense Validation & Testing
    • Conduct targeted external penetration and security configuration tests to validate the strength of perimeter defenses; penetration testing tools are used primarily to validate vulnerability scan results rather than conduct full-scope red-team engagements.
    • Replicate common threat actor techniques to identify and document exploitable paths within the infrastructure.
  • Analysis & Prioritization
    • Triage incoming vulnerability reports, threat intelligence feeds, and security testing findings.
    • Analyze risks using severity metrics combined with internal business context to prioritize remediation efforts.
  • Remediation Coordination
    • Collaborate closely with IT, DevOps, and systems administrators to guide, track, and validate patching and configuration hardening efforts.
    • Assist in organizing patch cycles and developing response plans for zero-day vulnerabilities.
  • Reporting & Tracking
    • Generate executive and technical dashboards tracking remediation progress, vulnerability aging, and team KPIs.
    • Maintain up-to-date documentation on vulnerability standards, exception requests, and remediation playbooks.

SUPERVISORY RESPONSIBILITIES
None. This position operates as an individual contributor but is expected to collaborate extensively with technical teams across the organization.
Education:
    • Bachelor's degree in Computer Science, Information Technology, Cybersecurity, or a related field; or an equivalent combination of education and professional experience.

Experience:
    • Minimum two (2) to four (4) years of dedicated experience in cybersecurity, with a strong focus on threat and vulnerability management.
    • Hands-on experience with industry-standard vulnerability scanners (such as Tenable Nessus, Qualys, or Rapid7) and cloud security platforms.
    • Direct experience performing security validation using standard penetration testing tools (such as Metasploit, OWASP ZAP, or Burp Suite) primarily to validate scan findings and confirm exploitability - not as a full-scope red-team practitioner.
    • Familiarity with Data Security Posture Management (DSPM) platforms (such as LightBeam) and data loss prevention methodologies.
    • Familiarity with risk frameworks (CVSS, MITRE ATT&CK, NIST, or OWASP).
    • Exceptional communication skills with the ability to translate complex technical vulnerabilities and configuration issues into clear, actionable business risks for non-security teams.

Desired Qualifications:
    • Proficiency with Python or PowerShell to automate reporting and scanning tasks.
    • Experience managing vulnerabilities within containerized environments (Kubernetes/Docker) and cloud-native workloads.
    • Exposure to Industrial Control Systems (ICS) or Operational Technology (OT) networks.
    • Professional certifications such as CompTIA CySA+, PenTest+, CEH, or similar.

PHYSICAL DEMANDS
Office environment with phone/computer work; low noise level except when on the manufacturing floor where noise may be medium to high. Periodic travel to operating sites may be required.