2

Full Time Vulnerability Analyst Jobs (NOW HIRING)

$111K - $143K/yr

Active Secret Clearance Job Type: Full-Time PD Inc International is seeking an experienced and mission-driven Senior Network Vulnerability Analyst to provide Cybersecurity Management support in a U.S ...

$98K - $129K/yr

Active Secret Clearance Job Type: Full-Time PD Inc International is seeking an experienced and mission-driven Senior Unix and Linux Vulnerability Analyst to provide Cybersecurity Management support ...

Job Type Full-time Description EOA Technologies is seeking a Cyber Vulnerability Analyst with Penetration Testing/Red Team experience anda deep understanding of adversary tactics, techniques, and ...

We are seeking a Vulnerability Management Analyst (Tenable/Nessus & Metrics ) to support ... Location: Hybrid - Onsite, Arlington, VA,1 day/week and as needed Job Type: Full Time Education:

Showing results 21-40

Full Time Vulnerability Analyst information

What is the difference between Full Time Vulnerability Analyst vs Penetration Tester?

AspectFull Time Vulnerability AnalystPenetration Tester
CertificationsCompTIA Security+, CISSP, CEHOSCP, CEH, GPEN
Work EnvironmentIn-house security teams, continuous monitoringProject-based, simulated attacks
Employer & IndustryCorporate, government, cybersecurity firmsConsulting firms, security service providers

Full Time Vulnerability Analysts focus on identifying and prioritizing security weaknesses through ongoing assessments, while Penetration Testers simulate attacks to test defenses. Both roles require similar certifications and often work within the same industry sectors, but their daily tasks and objectives differ. Vulnerability Analysts maintain security posture, whereas Penetration Testers evaluate system resilience through active testing.

More about Full Time Vulnerability Analyst jobs

What cities are hiring for Full Time Vulnerability Analyst jobs?

Cities with the most Full Time Vulnerability Analyst job openings:

What are the most commonly searched types of Vulnerability Analyst jobs?

The most popular types of Vulnerability Analyst jobs are:

What states have the most Full Time Vulnerability Analyst jobs?

States with the most job openings for Full Time Vulnerability Analyst jobs include:

Infographic showing various Full Time Vulnerability Analyst job openings in the United States as of August 2026, with employment types broken down into 89% Full Time, 6% Part Time, and 5% Contract. Highlights an 82% Physical, 7% Hybrid, and 11% Remote job distribution.

Senior Windows Vulnerability Analyst

ATG

Mechanicsburg, PA • On-site

Full-time

Medical, Dental, Vision, Life, Retirement

Posted 17 days ago


Key responsibilities

  • Review, identify, and report problems with the installation and operations of assets, including system options, software, and security controls.

  • Identify, monitor, analyze, report, and brief the status of all OS vulnerabilities across various platforms and technologies.

  • Analyze, validate, and report compliance status of DoD and DISA directives, and provide recommendations for vulnerability mitigation and security improvements.


Job description

Job Title: Senior Windows Vulnerability Analyst
Location: DISA Mechanicsburg, 5450 Carlisle Pike, Mechanicsburg, PA 17050-2411, Some Travel Required.
Employment Type: Full-Time
Shift:N/A
About the Company
Athena Technology Group, Inc. (ATG) is a Service-Disabled Veteran Owned Small Business (SDVOSB) focused on Information Technology and Communications consulting, system engineering, integration, deployment and operation of state of the art command and control and information systems that deliver critical network centric solution to the warfighter. With a proven track record of technical support to our customers, we are looking for innovative industry professionals to join our team.
ATG is an Equal Opportunity/Affirmative Action Employer Minorities/Females/Vets/Disability
Job Summary
We are seeking a Senior Windows Vulnerability Analyst to join our team. In this role, you will provide Cybersecurity management support for the DISA Cybersecurity Division by supporting compliance monitoring/reporting, response and mitigation, automation and management services, compliance validation, configuration, change management and account management. This person will work as part of a disperse team requiring coordination, teamwork and must provide aproven ability to strategize and implement high-level program initiatives.
Key Responsibilities
  • Serve as an OS technical specialist for assets connected to isolated & cloud environments (to include AWS, Azure, Stratus, Oracle, Google), NIPRNet and SIPRNet, to support cybersecurity and IT services.
  • Serve as technical specialist for assets connected to isolated environments to support cybersecurity and IT services. Review, identify, and report problems with the installation and operations of assets to include system options, software used and not used, default security controls that are enabled, disabled, or bypassed, and system wide options or parameters that may create security vulnerabilities. Determine the impact and risk of submitted change requests prior to implementation and participate in meetings to provide cyber oversight for OS changes that affect the level of risk. Recommend security countermeasures to mitigate identified risks.
  • Determine the impact and risk of submitted change requests prior to implementation and participate in meetings to provide cyber oversight for changes that affect the level of risk.
  • Recommend security countermeasures to mitigate identified risks.
  • Identify, monitor, analyze, report, and brief status of all OS vulnerabilities to include, but not limited to, Windows, Unix, Mainframe, Network Devices, Cloud Technologies and Other.
  • Ensure high risk and high severity vulnerabilities are managed with increased visibility and escalated.
  • Analyze, validate, monitor, and report compliance status of DoD and DISA directives and orders.
  • Create, maintain, and provide automated and customized vulnerability reports.
  • Analyze mission requirements and organizational feedback to improve vulnerability reports and processes.
  • Provide recommendations for OS vulnerability analysis, guidance, deficiency resolution, and implementation suggestions to DISA customers and Mission Partners.
  • Assess, audit, review, analyze, validate, and report OS, SRG, and STIG vulnerabilities, and ensure security controls are implemented within OS IAW DoD, DISA, and industry cybersecurity policies and procedures.
  • Evaluate discrepancies as they relate to policy, orders and OS, SRG, and/or STIGs, and document recommended additions, deletions, or changes.
  • Identify and report the need to add technical guidance for modification of policies and orders.
  • Review and validate the installation and configuration of cyber tools on assets, and report deficiencies.
  • Review OS, SRG, and/or STIGs as updates are released, and report changes with the potential to have significant impact.
  • Participate in audits and provide documentation (up to daily).

Qualifications
Required:
  • Active Secret clearance
  • Bachelor's degree or higher
  • 5+ years of professional experience with endpoint tools and cybersecurity
  • 3+ Years experience with Microsoft Products
  • Current 8570/8140 Certificate with Network Environment focus and ESS certifications
  • Strong communication, leadership, and organizational skills
  • Must be a US citizen

Desired:
  • Experience working with teams in multiple locations across the United States.
  • Experience working with IT teams in various capacities.

Physical and Environmental Conditions
  • Normal Office Environment. Requires Sitting, Standing, Near Acuity, Speaking with colleagues and customers, Listening, Sight, Use of hands/fingers.

Additional Benefits
  • Performance Bonuses and annual salary reviews
  • Health, dental, and vision insurance
  • Short Term Disability, Long Term Disability, and Life Insurance
  • 401(k) plan with company match
  • Opportunities for professional growth and development
  • A collaborative and inclusive work environment

ATG is an Equal Opportunity/Affirmative Action Employer. All qualified applicants will receive consideration for employment without regard to race, religion, creed, color, national origin, ancestry, sex (including pregnancy, childbirth, breastfeeding, or medical conditions related to pregnancy, childbirth, or breastfeeding), age, medical condition, marital or domestic partner status, sexual orientation, gender, gender identity, gender expression and transgender status, mental disability or physical disability, genetic information, military or veteran status, citizenship, low-income status or any other status or characteristic protected by applicable law. Learn more about your rights under Federal EEO laws and supplemental language.