2

Full Time Vulnerability Management Jobs (NOW HIRING)

Senior Vulnerability Management Engineer

Raleigh, NC ยท On-site

$101K - $139K/yr

Minimum of 5 years in a dedicated vulnerability management role. * Deep understanding of networking ... Ownership from Day 1: Every full-time "Celonaut" is an owner, receiving Restricted Stock Units ...

IT Vulnerability Opportunity in Financial Services Senior Vulnerability Management Analyst Location ... Role Type: Full-time, Non-Exempt Salary: $105,000 - $120,000 per year + annual performance-based ...

Perform vulnerability management activities, including identification, analysis, tracking, and ... Employment Type: FULL_TIME

This role leverages modern cloud security and vulnerability management platforms to monitor ... needs with full-time work that is hybrid remote. We have you covered with our comprehensive ...

Vulnerability & Cloud Security Program Manager

NC ยท On-site +1

$180K - $220K/yr

This role leverages modern cloud security and vulnerability management platforms to monitor ... needs with full-time work that is hybrid remote. We have you covered with our comprehensive ...

This role leverages modern cloud security and vulnerability management platforms to monitor ... needs with full-time work that is hybrid remote. We have you covered with our comprehensive ...

next page

Showing results 1-20

Full Time Vulnerability Management information

What are the key skills and qualifications needed to thrive in a Full Time Vulnerability Management role, and why are they important?

To excel in a Full Time Vulnerability Management role, you need expertise in cybersecurity principles, vulnerability assessment, and risk management, often supported by a degree in computer science or a related field. Familiarity with tools such as Nessus, Qualys, Rapid7, and certifications like CISSP or CompTIA Security+ are typically required. Strong analytical thinking, problem-solving abilities, and effective communication are crucial soft skills for this position. These competencies are essential to proactively identify, assess, and mitigate security vulnerabilities, protecting organizational assets from potential threats.

What is the difference between Full Time Vulnerability Management vs Vulnerability Analyst?

AspectFull Time Vulnerability ManagementVulnerability Analyst
CertificationsCompTIA Security+, CISSP, CEHCompTIA Security+, CEH, OSCP
Work EnvironmentSecurity teams, IT departments, corporate environmentsSecurity teams, IT departments, cybersecurity firms
Employer & Industry UsageLarge enterprises, government agencies, financial institutionsTech companies, consulting firms, cybersecurity providers
Job FocusManaging vulnerability programs, coordinating remediation, policy enforcementIdentifying vulnerabilities, analyzing security gaps, reporting findings

Full Time Vulnerability Management roles focus on overseeing vulnerability programs, coordinating remediation efforts, and implementing security policies. Vulnerability Analysts primarily identify and analyze security vulnerabilities, providing detailed reports. While both roles require similar certifications and work in cybersecurity environments, Vulnerability Management is more strategic and managerial, whereas Vulnerability Analysts are more technical and investigative.

What are some common challenges faced in a full-time vulnerability management role, and how can they be addressed?

In a full-time vulnerability management position, professionals often face challenges such as managing a high volume of discovered vulnerabilities, prioritizing remediation efforts, and coordinating with various teams to ensure timely patching. Keeping up with the rapidly changing threat landscape and ensuring all stakeholders understand the risks can also be demanding. These challenges can be addressed by implementing automated tools for scanning and tracking, establishing clear communication channels with IT and development teams, and developing a risk-based prioritization strategy to focus on the most critical vulnerabilities first.

What is a Full Time Vulnerability Management professional?

A Full Time Vulnerability Management professional is responsible for identifying, assessing, and mitigating security vulnerabilities within an organization's IT systems and networks. Their primary tasks include conducting regular vulnerability scans, analyzing security risks, prioritizing vulnerabilities based on potential impact, and coordinating remediation efforts with IT teams. They also develop and implement processes to continuously monitor security weaknesses, ensure compliance with industry standards, and help protect the organization from cyber threats. This role is crucial in maintaining the overall security posture of a company.
More about Full Time Vulnerability Management jobs
What cities are hiring for Full Time Vulnerability Management jobs? Cities with the most Full Time Vulnerability Management job openings:
What are the most commonly searched types of Vulnerability Management jobs? The most popular types of Vulnerability Management jobs are:
Infographic showing various Full Time Vulnerability Management job openings in the United States as of July 2026, with employment types broken down into 74% Full Time, 24% Part Time, and 2% Contract. Highlights an 96% Physical, 1% Hybrid, and 3% Remote job distribution.
Senior Vulnerability Management Analyst

Senior Vulnerability Management Analyst

Advisor Group

Scottsdale, AZ โ€ข On-site

$105K - $120K/yr

Full-time

Medical, Dental, Vision, Retirement

Posted 15 days ago


Job description

Current Employees and Contractors Apply Here
Osaic Careers
IT Vulnerability Opportunity in Financial Services
Senior Vulnerability Management Analyst
Location(s):
Atlanta: 2300 Windy Ridge Pkwy SE, Suite750, Atlanta, GA 30339
La Vista:12325 Port Grace Blvd, La Vista, NE 68128
Oakdale: 7755 3rd St. N, Oakdale, MN 55128
Scottsdale: 18700 N Hayden Rd, Suite 255, Scottsdale, AZ 85255
St. Petersburg: 877 Executive Center Dr. W, Suite 300, St. Petersburg, FL 33702
Osaic has returned to the office on a hybrid schedule requiring a minimum of 4 days weekly in the office. Applicants should be located at one of our hubs listed above and must be willing to work this schedule.
Role Type: Full-time, Non-Exempt
Salary: $105,000 - $120,000 per year + annual performance-based bonus
Actual compensation offered will be determined individually, based on a number of job-related factors, including location, skills, licensure, experience, and education.
Our competitive compensation is just one component of Osaic's total compensation package. Additional benefits include health, vision, dental insurance, 401k, paid time away, volunteer days and much more. To view more details of what you can look forward to, visit our careers page: Osaic Benefits.
Summary:
We're seeking a Senior Vulnerability Analyst to lead and mature our enterprise vulnerability programs across SDLC (secure development lifecycle), external attack surface, and internal infrastructure/applications. This role drives end-to-end vulnerability lifecycle management, from discovery and risk triage to remediation validation and program metrics, while partnering closely with Engineering, Product, Cloud/SRE, and IT. You'll also coordinate penetration testing readiness, evidence collection, and remediation plans, and help embed security into the development workflow. The ideal candidate has strong application development experience, practical threat modeling skills, and a pragmatic approach to risk.
Education Requirements:
Bachelor's degree preferred, high school diploma (or equivalent) in combination with significant experience will be considered in lieu of degree. Minimum of high school diploma or equivalent is required.
Responsibilities:
  • Lead vulnerability prioritization using CVSS, KEV, exploit intel, and asset criticality.
  • Partner with engineering and application teams to remove remediation blockers.
  • Own complex vulnerability investigations and coordinate cross-team resolution.
  • Mentor junior analysts and help improve internal processes.
  • Provide remediation guidance and secure configuration recommendations.
  • Help with pen test pre-work: scope definition, rules of engagement, asset inventories, credential/test data coordination, and stakeholder comms.
  • Manage findings intake, severity validation, and remediation plans with accountable owners; track to closure and report to leadership.
  • Lead lessons learned and control improvements to reduce recurring issues and improve test efficiency.
  • Lead continuous reduction of external attack surface: internet-exposed services, DNS, certificates, cloud perimeters, API endpoints, and third-party exposures.
  • Partner with Cloud, SRE, and Networking to harden configurations, minimize unknown/legacy exposures, and validate fixes.
  • Partner with engineering to mature SAST/DAST/IAST/OSS/SBOM practices, secure build pipelines, and implement "shift-left" controls (pre-commit, PR gates, CI quality bars).
  • Guide threat modeling, security requirements, and secure coding practices; advise on remediation patterns and safer libraries/frameworks.
  • Review architecture and code for high-risk components (authN/Z, crypto, secrets handling, supply chain, multi-tenant boundaries).
  • All other duties as assigned.

Basic Requirements:
  • Deep technical/domain expertise and ability to lead initiatives.
  • Strong understanding of OS, cloud environments, and vulnerability lifecycles.
  • Partner with Detection & Response to ensure logging, alerting, and containment strategies account for known weaknesses.
  • Target certifications: CISSP, GIAC (GSEC/GCIA/GCIH), CCSP.

Preferred Requirements:
  • Experience with KEV catalog operationalization and threat-intel integrations.
  • Knowledge of automation platforms
Current Employees and Contractors Apply Here

Advisor Group logo

About Advisor Group

Sourced by ZipRecruiter

Be a part of the team behind our success! At Advisor Group, we support financial professionals nationwide, the people who help everyday Americans achieve their dreams. We're a billion-dollar business with the mentality and drive of a startup. Join us in building something special.

Industry

Finance and insurance

Company size

1,001 - 5,000 Employees

Headquarters location

Phoenix, AZ, US

Year founded

1988

Social media