2

Full Time Vulnerability Management Jobs (NOW HIRING)

Vulnerability Engineering Lead

Alexandria, VA · On-site

$109K - $144K/yr

Full-Time/Part-Time Full-Time Description RiVidium is seeking a Vulnerability Engineering Lead to ... Familiarity with eMASS, STIGs, POA&M management, and secure engineering practices. * Experience ...

Cybersecurity Analyst III Vulnerability Management Specialist Information Security | Cybersecurity Operations On-Site, Full-Time About the Role This position is the senior technical owner of our ...

Cybersecurity Analyst III Vulnerability Management Specialist Information Security | Cybersecurity Operations On-Site, Full-Time About the Role This position is the senior technical owner of our ...

Knowledge of vulnerability management process, including configuration of vulnerability scanners ... Full-time and part-time employees working at least 20 hours a week on a regular basis are eligible ...

Cyber Operator

Orlando, FL · On-site +1

$60K - $70K/yr

Employment Type: Full-Time Travel : Less than 15% travel required for office visits, meetings, and ... Support the day-to-day execution of vulnerability management processes in alignment with ...

next page

Showing results 1-20

Full Time Vulnerability Management information

What are the key skills and qualifications needed to thrive in a Full Time Vulnerability Management role, and why are they important?

To excel in a Full Time Vulnerability Management role, you need expertise in cybersecurity principles, vulnerability assessment, and risk management, often supported by a degree in computer science or a related field. Familiarity with tools such as Nessus, Qualys, Rapid7, and certifications like CISSP or CompTIA Security+ are typically required. Strong analytical thinking, problem-solving abilities, and effective communication are crucial soft skills for this position. These competencies are essential to proactively identify, assess, and mitigate security vulnerabilities, protecting organizational assets from potential threats.

What is the difference between Full Time Vulnerability Management vs Vulnerability Analyst?

AspectFull Time Vulnerability ManagementVulnerability Analyst
CertificationsCompTIA Security+, CISSP, CEHCompTIA Security+, CEH, OSCP
Work EnvironmentSecurity teams, IT departments, corporate environmentsSecurity teams, IT departments, cybersecurity firms
Employer & Industry UsageLarge enterprises, government agencies, financial institutionsTech companies, consulting firms, cybersecurity providers
Job FocusManaging vulnerability programs, coordinating remediation, policy enforcementIdentifying vulnerabilities, analyzing security gaps, reporting findings

Full Time Vulnerability Management roles focus on overseeing vulnerability programs, coordinating remediation efforts, and implementing security policies. Vulnerability Analysts primarily identify and analyze security vulnerabilities, providing detailed reports. While both roles require similar certifications and work in cybersecurity environments, Vulnerability Management is more strategic and managerial, whereas Vulnerability Analysts are more technical and investigative.

What are some common challenges faced in a full-time vulnerability management role, and how can they be addressed?

In a full-time vulnerability management position, professionals often face challenges such as managing a high volume of discovered vulnerabilities, prioritizing remediation efforts, and coordinating with various teams to ensure timely patching. Keeping up with the rapidly changing threat landscape and ensuring all stakeholders understand the risks can also be demanding. These challenges can be addressed by implementing automated tools for scanning and tracking, establishing clear communication channels with IT and development teams, and developing a risk-based prioritization strategy to focus on the most critical vulnerabilities first.

What is a Full Time Vulnerability Management professional?

A Full Time Vulnerability Management professional is responsible for identifying, assessing, and mitigating security vulnerabilities within an organization's IT systems and networks. Their primary tasks include conducting regular vulnerability scans, analyzing security risks, prioritizing vulnerabilities based on potential impact, and coordinating remediation efforts with IT teams. They also develop and implement processes to continuously monitor security weaknesses, ensure compliance with industry standards, and help protect the organization from cyber threats. This role is crucial in maintaining the overall security posture of a company.
More about Full Time Vulnerability Management jobs
What cities are hiring for Full Time Vulnerability Management jobs? Cities with the most Full Time Vulnerability Management job openings:
What are the most commonly searched types of Vulnerability Management jobs? The most popular types of Vulnerability Management jobs are:
Infographic showing various Full Time Vulnerability Management job openings in the United States as of July 2026, with employment types broken down into 74% Full Time, 24% Part Time, and 2% Contract. Highlights an 95% Physical, 1% Hybrid, and 4% Remote job distribution.
Vulnerability & Cloud Security Program Manager

Vulnerability & Cloud Security Program Manager

NinjaOne

Baltimore, MD • On-site, Remote

Full-time

Medical, Dental, Vision, Life, Retirement, PTO

Posted 18 days ago


Job description

About the role
The Vulnerability & Cloud Security Program Manager leads the enterprise vulnerability management and cloud security posture management (CSPM) programs, ensuring timely identification, assessment, prioritization, and remediation of risks across on-premise, cloud, and application environments. This role leverages modern cloud security and vulnerability management platforms to monitor, analyze, and strengthen our security posture. You will collaborate closely with engineering, DevOps, and infrastructure teams to reduce risk exposure, support compliance obligations, and advance the organization’s overall security maturity.
Location - We are flexible on remote working from home, if you are located in the USA and reside in one of the following states - CA, CO, CT, FL, GA, *IL, KS, ME, MA, MD, NJ, NC, NY, OR, TN, TX, VA, and WA. We have physical offices in Austin, TX and Tampa, FL, if you prefer a hybrid option.
What You’ll Be Doing
  • Lead and operate the full vulnerability management and CSPM lifecycle, ensuring timely discovery, assessment, prioritization, and remediation.
  • Administer and optimize our vulnerability management and CSPM platforms, including policies, integrations, reporting, and automation.
  • Monitor cloud and infrastructure environments to identify misconfigurations, excessive permissions, and compliance drift, primarily in AWS.
  • Partner with engineering and DevOps teams to drive remediation efforts, facilitate triage discussions, and provide technical guidance on complex issues.
  • Align security practices with frameworks such as FedRAMP, NIST CSF, ISO 27001, and CIS Controls.
  • Track and report key KPIs and risk metrics to leadership, including SLA compliance and vulnerability trends.
  • Automate detection, remediation workflows, and tool integrations to enhance efficiency and expand security capabilities
  • Other duties as needed
About You
  • Bachelor’s degree in Cybersecurity, Computer Science, Information Technology, or equivalent experience.
  • 5+ years of experience in vulnerability management and at least 2+ years in cloud security.
  • Hands-on experience with CSPM tools, vulnerability detection platforms, and automation (Wiz, AWS Inspector, Nessus, OpenSCAP preferred).
  • Strong understanding of AWS security best practices and cloud-native architectures.
  • Familiarity with vulnerability scoring systems like CVSS and risk-based prioritization.
  • Excellent communication, collaboration, and stakeholder management skills.
  • Security certifications such as CISSP, AWS Security Specialty, or GIAC Cloud Security are a plus.
  • Preferred knowledge of regulatory and compliance frameworks such as PCI DSS, HIPAA, SOX, FedRAMP.
About Us 
NinjaOne automates the hardest parts of IT to deliver visibility, security, and control over all endpoints for more than 40,000 customers. The NinjaOne automated endpoint management platform is proven to increase productivity, reduce security risk, and lower costs for IT teams and managed service providers. NinjaOne is obsessed with customer success and provides free and unlimited onboarding, training, and support. NinjaOne is #1 on G2 in endpoint management, patch management, remote monitoring and management, and mobile device management.
What You’ll Love 
We are a collaborative, kind, and curious community. 
We honor your flexibility needs with full-time work that is hybrid remote.
We have you covered with our comprehensive benefits package, which includes medical, dental, and vision insurance.
We help you prepare for your financial future with our 401(k) plan.
We prioritize your work-life balance with our unlimited PTO.
We reward your work with opportunity for growth and advancement.
Additional Information
This position is NOT eligible for Visa sponsorship. Due to federal government security requirements associated with our FedRAMP-authorized environment, candidates must be U.S. citizens or lawful permanent residents.
*Due to operational policies, NinjaOne is unable to hire for this role within the city limits of Chicago. We will consider all qualified candidates who reside outside of the city proper or are willing to self-relocate.
Starting pay for the successful applicant depends on a variety of job-related factors, including but not limited to location, market demands, experience, job-related knowledge, and skills. The benefits available for this position include medical, dental, vision, 401(k) plan, life insurance coverage and PTO. For roles based in California, Colorado, Maryland, New Jersey, or Washington the base salary hiring range for this position is$180,000 to $220,000 per year.
For roles based in New York, the base salary hiring range for this position is $180,000 to $220,000 per year.
All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, age, disability, genetic information, marital status, veteran status, or any other status protected by applicable law. We are committed to providing an inclusive and diverse work environment.