1

Junior Vulnerability Analyst Jobs in Boca Raton, FL

This role requires expertise in manual and automated testing , strong analytical skills, and a ... Mentor junior QA engineers and contribute to knowledge-sharing initiatives. Qualifications ...

... Conducting vulnerability assessments and incident remediation to maintain system integrity ... to analyze complex problems and develop innovative solutions - Mentoring junior team members to ...

New

Junior Vulnerability Analyst information

See Boca Raton, FL salary details

$14

$30

$50

How much do junior vulnerability analyst jobs pay per hour?

As of Aug 6, 2026, the average hourly pay for junior vulnerability analyst in Boca Raton, FL is $30.48, according to ZipRecruiter salary data. Most workers in this role earn between $21.92 and $33.51 per hour, depending on experience, location, and employer.

What are the key skills and qualifications needed to thrive as a junior vulnerability analyst?

To thrive as a Junior Vulnerability Analyst, you need a foundational understanding of cybersecurity principles, basic networking knowledge, and familiarity with common vulnerabilities and threat landscapes, often supported by a relevant degree or certification such as CompTIA Security+. Proficiency in vulnerability scanning tools (like Nessus or Qualys), ticketing systems, and basic command-line usage is typically required. Strong analytical thinking, attention to detail, and effective communication are crucial soft skills for identifying and reporting security issues. These abilities are essential to accurately detect vulnerabilities, collaborate with teams, and help organizations improve their security posture.

What is a junior vulnerability analyst?

Junior Vulnerability Analysts are entry-level cybersecurity professionals who help identify, assess, and report security vulnerabilities within an organization's systems and networks. They typically use automated tools and manual testing methods to detect potential weaknesses that could be exploited by attackers. Their responsibilities often include conducting vulnerability scans, analyzing scan results, assisting with remediation efforts, and documenting findings. Junior Vulnerability Analysts work under the supervision of more experienced analysts or security teams as they develop their technical skills and cybersecurity knowledge.

What is the difference between Junior Vulnerability Analyst vs Security Analyst?

AspectJunior Vulnerability AnalystSecurity Analyst
CertificationsCompTIA Security+, CEH (entry-level)CompTIA Security+, CISSP (more advanced)
Work EnvironmentEntry-level, focused on vulnerability scanning and assessmentsBroader security responsibilities, including monitoring and incident response
Employer & Industry UsageIT security teams in various industries, focusing on vulnerability managementSecurity teams across industries, with wider scope including policy and incident handling

The Junior Vulnerability Analyst primarily focuses on identifying and assessing security vulnerabilities using specialized tools, often in an entry-level role. In contrast, a Security Analyst has a broader scope, including monitoring security systems, analyzing threats, and responding to incidents. Both roles are essential in cybersecurity, but the Junior Vulnerability Analyst is more specialized in vulnerability assessment, while the Security Analyst covers a wider range of security functions.

What are some typical challenges a junior vulnerability analyst might face when starting out in the role?

As a Junior Vulnerability Analyst, new hires often encounter challenges such as interpreting complex vulnerability scan results, prioritizing threats effectively, and communicating technical findings to non-technical stakeholders. Adapting to a fast-paced environment where new vulnerabilities and attack vectors emerge regularly can also be demanding. Collaborating with more experienced team members and staying current through ongoing training helps overcome these hurdles and build confidence in the role.
What are the most commonly searched types of Vulnerability Analyst jobs in Boca Raton, FL? The most popular types of Vulnerability Analyst jobs in Boca Raton, FL are:
What are popular job titles related to Junior Vulnerability Analyst jobs in Boca Raton, FL? For Junior Vulnerability Analyst jobs in Boca Raton, FL, the most frequently searched job titles are:
What job categories do people searching Junior Vulnerability Analyst jobs in Boca Raton, FL look for? The top searched job categories for Junior Vulnerability Analyst jobs in Boca Raton, FL are:
What cities near Boca Raton, FL are hiring for Junior Vulnerability Analyst jobs? Cities near Boca Raton, FL with the most Junior Vulnerability Analyst job openings:
Infographic showing various Junior Vulnerability Analyst job openings in Boca Raton, FL as of August 2026, with employment types broken down into 100% Full Time. Highlights an 100% In-person job distribution, with an average salary of $63,393 per year, or $30.5 per hour.

Offensive Security Analyst II

JM Family Enterprises

Deerfield Beach, FL • On-site

Full-time

Re-posted 15 days ago


JM Family Enterprises rating

9.1

Company rating: 9.1 out of 10

Based on 15 frontline employees who took The Breakroom Quiz

3rd of 150 rated car dealerships


Job description

Offensive Security Analyst II at JM Family Enterprises is responsible for designing, building, and scaling offensive security capabilities through adversary-focused testing, attack simulation, and the development of custom tooling and automation.
They will support transformation of offensive security program from a predominantly tool- and vendor-driven model to a build-first approach, leveraging software engineering, automation, and AI-assisted techniques to improve the coverage, depth, and repeatability of offensive security activities.
Responsibilities include but are not limited to:
  • Conduct offensive security activities including penetration testing, attack simulations, threat-based assessments, and control validation across on-prem, cloud, identity, and SaaS environments.
  • Execute and assist in the development of red team and purple team exercises, collaborating with detection and response teams to validate defensive coverage.
  • Perform vulnerability and exploitation analysis, including chaining weaknesses to demonstrate real-world attack paths and business risk.
  • Identify, validate, and responsibly disclose security weaknesses to stakeholders, providing clear remediation guidance and risk context.
  • Design, develop, and maintain custom offensive security tooling (Python, PowerShell, Bash, or similar), including frameworks, reusable modules, and automation that scale testing beyond point-in-time assessments.
  • Evaluate when to build versus buy offensive security capabilities, with a bias toward internal tooling where it improves flexibility, visibility, or speed of iteration.
  • Incorporate AI-assisted techniques (e.g., automation, chaining analysis, signal prioritization) to increase testing efficiency and analyst leverage.
  • Contribute documentation such as test reports, playbooks, findings templates, and executive-level summaries.
  • Contribute to the long-term architecture of the offensive security program, including shared libraries, testing pipelines, data models, and reporting outputs optimized for reuse and scale.
  • Mentor junior analysts and contribute to team knowledge sharing.
  • Partner with application and platform engineering teams not only to test systems, but to co-design secure patterns, reference implementations, and reusable testing components.
  • Build developer-consumable assets (templates, scripts, sample exploits, safe test harnesses) that enable teams to self-validate security assumptions earlier in the SDLC.
  • Provide developer-friendly remediation guidance, proof-of-concepts, and secure coding recommendations that are actionable and aligned to real-world development workflows.
  • Support the integration and tuning of security testing tools within CI/CD pipelines, balancing detection depth with developer experience and signal quality.
  • Collaborate with Security Engineering and Application teams to improve self-service security capabilities, documentation, and testing patterns that developers can reuse.
  • Participate in post-testing debriefs with developers to educate, coach, and improve security outcomes-not just report findings

Qualifications:
  • Hands-on experience with penetration testing, red team, purple team, or adversary emulation activities.
  • Strong understanding of Windows, Active Directory, Azure/Entra ID, networking, cloud platforms, and SaaS architectures.
  • Experience with common offensive security tools and frameworks (e.g., C2 frameworks, vulnerability scanners, exploit frameworks).
  • Knowledge of MITRE ATT&CK, kill chains, and attacker tradecraft.
  • Experience validating security controls such as EDR, SIEM, identity protections, email security, and cloud security controls.
  • Strong scripting and automation skills; ability to customize or build tools to support testing objectives.
  • Ability to translate technical findings into clear risk-based narratives for technical and non-technical audiences.
  • Strong analytical, problem-solving, and critical-thinking skills.
  • Ability to work independently while collaborating effectively in cross-functional teams.
  • High attention to detail with a strong sense of ethics and responsible disclosure.
  • Experience working directly with software engineers to remediate vulnerabilities and improve secure development practices.
  • Understanding of modern SDLC and CI/CD pipelines, including how security testing fits into developer workflows.
  • Familiarity with secure coding practices and common vulnerability classes in modern applications (web, APIs, cloud-native services).
  • Ability to communicate security findings in a way that developers can quickly understand, prioritize, and fix.
  • Mindset oriented toward enablement over enforcement, with a focus on reducing friction while improving security outcomes.
  • Background in software engineering, platform engineering, or SRE, with a desire to specialize in security.
  • Experience designing or maintaining production-quality code, not just scripts.
  • Comfort working with APIs, data pipelines, CI/CD systems, and cloud-native services as part of security capability development.
  • Curiosity and practical interest in applying AI/ML-assisted techniques to security testing, automation, and analysis.

#LI-AM1
#LI-HYBRID
This job description may not be inclusive of all assigned duties, responsibilities, or aspects of the job described, and may be amended at any time at the sole discretion of JM Family. All work arrangements are subject to associate performance, business need and manager discretion, and may be revised as necessary.
JM FAMILY IS PROUD TO BE AN EQUAL OPPORTUNITY EMPLOYER
JM Family Enterprises, Inc. is an Equal Employment Opportunity employer. We are committed to recruiting, hiring, retaining, and promoting qualified associates without regard any characteristic protected by law - whether actual or perceived - including race, color, creed, religion, national origin, ancestry, citizenship status, age, sex or gender (including pregnancy, childbirth, related medical conditions and lactation), gender identity gender expression, sexual orientation, marital status, military service, veteran status, disability, protected medical condition as defined by applicable state or local law, genetic information, or any other characteristic protected by applicable federal, state, provincial, or local law.
DISABILITY ACCOMMODATIONS
If you have a disability and require a reasonable accommodation to complete the job application process, please contact JM Family's Talent Acquisition department at talentacquisition@jmfamily.com for assistance. If you have an accommodation request for one of our recruiting events, please notify us at least 72 hours prior so that we may provide assistance.

What JM Family Enterprises employees say

Pay

Benefits

Hours and flexibility

Workplace

Get the full story on Breakroom