1

Junior Vulnerability Analyst Jobs in Raleigh, NC

... analysis of vulnerability reports from external researchers, customers, internal teams, and ... Mentor junior PSIRT engineers and participate in team on-call rotation. Contribute to process ...

Senior Network Engineer

Durham, NC · Hybrid

$98K - $135K/yr

Participate in vulnerability assessments and remediation planning. * Collaborate with cybersecurity ... Analyze logs, packet captures, and performance metrics to troubleshoot complex issues. * Identify ...

Junior Vulnerability Analyst information

See Raleigh, NC salary details

$14

$31

$52

How much do junior vulnerability analyst jobs pay per hour?

As of Aug 1, 2026, the average hourly pay for junior vulnerability analyst in Raleigh, NC is $31.22, according to ZipRecruiter salary data. Most workers in this role earn between $22.45 and $34.33 per hour, depending on experience, location, and employer.

What are the key skills and qualifications needed to thrive as a Junior Vulnerability Analyst, and why are they important?

To thrive as a Junior Vulnerability Analyst, you need a foundational understanding of cybersecurity principles, basic networking knowledge, and familiarity with common vulnerabilities and threat landscapes, often supported by a relevant degree or certification such as CompTIA Security+. Proficiency in vulnerability scanning tools (like Nessus or Qualys), ticketing systems, and basic command-line usage is typically required. Strong analytical thinking, attention to detail, and effective communication are crucial soft skills for identifying and reporting security issues. These abilities are essential to accurately detect vulnerabilities, collaborate with teams, and help organizations improve their security posture.

What are Junior Vulnerability Analysts?

Junior Vulnerability Analysts are entry-level cybersecurity professionals who help identify, assess, and report security vulnerabilities within an organization's systems and networks. They typically use automated tools and manual testing methods to detect potential weaknesses that could be exploited by attackers. Their responsibilities often include conducting vulnerability scans, analyzing scan results, assisting with remediation efforts, and documenting findings. Junior Vulnerability Analysts work under the supervision of more experienced analysts or security teams as they develop their technical skills and cybersecurity knowledge.

What is the difference between Junior Vulnerability Analyst vs Security Analyst?

AspectJunior Vulnerability AnalystSecurity Analyst
CertificationsCompTIA Security+, CEH (entry-level)CompTIA Security+, CISSP (more advanced)
Work EnvironmentEntry-level, focused on vulnerability scanning and assessmentsBroader security responsibilities, including monitoring and incident response
Employer & Industry UsageIT security teams in various industries, focusing on vulnerability managementSecurity teams across industries, with wider scope including policy and incident handling

The Junior Vulnerability Analyst primarily focuses on identifying and assessing security vulnerabilities using specialized tools, often in an entry-level role. In contrast, a Security Analyst has a broader scope, including monitoring security systems, analyzing threats, and responding to incidents. Both roles are essential in cybersecurity, but the Junior Vulnerability Analyst is more specialized in vulnerability assessment, while the Security Analyst covers a wider range of security functions.

What are some typical challenges a Junior Vulnerability Analyst might face when starting out in the role?

As a Junior Vulnerability Analyst, new hires often encounter challenges such as interpreting complex vulnerability scan results, prioritizing threats effectively, and communicating technical findings to non-technical stakeholders. Adapting to a fast-paced environment where new vulnerabilities and attack vectors emerge regularly can also be demanding. Collaborating with more experienced team members and staying current through ongoing training helps overcome these hurdles and build confidence in the role.
What are the most commonly searched types of Vulnerability Analyst jobs in Raleigh, NC? The most popular types of Vulnerability Analyst jobs in Raleigh, NC are:
What are popular job titles related to Junior Vulnerability Analyst jobs in Raleigh, NC? For Junior Vulnerability Analyst jobs in Raleigh, NC, the most frequently searched job titles are:
What job categories do people searching Junior Vulnerability Analyst jobs in Raleigh, NC look for? The top searched job categories for Junior Vulnerability Analyst jobs in Raleigh, NC are:
What cities near Raleigh, NC are hiring for Junior Vulnerability Analyst jobs? Cities near Raleigh, NC with the most Junior Vulnerability Analyst job openings:
Infographic showing various Junior Vulnerability Analyst job openings in Raleigh, NC as of July 2026, with employment types broken down into 78% Full Time, and 22% Contract. Highlights an 100% In-person job distribution, with an average salary of $64,937 per year, or $31.2 per hour.

Global Security PSIRT Engineer

NetApp

Morrisville, NC • On-site

Other

Medical, Life, Retirement, PTO

Re-posted 7 days ago


NetApp rating

9.4

Company rating: 9.4 out of 10

Based on 5 frontline employees who took The Breakroom Quiz

2nd of 479 rated business services


Job description

Job Summary

NetApp is looking for a skilled PSIRT Engineer (IC4) to join our Global Product Security Incident Response Team.
In this role, you will independently handle complex security vulnerabilities across NetApp's storage, cloud, and data management products. You will triage reports, perform technical analysis, drive fixes, and coordinate responsible disclosure.


As an IC4 engineer, you will work on high-impact issues, mentor junior team members, and help mature NetApp's PSIRT processes in alignment with ISO/IEC 30111, ISO/IEC 29147, and FIRST best practices. This is a technical, customer-focused role that directly protects NetApp customers worldwide

Job Responsibilities

Triage, verify, and conduct in-depth technical analysis of vulnerability reports from external researchers, customers, internal teams, and security tools.
Reproduce vulnerabilities in lab environments and assess risk using CVSS (v3.1/v4.0) along with NetApp-specific business and customer context.
Collaborate with engineering teams to drive root cause analysis, develop fixes, mitigations, and workarounds, and validate their effectiveness.
Manage the full vulnerability lifecycle, including embargo handling, coordinated disclosure (CVD), CVE-ID requests, and publication of Security Advisories.
Work with external stakeholders such as security researchers, CERT/CC, and other vendors for multi-party coordination.
Support proactive vulnerability monitoring, threat intelligence, third-party component tracking, and integration with the Secure Development Lifecycle (SDL).
Create clear technical documentation, customer advisories, and leadership briefings.
Mentor junior PSIRT engineers and participate in team on-call rotation.
Contribute to process improvements, tooling, metrics, and PSIRT maturity initiatives.

Job Requirements

Bachelor's degree in Computer Science, Cybersecurity, Engineering, or a related field (or equivalent experience).
5+ years of experience in security engineering, vulnerability management, incident response, or product security.
Strong technical knowledge of operating systems (Linux/Unix), networking, storage systems, and cloud platforms (AWS, Azure, GCP).
Hands-on experience reproducing and analyzing security vulnerabilities.
Solid understanding of CVSS, CVE, CWE, responsible disclosure, and coordinated vulnerability disclosure practices.
Excellent written and verbal communication skills - able to explain complex issues clearly to both technical and non-technical audiences.
Proven ability to work independently and collaboratively in a global team environment.
Preferred Qualifications
Previous experience working in a PSIRT, Product Security, or Vulnerability Management program.
Familiarity with NetApp products (e.g., ONTAP, StorageGRID) or enterprise storage/data management technologies.
Scripting and automation skills (Python, Bash, PowerShell).
Knowledge of SBOMs, software composition analysis, and supply chain security.
Industry certifications such as CISSP, OSCP, or GIAC.
Experience with bug bounty platforms (e.g., HackerOne).

Education
IC - Typically requires a minimum of 8 years of related experience.Mgr & Exec - Typically requires a minimum of 6 years of related experience.

Compensation:
The target salary range for this position is 147,900 - 220,000 USD. The salary offered will be determined by the candidate's location, qualifications, experience, and education and may be outside of this range. The range is based on 'On Target Earnings' (OTE) representing the total potential earnings, which is the sum of the base salary and potential commission earned when performance targets are achieved. Final compensation packages are competitive and in line with industry standards, reflecting a variety of factors, and include a comprehensive benefits package. This may cover Health Insurance, Life Insurance, Retirement or Pension Plans, Paid Time Off, various Leave options, employee stock purchase plan, and/or restricted stocks (RSU's). These offerings are subject to regional variations and governed by local laws, regulations, and company policies. We will provide detailed information about the specific benefits for your region during the recruitment process.


What NetApp employees say

Pay

Hours and flexibility

Workplace

Get the full story on Breakroom