1

Junior Vulnerability Analyst Jobs (NOW HIRING)

IT Vulnerability Opportunity in Financial Services Senior Vulnerability Management Analyst Location ... Mentor junior analysts and help improve internal processes. Provide remediation guidance and secure ...

This is a contingent position based upon contract award KBR is seeking a Junior Engineering RF Analyst to support RF directed-energy vulnerability analysis and test planning activities for mission ...

This is a contingent position based upon contract award KBR is seeking a Junior Engineering RF Analyst to support RF directed-energy vulnerability analysis and test planning activities for mission ...

Software Engineer I - Junior Level Location: Cedar Springs, MI/Washington, D.C./Quantico, VA Travel ... Support reverse engineering and vulnerability research activities * Leverage analysis tools such as ...

next page

Showing results 1-20

Junior Vulnerability Analyst information

See salary details

$15

$32

$53

How much do junior vulnerability analyst jobs pay per hour?

As of Jun 10, 2026, the average hourly pay for junior vulnerability analyst in the United States is $32.12, according to ZipRecruiter salary data. Most workers in this role earn between $23.08 and $35.34 per hour, depending on experience, location, and employer.

What are the key skills and qualifications needed to thrive as a Junior Vulnerability Analyst, and why are they important?

To thrive as a Junior Vulnerability Analyst, you need a foundational understanding of cybersecurity principles, basic networking knowledge, and familiarity with common vulnerabilities and threat landscapes, often supported by a relevant degree or certification such as CompTIA Security+. Proficiency in vulnerability scanning tools (like Nessus or Qualys), ticketing systems, and basic command-line usage is typically required. Strong analytical thinking, attention to detail, and effective communication are crucial soft skills for identifying and reporting security issues. These abilities are essential to accurately detect vulnerabilities, collaborate with teams, and help organizations improve their security posture.

What are Junior Vulnerability Analysts?

Junior Vulnerability Analysts are entry-level cybersecurity professionals who help identify, assess, and report security vulnerabilities within an organization's systems and networks. They typically use automated tools and manual testing methods to detect potential weaknesses that could be exploited by attackers. Their responsibilities often include conducting vulnerability scans, analyzing scan results, assisting with remediation efforts, and documenting findings. Junior Vulnerability Analysts work under the supervision of more experienced analysts or security teams as they develop their technical skills and cybersecurity knowledge.

What is the difference between Junior Vulnerability Analyst vs Security Analyst?

AspectJunior Vulnerability AnalystSecurity Analyst
CertificationsCompTIA Security+, CEH (entry-level)CompTIA Security+, CISSP (more advanced)
Work EnvironmentEntry-level, focused on vulnerability scanning and assessmentsBroader security responsibilities, including monitoring and incident response
Employer & Industry UsageIT security teams in various industries, focusing on vulnerability managementSecurity teams across industries, with wider scope including policy and incident handling

The Junior Vulnerability Analyst primarily focuses on identifying and assessing security vulnerabilities using specialized tools, often in an entry-level role. In contrast, a Security Analyst has a broader scope, including monitoring security systems, analyzing threats, and responding to incidents. Both roles are essential in cybersecurity, but the Junior Vulnerability Analyst is more specialized in vulnerability assessment, while the Security Analyst covers a wider range of security functions.

What are some typical challenges a Junior Vulnerability Analyst might face when starting out in the role?

As a Junior Vulnerability Analyst, new hires often encounter challenges such as interpreting complex vulnerability scan results, prioritizing threats effectively, and communicating technical findings to non-technical stakeholders. Adapting to a fast-paced environment where new vulnerabilities and attack vectors emerge regularly can also be demanding. Collaborating with more experienced team members and staying current through ongoing training helps overcome these hurdles and build confidence in the role.
More about Junior Vulnerability Analyst jobs
What cities are hiring for Junior Vulnerability Analyst jobs? Cities with the most Junior Vulnerability Analyst job openings:
What are the most commonly searched types of Vulnerability Analyst jobs? The most popular types of Vulnerability Analyst jobs are:
What states have the most Junior Vulnerability Analyst jobs? States with the most job openings for Junior Vulnerability Analyst jobs include:
What job categories do people searching Junior Vulnerability Analyst jobs look for? The top searched job categories for Junior Vulnerability Analyst jobs are:
Infographic showing various Junior Vulnerability Analyst job openings in the United States as of June 2026, with employment types broken down into 71% Full Time, 24% Part Time, and 5% Contract. Highlights an 80% Physical, 6% Hybrid, and 14% Remote job distribution, with an average salary of $66,802 per year, or $32.1 per hour.

Senior Vulnerability Management Analyst

Osaic

Scottsdale, AZ • Hybrid

$114K - $160K/yr

Full-time

Medical, Dental, Vision, Retirement

Posted 6 days ago


Osaic rating

8.2

Company rating: 8.2 out of 10

Based on 8 frontline employees who took The Breakroom Quiz


Job description

IT Vulnerability Opportunity in Financial Services

Senior Vulnerability Management Analyst

Location(s):

Atlanta: 2300 Windy Ridge Pkwy SE, Suite750, Atlanta, GA 30339

La Vista:12325 Port Grace Blvd, La Vista, NE 68128

Oakdale: 7755 3rd St. N, Oakdale, MN 55128

Scottsdale: 18700 N Hayden Rd, Suite 255, Scottsdale, AZ 85255

St. Petersburg: 877 Executive Center Dr. W, Suite 300, St. Petersburg, FL 33702

Osaic has returned to the office on a hybrid schedule requiring a minimum of 4 days weekly in the office. Applicants should be located at one of our hubs listed above and must be willing to work this schedule.

Role Type:        Full-time, Non-Exempt

Salary: $114,000 - $160,000 per year + annual performance-based bonus

Actual compensation offered will be determined individually, based on a number of job-related factors, including location, skills, licensure, experience, and education.

Our competitive compensation is just one component of Osaic’s total compensation package. Additional benefits include health, vision, dental insurance, 401k, paid time away, volunteer days and much more. To view more details of what you can look forward to, visit our careers page: Osaic Benefits.

Summary:

We’re seeking a Senior Vulnerability Analyst to lead and mature our enterprise vulnerability programs across SDLC (secure development lifecycle), external attack surface, and internal infrastructure/applications. This role drives end‑to‑end vulnerability lifecycle management, from discovery and risk triage to remediation validation and program metrics, while partnering closely with Engineering, Product, Cloud/SRE, and IT. You’ll also coordinate penetration testing readiness, evidence collection, and remediation plans, and help embed security into the development workflow. The ideal candidate has strong application development experience, practical threat modeling skills, and a pragmatic approach to risk.

Education Requirements:

Bachelor’s degree preferred, high school diploma (or equivalent) in combination with significant experience will be considered in lieu of degree. Minimum of high school diploma or equivalent is required.

Responsibilities:

  • Lead vulnerability prioritization using CVSS, KEV, exploit intel, and asset criticality.
  • Partner with engineering and application teams to remove remediation blockers.
  • Own complex vulnerability investigations and coordinate cross-team resolution.
  • Mentor junior analysts and help improve internal processes.
  • Provide remediation guidance and secure configuration recommendations.
  • Help with pen test pre‑work: scope definition, rules of engagement, asset inventories, credential/test data coordination, and stakeholder comms.
  • Manage findings intake, severity validation, and remediation plans with accountable owners; track to closure and report to leadership.
  • Lead lessons learned and control improvements to reduce recurring issues and improve test efficiency.
  • Lead continuous reduction of external attack surface: internet‑exposed services, DNS, certificates, cloud perimeters, API endpoints, and third‑party exposures.
  • Partner with Cloud, SRE, and Networking to harden configurations, minimize unknown/legacy exposures, and validate fixes.
  • Partner with engineering to mature SAST/DAST/IAST/OSS/SBOM practices, secure build pipelines, and implement “shift‑left” controls (pre‑commit, PR gates, CI quality bars).
  • Guide threat modeling, security requirements, and secure coding practices; advise on remediation patterns and safer libraries/frameworks.
  • Review architecture and code for high‑risk components (authN/Z, crypto, secrets handling, supply chain, multi‑tenant boundaries).
  • All other duties as assigned.

Basic Requirements:

  • Deep technical/domain expertise and ability to lead initiatives.
  • Strong understanding of OS, cloud environments, and vulnerability lifecycles.
  • Partner with Detection & Response to ensure logging, alerting, and containment strategies account for known weaknesses.
  • Target certifications: CISSP, GIAC (GSEC/GCIA/GCIH), CCSP.

Preferred Requirements:

  • Experience with KEV catalog operationalization and threat-intel integrations.
  • Knowledge of automation platforms
Equal Opportunity Employer

Osaic is an equal opportunity employer. We celebrate diversity in our workplace and we hire the most qualified candidates without regard for age, ethnicity, gender, gender identity or expression, language differences, nationality or national origin, family or marital status, physical, mental, and developmental abilities (or the perception of a disability), genetic information, race, religion or belief, sexual orientation, skin color, social or economic class, education, work and behavioral styles, political affiliation, military service, caste, or any other characteristic protected by law.

Eligibility

Applicants for employment in the US must have valid work authorization that does not now and/or will not in the future require sponsorship of a visa for employment authorization in the US by Osaic.

Unqualified Applications

Osaic does not consider applications from candidates who do not meet the minimum qualifications stated in the job posting.

Recruiting Agencies

Osaic only accepts candidates from contracted recruiting firms and only for searches approved prior to submissions. Fees will not be paid for unsolicited submissions.


About Osaic

Sourced by ZipRecruiter

Industry

Finance and insurance

Company size

1,001 - 5,000 Employees

Headquarters location

Phoenix, AZ, US

Year founded

2016