2

Remote Qualys Vulnerability Management Jobs (NOW HIRING)

Showing results 41-60

Remote Qualys Vulnerability Management information

See salary details

$23K

$139.6K

$174.5K

How much do remote qualys vulnerability management jobs pay per year?

As of Sep 14, 2026, the average yearly pay for remote qualys vulnerability management in the United States is $139,599.00, according to ZipRecruiter salary data. Most workers in this role earn between $116,000.00 and $160,000.00 per year, depending on experience, location, and employer.

What is a remote Qualys Vulnerability Management?

A Remote Qualys Vulnerability Management job involves using the Qualys platform to identify, assess, and prioritize security vulnerabilities in an organization's IT infrastructure, all while working remotely. Professionals in this role deploy and manage vulnerability scans, analyze scan results, and provide recommendations for remediation to minimize risk. They often collaborate with IT and security teams to ensure vulnerabilities are addressed promptly, helping to maintain the security posture of the organization. The remote aspect means all tasks are performed online, allowing for flexibility in work location.

What are the key skills and qualifications needed to thrive as a remote Qualys Vulnerability Management professional?

To excel in Remote Qualys Vulnerability Management, you need a strong background in cybersecurity principles, vulnerability assessment, and typically a degree in computer science or related field. Proficiency with Qualys Vulnerability Management tools, understanding of network security protocols, and often relevant certifications like CompTIA Security+ or CISSP are essential. Analytical thinking, attention to detail, and effective communication are standout soft skills for interpreting scan results and collaborating with distributed teams. These skills ensure accurate identification and remediation of security risks, safeguarding organizational assets in remote environments.

What are some common challenges remote Qualys Vulnerability Management professionals face, and how can these be addressed?

One common challenge for remote Qualys Vulnerability Management professionals is ensuring effective communication and collaboration with IT and security teams across different time zones and departments. Addressing this requires establishing clear processes for reporting vulnerabilities, prioritizing remediation, and using collaboration tools to stay aligned. Additionally, managing multiple clients or environments remotely can introduce complexity, so strong organizational skills and proactive scheduling of scans and follow-ups are essential. Regular virtual meetings and detailed documentation also help maintain transparency and accountability within the team.

What is the difference between Remote Qualys Vulnerability Management vs Remote Vulnerability Analyst?

AspectRemote Qualys Vulnerability ManagementRemote Vulnerability Analyst
CertificationsQualys Certified, Security+CompTIA Security+, CISSP (preferred)
Work EnvironmentSecurity teams, IT departments, using vulnerability management toolsSecurity teams, IT departments, analyzing vulnerabilities and reports
Industry UsageCybersecurity, IT, Managed Security Service ProvidersCybersecurity, IT, consulting firms
Primary FocusManaging and scanning vulnerabilities with Qualys platformAnalyzing vulnerabilities, assessing risks, and reporting

Remote Qualys Vulnerability Management roles focus on using Qualys tools to identify and manage security vulnerabilities, while Remote Vulnerability Analysts analyze vulnerability data, assess risks, and prepare reports. Both roles require cybersecurity knowledge but differ in technical focus and responsibilities.

More about Remote Qualys Vulnerability Management jobs

What cities are hiring for Remote Qualys Vulnerability Management jobs?

Cities with the most Remote Qualys Vulnerability Management job openings:

What are the most commonly searched types of Qualys Vulnerability Management jobs?

The most popular types of Qualys Vulnerability Management jobs are:

What states have the most Remote Qualys Vulnerability Management jobs?

States with the most job openings for Remote Qualys Vulnerability Management jobs include:

What job categories do people searching Remote Qualys Vulnerability Management jobs look for?

The top searched job categories for Remote Qualys Vulnerability Management jobs are:

Infographic showing various Remote Qualys Vulnerability Management job openings in the United States as of September 2026, with employment types broken down into 1% As Needed, 83% Full Time, 14% Part Time, and 2% Contract. Highlights an 82% Physical, 2% Hybrid, and 16% Remote job distribution, with an average salary of $139,599 per year, or $67.1 per hour.

Security Engineer II - Cloud & Vulnerability Management

Remote

Nasuni
IT Services • 201 - 500 employees

Full-time

Medical, Dental, Vision, Life, Retirement, PTO

Posted 10 days ago


Job description

Security Engineer II - Vulnerability Management
Location: United States - Remote
About the role
Nasuni is hiring a Security Engineer II to strengthen vulnerability management across our cloud workloads, on-premises infrastructure, network assets, and employee endpoints.
You will own the recurring operational work that turns security findings into measurable risk reduction: maintaining scanning coverage, triaging vulnerabilities, setting risk-based priorities, coordinating remediation, tracking service-level commitments, validating closure, and producing actionable reporting.
This is a hands-on vulnerability-management position. It is well suited to someone who has personally owned, shaped and operated vulnerability workflows and followed findings through remediation-not someone primarily seeking a cloud architecture, security architecture, or SOC analyst role.
You will join a well-supported security organization that includes a dedicated SecOps function responsible for most day-to-day detection and incident response. You will lead and contribute to incidents, including but not limited to, when vulnerability, asset and endpoint security, or infrastructure expertise is required. Participation in an on-call rotation is required.
Level and scope
You will independently manage defined areas of Nasuni's vulnerability-management program within established security standards. You will make day-to-day prioritization and escalation decisions, coordinate with asset owners, and recommend improvements based on risk trends.
You will partner with senior security team members on program strategy, material risk exceptions, and broader security architecture decisions.
What you will do
  • Own recurring vulnerability scanning, triage, prioritization, remediation tracking, exception follow-up, and closure validation across hybrid infrastructure.
  • Operate and improve vulnerability-management tooling, including Rapid7 InsightVM or comparable platforms.
  • Use Wiz and other asset or cloud-security data to add workload, exposure, ownership, and business context to vulnerability decisions.
  • Maintain accurate visibility into servers, network devices, endpoints, cloud workloads, and other in-scope assets by reconciling scanner, endpoint, cloud, and inventory data.
  • Prioritize findings using exploitability, exposure, asset criticality, business impact, compensating controls, and available threat intelligence-not CVSS alone.
  • Partner with Engineering, SRE, IT, and Infrastructure teams to assign owners, agree on remediation plans, manage blockers, and verify that risk has been reduced.
  • Track remediation SLAs, exceptions, recurring weaknesses, and coverage gaps; escalate material risk using clear evidence.
  • Produce concise reporting that helps technical teams act and gives security leadership an accurate view of exposure and progress.
  • Recommend practical improvements to patching, configuration hygiene, asset ownership, reporting, and remediation workflows.
  • Lead and support security incidents as part of an on-call rotation.
  • Maintain runbooks, evidence, scan records, and remediation documentation for operational continuity and audit readiness.
  • Use AI-assisted tools to accelerate triage, analysis, reporting, and workflow improvement while protecting sensitive data, validating outputs, and remaining accountable for decisions.

Expected impact
You will improve asset and scanning coverage, make remediation priorities more actionable, strengthen SLA performance, improve closure validation, and help reduce recurring vulnerabilities through durable operating improvements.
What you will bring
Must-have qualifications
  • Hands-on experience operating a recurring vulnerability management program or major workstream.
  • Experience with vulnerability discovery, triage, risk-based prioritization, remediation coordination, and closure validation.
  • Experience working with infrastructure, endpoint, network, or cloud asset owners to drive remediation.
  • Practical experience with a platform such as Rapid7 InsightVM, Tenable, Qualys, or equivalent.
  • Experience supporting security incidents as part of an on-call rotation.
  • Demonstrable experience in vulnerability management in a hybrid environment (AWS preferred).
  • Understanding of CVE/CVSS concepts, exploitability, asset criticality, network exposure, and compensating controls.
  • Working knowledge of infrastructure and network security fundamentals.
  • Ability to translate technical findings into clear priorities and actions.
  • Demonstrated ownership, follow-through, and early escalation of blockers.
  • Practical experience using AI-assisted tools in a professional workflow, with appropriate review, validation, and data-handling judgment.

Preferred qualifications
  • Experience with Rapid7 InsightVM.
  • Experience using Wiz or another CSPM platform for cloud workload vulnerability context.
  • Experience reconciling scanner data with CMDB, endpoint, cloud inventory, or ticketing systems.
  • Familiarity with CIS Benchmarks, CISA Known Exploited Vulnerabilities, EPSS, and risk-exception workflows.
  • Scripting, API, workflow-automation, or security-reporting experience.
  • Ideal differentiators
  • Demonstrated improvement in asset coverage, remediation SLA performance, backlog quality, or recurring-finding rates.
  • Experience across cloud, on-premises, network, and endpoint assets.
  • Experience creating repeatable, securely validated AI-assisted security workflows.

Experience guidelines
Typically, 3-5 years of relevant security experience, including at least 2 years of direct vulnerability-management responsibility. Equivalent practical experience is valued. A relevant degree or certifications such as Security+, CySA+, or a cloud-security certification is helpful but not required.
Why work at Nasuni?
As part of our commitment to your well-being, we are pleased to offer comprehensive benefits packages to employees across the US. Benefits packages generally include:
  • Best in class employee onboarding and training
  • "Take What You Need" paid time off policy
  • Comprehensive health, dental and vision plans
  • Company-paid life and disability insurance
  • 401(k) and Roth IRA retirement plan
  • Generous employee referral bonuses
  • Flexible remote work policy
  • 10 Paid Holidays
  • Wide array of wellbeing offerings
  • Pre-tax savings accounts with company contributions
  • Great team culture and social activities
  • Collaborative workspaces
  • Free on-site fitness centers and stocked kitchens in select office locations
  • Professional development resources

Compensation Transparency:
In accordance with U.S. pay transparency laws, Nasuni is committed to providing visibility into compensation for all U.S.-based roles. Click HERE to view our compensation ranges by job grade. Actual compensation will be based on a variety of factors, including a candidate's experience, skills, education, and work location.
To all recruitment agencies: Nasuni does not accept agency resumes. Please do not forward resumes to our job boards, Nasuni employees or any other company location. Nasuni is not responsible for any fees related to unsolicited resumes.
Nasuni is an equal opportunity employer. The equal employment opportunity policy at Nasuni protects employees and job applicants from discrimination on the bases of race, religion, color, sex (including pregnancy, gender identity, and sexual orientation), parental status, national origin, age, disability, family medical history or genetic information, political affiliation, military service, or other non-merit based factors. These protections extend to all management practices and decisions, including recruitment and hiring practices, appraisal systems, promotions, and training and career development programs.
This privacy notice relates to information collected (whether online or offline) by Nasuni Corporation and our corporate affiliates (collectively, "Nasuni") from or about you in your capacity as a Nasuni employee, independent contractor/service provider or as an applicant for an employment or contractor relationship with Nasuni.
This privacy notice relates to information collected (whether online or offline) by Nasuni Corporation and our corporate affiliates (collectively, "Nasuni") from or about you in your capacity as a Nasuni employee, independent contractor/service provider or as an applicant for an employment or contractor relationship with Nasuni.