2

Remote Vulnerability Assessment Jobs (NOW HIRING)

Vulnerability Analyst

Huntsville, AL · Remote

$55K - $75K/yr

Fully Remote Salary*: $55,000 - $75,000 *Dependent upon qualifications Summit 7 is here to rise ... Duties and Responsibilities: Vulnerability Assessment and Management * * Conduct regular ...

Vulnerability Analyst

AL · On-site +1

$55K - $75K/yr

Fully Remote Salary*: $55,000 - $75,000 *Dependent upon qualifications Summit 7 is here to rise ... Duties and Responsibilities: Vulnerability Assessment and Management * * Conduct regular ...

Blue Bell, PA 100% Remote Required Skills - · Expertise in AWS IAM and Azure AD · Infrastructure as Code using Terraform · K8 & Container Security · Vulnerability assessment and resolution · Mid ...

Wireless vulnerability assessment * Web Services (IIS, Apache, Proxy) * Database (SQL Server ... HBSS (remote console, AV, ABM, PA HIPS, ePO) * Traditional Security (Common, Basic, NCV, SCV)

next page

Showing results 1-20

Remote Vulnerability Assessment information

See salary details

$32K

$75K

$124.5K

How much do remote vulnerability assessment jobs pay per year?

As of Jul 27, 2026, the average yearly pay for remote vulnerability assessment in the United States is $74,960.00, according to ZipRecruiter salary data. Most workers in this role earn between $53,000.00 and $93,500.00 per year, depending on experience, location, and employer.

What is the difference between Remote Vulnerability Assessment vs Penetration Tester?

AspectRemote Vulnerability AssessmentPenetration Tester
CertificationsCompTIA Security+, CEH, CISSPOSCP, CEH, GPEN
Work EnvironmentRemote or on-site, focused on identifying vulnerabilitiesPrimarily on-site or remote, actively exploiting vulnerabilities
Employer & Industry UsageIT security firms, corporate security teamsSecurity consulting firms, cybersecurity teams
Search & Comparison IntentUnderstanding vulnerability identification rolesUnderstanding active testing and exploitation roles

Remote Vulnerability Assessments focus on identifying security weaknesses through scanning and analysis, often remotely. Penetration Testers actively exploit vulnerabilities to evaluate security defenses. While both roles require cybersecurity certifications and work in similar environments, assessments are more about detection, whereas penetration testing involves active exploitation to test defenses.

More about Remote Vulnerability Assessment jobs
What cities are hiring for Remote Vulnerability Assessment jobs? Cities with the most Remote Vulnerability Assessment job openings:
What are the most commonly searched types of Vulnerability Assessment jobs? The most popular types of Vulnerability Assessment jobs are:
What states have the most Remote Vulnerability Assessment jobs? States with the most job openings for Remote Vulnerability Assessment jobs include:
Infographic showing various Remote Vulnerability Assessment job openings in the United States as of July 2026, with employment types broken down into 2% As Needed, 79% Full Time, 16% Part Time, and 3% Contract. Highlights an 92% Physical, 2% Hybrid, and 6% Remote job distribution, with an average salary of $74,960 per year, or $36 per hour.
Rapid7 SME Vulnerability Management & Remediation

Rapid7 SME Vulnerability Management & Remediation

ALIS Software LLC

Remote

Contractor

Posted 2 days ago


Job description

Position: Rapid7 SME- Vulnerability Management & Remediation
Location: Remote
Role Overview
We are seeking an experienced Rapid7 Lead Architect with 8-10 years of experience in Vulnerability Management, Security Operations, Security Engineering, and Remediation Automation. The ideal candidate should possess deep expertise in Rapid7 solutions and be capable of leading enterprise-scale vulnerability management programs.
This role will be responsible for strengthening the organization's security posture by establishing robust vulnerability governance, streamlining remediation processes, defining ownership models, and driving automation initiatives. The candidate will work closely with Security, Infrastructure, Endpoint Management, Server, Cloud, and Application teams to reduce risk exposure and improve remediation effectiveness.
Key Responsibilities
Vulnerability Management Leadership
  • Lead enterprise-wide vulnerability management and remediation initiatives.
  • Design and implement risk-based vulnerability management frameworks.
  • Establish remediation SLAs, KPIs, and governance processes across technology towers.
  • Drive reduction of critical and high-risk vulnerabilities through proactive remediation programs.
  • Provide strategic recommendations to improve overall security posture and cyber resilience.

Rapid7 Architecture & Engineering
  • Architect, deploy, optimize, and manage Rapid7 InsightVM, Nexpose, and InsightConnect platforms.
  • Develop scalable vulnerability scanning, asset discovery, and remediation programs.
  • Configure vulnerability assessment policies, dashboards, reporting, and executive scorecards.
  • Ensure accuracy of asset inventory, vulnerability categorization, and risk prioritization.

Remediation Governance & Ownership
  • Define and streamline vulnerability ownership across Endpoint, Server, Infrastructure, Cloud, and Application teams.
  • Review existing remediation workflows and identify process bottlenecks.
  • Establish governance mechanisms for vulnerability tracking, escalation, and compliance.
  • Drive accountability across teams to improve vulnerability closure rates.

Automation & Platform Integration
  • Design and implement integrations between Rapid7 and enterprise platforms including:
  • Microsoft Intune
  • SCCM/MECM
  • ServiceNow
  • Ivanti
  • BigFix
  • Tanium
  • Jamf
  • Leverage Rapid7 APIs and InsightConnect to automate vulnerability detection, ticket creation, remediation, and validation workflows.
  • Drive adoption of automated remediation capabilities to minimize manual effort and accelerate vulnerability closure.

Stakeholder & Program Management
  • Partner with Security Leadership, Infrastructure Teams, Endpoint Teams, and Business Stakeholders.
  • Present vulnerability trends, remediation effectiveness, and risk exposure metrics to senior leadership.
  • Conduct remediation review meetings and vulnerability governance forums.
  • Act as a trusted advisor for vulnerability management strategy and transformation initiatives.

Required Technical Skills
Rapid7 Expertise
  • 5+ years of hands-on experience with:
  • Rapid7 InsightVM
  • Nexpose
  • InsightConnect
  • Rapid7 APIs
  • Experience designing enterprise-scale vulnerability management programs.
  • Strong knowledge of vulnerability lifecycle management.

Security & Risk Management
  • Vulnerability Assessment & Management
  • Vulnerability Prioritization
  • CVE/CVSS Analysis
  • Threat Exposure Management
  • Security Risk Management
  • Patch Management
  • Security Compliance & Governance

Automation & Scripting
  • PowerShell
  • Python
  • REST APIs
  • Workflow Automation
  • ServiceNow Integrations
  • Remediation Orchestration

Infrastructure Knowledge
  • Windows Server Administration
  • Linux Administration
  • Active Directory
  • Cloud Security (Azure, AWS, GCP)
  • Networking & Security Fundamentals

Required Experience
  • 8-10 years of overall IT/Security experience.
  • 5+ years of dedicated experience in Vulnerability Management.
  • Proven experience managing large-scale remediation programs involving thousands of assets and vulnerabilities.
  • Experience driving cross-functional remediation initiatives across infrastructure, server, endpoint, and cloud teams.
  • Strong understanding of enterprise security operations and governance frameworks.
  • Experience in vulnerability remediation automation and orchestration.

Preferred Certifications
  • Rapid7 Certified Administrator/Professional
  • CISSP
  • CISM
  • CEH
  • CompTIA Security+
  • Microsoft Security Certifications
  • ITIL Foundation

Key Deliverables
  • Improve overall security posture through risk reduction initiatives.
  • Reduce vulnerability remediation timelines and SLA breaches.
  • Drive automation of vulnerability remediation workflows.
  • Establish effective ownership and governance models.
  • Improve visibility through executive dashboards and reporting.
  • Enhance integration between Rapid7, ServiceNow, and Device Management platforms.
  • Reduce operational overhead through automated remediation processes.