2

Remote Vulnerability Scanning Jobs in New York (NOW HIRING)

Sr Vulnerability Management Engineer

New York, NY ยท Remote

$114K - $157K/yr

Ensure accurate asset coverage, scanning integrity, and risk-based vulnerability prioritization ... Remote - US Only Travel: No travel required Relocation Assistance: Not authorized Must be legally ...

Security Engineer Full-time Remote Exclusive confidential search -- details shared with qualified ... Secure build and release pipelines, stand up dependency vulnerability scanning, and own remediation ...

Sr. DevOps Engineer

New York, NY ยท On-site +1

$57.75 - $79/hr

... vulnerability scanning, secret management, and CI/CD security controls. * Partner with software ... remote execution. * Experience designing reproducible Python environments and internal package ...

Aws Security Architect

New York, NY ยท Remote

$71 - $92/hr

Expecting the first 2-3 weeks on site in NYC and theremainder of the project to be remote Duties ... Vulnerability Scanning, WAF, Wireless LAN, NAC, DLP, DDoS Mitigation, WAN security, SIEM, Content ...

Government DevOps Engineer - USA

New York, NY ยท On-site +1

$57.75 - $79/hr

New York, NY / Washington, DC / Remote within US (EST/CST time zone) We have an office in New York ... Integrate security and vulnerability scanning tools directly into the CI/CD pipeline to support ...

Principal Security Engineer

Greenwich, CT ยท Remote

$160K - $225K/yr

Apply offensive-security skills including thread modeling, penetration testing and vulnerability ... Embed security into the SDLC, including secrets management, dependency and image scanning, and ...

next page

Showing results 1-20

Remote Vulnerability Scanning information

What is remote vulnerability scanning?

Remote vulnerability scanning is the process of evaluating a computer system, network, or application from a remote location to identify security weaknesses and potential vulnerabilities that could be exploited by attackers. This type of scanning is performed over a network, without needing physical access to the target environment. It helps organizations detect security flaws, misconfigurations, and outdated software remotely, allowing them to address risks proactively. Remote vulnerability scanning is a crucial part of maintaining a strong cybersecurity posture, especially for businesses with distributed or cloud-based assets.

What are the key skills and qualifications needed to thrive as a Remote Vulnerability Scanning Specialist, and why are they important?

To thrive as a Remote Vulnerability Scanning Specialist, you need a solid understanding of networking, cybersecurity principles, and vulnerability management, often supported by a degree in computer science or a related field. Familiarity with tools like Nessus, OpenVAS, Qualys, and relevant certifications such as CompTIA Security+ or CEH are commonly required. Strong analytical thinking, attention to detail, and effective communication are key soft skills for identifying issues and reporting findings to technical and non-technical stakeholders. These skills and qualifications are critical to proactively identifying security weaknesses and helping organizations mitigate cyber risks.

What are the typical challenges faced when performing remote vulnerability scanning, and how can they be addressed?

One common challenge in remote vulnerability scanning is accurately identifying vulnerabilities without causing disruptions to the target systems, as aggressive scans can sometimes impact network performance or trigger security defenses. Additionally, remote scanners may face difficulties in detecting vulnerabilities behind firewalls or in segmented networks. To address these issues, it is important to coordinate scans with IT teams, schedule scans during low-traffic periods, and use authenticated scanning methods when possible. Effective communication and thorough documentation also help ensure that findings are actionable and that scanning activities align with organizational security policies.

What is the difference between Remote Vulnerability Scanning vs Network Security Analyst?

AspectRemote Vulnerability ScanningNetwork Security Analyst
Primary RoleIdentify security weaknesses through automated scansMonitor, analyze, and respond to security threats
Tools & CertificationsVulnerability scanners, certifications like CompTIA Security+SIEM tools, certifications like CISSP or CEH
Work EnvironmentRemote or on-site, focused on scanning toolsTypically on-site or hybrid, involving analysis and incident response

Remote Vulnerability Scanning focuses on automated detection of security flaws, while Network Security Analysts interpret these findings and handle security incidents. Both roles require cybersecurity knowledge and certifications, but their daily tasks and responsibilities differ significantly.

What are the most commonly searched types of Vulnerability Scanning jobs in New York? The most popular types of Vulnerability Scanning jobs in New York are:
What are popular job titles related to Remote Vulnerability Scanning jobs in New York? For Remote Vulnerability Scanning jobs in New York, the most frequently searched job titles are:
What job categories do people searching Remote Vulnerability Scanning jobs in New York look for? The top searched job categories for Remote Vulnerability Scanning jobs in New York are:
What cities in New York are hiring for Remote Vulnerability Scanning jobs? Cities in New York with the most Remote Vulnerability Scanning job openings:
Infographic showing various Remote Vulnerability Scanning job openings in New York as of July 2026, with employment types broken down into 86% Full Time, 10% Part Time, and 4% Contract. Highlights an 59% Physical, 4% Hybrid, and 37% Remote job distribution.

Vulnerability Remediation Engineer

Noblesoft Technologies

Raritan, NJ โ€ข Remote

Contractor

Re-posted 26 days ago


Job description

Job Title: Vulnerability Remediation Engineer

Location:  Raritan, NJ 08869 / REMOTE

Job Description:

  • Implement capabilities for a global Vulnerability Management program: internal/external exposure, imminent threats, prioritization, remediation facilitation.
  • Serve as technical SME for vulnerability tools and processes (Tenable, Qualys, Rapid7, or equivalent).
  • Continuously improve VM processes for coverage, efficiency, and visibility.
  • Leverage automation, analytics, and threat intelligence to improve accuracy and reduce remediation timelines.
  • Operate/optimize scanning platforms, discovery tooling, and reporting pipelines for asset visibility.
  • Partner with Infrastructure, Engineering, Application, and Cloud teams to reduce risk across environments.
  • Lead critical vulnerability identification and response exercises, including zero-day/imminent threats.
  • Develop and maintain metrics, dashboards, and executive-level reporting on posture, remediation progress, and program maturity.
  • Track and communicate remediation SLAs, risk reduction, and program improvements.

Qualifications and Skills:

  • Technical proficiency across network, system, and application layers; scanning, asset discovery, and exploit analysis
  • Hands-on experience with VM tools (e.g., Tenable.io, Qualys VMDR/WAS, Rapid7 InsightVM/AppSec) and discovery utilities (Nmap, SSLScan, Shodan, BitSight, Security Scorecard, custom scripts).
  • Knowledge in threat intel and data-driven prioritization (CVSS/CISA/EPSS).
  • Strong cloud understanding (AWS, Azure, GCP) and modern app stacks.
  • Scripting/automation (Python, PowerShell, Bash) and data analysis (SQL, Excel).
  • Scale-ready processes, metrics, dashboards, and analytics (Tableau, PowerBI).
  • Cross-functional collaboration; clear risk communication to technical and business stakeholders.
  • Knowledge of IT processes, secure baselines, and control frameworks (CIS, NIST, ISO, Microsoft, etc.).

Preferred:

  • Relevant certifications such as OSCP, GWAPT, CEH, or CSSLP.
  • Experience working in Agile and DevSecOps environments.
  • Knowledge of containerized applications and security tools (e.g., Docker, Kubernetes, etc.).
  • Understanding of regulatory compliance requirements (e.g., PCI DSS, GDPR, HIPAA).
  • Experience with penetration testing and exploit development.