About the Job The Cybersecurity Vulnerability Analyst will support the DC3 program and will be primarily responsible for reviewing and vetting security vulnerability reports submitted to the DoD VDP ...
About the Job The Cybersecurity Vulnerability Analyst will support the DC3 program and will be primarily responsible for reviewing and vetting security vulnerability reports submitted to the DoD VDP ...
Experience with Security/Vulnerability detections development and release * Experience of Vulnerability Management product development * Experience designing and implementing validation workflows for ...
Experience with Security/Vulnerability detections development and release * Experience of Vulnerability Management product development * Experience designing and implementing validation workflows for ...
Job Title: Vulnerability Remediation Specialist Job Location: Charlotte, NC Job duration: 12 ... Problem resolution (security vulnerabilities) Goal setting Collaboration Influence Project ...
Quick apply
Job Title: Vulnerability Remediation Specialist Job Location: Charlotte, NC Job duration: 12 ... Problem resolution (security vulnerabilities) Goal setting Collaboration Influence Project ...
About the team In this role, you'll join Stripe's Vulnerability Management team, whose mission is ... In this role, you'll be responsible for the end-to-end lifecycle of security vulnerability reports ...
About the team In this role, you'll join Stripe's Vulnerability Management team, whose mission is ... In this role, you'll be responsible for the end-to-end lifecycle of security vulnerability reports ...
Cloud Security Engineer
Austin, TX · On-site
Requires 5+ years of experience in vulnerability management * Excellent knowledge about common security vulnerabilities * Experience in network, systems, web, and infrastructure security * Very good ...
Quick apply
Cloud Security Engineer
Austin, TX · On-site
Requires 5+ years of experience in vulnerability management * Excellent knowledge about common security vulnerabilities * Experience in network, systems, web, and infrastructure security * Very good ...
Aid in defining and implementing strategy for applying automation, AI, and agentic AI to application security, vulnerability management, ethical hacking, and attack surface management use cases.
Aid in defining and implementing strategy for applying automation, AI, and agentic AI to application security, vulnerability management, ethical hacking, and attack surface management use cases.
Aid in defining and implementing strategy for applying automation, AI, and agentic AI to application security, vulnerability management, ethical hacking, and attack surface management use cases.
Aid in defining and implementing strategy for applying automation, AI, and agentic AI to application security, vulnerability management, ethical hacking, and attack surface management use cases.
12 Month Contract Security Test Engineer San Diego, CA Secret Clearance Required --Desired Experience-- Experience penetration testing and security vulnerability assessments Government security ...
12 Month Contract Security Test Engineer San Diego, CA Secret Clearance Required --Desired Experience-- Experience penetration testing and security vulnerability assessments Government security ...
Network Security Consultant
Prosper, TX · Remote
Network Security Consultant Client Location: Blue Bell, PA 100% Remote Required Skills - Expertise in AWS IAM and Azure AD Infrastructure as Code using Terraform K8 & Container Security Vulnerability ...
Quick apply
Network Security Consultant
Prosper, TX · Remote
Network Security Consultant Client Location: Blue Bell, PA 100% Remote Required Skills - Expertise in AWS IAM and Azure AD Infrastructure as Code using Terraform K8 & Container Security Vulnerability ...
This Cybersecurity Vulnerability Analyst supports a Vulnerability Disclosure Program (VDP) within the federal government and is responsible for reviewing and vetting security vulnerability reports ...
This Cybersecurity Vulnerability Analyst supports a Vulnerability Disclosure Program (VDP) within the federal government and is responsible for reviewing and vetting security vulnerability reports ...
Responsible for reviewing and vetting security vulnerability reports submitted to the DoD VDP from outside hackers. * The Analyst will evaluate the reports to ensure the vulnerability is reproducible ...
Responsible for reviewing and vetting security vulnerability reports submitted to the DoD VDP from outside hackers. * The Analyst will evaluate the reports to ensure the vulnerability is reproducible ...
System Vulnerability Analyst - Entry to Mid Level (Maryland)
Fort George G Meade, MD · On-site +1
$87K - $153K/yr
System Vulnerability Analysts (Network Cyber Mitigations Engineers) at NSA have the opportunity to work in the following areas: - Wired and wireless network security - Vulnerability discovery and ...
System Vulnerability Analyst - Entry to Mid Level (Maryland)
Fort George G Meade, MD · On-site +1
$87K - $153K/yr
System Vulnerability Analysts (Network Cyber Mitigations Engineers) at NSA have the opportunity to work in the following areas: - Wired and wireless network security - Vulnerability discovery and ...
System Vulnerability Analyst - Entry to Mid Level (Maryland) with Security Clearance
Fort George G Meade, MD · On-site
$87K - $153K/yr
System Vulnerability Analysts (Network Cyber Mitigations Engineers) at NSA have the opportunity to work in the following areas: - Wired and wireless network security - Vulnerability discovery and ...
System Vulnerability Analyst - Entry to Mid Level (Maryland) with Security Clearance
Fort George G Meade, MD · On-site
$87K - $153K/yr
System Vulnerability Analysts (Network Cyber Mitigations Engineers) at NSA have the opportunity to work in the following areas: - Wired and wireless network security - Vulnerability discovery and ...
About The Role This Cybersecurity Vulnerability Analyst supports a Vulnerability Disclosure Program (VDP) within the federal government and is responsible for reviewing and vetting security ...
About The Role This Cybersecurity Vulnerability Analyst supports a Vulnerability Disclosure Program (VDP) within the federal government and is responsible for reviewing and vetting security ...
Lead, Security Research Engineer
Melbourne, FL · On-site
$95K - $125K/yr
Lead, Security/Vulnerability Research Engineer (Active TS/SCI Clearance) Job Code: 36828 Job Location: Melbourne, FL Job Schedule: 9/80 (Every other Friday off) or Standard 5/8 Relocation: Relocation ...
Lead, Security Research Engineer
Melbourne, FL · On-site
$95K - $125K/yr
Lead, Security/Vulnerability Research Engineer (Active TS/SCI Clearance) Job Code: 36828 Job Location: Melbourne, FL Job Schedule: 9/80 (Every other Friday off) or Standard 5/8 Relocation: Relocation ...
Security Engineer
Manhattan, NY · On-site
Understanding of network security principles * Incident response principles * Endpoint experience ... Vulnerability Management - Qualys * Basic Public Cloud experience - AWS, Azure, GCP
Security Engineer
Manhattan, NY · On-site
Understanding of network security principles * Incident response principles * Endpoint experience ... Vulnerability Management - Qualys * Basic Public Cloud experience - AWS, Azure, GCP
IT Security Administrator
New York, NY · On-site
$50K - $100K/yr
Job Summary * - Manage and support IT system security, including configuration checks and policy compliance * - Perform security vulnerability remediation and coordinate with relevant teams ...
IT Security Administrator
New York, NY · On-site
$50K - $100K/yr
Job Summary * - Manage and support IT system security, including configuration checks and policy compliance * - Perform security vulnerability remediation and coordinate with relevant teams ...
Cybersecurity Vulnerability Analyst
$132K - $180K/yr
Security Clearance: Active Secret Location: Linthicum Heights, MD Job Type: Full-Time Target Salary ... This Cybersecurity Vulnerability Analyst supports a Vulnerability Disclosure Program (VDP) within ...
Quick apply
Cybersecurity Vulnerability Analyst
$132K - $180K/yr
Security Clearance: Active Secret Location: Linthicum Heights, MD Job Type: Full-Time Target Salary ... This Cybersecurity Vulnerability Analyst supports a Vulnerability Disclosure Program (VDP) within ...
Security Vulnerability Analysis - 5-10 years * Web Application Security - 5-10 years * Web Application Security and Cryptography - 5-10 years * Network Security - 5-10 years * Information Management ...
Quick apply
Security Vulnerability Analysis - 5-10 years * Web Application Security - 5-10 years * Web Application Security and Cryptography - 5-10 years * Network Security - 5-10 years * Information Management ...
The Cloud Vulnerability Detection, Response, and Remediation Subject Matter Expert (SME) is ... Respond to cloud security incidents and provide expert guidance on containment and remediation.
The Cloud Vulnerability Detection, Response, and Remediation Subject Matter Expert (SME) is ... Respond to cloud security incidents and provide expert guidance on containment and remediation.
Security Vulnerability information
See salary details
$61.5K - $74.6K
0% of jobs
$74.6K - $87.7K
2% of jobs
$87.7K - $100.8K
3% of jobs
$100.8K - $113.9K
6% of jobs
$113.9K - $127K
5% of jobs
$127K - $140K
4% of jobs
$141.4K is the 25th percentile. Wages below this are outliers.
$140K - $153.1K
39% of jobs
$161.2K is the 75th percentile. Wages above this are outliers.
$153.1K - $166.2K
24% of jobs
$166.2K - $179.3K
2% of jobs
$179.3K - $192.4K
0% of jobs
$192.4K - $205.5K
14% of jobs
$61.5K
$152.8K
$205.5K
How much do security vulnerability jobs pay per year?
What are security vulnerabilities?
What are some typical challenges faced by professionals working in security vulnerability assessment roles?
What is the difference between Security Vulnerability vs Security Analyst?
| Aspect | Security Vulnerability | Security Analyst |
|---|---|---|
| Role Focus | Identifying and assessing weaknesses in systems | Monitoring, analyzing, and responding to security threats |
| Required Skills | Knowledge of security flaws, risk assessment | Threat detection, incident response, security tools |
| Certifications | CompTIA Security+, CEH, CISSP (entry-level) | CISSP, Security+, CEH, often more advanced |
| Work Environment | Security testing labs, vulnerability scanning tools | Security operations centers, corporate networks |
Security Vulnerability refers to specific weaknesses in systems that can be exploited, while a Security Analyst actively monitors and manages security threats to protect organizational assets. Both roles are essential in cybersecurity but focus on different aspects of security management.
What are the key skills and qualifications needed to thrive as a Security Vulnerability Analyst, and why are they important?

Cybersecurity Vulnerability Analyst (54411) with Security Clearance
SecureStrux, LLCLinthicum Heights, MD
$108K - $148K/yr
Other
Medical, Retirement
Posted 10 days ago
Job description
They will assess each vulnerability for severity and assign an associated risk statement. The HackerOne Triage console tool will be utilized to assist in assigning and prioritizing reports. It will also assist the Analyst in helping identify duplicate submissions.
Valid reports will be written in a DoD approved format and sent to the Vulnerability Management Analyst team for system owner coordination and mitigation. The Vulnerability Analyst will be a VDP liaison with the hacker community. The Vulnerability Analyst will also: * Utilize offensive toolsets such as Kali Linux to safely analyze production networks and systems, documenting steps and procedures to produce usable vulnerability assessments for the customer.
* Identify and investigate vulnerabilities, asses exploit potential, and document findings and remedies for presentation to facilitate mitigations on customer systems. * Conduct web application vulnerability assessment testing using both automated tools and manual web exploitation techniques, using tools such as Burp Suite and open-source toolsets. * Utilize a variety of industry standard security tools to conduct automated scans against systems and applications.
* Develop and execute proof-of-concept exploits to demonstrate the real-world impact of identified vulnerabilities, utilizing various web exploitation methods. What You'll Bring * Bachelor's degree and 5+ years of experience; OR Master's Degree and 3+ years of experience. Bachelor's or Master's degree must be one of the following fields: Information Technology, Cybersecurity, Computer Science, Information Systems, Data Science, or Software Engineering.
In lieu of a degree in one of these fields, an additional 4 years of relevant experience or specialized training may be considered. * Active Secret Clearance required to start. * Active Security+ or equivalent Certification required to start.
* In-depth understanding of information security principles and practices. * Utilize MITRE ATT&CK, CVSS, and NIST frameworks to assess vulnerability severity and risk impact. * In-depth understanding of web exploitation concepts and techniques.
* Knowledge and understanding of the Open Web Application Security Project (OWASP) top 10. * Experience operating in a professional IT or cybersecurity environment. * Experience investigating security events, threats and/or vulnerabilities.
* Understand information security principles, technologies and practices. * Excellent customer service skills. Preferred * CEH, CCNA-Security, CySA+, OSCP (or equivalent), PenTest+ or similar certification a plus.
* Possess DoD 8570.01-M Information Assurance Technician (IAT) Level II Baseline Certification. * Completed multiple Hack-The-Box penetration testing labs and challenges, developing hands‑on expertise in vulnerability enumeration, exploitation, privilege escalation, and post‑exploitation techniques within realistic, adversarial environments. * An in-depth understanding of penetration testing methodology, including recon, exploit, persistence, etc.
* A solid understanding of networking protocols, their uses, and their potential misuses. * Programming experience in one or more languages, experience in HTLM/CSS or SQL. * Experience with one or more scripting languages such as PowerShell, Bash, Python or Perl.
Salary Range: $108,000 - $148,000 Our Approach At SecureStrux, we are committed to core values that guide the way we work with one another and our clients. As a team member, you will Create Team Synergy, Drive Continuous Innovation, Deliver with Integrity, and have the Freedom to Own it. Our thriving company culture supports our employees as they seek to grow with us!
What We Offer Between our virtual environment where you can evaluate recent technologies and enhance your skills, and a generous annual professional development stipend, you will join a team that enjoys working on leading-edge technologies for world-class clients. We offer a robust total compensation package that includes comprehensive health benefits to support you and your family, flexible time off, continuing education allowance, a donation allowance for charitable causes, profit sharing, and a matched 401k. Employment Types: Full-time Work Arrangements: On-site Locations: Maryland
About SecureStrux
Sourced by ZipRecruiter
Industry
Network security
Company size
11 - 50 Employees
Headquarters location
Lancaster, PA, US
Year founded
2013