1

Vulnerability Analyst Jobs in Oklahoma (NOW HIRING)

Lead vulnerability management efforts by reviewing findings, assessing operational risk, prioritizing remediation activities, tracking corrective actions, and reporting results. * Analyze threat ...

Lead vulnerability management efforts by reviewing findings, assessing operational risk, prioritizing remediation activities, tracking corrective actions, and reporting results. * Analyze threat ...

CYBER SECURITY ANALYST L2

Tulsa, OK · On-site

$35K - $76K/yr

... basic vulnerability checks to support day-to-day cybersecurity operations and maintain system ... and Analysis-"Assist in triaging security incidents and document findings in the incident ...

Oversee application vulnerability management activities, including SAST, DAST, and software composition analysis (SCA) * Coordinate remediation, risk acceptance, and exception tracking for ...

Oversee application vulnerability management activities, including SAST, DAST, and software composition analysis (SCA) * Coordinate remediation, risk acceptance, and exception tracking for ...

Lead security incident response, leveraging tools like SentinelOne, Huntruess, and Google SecOps to detect, analyze, and mitigate threats. * Vulnerability and Risk Management: Perform vulnerability ...

Security Operations Engineer

Tulsa, OK · On-site

$120 - $160/hr

SIEM operations: alert triage, detection rule authoring (signature‑based and behavioural), log analysis and correlation * Vulnerability management: CSPM tooling, risk‑based prioritisation, CVSS ...

New

next page

Showing results 1-20

Vulnerability Analyst information

See Oklahoma salary details

$28.6K

$67.6K

$120K

How much do vulnerability analyst jobs pay per year?

As of Sep 4, 2026, the average yearly pay for vulnerability analyst in Oklahoma is $67,644.00, according to ZipRecruiter salary data. Most workers in this role earn between $48,500.00 and $80,300.00 per year, depending on experience, location, and employer.

What is a vulnerability analyst?

A Vulnerability Analyst is a cybersecurity professional responsible for identifying, assessing, and mitigating security weaknesses in an organization's systems, networks, and applications. They use tools like vulnerability scanners, penetration testing frameworks, and security assessments to identify potential threats. Their role includes analyzing vulnerabilities, prioritizing risks, and working with IT and security teams to implement necessary patches or fixes. They also stay up to date with emerging threats and ensure compliance with security policies and regulations.

What are the typical day-to-day responsibilities of a vulnerability analyst?

As a Vulnerability Analyst, your daily tasks often include running vulnerability scans, analyzing findings, prioritizing risks based on severity, and working with IT or development teams to coordinate remediation efforts. You will also document your findings, prepare reports for stakeholders, and stay informed about the latest security threats and exploits. Collaboration with other security professionals and IT staff is common, as resolving vulnerabilities often requires cross-functional teamwork. This role requires a balance of technical analysis and effective communication to ensure organizational security posture is continuously improved.

What are the key skills and qualifications needed to thrive as a vulnerability analyst, and why are they important?

To thrive as a Vulnerability Analyst, you need expertise in cybersecurity principles, risk assessment, and vulnerability management, often supported by a degree in information security or a related field. Familiarity with vulnerability scanning tools (such as Nessus, Qualys, or Rapid7), knowledge of operating systems, and certifications like CompTIA Security+ or CEH are commonly required. Strong analytical thinking, attention to detail, and effective communication skills set top candidates apart. These abilities are crucial for accurately identifying system weaknesses and effectively advising teams on how to remediate security threats.

How do you become a vulnerability analyst?

To become a vulnerability analyst, typically one needs a bachelor's degree in cybersecurity, computer science, or a related field, along with knowledge of network protocols, operating systems, and security tools. Gaining experience through internships or entry-level IT roles and obtaining certifications such as CompTIA Security+ or Certified Ethical Hacker can enhance prospects. Strong analytical skills and familiarity with vulnerability scanning tools like Nessus or Qualys are also important.

What does a vulnerability analyst do?

A vulnerability analyst identifies, assesses, and prioritizes security weaknesses in computer systems, networks, and applications. They use tools like vulnerability scanners and follow industry standards to recommend remediation strategies, often working with cybersecurity teams to improve overall security posture.

What are the most commonly searched types of Vulnerability Analyst jobs in Oklahoma?

The most popular types of Vulnerability Analyst jobs in Oklahoma are:

What are popular job titles related to Vulnerability Analyst jobs in Oklahoma?

For Vulnerability Analyst jobs in Oklahoma, the most frequently searched job titles are:

What job categories do people searching Vulnerability Analyst jobs in Oklahoma look for?

The top searched job categories for Vulnerability Analyst jobs in Oklahoma are:

What cities in Oklahoma are hiring for Vulnerability Analyst jobs?

Cities in Oklahoma with the most Vulnerability Analyst job openings:

Infographic showing various Vulnerability Analyst job openings in Oklahoma as of August 2026, with employment types broken down into 85% Full Time, 10% Part Time, and 5% Contract. Highlights an 84% Physical, 6% Hybrid, and 10% Remote job distribution, with an average salary of $67,644 per year, or $32.5 per hour.

OT Cyber Analyst

HF Sinclair

Tulsa, OK • On-site

Full-time

Medical, Dental, Vision, Retirement, PTO

Posted 10 days ago


HF Sinclair rating

8.6

Company rating: 8.6 out of 10

Based on 36 frontline employees who took The Breakroom Quiz

12th of 87 rated oil and gas companies


Job description

Basic Function

HF Sinclair is seeking for a OT Cyber Analyst in the following locations Dallas,TX, Arestia,NM, El Dorado, KS ,Tulsa,OK, Casper,WY, Sinclair, WY, Salt Lake City, UT, Woods Cross, or Anacortes, WA .The OT Cybersecurity Analyst serves as a fleet-wide Operational Technology (OT) cybersecurity specialist responsible for strengthening the security, visibility, and resilience of Industrial Automation and Control Systems (IACS) across HF Sinclair sites. The position applies specialized depth and breadth of OT cybersecurity expertise to independently interpret security telemetry, threat and vulnerability information, control gaps, and operational risk; recommend and drive improvements to monitoring, incident response, vulnerability management, asset visibility, secure access, and ISA/IEC 62443-aligned practices; and provide expert guidance to site and enterprise stakeholders. The role leads complex cross-functional cybersecurity workstreams and projects of moderate risk, resource requirements, and complexity, exercises independent judgment within established governance, and drives measurable fleet-wide risk reduction and continuous improvement in coordination with the OT Infrastructure & Cybersecurity Lead, OT System & Infrastructure Specialist, regional support teams, site OT teams, IT, vendors, and business stakeholders.

Job Duties
  • Own and oversee OT cybersecurity monitoring and telemetry health across fleet environments, including SIEM, Syslog, endpoint protection, security dashboards, and approved monitoring platforms.
  • Serve as the primary liaison with the 24/7 SOC team to review, investigate, correlate, and escalate OT cybersecurity alerts, suspicious activity, authentication anomalies, remote access events, and policy violations.
  • Lead and support OT cybersecurity incident response activities, including investigations, root cause analysis, risk assessments, containment planning, recovery efforts, and corrective actions.
  • Develop, maintain, and enhance OT security monitoring use cases, alerting, dashboards, reporting, detection logic, and escalation procedures.
  • Identify and resolve gaps in OT asset visibility, monitoring coverage, vulnerability management, and asset inventory systems to improve fleet-wide security posture.
  • Lead vulnerability management efforts by reviewing findings, assessing operational risk, prioritizing remediation activities, tracking corrective actions, and reporting results.
  • Analyze threat intelligence, security advisories, patches, and vendor notifications to assess operational impact and recommend appropriate mitigation strategies.
  • Develop and report cybersecurity metrics related to monitoring coverage, endpoint protection, vulnerability management, asset inventory, and overall fleet visibility.
  • Support cybersecurity audits, compliance initiatives, risk assessments, and regulatory readiness activities by validating controls, reviewing evidence, and driving corrective actions.
  • Serve as a subject matter expert on OT cybersecurity best practices, including asset visibility, security monitoring, incident response, vulnerability management, and risk management.
  • Evaluate vendor risk, third-party connectivity, and secure remote access practices, recommending risk-based controls and improvements.
  • Maintain governance of OT asset inventories, network documentation, system records, and cybersecurity documentation to ensure accuracy and enterprise visibility.
  • Partner with OT, operations, maintenance, IT, cybersecurity, and vendor stakeholders to improve cybersecurity controls, monitoring effectiveness, and asset visibility across fleet locations.
  • Lead cybersecurity projects and workstreams, coordinating stakeholders, managing risks, and delivering operational and cybersecurity objectives.
  • Provide technical guidance, mentoring, and cybersecurity expertise to site and enterprise teams while translating emerging threats and vulnerabilities into actionable improvements.

Special assignments or tasks assigned to the employee by their supervisor, as determined from time to time in their sole and complete discretion.

Experience
  • At least 5 years of progressively responsible experience in cybersecurity, OT security, IT security operations, systems or network administration, industrial control systems, or equivalent technical disciplines, with demonstrated ownership of complex security activities or programs. 
  • Demonstrated specialized knowledge of Operational Technology, Industrial Automation and Control Systems (IACS), distributed control systems, PLC/SCADA environments, industrial networks, and refinery/process control environments, with the ability to assess cybersecurity risk in the context of safety, reliability, and operations. 
  • Advanced hands-on experience with security telemetry and operational security tools such as Syslog collection, SIEM, endpoint protection, vulnerability management, asset visibility, dashboards, ticketing, and reporting, including the ability to improve tool coverage, data quality, detections, and operational use. 
  • Experience owning or materially improving enterprise or fleet-wide asset inventories, endpoint coverage, logging coverage, configuration records, vulnerability visibility, or cybersecurity monitoring capabilities in OT, industrial, or complex infrastructure environments. 
  • Applied knowledge of ISA/IEC 62443 principles, especially asset inventory, zones and conduits, security monitoring, incident response, vulnerability management, risk management, secure access, and secure operation of IACS environments; experience translating framework requirements into practical controls and processes preferred. 
  • Demonstrated ability to interpret internal and external cybersecurity challenges, develop risk-based recommendations, and communicate complex technical findings, remediation options, operational impacts, and business risk to technical teams, site leadership, and enterprise stakeholders. 
  • Experience leading or coordinating audits, compliance activities, risk assessments, control testing, evidence validation, corrective action programs, or other governance activities across multiple stakeholders or locations preferred. 
  • Demonstrated ability to make independent, risk-based decisions within established governance, work calmly under pressure, prioritize competing cybersecurity and operational demands, and escalate material risks appropriately. 
  • Proven ability to lead cross-functional teams or projects through influence rather than direct authority, including work with moderate resource requirements, risk, dependencies, and/or complexity. 
  • Possesses strong written and verbal communication skills, sound judgment, integrity, accountability, analytical thinking, and a continuous-improvement mindset; demonstrates the ability to provide expert guidance and thought leadership within the OT cybersecurity discipline. 
Education Level

A minimum of a bachelor's degree in cybersecurity, computer science, information assurance, management information systems, engineering technology, industrial technology, or related field is preferred. Equivalent cybersecurity, OT, military, technical, or industrial experience may be considered in lieu of degree requirements.

Required Skills
  • 5+ years of progressively responsible cybersecurity, security operations, OT support, industrial control systems, or infrastructure experience, including demonstrated ownership of complex cybersecurity work. 
  • ISA/IEC 62443 Cybersecurity Fundamentals, Security+, SSCP, GICSP, CySA+, GIAC, Microsoft, endpoint protection, SIEM, vulnerability management, or comparable OT/cybersecurity certifications are a plus. 
  • Advanced proficiency with security telemetry and monitoring capabilities for Syslog, SIEM, endpoint protection, vulnerability management, asset visibility, dashboards, metrics, and reporting, including the ability to diagnose coverage gaps and recommend or implement improvements. 
  • Strong applied knowledge of OT cybersecurity concepts including alert triage and correlation, log analysis, incident response, vulnerability and patch risk prioritization, secure remote access, third-party risk, asset visibility, ISA/IEC 62443 principles, compliance controls, and compensating safeguards. 
  • Ability to independently interpret complex technical and business challenges, exercise expert judgment, and develop risk-based recommendations that improve OT cybersecurity processes, controls, services, and measurable business outcomes. 
  • Ability to lead cross-functional cybersecurity projects and functional workstreams with moderate resource requirements, risk, and/or complexity; influence stakeholders, establish priorities, coordinate dependencies, and drive decisions without direct supervisory authority. 
  • Ability to serve as a subject matter expert and escalation resource, communicate effectively with technical and non-technical leaders, mentor less-experienced personnel, and promote consistent fleet-wide OT cybersecurity practices. 
  • Ability to support fleet-wide sites with up to 40% travel by land or air. 
Supervisory/Managerial Responsibility
Leads the work of others as needed and/or acts as team lead or project manager on mid-sized or large projects.
Work Conditions
Office based with travel up to 40% of time by land and air is required. Petroleum refinery, warehouse/plant environment, and out-of-doors environment including but not limited to chemicals, pressure vessels, tanks, rotating equipment, fumes or airborne particles, working in confined spaces and exposure to the risk of electrical shock. Subject to all temperatures, weather and varying road conditions.
Benefits
HF Sinclair offers a comprehensive benefits package designed to support the well-being of our employees and their families. Our benefits include, but are not limited to, the following:
  • Medical Insurance
  • Vision Insurance
  • Dental Insurance
  • Paid Time-Off
  • 401(k) Retirement Plan with match
  • Educational Reimbursement
  • Parental Bonding Time
  • Employee Discounts
We are committed to fostering a supportive and inclusive work environment, ensuring our employees have the resources needed to thrive professionally and personally. Benefit eligibility is governed by official plan documents, for more details visit Total Rewards.
Physical Requirements
Job conditions require standing, walking, sitting, twisting, stooping, crouching, kneeling, talking or hearing, making visual inspections, making precise hand and finger movements, reaching or grasping, perceiving color differences, and ability to wear personal protective equipment (beards not permitted).  Job conditions may require lifting or carrying and pushing or pulling up to 50 lbs, and climbing up to 15 ft.  
Our One HF Sinclair Culture:
At HF Sinclair, we are united through our One HF Sinclair Culture, which is underpinned by our five core values of Safety, Integrity, Teamwork, Ownership and Inclusion. Developed to empower our people, our five core cultural values are at the heart of everything we do and extend to how we engage our stakeholders. These values influence our decisions, shape our behaviors and keep us connected across the entire organization. We maintain a true Safety culture for our employees, communities, environments and customers. Our goal is to make sure everyone returns home safely each day. We have a long-standing commitment to Integrity and ethical behavior and do what is right for our employees, investors, communities and the environment. We encourage employees to Step Up and Stand Out by championing a culture of Teamwork and Ownership. We foster a culture of Inclusion by encouraging diversity of experiences, viewpoints and backgrounds. What makes each of us different, together makes us stronger.
About HF Sinclair Corporation
HF Sinclair Corporation, headquartered in Dallas, Texas, is an independent energy company that produces and markets high-value light products such as gasoline, diesel fuel, jet fuel, renewable diesel and other specialty products. HF Sinclair owns and operates refineries located in Kansas, Oklahoma, New Mexico, Wyoming, Washington and Utah and markets its refined products principally in the Southwest U.S., the Rocky Mountains extending into the Pacific Northwest and in other neighboring Plains states. HF Sinclair supplies high-quality fuels to more than 1,500 branded stations and licenses the use of the Sinclair brand at more than 300 additional locations throughout the country. In addition, subsidiaries of HF Sinclair produce and market base oils and other specialized lubricants in the U.S., Canada and the Netherlands, and export products to more than 80 countries. Through its subsidiaries, HF Sinclair produces renewable diesel at two of its facilities in Wyoming and also at its facility in Artesia, New Mexico. HF Sinclair provides petroleum product and crude oil transportation, terminalling, storage and throughput services to its refineries and the petroleum industry.
Equal Opportunity Employer

HF Sinclair Corporation is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, age, disability, veteran status or any other prohibited ground of discrimination.


What HF Sinclair employees say

Pay

Benefits

Hours and flexibility

Workplace

Get the full story on Breakroom