1

Vulnerability Analyst Jobs in Seattle, WA (NOW HIRING)

Perform Vulnerability Analysis of applications based on the industry wide Application Security Threat Models like ASF, STRIDE and Risk Assessment model like DREAD. Prepare technical solutions to ...

Vulnerability Researcher

Seattle, WA

$142K - $263K/yr

  • Medical

  • Dental

  • Retirement

Analyzing and exploiting vulnerabilities is a crucial aspect of this position. This role demands ... vulnerability classes and exploitation techniques Creative & effective problem-solving and ...

Attack Surface Analyst 2

Seattle, WA · On-site

$120 - $160/hr

Lead triage of critical vulnerability findings with partner teams and stakeholders * Analyze risks from emergent vulnerabilities and patch releases and coordinate expedited remediation * Research ...

New

Attack Surface Analyst 2 (Hybrid - Seattle)

Seattle, WA · On-site

$121K - $188K/yr

  • Medical

  • Dental

  • Vision

  • Life

  • Retirement

  • PTO

Lead the triage of critical vulnerability findings alongside partner teams and stakeholders to analyze the risk of emergent vulnerabilities and patch releases, coordinating expedited remediation as ...

next page

Showing results 1-20

Vulnerability Analyst information

See Seattle, WA salary details

$35.3K

$83.4K

$147.9K

How much do vulnerability analyst jobs pay per year?

As of Aug 20, 2026, the average yearly pay for vulnerability analyst in Seattle, WA is $83,373.00, according to ZipRecruiter salary data. Most workers in this role earn between $59,700.00 and $99,000.00 per year, depending on experience, location, and employer.

What is a vulnerability analyst?

A Vulnerability Analyst is a cybersecurity professional responsible for identifying, assessing, and mitigating security weaknesses in an organization's systems, networks, and applications. They use tools like vulnerability scanners, penetration testing frameworks, and security assessments to identify potential threats. Their role includes analyzing vulnerabilities, prioritizing risks, and working with IT and security teams to implement necessary patches or fixes. They also stay up to date with emerging threats and ensure compliance with security policies and regulations.

What are the typical day-to-day responsibilities of a vulnerability analyst?

As a Vulnerability Analyst, your daily tasks often include running vulnerability scans, analyzing findings, prioritizing risks based on severity, and working with IT or development teams to coordinate remediation efforts. You will also document your findings, prepare reports for stakeholders, and stay informed about the latest security threats and exploits. Collaboration with other security professionals and IT staff is common, as resolving vulnerabilities often requires cross-functional teamwork. This role requires a balance of technical analysis and effective communication to ensure organizational security posture is continuously improved.

What are the key skills and qualifications needed to thrive as a vulnerability analyst, and why are they important?

To thrive as a Vulnerability Analyst, you need expertise in cybersecurity principles, risk assessment, and vulnerability management, often supported by a degree in information security or a related field. Familiarity with vulnerability scanning tools (such as Nessus, Qualys, or Rapid7), knowledge of operating systems, and certifications like CompTIA Security+ or CEH are commonly required. Strong analytical thinking, attention to detail, and effective communication skills set top candidates apart. These abilities are crucial for accurately identifying system weaknesses and effectively advising teams on how to remediate security threats.

How do you become a vulnerability analyst?

To become a vulnerability analyst, typically one needs a bachelor's degree in cybersecurity, computer science, or a related field, along with knowledge of network protocols, operating systems, and security tools. Gaining experience through internships or entry-level IT roles and obtaining certifications such as CompTIA Security+ or Certified Ethical Hacker can enhance prospects. Strong analytical skills and familiarity with vulnerability scanning tools like Nessus or Qualys are also important.

What does a vulnerability analyst do?

A vulnerability analyst identifies, assesses, and prioritizes security weaknesses in computer systems, networks, and applications. They use tools like vulnerability scanners and follow industry standards to recommend remediation strategies, often working with cybersecurity teams to improve overall security posture.

What are the most commonly searched types of Vulnerability Analyst jobs in Seattle, WA?

The most popular types of Vulnerability Analyst jobs in Seattle, WA are:

What job categories do people searching Vulnerability Analyst jobs in Seattle, WA look for?

The top searched job categories for Vulnerability Analyst jobs in Seattle, WA are:

Infographic showing various Vulnerability Analyst job openings in Seattle, WA as of August 2026, with employment types broken down into 25% Full Time, and 75% Contract. Highlights an 100% In-person job distribution, with an average salary of $83,373 per year, or $40.1 per hour.

Staff Security Engineer - Vulnerability Management

Uber Technologies, Inc.

Seattle, WA • On-site, Remote

Full-time

Retirement

Re-posted 4 days ago


Uber rating

6.8

Company rating: 6.8 out of 10

Based on 115 frontline employees who took The Breakroom Quiz

4th of 9 rated taxi private hire


Job description

About the Role

Our mission is to protect, defend, and secure the company's products, infrastructure, and data by building highly available, scalable, and extensible security solutions and services. We are seeking a Staff Security Engineer, Vulnerability Management to lead the evolution of our Vulnerability Management Platform. In this role, you will architect the next generation of our Risk-Based Vulnerability Management (RBVM) systems, transforming how we identify, prioritize, and remediate exposure across a massive digital footprint.

You will drive technical excellence across our vulnerability management landscape, from on-prem, cloud, container security to corporate endpoint hygiene. As a Staff Engineer, you will be a technical visionary and mentor, leading the transition toward Continuous Threat Exposure Management and AI-driven remediation workflows that operate at enterprise scale.

What You Will Do

  • RBVM Platform Architecture: Design and scale Security Posture Management tools and platforms to provide a unified, risk-scored view of vulnerabilities across on-prem, cloud, containers, VMs, and endpoints.
  • Automation & Orchestration: Build automated remediation workflows and systems that will reduce median response times for emerging threats and scale across decentralized teams.
  • Technical Strategy: Lead "Shift-Left" initiatives by integrating vulnerability scanning into development workflows, CI/CD pipelines, and infrastructure provisioning to enforce security policies consistently across all asset types, including cloud resources, endpoints, and applications.
  • AI/ML Innovation: Leverage LLMs and AI agents for automated triage, impact analysis, and generating context-aware remediation instructions for service owners across the infrastructure.
  • Vulnerability Governance: Partner with Compliance and IT to mature vulnerability standards, SLAs, and risk exception processes across the global digital estate.
  • Vulnerability Analysis: Provide deep security subject matter expertise to analyze complex vulnerabilities, assess true risk, and drive informed decisions on remediation verdicts, false positives, and risk acceptance.
  • Cross-Functional Collaboration: Partner with IT, product, and operations teams to integrate security posture improvements across the entire environment. 

Basic Qualifications

  • 7+ years of industry experience in software development, with a focus on large-scale security or infrastructure engineering.
  • Expertise in building distributed systems and high-availability security platforms using Golang, Java, or Python.
  • Proven track record of designing and operating vulnerability management tools at scale.
  • Deep understanding of container security, cloud-native infrastructure, and CI/CD pipelines.
  • Experience leading cross-functional security initiatives and mentoring senior engineering staff.

Preferred Qualifications

  • Hands-on experience developing Risk-Based Vulnerability Management (RBVM) frameworks and automated prioritization logic.
  • Knowledge of AI/ML applications in security, specifically for vulnerability triage or large-scale data analysis.
  • Experience with External Attack Surface Management (EASM) and tracking internet-facing asset exposure.
  • Familiarity with Software Supply Chain Security (SSCS), including SBOM and internal package registries.

Ready to Ride?


This isn't the kind of place where you follow a playbook - it's where you help write one. If you're driven by impact, energized by challenge, and ready to shape how the world moves - we'd love to hear from you.


You may be eligible for bonuses, equity, and other compensation, as well as a range of benefits. Explore our benefits.


Offices remain key to collaboration and Uber's culture. Unless approved for full remote work, employees must spend at least 50% of their time in-office. Some roles, like those at greenlight hubs, require full-time in-office presence. Ask your Recruiter for details about this role's requirements.


Uber is proud to be an Equal Opportunity employer. All qualified applicants will receive consideration for employment without regard to sex, gender identity, sexual orientation, race, color, religion, national origin, disability, protected Veteran status, age, or any other characteristic protected by law. We also consider qualified applicants regardless of criminal histories, consistent with legal requirements. If you have a disability or special need that requires accommodation, please let us know by completing this form.

For New York City, NY-based roles: The base salary range for this role is USD $232,000 per year - USD $258,000 per year.


For San Francisco, CA-based roles: The base salary range for this role is USD $232,000 per year - USD $258,000 per year.


For Seattle, WA-based roles: The base salary range for this role is USD $232,000 per year - USD $258,000 per year.


For Sunnyvale, CA-based roles: The base salary range for this role is USD $232,000 per year - USD $258,000 per year.


For all US locations, you will be eligible to participate in Uber's bonus program, and may be offered an equity award & other types of comp. All full-time employees are eligible to participate in a 401(k) plan. You will also be eligible for various benefits.


What Uber employees say

Pay

Benefits

Hours and flexibility

Workplace

Get the full story on Breakroom