1

Vulnerability Assessment Analyst Jobs (NOW HIRING)

Responsibilities • Perform vulnerability assessments and security scanning across operating systems, databases, web applications, and enterprise infrastructure • Analyze vulnerabilities and ...

next page

Showing results 1-20

Vulnerability Assessment Analyst information

See salary details

$15

$52

$73

How much do vulnerability assessment analyst jobs pay per hour?

As of Jun 12, 2026, the average hourly pay for vulnerability assessment analyst in the United States is $52.16, according to ZipRecruiter salary data. Most workers in this role earn between $38.22 and $62.74 per hour, depending on experience, location, and employer.

What are some common challenges a Vulnerability Assessment Analyst faces when collaborating with other IT teams?

A Vulnerability Assessment Analyst often works closely with network, systems, and application teams to identify and mitigate security risks. One common challenge is effectively communicating technical findings in a way that is understandable and actionable for non-security specialists. Additionally, prioritizing vulnerabilities based on business impact and coordinating remediation efforts across different teams can be complex, especially in large organizations. Building strong relationships and maintaining clear communication channels are key to overcoming these challenges and ensuring timely resolution of security issues.

What is the difference between Vulnerability Assessment Analyst vs Penetration Tester?

AspectVulnerability Assessment AnalystPenetration Tester
CertificationsCompTIA Security+, CEH, CISSP (preferred)OSCP, CEH, GPEN
Work EnvironmentConducts assessments within organizations' security teams, often in office settingsPerforms simulated attacks, often in controlled or client environments
Industry UsageUsed across various industries for identifying security weaknessesMore common in cybersecurity consulting and offensive security roles

While both roles focus on security vulnerabilities, Vulnerability Assessment Analysts primarily identify and report weaknesses, whereas Penetration Testers actively exploit vulnerabilities to test security defenses. The roles often overlap but differ in scope and approach, with Analysts focusing on assessment and reporting, and Penetration Testers on active exploitation.

What does a Vulnerability Assessment Analyst do?

A Vulnerability Assessment Analyst is responsible for identifying, evaluating, and prioritizing security vulnerabilities within an organization’s IT systems and networks. They use specialized tools to scan for weaknesses, analyze the results, and provide actionable recommendations to mitigate risks. Their work helps protect the organization from cyber threats by ensuring that vulnerabilities are addressed before they can be exploited. Additionally, they may assist in developing security policies, conducting penetration tests, and educating staff about security best practices.

What are the key skills and qualifications needed to thrive as a Vulnerability Assessment Analyst, and why are they important?

To thrive as a Vulnerability Assessment Analyst, you need a solid understanding of network security, risk assessment, and vulnerability management, often supported by a degree in cybersecurity or related field. Familiarity with tools like Nessus, Qualys, and Metasploit, as well as certifications such as CompTIA Security+ or CEH, is typically required. Strong analytical thinking, attention to detail, and effective communication skills help analysts identify, report, and explain vulnerabilities to technical and non-technical stakeholders. These qualifications are crucial for proactively identifying security risks and helping organizations protect their information assets from potential threats.
More about Vulnerability Assessment Analyst jobs
What cities are hiring for Vulnerability Assessment Analyst jobs? Cities with the most Vulnerability Assessment Analyst job openings:
What states have the most Vulnerability Assessment Analyst jobs? States with the most job openings for Vulnerability Assessment Analyst jobs include:
What job categories do people searching Vulnerability Assessment Analyst jobs look for? The top searched job categories for Vulnerability Assessment Analyst jobs are:
Infographic showing various Vulnerability Assessment Analyst job openings in the United States as of June 2026, with employment types broken down into 98% Full Time, and 2% Part Time. Highlights an 80% Physical, 6% Hybrid, and 14% Remote job distribution, with an average salary of $108,489 per year, or $52.2 per hour.
Vulnerability Analyst, Journeyman with Security Clearance

Vulnerability Analyst, Journeyman with Security Clearance

Peraton

Herndon, VA

$80K - $128K/yr

Other

Medical, Dental, Vision, Life, Retirement, PTO

Posted 10 days ago


Peraton rating

8.2

Company rating: 8.2 out of 10

Based on 53 frontline employees who took The Breakroom Quiz

46th of 204 rated it services


Job description

About Peraton Peraton is a next-generation national security company that drives missions of consequence spanning the globe and extending to the farthest reaches of the galaxy. As the world's leading mission capability integrator and transformative enterprise IT provider, we deliver trusted, highly differentiated solutions and technologies to protect our nation and allies. Peraton operates at the critical nexus between traditional and nontraditional threats across all domains: land, sea, space, air, and cyberspace. The company serves as a valued partner to essential government agencies and supports every branch of the U.S. armed forces. Each day, our employees solve the most daunting challenges that our customers face. Visit peraton.com to learn how we're keeping people around the world safe and secure. About The Role We are seeking a highly skilled and innovative Vulnerability Analyst, Journeyman to join our team in the greater DMV area, supporting the Army National Guard. Responsibilities * Execute vulnerability scans (ACAS, Forescout, Nessus, etc.), review results, and validate findings to identify weaknesses across systems, networks, cloud services, and applications.
* Confirm exploitability, classify technical risk, and correlate scan outputs with asset inventories, configuration baselines, and patch records.
* Review STIG compliance results, verify remediation evidence, update POA&Ms, and upload evidence and artifacts into eMASS and enterprise tracking tools.
* Retest remediations, validate fixes, and coordinate remediation actions with system admins, engineers, and cybersecurity teams.
* Document analysis steps, maintain case records, and prepare operational summaries, trend reports, and vulnerability dashboards to support continuous monitoring and CCRI readiness.
* Identify recurring issues and visibility gaps; recommend scanning/workflow improvements and support automation of validation where feasible.
* Support RMF compliance by producing audit-quality evidence, tracking remediation progress, and contributing to metrics for leadership reporting.#ENOCS Qualifications Qualifications * 2 years with BS/BA; 0 years with MS/MA; 6 years with no degree
* Clearance: Active TS/SCI clearance.
* Candidate must meet ONE of the following: * Bachelor's degree in Computer Science, Cybersecurity, Data Science, Information Systems, Information Technology, Software Engineering, or a related field; OR
* Relevant DoD/military training (examples: 531-25B40-C46; DISA (541) Training; Vulnerability Assessment Analyst (Intermediate) Playlist; E3ABR1D731D00BB); OR
* Relevant professional certification or equivalent experience (examples: CEH(P); RCCE Level 1; CompTIA Cloud+; CPTE; FITSP-A; GCED; GCIH; GCSA; GICSP; GSEC; PenTest+; Security+).
* Required experience and skills: * Vulnerability assessment, scanning, or security operations experience.
* Hands-on experience with ACAS/Nessus, Forescout/NAC, STIG validation, and eMASS or equivalent RMF evidence workflows.
* Ability to validate exploitability, document reproducible findings, update POA&Ms, and coordinate retesting and remediation verification.
* Proficiency with vulnerability dashboards, reporting, and basic scripting or automation to streamline validation tasks.
* Strong documentation and communication skills for producing audit-quality evidence and operational summaries.
* Desired: * Prior DoD/ARNG vulnerability assessment or CCRI support experience.
* Experience integrating vulnerability management with detection engineering, patch orchestration, and threat intelligence for prioritized remediation.#ENOCS Details Target Salary Range: $80,000 - $128,000. This represents the typical salary range for this position. Salary is determined by various factors, including but not limited to, the scope and responsibilities of the position, the individual's experience, education, knowledge, skills, and competencies, as well as geographic location and business and contract considerations. Depending on the position, employees may be eligible for overtime, shift differential, and a discretionary bonus in addition to base pay. Benefits Statement: Peraton offers eligible employees a variety of benefits including medical, dental, vision, life, health savings account, short/long term disability, EAP, parental leave, 401(k), paid time off (PTO) for vacation, and company paid holidays. A full listing of available benefits can be viewed at https://www.careers.peraton.com/benefits. Application Statements: The application period for the job is estimated to be 30 days from the job posting date. However, this timeline may be shortened or extended depending on business needs and the availability of qualified candidates. By applying to this job, you are expressing interest in the role and the Company. During the review of your application, you may be required to participate in an on-camera interview, as well as participate in a process to verify your identity. EEO:Equal opportunity employer, including disability and protected veterans, or other characteristics protected by law.

What Peraton employees say

Pay

Benefits

Hours and flexibility

Workplace

Get the full story on Breakroom


Peraton logo

About Peraton

Sourced by ZipRecruiter

At Peraton, we re at the forefront of delivering the next big thing every day. We re the partner of choice to help solve some of the world s most daunting challenges, delivering bold, new solutions to keep people around the world safer and more secure.

Industry

It services

Company size

10,000+ Employees

Headquarters location

Herndon, VA, US

Year founded

2017