1

Vulnerability Engineer Jobs (NOW HIRING)

Senior Vulnerability Engineer

Reston, VA ยท On-site

$108K - $149K/yr

As our Senior Vulnerability Engineer, you will provide Subject Matter Expertise supportto maintain Vulnerability Management Program requirements including, but not limited to, maintaining the ...

Senior Vulnerability Engineer

Reston, VA ยท On-site

$108K - $149K/yr

As our Senior Vulnerability Engineer, you will provide Subject Matter Expertise support to maintain Vulnerability Management Program requirements including, but not limited to, maintaining the patch ...

Product Vulnerability Engineers are responsible for leading the response to lower/moderate severity vulnerabilities and participating in the response to high severity vulnerabilities. You're Our ...

iOS Vulnerability Engineer (Software)

Tysons, VA ยท On-site

$140K/yr

iOS Vulnerability Engineer (Software) LOCATION Tysons, VA 22182 CLEARANCE TS/SCI Full Poly (Please note this position requires full U.S. Citizenship) KEY SUMMARY We are looking for a highly skilled ...

iOS Vulnerability Engineer (Software)

Reston, VA ยท On-site

$145K/yr

iOS Vulnerability Engineer (Software) LOCATION Reston, VA 20190 CLEARANCE TS/SCI Full Poly (Please note this position requires full U.S. Citizenship) KEY SUMMARY We are looking for a highly skilled ...

iOS Vulnerability Engineer (Software)

Chantilly, VA ยท On-site

$144K/yr

iOS Vulnerability Engineer (Software) LOCATION Chantilly, VA 20151 CLEARANCE TS/SCI Full Poly (Please note this position requires full U.S. Citizenship) KEY SUMMARY We are looking for a highly ...

ORA_HYBRID Description The Application Vulnerability Assessment Program (AVAP) Engineer/System Administrator is responsible for operating and securing the program's application security platforms ...

Showing results 21-40

Vulnerability Engineer information

See salary details

$39K

$101.8K

$137.5K

How much do vulnerability engineer jobs pay per year?

As of Sep 14, 2026, the average yearly pay for vulnerability engineer in the United States is $101,752.00, according to ZipRecruiter salary data. Most workers in this role earn between $84,000.00 and $116,500.00 per year, depending on experience, location, and employer.

What is a vulnerability engineer?

A Vulnerability Engineer is a cybersecurity professional responsible for identifying, assessing, and mitigating security vulnerabilities within an organization's systems, networks, and applications. They use specialized tools to scan for weaknesses, analyze security data, and work with other IT teams to remediate risks. Their goal is to protect sensitive data and ensure compliance with industry regulations by proactively addressing potential security threats.

What are the key skills and qualifications needed to thrive as a vulnerability engineer, and why are they important?

To thrive as a Vulnerability Engineer, you need a strong understanding of cybersecurity principles, vulnerability assessment methodologies, and a background in IT or computer science. Familiarity with tools such as Nessus, Qualys, Burp Suite, and relevant certifications like OSCP or CompTIA Security+ are commonly expected. Analytical thinking, attention to detail, and effective communication are crucial soft skills for identifying risks and collaborating with teams. These skills and qualifications are vital to proactively detect, assess, and mitigate security vulnerabilities, protecting organizational assets from cyber threats.

What are some common challenges faced by vulnerability engineers when coordinating with development teams to remediate identified vulnerabilities?

One of the primary challenges Vulnerability Engineers encounter is ensuring that development teams prioritize and address vulnerabilities promptly, especially when they have competing project deadlines. Effective communication is essential to explain the risk and potential business impact of each vulnerability in terms that are understandable to non-security professionals. Additionally, aligning remediation efforts with ongoing development cycles and managing false positives can require careful negotiation and collaboration. Building strong relationships and fostering a security-first culture within the organization can significantly ease these challenges.

What is the difference between Vulnerability Engineer vs Security Analyst?

AspectVulnerability EngineerSecurity Analyst
CertificationsOSCP, CISSP, CEHCISSP, Security+
Work EnvironmentFocus on identifying and fixing vulnerabilities in systems and applicationsMonitor security alerts, analyze threats, and respond to incidents
Employer & Industry UsageTech companies, cybersecurity firms, large enterprisesCorporate security teams, government agencies, financial institutions

While both roles focus on cybersecurity, Vulnerability Engineers primarily identify and remediate system vulnerabilities, whereas Security Analysts monitor and respond to security threats. Vulnerability Engineers are more technical and hands-on with system testing, while Security Analysts focus on threat detection and incident response. Both roles are essential for a comprehensive security strategy.

More about Vulnerability Engineer jobs

What states have the most Vulnerability Engineer jobs?

States with the most job openings for Vulnerability Engineer jobs include:

What are popular job titles related to Vulnerability Engineer jobs?

For Vulnerability Engineer jobs, the most frequently searched job titles are:

Infographic showing various Vulnerability Engineer job openings in the United States as of September 2026, with employment types broken down into 1% Internship, 89% Full Time, 7% Part Time, and 3% Contract. Highlights an 84% Physical, 5% Hybrid, and 11% Remote job distribution, with an average salary of $101,752 per year, or $48.9 per hour.

Senior Vulnerability Engineer

Reston, VA โ€ข On-site

Socket.dev
Network Securityย โ€ขย 1 - 10 employees

$108K - $149K/yr

Other

Medical, Dental, Vision, Life, Retirement, PTO

Posted 27 days ago


Job description

Be Challenged and Make a Difference

In a world of technology, people make the difference. We believe if we invest in great people, then great things will happen. At AnaVation, we provide unmatched value to our customers and employees through innovative solutions and an engaging culture.

Description of Task to be Performed

AnaVation is seeking a Senior Vulnerability Engineer to join our team and support our mission critical customer inReston, VA. As our Senior Vulnerability Engineer, you will provide Subject Matter Expertise supportto maintain Vulnerability Management Program requirements including, but not limited to, maintaining the patchrepository, issuing alerts and bulletins, and tracking compliance. Additional responsibilities would include coordinatingperiodic auditing and testing and responsibility for overall governance supporting Vulnerability Management.

Required Qualifications
  • Clearance: Top Secret SCI, Counterintelligence (CI) Polygraph
  • Education: Bachelorโ€™s degree in Computer Science or relevant field and 8+ years of experience related to specific functional area. (May substitute Masterโ€™s degree in lieu of 2 years of experience).
  • Certifications: CySA+ or equivalent IAT Level II certification
  • Location: 100% on-site position in Reston, VA.
  • Experience:
  • Working collaboratively across cross-functional teams of all experience levels.
  • Detailed knowledge of system security vulnerabilities and remediation techniques, including testing and thedevelopment of exploits.
  • Detailed technical knowledge in security engineering, system and network security, authentication, and security protocols.
  • Skilled in risk management, business risk analysis, and making complex business/risk trade-off recommendations and decisions.
  • Experience in penetration testing and vulnerability analysis in modern technologies such as cloud, mobile, wireless, and cross domain solutions.
  • In depth knowledge and experience working with Assured Compliance Assessment Solution (ACAS) scanning environments.
  • Thorough understanding of DevSecOps Pipeline scanning in supporting development and alerting thresholds.
  • Solid understanding of Penetration Testing environments and Cloud tools.
  • Ability to provide recommendations for enhancing Detection and Alerting thresholds and Insider Threat capabilities.
Preferred Qualifications
  • Security certifications: Security+, CCNA Security, CySA+, SSCP, CCSP, or equivalent certification
  • AWS, Cloud certifications
  • 4+ years experience with Tenable
  • Strong experience and ability to present technical concepts and updates to senior leaders
Benefits
  • Generous cost sharing for medical insurance for the employee and dependents
  • 100% company paid dental insurance for employees and dependents
  • 100% company paid long-term and short-term disability insurance
  • 100% company paid vision insurance for employees and dependents
  • 401k plan with generous match and 100% immediate vesting
  • Competitive Pay
  • Generous paid leave and holiday package
  • Tuition and training reimbursement
  • Life and AD&D Insurance
About AnaVation

AnaVation is the leader in solving the most complex technical challenges for collection and processing in the U.S. Federal Intelligence Community. We are a US owned company headquartered in Chantilly, Virginia. We deliver groundbreaking research with advanced software and systems engineering that provides an information advantage to contribute to the mission and operational success of our customers. We offer complex challenges, a top-notch work environment, and a world-class, collaborative team.

If you want to grow your career and make a difference while doing it, AnaVation is the perfect fit for you!

AnaVation is an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to sex, race, color, religion, national origin, disability, protected Veteran status, age, or any other characteristic protected by law.

#J-18808-Ljbffr