The Vulnerability Management Analyst plays a key role in enhancing the security posture of mission systems by providing actionable insights, collaborating with engineering teams, and maintaining ...
The Vulnerability Management Analyst plays a key role in enhancing the security posture of mission systems by providing actionable insights, collaborating with engineering teams, and maintaining ...
CyberLinx Solutions, LLC is seeking a Vulnerability Management Analyst to support our cybersecurity services by managing vulnerability scanning, risk prioritization, and remediation tracking across ...
CyberLinx Solutions, LLC is seeking a Vulnerability Management Analyst to support our cybersecurity services by managing vulnerability scanning, risk prioritization, and remediation tracking across ...
ABSC is seeking a Vulnerability Management Analyst to join our team supporting the Air Force National Capital Region (AFNCR) Information Technology Services (ITS2) program, delivering secure ...
ABSC is seeking a Vulnerability Management Analyst to join our team supporting the Air Force National Capital Region (AFNCR) Information Technology Services (ITS2) program, delivering secure ...
CyberLinx Solutions, LLC is seeking a Vulnerability Management Analyst to support our cybersecurity services by managing vulnerability scanning, risk prioritization, and remediation tracking across ...
Quick apply
CyberLinx Solutions, LLC is seeking a Vulnerability Management Analyst to support our cybersecurity services by managing vulnerability scanning, risk prioritization, and remediation tracking across ...
Vulnerability Management Analyst
MD · On-site
Vulnerability Management Analyst Location- Joint Base Andrews, MD Clearance- Secret Certifications- CompTIA Security+ or equivalent About TIME Systems At TIME Systems, we are at the forefront of ...
Quick apply
Vulnerability Management Analyst
MD · On-site
Vulnerability Management Analyst Location- Joint Base Andrews, MD Clearance- Secret Certifications- CompTIA Security+ or equivalent About TIME Systems At TIME Systems, we are at the forefront of ...
Overview Abacus Technology is seeking a Vulnerability Management Analyst to identify, analyze, and remediate vulnerabilities across enterprise systems at Hanscom AFB. This is a full-time position.
Overview Abacus Technology is seeking a Vulnerability Management Analyst to identify, analyze, and remediate vulnerabilities across enterprise systems at Hanscom AFB. This is a full-time position.
Vulnerability Management Analyst
MD · On-site
Vulnerability Management Analyst Location- Joint Base Andrews, MD Clearance- Secret Certifications- CompTIA Security+ or equivalent About TIME Systems At TIME Systems, we are at the forefront of ...
Vulnerability Management Analyst
MD · On-site
Vulnerability Management Analyst Location- Joint Base Andrews, MD Clearance- Secret Certifications- CompTIA Security+ or equivalent About TIME Systems At TIME Systems, we are at the forefront of ...
Vulnerability Management Analyst
$70K - $110K/yr
Vulnerability Management Analyst North - Remote North is seeking a detail-oriented Vulnerability Management Analyst to join our Cybersecurity team. In this role, you will help protect our payment ...
Vulnerability Management Analyst
$70K - $110K/yr
Vulnerability Management Analyst North - Remote North is seeking a detail-oriented Vulnerability Management Analyst to join our Cybersecurity team. In this role, you will help protect our payment ...
Vulnerability Management Analyst
Lincoln, MA · On-site
$90 - $130/hr
Vulnerability Management Analyst Location: Hanscom AFB, MA Clearance: Secret Program: BLITS 3.0 Company/ Program Description: Centuria, a Service-Disabled Veteran-Owned Small Business (SDVOSB), has ...
Vulnerability Management Analyst
Lincoln, MA · On-site
$90 - $130/hr
Vulnerability Management Analyst Location: Hanscom AFB, MA Clearance: Secret Program: BLITS 3.0 Company/ Program Description: Centuria, a Service-Disabled Veteran-Owned Small Business (SDVOSB), has ...
Vulnerability Management Analyst
Lincoln, MA · On-site
$90 - $120/hr
Vulnerability Management Analyst Location: Hanscom AFB, MA Clearance: Secret Program: BLITS 3.0 Company/ Program Description: Centuria, a Service-Disabled Veteran-Owned Small Business (SDVOSB), has ...
Vulnerability Management Analyst
Lincoln, MA · On-site
$90 - $120/hr
Vulnerability Management Analyst Location: Hanscom AFB, MA Clearance: Secret Program: BLITS 3.0 Company/ Program Description: Centuria, a Service-Disabled Veteran-Owned Small Business (SDVOSB), has ...
Abacus Technology is seeking a Vulnerability Management Analyst to identify, analyze, and remediate vulnerabilities across enterprise systems at Hanscom AFB. This is a full-time position. * Perform ...
Abacus Technology is seeking a Vulnerability Management Analyst to identify, analyze, and remediate vulnerabilities across enterprise systems at Hanscom AFB. This is a full-time position. * Perform ...
Vulnerability Management Analyst
Oak Ridge, TN · On-site
$131K - $154K/yr
Boston Government Services, LLC. (BGS) has created this Evergreen Talent Pool post for gathering qualified candidates for a position relating to Vulnerability Management Analyst to support our ...
Vulnerability Management Analyst
Oak Ridge, TN · On-site
$131K - $154K/yr
Boston Government Services, LLC. (BGS) has created this Evergreen Talent Pool post for gathering qualified candidates for a position relating to Vulnerability Management Analyst to support our ...
Vulnerability Management Analyst
Andrews, MD · On-site
Vulnerability Management Analyst Location- Joint Base Andrews, MD Clearance- Secret Certifications- CompTIA Security+ or equivalent About TIME Systems At TIME Systems, we are at the forefront of ...
Vulnerability Management Analyst
Andrews, MD · On-site
Vulnerability Management Analyst Location- Joint Base Andrews, MD Clearance- Secret Certifications- CompTIA Security+ or equivalent About TIME Systems At TIME Systems, we are at the forefront of ...
Vulnerability Management Analyst
Irving, TX · On-site
Based on this , the client is looking for a professional who can act as a Technology Risk / Vulnerability Management Analyst with strong coordination, analytics, and stakeholder management skills.
Vulnerability Management Analyst
Irving, TX · On-site
Based on this , the client is looking for a professional who can act as a Technology Risk / Vulnerability Management Analyst with strong coordination, analytics, and stakeholder management skills.
$95 - $130/hr
Overview Abacus Technology is seeking a Vulnerability Management Analyst to identify, analyze, and remediate vulnerabilities across enterprise systems at Hanscom AFB. This is a full-time position.
$95 - $130/hr
Overview Abacus Technology is seeking a Vulnerability Management Analyst to identify, analyze, and remediate vulnerabilities across enterprise systems at Hanscom AFB. This is a full-time position.
ABSC is seeking a Vulnerability Management Analyst to join our team supporting the Air Force National Capital Region (AFNCR) Information Technology Services (ITS2) program, delivering secure ...
ABSC is seeking a Vulnerability Management Analyst to join our team supporting the Air Force National Capital Region (AFNCR) Information Technology Services (ITS2) program, delivering secure ...
Overview Abacus Technology is seeking a Vulnerability Management Analyst to identify, analyze, and remediate vulnerabilities across enterprise systems at Hanscom AFB. This is a full-time position.
Overview Abacus Technology is seeking a Vulnerability Management Analyst to identify, analyze, and remediate vulnerabilities across enterprise systems at Hanscom AFB. This is a full-time position.
Vulnerability Management Analyst
Bedford, MA · On-site
$90 - $120/hr
Overview Abacus Technology is seeking a Vulnerability Management Analyst to identify, analyze, and remediate vulnerabilities across enterprise systems at Hanscom AFB. This is a full-time position.
Vulnerability Management Analyst
Bedford, MA · On-site
$90 - $120/hr
Overview Abacus Technology is seeking a Vulnerability Management Analyst to identify, analyze, and remediate vulnerabilities across enterprise systems at Hanscom AFB. This is a full-time position.
Vulnerability Management Analyst
Birmingham, AL · On-site
$90 - $130/hr
The Role: The Vulnerability Management Analyst will help us find, prioritise, and fix security vulnerabilities across our global business and all our products. You'll configure and tune our ...
Vulnerability Management Analyst
Birmingham, AL · On-site
$90 - $130/hr
The Role: The Vulnerability Management Analyst will help us find, prioritise, and fix security vulnerabilities across our global business and all our products. You'll configure and tune our ...
Vulnerability Management Analyst
Indianapolis, IN · On-site
$84K - $89K/yr
This role is responsible for conducting vulnerability scans, analyzing system and application weaknesses, supporting remediation and mitigation efforts, maintaining vulnerability management ...
Quick apply
Vulnerability Management Analyst
Indianapolis, IN · On-site
$84K - $89K/yr
This role is responsible for conducting vulnerability scans, analyzing system and application weaknesses, supporting remediation and mitigation efforts, maintaining vulnerability management ...
Vulnerability Management Analyst information
See salary details
$70K - $79.5K
20% of jobs
$82.7K is the 25th percentile. Wages below this are outliers.
$79.5K - $89K
16% of jobs
$89K - $98.5K
1% of jobs
$98.5K - $108K
9% of jobs
$108K - $117.5K
2% of jobs
$117.5K - $127K
0% of jobs
The median wage is $128.2K / yr.
$127K - $136.5K
17% of jobs
$136.5K - $146K
6% of jobs
$151.4K is the 75th percentile. Wages above this are outliers.
$146K - $155.5K
7% of jobs
$155.5K - $165K
4% of jobs
$165K - $174.5K
18% of jobs
$70K
$124.2K
$174.5K
How much do vulnerability management analyst jobs pay per year?
What is a vulnerability management analyst?
A Vulnerability Management Analyst is responsible for identifying, assessing, and mitigating security vulnerabilities within an organization's IT infrastructure. They use scanning tools, analyze threat data, and collaborate with teams to prioritize and remediate risks. Their role is crucial in maintaining cybersecurity by ensuring systems are patched and configured securely. Additionally, they may develop reports and provide recommendations to improve security posture. This position requires knowledge of security frameworks, risk assessment, and vulnerability management tools.
What are the typical daily responsibilities of a vulnerability management analyst?
On a typical day, a Vulnerability Management Analyst reviews system scans, analyzes reports for potential vulnerabilities, and works with IT or security teams to prioritize remediation efforts. They may also track the status of vulnerabilities, ensure timely patch application, and help develop or update security policies. Collaboration with various departments is common to coordinate testing, remediation, and communicate risk summary findings. This role requires keeping up with emerging threats and sometimes participating in security audits or compliance reviews, making it both dynamic and integral to the organization's overall cybersecurity posture.
What are the key skills and qualifications needed to thrive as a vulnerability management analyst?
A Vulnerability Management Analyst requires a strong background in cybersecurity principles, risk assessment, and IT networking, often supported by a relevant degree or certifications like CompTIA Security+, CISSP, or CEH. Experience with vulnerability scanning tools (such as Nessus, Qualys, or Rapid7) and familiarity with ticketing systems or SIEM platforms is essential. Strong analytical skills, attention to detail, effective communication, and the ability to work collaboratively help individuals succeed in this role. These capabilities are vital to proactively identify, assess, and mitigate security vulnerabilities, ensuring the organization's digital assets remain secure and compliant.
What cities are hiring for Vulnerability Management Analyst jobs?
Cities with the most Vulnerability Management Analyst job openings:
What are the most commonly searched types of Vulnerability Management Analyst jobs?
The most popular types of Vulnerability Management Analyst jobs are:
Who are the top companies hiring for Vulnerability Management Analyst jobs?
The top employers for Vulnerability Management Analyst jobs are:
What states have the most Vulnerability Management Analyst jobs?
States with the most job openings for Vulnerability Management Analyst jobs include:
What job categories do people searching Vulnerability Management Analyst jobs look for?
The top searched job categories for Vulnerability Management Analyst jobs are:

Full-time
Re-posted 12 days ago
Job description
DecisionPoint seeks a Vulnerability Management Analyst to support enterprise cybersecurity operations across a federal and DoD-aligned mission environment. This role conducts vulnerability scanning, patch verification, security analysis, prioritization of findings, mitigation tracking, and updates to Plan of Action and Milestones (POA&Ms). The analyst will help ensure systems remain compliant with DoD and federal cybersecurity controls by continuously identifying, validating, and monitoring vulnerabilities across cloud and on-premise environments.
The Vulnerability Management Analyst plays a key role in enhancing the security posture of mission systems by providing actionable insights, collaborating with engineering teams, and maintaining visibility into risk trends and remediation progress.
This position is fully remote.
Note: By applying to this position, you acknowledge and consent to having your resume included in an active competitive government contract bid.
Duties & Responsibilities
The Vulnerability Management Analyst will:
- Conduct ACAS vulnerability scans across enterprise systems, applications, and cloud workloads.
- Validate vulnerability scan results, confirm patch levels, and verify remediation status across environments.
- Analyze vulnerabilities for exploitability, potential impact, and relevance to mission systems.
- Prioritize vulnerabilities based on severity, risk scoring, operational context, and DoD guidance.
- Coordinate with engineering, system administration, and cloud teams on mitigation steps and remediation timelines.
- Update, track, and maintain POA&Ms with accurate vulnerability details and milestone progress.
- Provide vulnerability summaries, dashboards, and reporting to cybersecurity leadership and government stakeholders.
- Support continuous monitoring activities and reporting cycles in accordance with DoD RMF requirements.
- Validate STIG-related findings and support configuration compliance checks.
- Maintain ACAS scanning schedules, asset coverage, and scan completeness across environments.
- Contribute to incident response efforts when vulnerabilities are linked to active threats.
- Document vulnerability processes, scanning standards, and remediation workflows.
Qualifications
Clearance Requirement
Must hold an active Top Secret clearance, supported by a Tier 5 background investigation.
Education (Required)
Bachelor's degree in Cybersecurity, Information Technology, or a related field.
Experience (Required)
- Minimum 5 years of experience in vulnerability management, cybersecurity operations, or system security analysis.
- Experience running ACAS/Nessus scans and validating vulnerability data.
- Experience analyzing vulnerabilities, prioritizing risk, and coordinating remediation with technical teams.
- Experience updating POA&Ms, tracking mitigation progress, and supporting RMF continuous monitoring.
- Experience performing patch verification and configuration-compliance checks.
Technical Knowledge (Required)
- Proficiency with ACAS and Nessus scanning tools.
- Knowledge of vulnerability scoring (CVSS), exploitability assessment, and prioritization frameworks.
- Understanding of DoD RMF continuous monitoring requirements and POA&M processes.
- Knowledge of STIGs, secure configuration baselines, and compliance validation.
- Familiarity with SIEM platforms, log analysis, and threat context enumeration.
Technical Knowledge (Preferred)
- Experience with cloud security scanning tools, especially AWS-native or container security scanners.
- Experience with automation or scripting (Python, PowerShell) for data extraction or report generation.
- Familiarity with enterprise asset management and CMDB tools.
Certifications
Required:
- Security+
- ACAS Certification
- CEH
Preferred:
- Additional DoD 8570/8140 cybersecurity certifications
Skills
- Strong analytical and investigative abilities for evaluating vulnerabilities and identifying true risk.
- Excellent written and verbal communication skills for producing reports and collaborating with technical teams.
- High attention to detail for validating scan results, documenting findings, and maintaining POA&M accuracy.
- Ability to manage multiple priorities and operate in a fast-paced, mission-critical environment.
- Strong organizational and documentation skills to support tracking, reporting, and compliance workflows.
Our Equal Employment Opportunity Policy
- EEO and Affirmative Action Policy: DecisionPoint Corporation is an Equal Employment Opportunity and Affirmative Action employer. It is the policy of DecisionPoint Corporation to provide equal employment opportunity in accordance with all applicable Equal Employment Opportunity/Affirmative Action laws, directives and regulations to all employees and qualified applicants without regard to race, ethnicity, color, religion, national origin, sex, age, disability status, pregnancy, sexual orientation, gender identity, genetic information, protected veteran status, or any other protected status under Federal, State or Local laws.
- Pay Transparency Policy: In accordance with Presidential Executive Order 13665, DecisionPoint Corporation will not discharge or in any other manner discriminate against employees or applicants because they have inquired about, discussed, or disclosed their own pay or the pay of another employee or applicant. However, employees who have access to the compensation information of other employees or applicants as a part of their essential job functions cannot disclose the pay of other employees or applicants to individuals who do not otherwise have access to compensation information, unless the disclosure is (a) in response to a formal complaint or charge, (b) in furtherance of an investigation, proceeding, hearing, or action, including an investigation conducted by the employer, or (c) consistent with the contractor's legal duty to furnish information.
- Authorization to Share Resume and Personal Information: By expressing your interest and submitting your resume for this position, you authorize DecisionPoint Corporation to share your resume, as well as personal information included on the resume, with its subsidiaries, affiliates and teaming partners for the purpose of considering you for this position and other available positions requiring comparable skills, education and experience. Should DecisionPoint Corporation. or its affiliates and teaming partners wish to initiate pre-employment discussions, you will be asked to complete an employment application and related employment documents.