1

Vulnerability Management Analyst Jobs (NOW HIRING)

next page

Showing results 1-20

Vulnerability Management Analyst information

See salary details

$70K

$124.2K

$174.5K

How much do vulnerability management analyst jobs pay per year?

As of Jun 6, 2026, the average yearly pay for vulnerability management analyst in the United States is $124,243.00, according to ZipRecruiter salary data. Most workers in this role earn between $83,000.00 and $164,000.00 per year, depending on experience, location, and employer.

What is a Vulnerability Management Analyst job?

A Vulnerability Management Analyst is responsible for identifying, assessing, and mitigating security vulnerabilities within an organization's IT infrastructure. They use scanning tools, analyze threat data, and collaborate with teams to prioritize and remediate risks. Their role is crucial in maintaining cybersecurity by ensuring systems are patched and configured securely. Additionally, they may develop reports and provide recommendations to improve security posture. This position requires knowledge of security frameworks, risk assessment, and vulnerability management tools.

What are some typical daily responsibilities for a Vulnerability Management Analyst?

On a typical day, a Vulnerability Management Analyst reviews system scans, analyzes reports for potential vulnerabilities, and works with IT or security teams to prioritize remediation efforts. They may also track the status of vulnerabilities, ensure timely patch application, and help develop or update security policies. Collaboration with various departments is common to coordinate testing, remediation, and communicate risk summary findings. This role requires keeping up with emerging threats and sometimes participating in security audits or compliance reviews, making it both dynamic and integral to the organization's overall cybersecurity posture.

What are the key skills and qualifications needed to thrive in the Vulnerability Management Analyst position, and why are they important?

A Vulnerability Management Analyst requires a strong background in cybersecurity principles, risk assessment, and IT networking, often supported by a relevant degree or certifications like CompTIA Security+, CISSP, or CEH. Experience with vulnerability scanning tools (such as Nessus, Qualys, or Rapid7) and familiarity with ticketing systems or SIEM platforms is essential. Strong analytical skills, attention to detail, effective communication, and the ability to work collaboratively help individuals succeed in this role. These capabilities are vital to proactively identify, assess, and mitigate security vulnerabilities, ensuring the organization's digital assets remain secure and compliant.

More about Vulnerability Management Analyst jobs
What cities are hiring for Vulnerability Management Analyst jobs? Cities with the most Vulnerability Management Analyst job openings:
What are the most commonly searched types of Vulnerability Management Analyst jobs? The most popular types of Vulnerability Management Analyst jobs are:
What states have the most Vulnerability Management Analyst jobs? States with the most job openings for Vulnerability Management Analyst jobs include:
Infographic showing various Vulnerability Management Analyst job openings in the United States as of May 2026, with employment types broken down into 4% Locum Tenens, 16% As Needed, 17% Full Time, 12% Temporary, 46% Contract, and 5% Nights. Highlights an 92% Physical, 2% Hybrid, and 6% Remote job distribution, with an average salary of $124,243 per year, or $59.7 per hour.
Scanning and Vulnerability Management Analyst

Scanning and Vulnerability Management Analyst

Electrosoft

Belleville, IL โ€ข On-site

Other

Posted 18 days ago


Job description

Scanning and Vulnerability Management Analyst
ย 
Electrosoft Inc. is seeking an Assured Compliance Assessment Solution (ACAS) administrator to support the implementation and sustainment of government-mandated ACAS system, which is comprised of Security Center, Nessus Manager, Nessus Scanner and the Nessus Network Monitor. The ACAS admin will provide automated network vulnerability scanning, configuration assessment, and network discovery. Responsibilities include technical and functional requirements gathering, completing design documentation, and installation, configuration, and sustainment of the solution.ย ย 
ย 
Duties & Responsibilities:
  • Scan the USTRANSCOM networks for vulnerabilities using DoD standard scanning tools
  • Provide reports to the system administrators, leadership, and other organizations
  • Maintain the scanning servers and laptops by applying the required vendor patches and updating the scanning engine and audit files
  • Maintain situational awareness of current vulnerabilities and exploits
Qualifications:ย ย 
  • At least 5 years' experience in patch management
  • Experience using Tenable Nessus to conduct vulnerability and compliance scans
  • Experience with vulnerability mitigation and reporting
  • Experience in Windows Operating System Environment
  • Experience with DISA's Vulnerability Management System
  • Some experience with DISA STIGs
  • Some experience with Unix/Linux based systems
  • Some experience with Cisco network devices
  • Experience administering Windows Servers or Workstations
  • Basic understanding of cryptographic principles
  • Basic understanding of cloud environments to include containers and Kubernetes
  • Must have highly effective communication skills both oral and written
Education:
Minimum of a Bachelor of Science (or higher) in one of the following: computer engineering, computer science, IT, cyber security, or a related field.
Relevant years of experience may be used in substitution for situations where the candidate does not have a Bachelor's degree in the required field.
ย 
Certification:
Must have a current 8140 Cyber Security compliant certification in one of the following CISA, CISM, CySA+, GPEN, GSNA, or advanced degree in Computer Science, Cybersecurity, Data Science, Information Systems, Information Technology or Software Engineering.
ย 
Clearance level:
Minimum of an active Secret Clearance.
ย 
Work Location:
Required onsite work at the client location at Scott Air Force Base, Illinois with some ability to telework on occasion.ย