1

Vulnerability Management Engineer Jobs (NOW HIRING)

Vulnerability Management Engineer Job Category: Security Time Type: Full time Minimum Clearance Required to Start: None Employee Type: Regular Percentage of Travel Required: None Type of Travel: None

Vulnerability Management Engineer- Hybrid | Cary, NC We're a leader in data and AI. Through our software and services, we inspire customers around the world to transform data into intelligence - and ...

Vulnerability Management Engineer Job Category: Information Technology Time Type: Full time Minimum Clearance Required to Start: TS/SCI Employee Type: Regular Percentage of Travel Required: Up to 10% ...

Vulnerability Management Engineer Client: ATL - AIM General Location: 55 Trinity Avenue, Suite G700 Atlanta, Georgia 30303-0000 Duration:07+ Months Position Summary The Vulnerability Management ...

Job Summary We are seeking a highly motivated Vulnerability Management Engineer to support enterprise vulnerability assessment, remediation coordination, security tooling administration, and risk ...

The role We are seeking a Staff Vulnerability Management Engineer to lead the most complex technical work in SoFi's Vulnerability Management program. You will design and build scalable systems that ...

Vulnerability Management Engineer

Seattle, WA ยท On-site +1

$140 - $155/hr

Top 5: * 5+ years hands-on vulnerability management or security engineering * Direct implementation experience with at least one enterprise VM platform (Tenable, Qualys, Rapid7, Microsoft Defender ...

The role We are seeking a Staff Vulnerability Management Engineer to lead the most complex technical work in SoFi's Vulnerability Management program. You will design and build scalable systems that ...

Sr Vulnerability Management Engineer

$107K - $146K/yr

The Impact You'll Make in this Role The Senior Vulnerability Management Engineer is a senior technical contributor responsible for operating, scaling, and maturing the enterprise vulnerability ...

Sr Vulnerability Management Engineer

OR ยท On-site +1

$104K - $143K/yr

The Impact You'll Make in this Role The Senior Vulnerability Management Engineer is a senior technical contributor responsible for operating, scaling, and maturing the enterprise vulnerability ...

next page

Showing results 1-20

Vulnerability Management Engineer information

See salary details

$39K

$101.8K

$137.5K

How much do vulnerability management engineer jobs pay per year?

As of Sep 6, 2026, the average yearly pay for vulnerability management engineer in the United States is $101,752.00, according to ZipRecruiter salary data. Most workers in this role earn between $84,000.00 and $116,500.00 per year, depending on experience, location, and employer.

What does a vulnerability management engineer do?

A Vulnerability Management Engineer is responsible for identifying, assessing, and mitigating security vulnerabilities within an organization's systems and networks. They use specialized tools to scan for weaknesses, prioritize risks based on potential impact, and work with IT teams to implement remediation strategies. Additionally, they monitor emerging threats, ensure compliance with security policies, and help educate staff on best practices to protect against cyberattacks.

What are the key skills and qualifications needed to thrive as a vulnerability management engineer, and why are they important?

To thrive as a Vulnerability Management Engineer, you need a solid understanding of cybersecurity principles, vulnerability assessment methodologies, and experience with network and system security, often backed by a relevant degree and certifications like CISSP, CEH, or CompTIA Security+. Familiarity with vulnerability management tools such as Qualys, Nessus, or Rapid7, and knowledge of ticketing and SIEM systems, is typically required. Strong analytical thinking, problem-solving abilities, and effective communication skills help you collaborate with IT teams and convey security risks clearly. These skills and qualities are essential for proactively identifying, prioritizing, and remediating security vulnerabilities to protect organizational assets and maintain compliance.

How does a vulnerability management engineer typically collaborate with other IT and security teams within an organization?

As a Vulnerability Management Engineer, you will work closely with various teams, including IT operations, network administrators, and application developers, to identify, assess, and remediate security vulnerabilities. Collaboration often involves coordinating vulnerability scans, sharing prioritized risk assessments, and helping teams understand the technical and business impact of identified issues. You'll also facilitate remediation efforts by advising on best practices, tracking progress, and sometimes providing training or technical support to ensure vulnerabilities are addressed in a timely manner. Effective communication and relationship-building skills are essential for success in this collaborative, cross-functional role.

What is the difference between Vulnerability Management Engineer vs Security Analyst?

AspectVulnerability Management EngineerSecurity Analyst
CertificationsCompTIA Security+, CISSP, CEHCompTIA Security+, CISSP, CEH
Primary FocusIdentifying, assessing, and managing vulnerabilities in systemsMonitoring security events, analyzing threats, and incident response
Work EnvironmentIT/security teams, vulnerability scanning tools, security platformsSecurity operations centers, incident response teams, monitoring dashboards
Industry UsageIT security, cybersecurity firms, large enterprisesAll industries with cybersecurity needs, including finance, healthcare, and government

The Vulnerability Management Engineer primarily focuses on identifying and mitigating system vulnerabilities, while the Security Analyst monitors security events and responds to incidents. Both roles require similar certifications and often work within the same security teams, but their day-to-day tasks differ significantly.

More about Vulnerability Management Engineer jobs

What cities are hiring for Vulnerability Management Engineer jobs?

Cities with the most Vulnerability Management Engineer job openings:

What states have the most Vulnerability Management Engineer jobs?

States with the most job openings for Vulnerability Management Engineer jobs include:

Infographic showing various Vulnerability Management Engineer job openings in the United States as of August 2026, with employment types broken down into 1% As Needed, 83% Full Time, 14% Part Time, and 2% Contract. Highlights an 89% Physical, 2% Hybrid, and 9% Remote job distribution, with an average salary of $101,752 per year, or $48.9 per hour.

Vulnerability Management Engineer

CACI

Washington, DC โ€ข On-site

Full-time

Medical, Retirement, PTO

Posted 7 days ago


Job description

Job Title: Vulnerability Management Engineer Job Category: Security Time Type: Full time Minimum Clearance Required to Start: None Employee Type: Regular Percentage of Travel Required: None Type of Travel: None * * * The Opportunity: CACI is searching for a Vulnerability Management Engineer to support the FEMA Office of the Chief Information Security Officer (OCISO) in Washington, D.C. As a Vulnerability Management Engineer, you will play a crucial role in ensuring the security and resilience of FEMA's information systems through comprehensive vulnerability identification, assessment, and remediation coordination. You will work in a dynamic environment, collaborating with system owners, cybersecurity professionals, and enterprise administrators to identify and eliminate security vulnerabilities

Your efforts will directly contribute to safeguarding FEMA's mission-critical systems and data. The Vulnerability Management Engineer will be responsible for leading vulnerability identification, prioritization, remediation coordination, and closure validation across the environment and assigned systems. This position requires administering scanning processes across FEMA systems and analyzing vulnerability findings for risk and accuracy.

The Vulnerability Management Engineer will monitor all FEMA systems Remediation Work Plans (RWPs), coordinate remediation efforts across Enterprise systems, and provide daily technical remediation support services. This role is critical for producing dashboards and surge reporting for critical vulnerabilities and ensuring remediation validation. Responsibilities: The Vulnerability Management Engineer will administer scanning processes across FEMA systems and analyze vulnerability findings for risk and accuracy while monitoring all FEMA systems Remediation Work Plans (RWPs).

This position requires coordinating remediation efforts across Enterprise systems, providing daily technical remediation support services, and supporting all remediation activities in a detailed, technical, and audit manner. The Vulnerability Management Engineer will ensure remediation validation and produce dashboards and surge reporting for critical vulnerabilities, as well as provide vulnerability reduction reports and trend analysis reports. Responsibilities include analyzing vulnerability reports and remediation efforts and reporting to leadership as required, conducting monthly POA&M remediation test events, and developing test reports within 5 days after testing.

The position involves validating closure of vulnerabilities and providing monthly compliance remediation briefs while utilizing automated security authorization tools for managing remediation efforts and managing POA&Ms using automated tools. The Vulnerability Management Engineer will support internal and external audit events, track and suggest technologies, processes, and practices designed to protect networks, devices, programs, and data from malicious attack, damage, or unauthorized access, and research and maintain proficiency in tools, techniques, countermeasures, and trends in computer and network vulnerabilities, data hiding, and network and device security and encryption. Qualifications: Required: - U.S

Citizenship required - FEMA EOD suitability or Current DHS or FEMA EOD preferred - BS/BA + 6 years of applicable experience in vulnerability management and cybersecurity - Demonstrated expertise with Qualys - Experience with other vulnerability scanning tools (dbProtect, Webinspect, or Tenable) - Experience with automated security authorization tools - Knowledge of vulnerability assessment methodologies and risk analysis - Strong analytical skills for vulnerability prioritization and trend analysis Desired: - Active Secret security clearance - Previous DHS or DoD experience - Experience with managing and administering automated scanning tools - Knowledge of DISA STIGs and security compliance frameworks - Experience with dashboard and reporting tools (Tableau, Power BI, Splunk) - Experience supporting audit activities - What You Can Expect: A culture of integrity. At CACI, we place character and innovation at the center of everything we do. As a valued team member, you'll be part of a high-performing group dedicated to our customer's missions and driven by a higher purpose - to ensure the safety of our nation.

An environment of trust. CACI values the unique contributions that every employee brings to our company and our customers - every day. You'll have the autonomy to take the time you need through a unique flexible time off benefit and have access to robust learning resources to make your ambitions a reality.

A focus on continuous growth. Together, we will advance our nation's most critical missions, build on our lengthy track record of business success, and find opportunities to break new ground - in your career and in our legacy. Pay Range: There are a host of factors that can influence final salary including, but not limited to, geographic location, Federal Government contract labor categories and contract wage rates, relevant prior work experience, specific skills and competencies, education, and certifications.

Our employees value the flexibility at CACI that allows them to balance quality work and their personal lives. We offer competitive compensation, benefits and learning and development opportunities. Our broad and competitive mix of benefits options is designed to support and protect employees and their families.

At CACI, you will receive comprehensive benefits such as; healthcare, wellness, financial, retirement, family support, continuing education, and time off benefits. Since this position can be worked in more than one location, the range shown is the national average for the position. The proposed salary range for this position is: $75,200-$158,100 CACI is an Equal Opportunity Employer.

All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, pregnancy, sexual orientation, age, national origin, disability, status as a protected veteran, or any other protected characteristic.