1

Vulnerability Management Engineer Jobs in Florida

Security Engineer

Miami, FL

  • Medical

  • Dental

  • Vision

  • Life

  • Retirement

  • PTO

Vulnerability Management (Primary Focus) * Own the vulnerability scanning program across endpoints, servers, and cloud infrastructure * Triage, prioritize, and track findings through remediation ...

Security Engineer

Orlando, FL

  • Medical

  • Dental

  • Vision

  • Life

  • Retirement

  • PTO

Vulnerability Management (Primary Focus) * Own the vulnerability scanning program across endpoints, servers, and cloud infrastructure * Triage, prioritize, and track findings through remediation ...

Security Engineer

Orlando, FL · On-site

$90 - $130/hr

  • Medical

  • Dental

  • Vision

  • Life

  • Retirement

  • PTO

Vulnerability Management (Primary Focus) * Own the vulnerability scanning program across endpoints, servers, and cloud infrastructure * Triage, prioritize, and track findings through remediation ...

Security Engineer

Tampa, FL · On-site

  • Medical

  • Dental

  • Vision

  • Life

  • Retirement

  • PTO

Vulnerability Management (Primary Focus) * Own the vulnerability scanning program across endpoints, servers, and cloud infrastructure * Triage, prioritize, and track findings through remediation ...

next page

Showing results 1-20

Vulnerability Management Engineer information

See Florida salary details

$29.1K

$76K

$102.8K

How much do vulnerability management engineer jobs pay per year?

As of Aug 16, 2026, the average yearly pay for vulnerability management engineer in Florida is $76,039.00, according to ZipRecruiter salary data. Most workers in this role earn between $62,800.00 and $87,100.00 per year, depending on experience, location, and employer.

What does a vulnerability management engineer do?

A Vulnerability Management Engineer is responsible for identifying, assessing, and mitigating security vulnerabilities within an organization's systems and networks. They use specialized tools to scan for weaknesses, prioritize risks based on potential impact, and work with IT teams to implement remediation strategies. Additionally, they monitor emerging threats, ensure compliance with security policies, and help educate staff on best practices to protect against cyberattacks.

What are the key skills and qualifications needed to thrive as a vulnerability management engineer, and why are they important?

To thrive as a Vulnerability Management Engineer, you need a solid understanding of cybersecurity principles, vulnerability assessment methodologies, and experience with network and system security, often backed by a relevant degree and certifications like CISSP, CEH, or CompTIA Security+. Familiarity with vulnerability management tools such as Qualys, Nessus, or Rapid7, and knowledge of ticketing and SIEM systems, is typically required. Strong analytical thinking, problem-solving abilities, and effective communication skills help you collaborate with IT teams and convey security risks clearly. These skills and qualities are essential for proactively identifying, prioritizing, and remediating security vulnerabilities to protect organizational assets and maintain compliance.

How does a vulnerability management engineer typically collaborate with other IT and security teams within an organization?

As a Vulnerability Management Engineer, you will work closely with various teams, including IT operations, network administrators, and application developers, to identify, assess, and remediate security vulnerabilities. Collaboration often involves coordinating vulnerability scans, sharing prioritized risk assessments, and helping teams understand the technical and business impact of identified issues. You'll also facilitate remediation efforts by advising on best practices, tracking progress, and sometimes providing training or technical support to ensure vulnerabilities are addressed in a timely manner. Effective communication and relationship-building skills are essential for success in this collaborative, cross-functional role.

What is the difference between Vulnerability Management Engineer vs Security Analyst?

AspectVulnerability Management EngineerSecurity Analyst
CertificationsCompTIA Security+, CISSP, CEHCompTIA Security+, CISSP, CEH
Primary FocusIdentifying, assessing, and managing vulnerabilities in systemsMonitoring security events, analyzing threats, and incident response
Work EnvironmentIT/security teams, vulnerability scanning tools, security platformsSecurity operations centers, incident response teams, monitoring dashboards
Industry UsageIT security, cybersecurity firms, large enterprisesAll industries with cybersecurity needs, including finance, healthcare, and government

The Vulnerability Management Engineer primarily focuses on identifying and mitigating system vulnerabilities, while the Security Analyst monitors security events and responds to incidents. Both roles require similar certifications and often work within the same security teams, but their day-to-day tasks differ significantly.

Is vulnerability management a good career?

Vulnerability management is a valuable cybersecurity role focused on identifying and mitigating security weaknesses in systems. It requires skills in security tools, risk assessment, and often certifications like CISSP or CompTIA Security+; the field offers strong job growth and demand for qualified professionals.

What job categories do people searching Vulnerability Management Engineer jobs in Florida look for?

The top searched job categories for Vulnerability Management Engineer jobs in Florida are:

Infographic showing various Vulnerability Management Engineer job openings in Florida as of August 2026, with employment types broken down into 68% Full Time, and 32% Contract. Highlights an 76% In-person, 6% Hybrid, and 18% Remote job distribution, with an average salary of $76,039 per year, or $36.6 per hour.

Vulnerability Management & Response Engineer

Starr Insurance Companies

Destin, FL

Full-time

Re-posted 13 days ago


Job description

Join Starr, a global leader in commercial insurance with over a century of expertise. We empower our employees to innovate, make impactful decisions, and build lasting client relationships worldwide. At Starr, you'll work in an entrepreneurial culture alongside accessible leaders, leveraging our financial strength and vast industry experience to deliver solutions for our clients, no matter how complex. Grow your career with a rapidly growing company that invests in its people and their ability to drive real progress.

Position Summary

We are seeking a highly skilled Vulnerability Management & Response Engineer to help operate and continuously improve our enterprise Vulnerability Management (VM) program. This role is responsible for owning core VM processes end-to-end-identification, assessment, prioritization, exception handling, remediation tracking, and validation-across on-premises and cloud environments using Tenable. The position drives risk-informed decisions and facilitates remediations with the asset owners.

This role will partner cross-functionally with Infrastructure, Development, Risk, and Compliance teams to maintain continuous scanning coverage, meet remediation SLAs, and mature the VM program through automation, reporting, and governance. The ideal candidate has proven experience running a Vulnerability Management program at enterprise scale, with hands-on Tenable administration and a track record of driving remediation outcomes with asset owners.

Key Responsibilities
  • Own day-to-day operations of the Tenable platform (e.g., scan configuration, scheduling, coverage monitoring, credentials management, and results troubleshooting).
  • Lead triage, assignment, and validation of vulnerability remediation tasks across infrastructure and application stakeholders.
  • Define, maintain, and enforce SLA-based remediation, including escalation and executive reporting for SLA drift.
  • Integrate Tenable findings and remediation workflows with SCCM, Intune, SOAR, SIEM, and ticketing systems to enable automated assignment, tracking, and validation.
  • Conduct quarterly reconciliation of Tenable scanner output with CMDB and asset inventories to validate coverage, ownership, and data quality.
  • Maintain an auditable exception register with documented risk acceptance, compensating controls, approvals, and expiration controls.
  • Produce VM program metrics and reporting (weekly, monthly, quarterly, and annually), including risk trends, SLA performance, and remediation outcomes.
  • Run a recurring VM governance cadence (e.g., quarterly working sessions) to review SLA drift, backlog health, scanner coverage, and tool-to-tool integrations.
  • Support internal audit and regulatory review of the Vulnerability Management program by providing evidence, metrics, and control narratives.
Required Qualifications
  • 5+ years of hands-on experience running an enterprise Vulnerability Management program (process, governance, metrics, and remediation outcomes), not just point-in-time scanning.
  • Hands-on experience with Tenable, including scan configuration, credentialed scanning, reporting, and troubleshooting.
  • Deep understanding of vulnerability scoring systems (CVSS), threat intelligence correlation, and risk-based prioritization to drive remediation sequencing.
  • Experience leading or contributing to patching strategies using SCCM, Intune, or similar tools.
  • Strong documentation and process improvement skills.
  • Proven ability to collaborate across technical and non-technical teams.
Preferred Qualifications
  • Experience integrating VM tools with SOAR, SIEM, or ticketing platforms like Remedyforce or ServiceNow.
  • Knowledge of container security, cloud-native security controls (Azure, AWS, GCP), and API-based vulnerability exposure.
  • Exposure to CMDB reconciliation and asset discovery in dynamic environments.
  • Experience presenting technical risk summaries to executive or audit stakeholders.

Starr is an equal opportunity employer, which means we'll consider all suitably qualified applicants regardless of gender identity or expression, ethnic origin, nationality, religion or beliefs, age, sexual orientation, disability status or any other protected characteristic. We recruit and develop our people based on merit and we're committed to creating an inclusive environment for all employees. We offer first class training and development opportunities to all employees. Our aim is to grow our own talent and bring out the best in people.