1

Vulnerability Management Jobs in California (NOW HIRING)

Role Summary A Vulnerability Management Analyst is responsible for supporting cybersecurity initiatives within critical infrastructure environments, specifically focusing on vulnerability ...

next page

Showing results 1-20

Vulnerability Management information

See California salary details

$5

$60

$83

How much do vulnerability management jobs pay per hour?

As of Jul 29, 2026, the average hourly pay for vulnerability management in California is $60.13, according to ZipRecruiter salary data. Most workers in this role earn between $49.67 and $71.32 per hour, depending on experience, location, and employer.

What are the common challenges faced in a Vulnerability Management role?

Professionals in Vulnerability Management often encounter challenges such as rapidly evolving threat landscapes, prioritizing remediation efforts among numerous vulnerabilities, and ensuring continuous communication between technical and non-technical stakeholders. They may also need to adapt to changing regulatory requirements and work within tight deadlines to protect the organization from emerging risks. As part of this role, you'll collaborate regularly with IT, security, and business teams to ensure remediation steps are effectively implemented. Continuous learning and adaptability are important, as technologies and attack vectors change frequently in this field. Being proactive and detail-oriented will help you address these challenges and advance your career in cybersecurity.

What are the key skills and qualifications needed to thrive in the Vulnerability Management position, and why are they important?

To thrive in Vulnerability Management, you need a strong understanding of cybersecurity principles, network protocols, and risk assessment, typically supported by a relevant degree and experience in information security. Familiarity with vulnerability scanning tools (such as Nessus or Qualys), security frameworks, and industry certifications like CISSP or CompTIA Security+ is highly valued. Exceptional analytical thinking, communication skills, and an ability to work collaboratively across IT and business teams help professionals excel in this field. These competencies are crucial to effectively identifying, prioritizing, and mitigating security risks in dynamic organizational environments.

What is a Vulnerability Management job?

A Vulnerability Management job involves identifying, assessing, prioritizing, and mitigating security vulnerabilities in an organization's systems, networks, and applications. Professionals in this role use tools like vulnerability scanners and threat intelligence to detect weaknesses and coordinate remediation efforts with IT and security teams. They also establish policies, monitor security risks, and ensure compliance with industry standards. The goal is to reduce the organization's exposure to cyber threats and improve overall security posture.

What are the most commonly searched types of Vulnerability Management jobs in California? The most popular types of Vulnerability Management jobs in California are:
What are popular job titles related to Vulnerability Management jobs in California? For Vulnerability Management jobs in California, the most frequently searched job titles are:
What job categories do people searching Vulnerability Management jobs in California look for? The top searched job categories for Vulnerability Management jobs in California are:
What cities in California are hiring for Vulnerability Management jobs? Cities in California with the most Vulnerability Management job openings:
Infographic showing various Vulnerability Management job openings in California as of July 2026, with employment types broken down into 1% As Needed, 81% Full Time, 14% Part Time, 1% Temporary, and 3% Contract. Highlights an 93% Physical, 2% Hybrid, and 5% Remote job distribution, with an average salary of $125,076 per year, or $60.1 per hour.
Vulnerability Management Analyst

Vulnerability Management Analyst

GDH

San Jose, CA โ€ข On-site

$68 - $73/hr

Other

Posted 7 days ago


Job description

Role Summary
A Vulnerability Management Analyst is responsible for supporting cybersecurity initiatives within critical infrastructure environments, specifically focusing on vulnerability identification, analysis, and remediation. This role involves managing vulnerability scans, ensuring compliance with regulatory standards, and collaborating with cross-functional teams to maintain the security posture of operational assets. The position requires a proactive approach to safeguarding infrastructure and maintaining documentation for audit purposes.

Responsibilities

  • Conduct routine vulnerability scans using industry-standard tools such as Tenable, Tripwire IP360, and Qualys.
  • Analyze and validate scan results to identify critical vulnerabilities, collaborating with system and application owners to prioritize remediation efforts.
  • Track remediation activities, verify vulnerability closures through re-scanning, and document remediation progress.
  • Partner with infrastructure and application teams to ensure timely patching, configuration compliance, and security baseline adherence.
  • Support NERC CIP compliance efforts by maintaining accurate documentation, providing evidence, and generating compliance reports.
  • Develop, maintain, and utilize metrics and dashboards to communicate vulnerability status and trends over time.
  • Document asset inventories, systems, and rack elevations for NERC CIP-impacted sites.
  • Travel to substations and critical sites across the service territory for physical assessments and documentation.
  • Contribute to the continuous improvement of vulnerability management processes, procedures, and operational workflows.
  • Assist in site assessments, physical verification, and updating documentation related to vulnerability management.

Qualifications

  • Minimum of 2 years of experience in cybersecurity, IT operations, or vulnerability management.
  • Hands-on experience with vulnerability scanning tools such as Tenable, IP360, and Qualys.
  • Knowledge of patch management, risk-based remediation, and security best practices.
  • Familiarity with NERC CIP standards and evidence requirements is preferred.
  • Strong organizational and communication skills, capable of working independently and within teams.
  • Ability and willingness to travel to substations and critical infrastructure sites within San Diego County.
  • Proficiency in Excel, dashboard creation, and basic scripting is a plus.
  • Relevant certifications such as CompTIA Security+, GSEC, CISA, CISSP, or NERC CIP training are desirable.

Publishing Pay Range: $68.00 - $73.00

This position is based in office and requires employee to work on-site.