1

Vulnerability Management Jobs in Oregon (NOW HIRING)

Secure AWS-based environments through identity and access management, encryption, logging, monitoring, network security, vulnerability management, and configuration hardening. Configure, monitor, and ...

Lead Security & Compliance Analyst

OR · On-site +1

$80K - $135K/yr

  • Medical

  • Dental

  • Vision

  • Retirement

  • PTO

Run the vulnerability management program: scanning, triage, prioritization, and driving remediation with engineering teams * Investigate and remediate security findings across our AWS environment ...

Lead the vulnerability management program across our SaaS products, cloud infrastructure, containers, and endpoints including identification, triage, prioritization, remediation tracking, and ...

Supply Chain Security, DevSecOps, AppSec, security infrastructure, containers, regulatory compliance requirements, vulnerability management, software development lifecycle. * This is a strategic and ...

Supply Chain Security, DevSecOps, AppSec, security infrastructure, containers, regulatory compliance requirements, vulnerability management, software development lifecycle. * This is a strategic and ...

Security & Compliance Engineer

OR · On-site +1

$100K - $160K/yr

This role focuses on vulnerability management, security log management, control monitoring, remediation tracking, audit support, and cross-team coordination. What you'll do * Support the day-to-day ...

Vulnerability Management : Contribute to our vulnerability management program, including triaging bug bounty and vulnerability disclosure reports and driving remediation efforts. * Security ...

Security Engineer (L5) - Workforce Security

OR · On-site +1

$400K - $680K/yr

  • Medical

  • Life

  • Retirement

  • PTO

This includes developing and rolling out solutions for host hardening, vulnerability identification, and effective patch management to maintain defined security standards and prevent configuration ...

Senior Security Engineer

Portland, OR · On-site

$121K - $166K/yr

Oversee vulnerability management efforts, including prioritization and remediation guidance * Conduct security assessments, configuration reviews, and system hardening * Support compliance, audit ...

Cyber Security Engineer

Portland, OR

  • Medical

  • Dental

  • Vision

  • Life

  • Retirement

  • PTO

Oversee vulnerability management efforts by correlating scan results with asset criticality, exploitability, and threat intelligence to drive risk-based prioritization. * Lead post-incident reviews ...

OR · On-site

$110 - $160/hr

  • Medical

  • Dental

  • Vision

  • Life

  • Retirement

  • PTO

Strong understanding of network transport protocols, ITIL concepts, vulnerability management, and security incident management. * Programming skills in scripting languages such as Python, PowerShell ...

Preferred : • Experience supporting SOC, incident response, vulnerability management, compliance, or security engineering programs in enterprise or mission-critical environments. • Experience ...

Staff Security Engineer, Application Security

OR · On-site +1

$210K - $260K/yr

  • Retirement

  • PTO

Own key security domains such as vulnerability management, application security, API security, and supply chain security * Drive improvements in security coverage, prioritization, and remediation ...

Senior Product Manager, Malware Detection

OR · On-site +1

$126K - $166K/yr

Strong understanding of software supply chain security, malware detection, vulnerability management, or adjacent security domains. * Demonstrated success making product prioritization decisions in ...

Showing results 21-40

Vulnerability Management information

What is vulnerability management?

A Vulnerability Management job involves identifying, assessing, prioritizing, and mitigating security vulnerabilities in an organization's systems, networks, and applications. Professionals in this role use tools like vulnerability scanners and threat intelligence to detect weaknesses and coordinate remediation efforts with IT and security teams. They also establish policies, monitor security risks, and ensure compliance with industry standards. The goal is to reduce the organization's exposure to cyber threats and improve overall security posture.

What are the common challenges faced in a vulnerability management role?

Professionals in Vulnerability Management often encounter challenges such as rapidly evolving threat landscapes, prioritizing remediation efforts among numerous vulnerabilities, and ensuring continuous communication between technical and non-technical stakeholders. They may also need to adapt to changing regulatory requirements and work within tight deadlines to protect the organization from emerging risks. As part of this role, you'll collaborate regularly with IT, security, and business teams to ensure remediation steps are effectively implemented. Continuous learning and adaptability are important, as technologies and attack vectors change frequently in this field. Being proactive and detail-oriented will help you address these challenges and advance your career in cybersecurity.

What are the key skills and qualifications needed to thrive in a vulnerability management position?

To thrive in Vulnerability Management, you need a strong understanding of cybersecurity principles, network protocols, and risk assessment, typically supported by a relevant degree and experience in information security. Familiarity with vulnerability scanning tools (such as Nessus or Qualys), security frameworks, and industry certifications like CISSP or CompTIA Security+ is highly valued. Exceptional analytical thinking, communication skills, and an ability to work collaboratively across IT and business teams help professionals excel in this field. These competencies are crucial to effectively identifying, prioritizing, and mitigating security risks in dynamic organizational environments.

Is vulnerability management a good career?

Vulnerability management is a valuable cybersecurity role focused on identifying and mitigating security weaknesses in systems. It requires knowledge of security tools, risk assessment, and often certifications like CISSP or CompTIA Security+; the field offers strong job growth and competitive salaries. It is suitable for individuals interested in technical problem-solving and continuous learning in cybersecurity.

What does a vulnerability management do?

A vulnerability management professional is responsible for identifying, assessing, and prioritizing security vulnerabilities in an organization’s systems and networks. They use tools like vulnerability scanners and follow best practices to mitigate risks, often working closely with security teams and maintaining documentation for compliance. This role requires technical knowledge of cybersecurity principles and may involve certifications such as CISSP or CompTIA Security+.

What are the most commonly searched types of Vulnerability Management jobs in Oregon?

The most popular types of Vulnerability Management jobs in Oregon are:

What are popular job titles related to Vulnerability Management jobs in Oregon?

For Vulnerability Management jobs in Oregon, the most frequently searched job titles are:

What job categories do people searching Vulnerability Management jobs in Oregon look for?

The top searched job categories for Vulnerability Management jobs in Oregon are:

What cities in Oregon are hiring for Vulnerability Management jobs?

Cities in Oregon with the most Vulnerability Management job openings:

Infographic showing various Vulnerability Management job openings in Oregon as of August 2026, with employment types broken down into 1% As Needed, 80% Full Time, 17% Part Time, and 2% Contract. Highlights an 84% Physical, 3% Hybrid, and 13% Remote job distribution.

Cyber Security Engineer

LTS

OR • On-site, Remote

Full-time

Re-posted 19 days ago


Job description

Location: Remote (U.S.)
Clearance: Ability to obtain and maintain a Public Trust
Salary Range: 100K - 120K

LTS is seeking a skilled and mission-focused Cyber Security Engineer to support a major modernization initiative within the Department of Veterans Affairs (VA) health portfolio. This role will support cybersecurity engineering, risk management, and security modernization efforts across enterprise healthcare systems and infrastructure environments supporting Veteran healthcare operations nationwide.

The ideal candidate will possess strong experience securing complex federal IT systems, supporting cloud and hybrid environments, and implementing cybersecurity solutions aligned with federal compliance frameworks and Zero Trust initiatives. This individual will work closely with infrastructure, application, integration, and DevSecOps teams to ensure modernization efforts are designed and deployed with security at the forefront.

What You'll Do:
Support cybersecurity engineering for the pilot, including cloud security, RMF/ATO support, compliance documentation, and continuous monitoring.
Secure AWS-based environments through identity and access management, encryption, logging, monitoring, network security, vulnerability management, and configuration hardening.
Configure, monitor, and support AWS security services such as AWS Network Firewall, Security Hub, GuardDuty, CloudWatch, CloudTrail, Inspector, and related capabilities.
Support security planning for an AWS Commercial Cloud environment with consideration for future migration to AWS GovCloud or another VA-approved hosting environment.
Assist with ATO planning, control implementation, evidence collection, compliance reporting, and approval workflows.
Work within eMASS, ServiceNow GRC, or similar risk management systems to support ATO artifacts, information assurance tasking, POA&M tracking, and security documentation.
Develop and maintain SSPs, POA&Ms, SOPs, risk assessments, control narratives, security diagrams, and remediation plans.
Support vulnerability assessments, DISA STIG hardening, configuration compliance reviews, remediation tracking, and audit readiness activities.
Integrate security requirements into architecture, sprint planning, CI/CD processes, testing, and deployment readiness.
Support security reviews for VIA platform capabilities, including data handling, access control, auditability, secure integration, and AI-enabled modernization workflows.
Collaborate with technical and non-technical stakeholders to translate security requirements into practical engineering, documentation, and compliance actions.


What We're Looking For:
Bachelor's degree in Cybersecurity, Information Technology, Computer Science, Engineering, or a related field.
5+ years of cybersecurity engineering experience supporting federal, cloud, healthcare, or other regulated environments.
Experience securing AWS cloud environments, including IAM, encryption, logging, monitoring, network security, and vulnerability management.
Hands-on experience with AWS security services such as Security Hub, GuardDuty, CloudWatch, CloudTrail, Inspector, AWS Network Firewall, or similar capabilities.
Experience supporting RMF, ATO, continuous monitoring, risk management, and federal compliance activities.
Familiarity with eMASS, ServiceNow GRC, or similar risk management and authorization systems.
Experience developing or supporting SSPs, POA&Ms, SOPs, control narratives, risk assessments, evidence packages, and remediation plans.
Working knowledge of NIST RMF, NIST SP 800-53 controls, FISMA, FedRAMP, Zero Trust, and federal cybersecurity requirements.
Knowledge of DISA STIGs, secure configuration baselines, system hardening, and vulnerability remediation processes.
Familiarity with DevSecOps, secure SDLC practices, automated security scanning, CI/CD security, and environment hardening.
Strong communication, documentation, analytical, and problem-solving skills.


Nice to Have:
Experience supporting AWS GovCloud, federal cloud migration, or Commercial-to-GovCloud transition planning.
Prior experience supporting VA systems, VA cloud environments, or VA healthcare modernization initiatives.
Familiarity with VistA, CPRS, MUMPS, or legacy healthcare application modernization.
Experience securing AI-enabled, automation-based, or agentic platforms in regulated environments.
Experience supporting FedRAMP Moderate or High environments.
Experience with container security, Kubernetes, infrastructure as code, or cloud-native security architectures.
Knowledge of healthcare interoperability standards such as HL7, FHIR, APIs, or healthcare data exchange.
Relevant certifications such as CISSP, Security+, CEH, CCSP, AWS Security Specialty, AWS Solutions Architect, or similar.


Why Join LTS?
At LTS, we support mission-critical programs that improve healthcare outcomes for Veterans nationwide. Our teams work on transformative modernization initiatives focused on securing and advancing federal healthcare technology systems. We foster a collaborative environment built on integrity, innovation, and continuous growth while empowering employees to make meaningful contributions to national healthcare missions.