1

Vulnerability Management Jobs in Oregon (NOW HIRING)

Support incident response, vulnerability management, and security investigations by improving telemetry, logging, and response capabilities. WHO YOU ARE We are an AI-first company. This means you ...

Enterprise Application Security Engineer II

OR · On-site +1

$58.75 - $78.50/hr

Support vulnerability management, incident response, and remediation efforts by identifying security gaps and driving risk reduction across the enterprise environment. WHO YOU ARE We are an AI-first ...

Solutions Architect (REMOTE)

OR · On-site +1

$63 - $83/hr

About Cyware Cyware delivers an innovative approach to cybersecurity that unifies threat intelligence, automation, threat response, and vulnerability management with data insights gleaned from assets ...

Oversee Vulnerability Management program including vulnerability assessments, risk scoring and vulnerability resolution. * Oversee Threat Hunting program to detect and mitigate advanced threats.

Senior Security Engineer

Clackamas, OR · On-site

$120K - $165K/yr

Integrate new security technologies into existing environments and ensure secure configuration of all systems 2: Threat Detection & Vulnerability Management: * Leverage and centralize all logging ...

Senior Security Engineer

Clackamas, OR · On-site

$120K - $165K/yr

Integrate new security technologies into existing environments and ensure secure configuration of all systems 2: Threat Detection & Vulnerability Management: * Leverage and centralize all logging ...

Senior Security Engineer

Clackamas, OR · On-site

$120K - $165K/yr

Integrate new security technologies into existing environments and ensure secure configuration of all systems 2: Threat Detection & Vulnerability Management: * Leverage and centralize all logging ...

Continuous monitoring, vulnerability management, and the documentation and evidence needed for FedRAMP and CMMC authorization * Acting as the escalation point for operational and compliance ...

Senior Security Engineering Manager, Product Security

OR · On-site +1

$114K - $156K/yr

Scale secure-by-design practices across the SDLC, including threat modeling, security architecture reviews, secure coding practices, automated security testing, vulnerability management, API security ...

Network Engineer

OR · On-site +1

Experience with incident response, information assurance, computer security best practices, system hardening, vulnerability management, antivirus, SIEM, firewalls, IPS/IDS monitoring, and techniques ...

Senior IT Security Engineer

OR · On-site +1

$130K - $155K/yr

Own the vulnerability management lifecycle - deploy and operate scanning tools, define remediation SLAs, track closure rates, and report on risk reduction metrics to demonstrate continuous ...

Showing results 41-60

Vulnerability Management information

What is vulnerability management?

A Vulnerability Management job involves identifying, assessing, prioritizing, and mitigating security vulnerabilities in an organization's systems, networks, and applications. Professionals in this role use tools like vulnerability scanners and threat intelligence to detect weaknesses and coordinate remediation efforts with IT and security teams. They also establish policies, monitor security risks, and ensure compliance with industry standards. The goal is to reduce the organization's exposure to cyber threats and improve overall security posture.

What are the common challenges faced in a vulnerability management role?

Professionals in Vulnerability Management often encounter challenges such as rapidly evolving threat landscapes, prioritizing remediation efforts among numerous vulnerabilities, and ensuring continuous communication between technical and non-technical stakeholders. They may also need to adapt to changing regulatory requirements and work within tight deadlines to protect the organization from emerging risks. As part of this role, you'll collaborate regularly with IT, security, and business teams to ensure remediation steps are effectively implemented. Continuous learning and adaptability are important, as technologies and attack vectors change frequently in this field. Being proactive and detail-oriented will help you address these challenges and advance your career in cybersecurity.

What are the key skills and qualifications needed to thrive in a vulnerability management position?

To thrive in Vulnerability Management, you need a strong understanding of cybersecurity principles, network protocols, and risk assessment, typically supported by a relevant degree and experience in information security. Familiarity with vulnerability scanning tools (such as Nessus or Qualys), security frameworks, and industry certifications like CISSP or CompTIA Security+ is highly valued. Exceptional analytical thinking, communication skills, and an ability to work collaboratively across IT and business teams help professionals excel in this field. These competencies are crucial to effectively identifying, prioritizing, and mitigating security risks in dynamic organizational environments.

Is vulnerability management a good career?

Vulnerability management is a valuable cybersecurity role focused on identifying and mitigating security weaknesses in systems. It requires knowledge of security tools, risk assessment, and often certifications like CISSP or CompTIA Security+; the field offers strong job growth and competitive salaries. It is suitable for individuals interested in technical problem-solving and continuous learning in cybersecurity.

What does a vulnerability management do?

A vulnerability management professional is responsible for identifying, assessing, and prioritizing security vulnerabilities in an organization’s systems and networks. They use tools like vulnerability scanners and follow best practices to mitigate risks, often working closely with security teams and maintaining documentation for compliance. This role requires technical knowledge of cybersecurity principles and may involve certifications such as CISSP or CompTIA Security+.

What are the most commonly searched types of Vulnerability Management jobs in Oregon?

The most popular types of Vulnerability Management jobs in Oregon are:

What are popular job titles related to Vulnerability Management jobs in Oregon?

For Vulnerability Management jobs in Oregon, the most frequently searched job titles are:

What job categories do people searching Vulnerability Management jobs in Oregon look for?

The top searched job categories for Vulnerability Management jobs in Oregon are:

What cities in Oregon are hiring for Vulnerability Management jobs?

Cities in Oregon with the most Vulnerability Management job openings:

Infographic showing various Vulnerability Management job openings in Oregon as of August 2026, with employment types broken down into 1% As Needed, 80% Full Time, 17% Part Time, and 2% Contract. Highlights an 84% Physical, 3% Hybrid, and 13% Remote job distribution.

Director of Information Security

Panthalassa

Portland, OR • On-site

Full-time

Medical, Dental, Vision, Retirement, PTO

Re-posted 20 days ago


Job description

About the Company
We are a renewable energy and ocean technology company committed to rapidly developing and deploying technologies that will ensure a sustainable future for Earth by unlocking the vast energy potential of its oceans. Our focus is on capturing civilizational levels of ultra-low-cost renewable energy for applications including computing and affordable renewable fuels delivered to shore.
The company is a public benefit corporation headquartered in Portland, Oregon, and backed by leading venture capitalists, philanthropic investors, university endowments, and private investment offices. We operate as an idea meritocracy in which the best ideas change the company's direction on a regular basis.
About the Job
Panthalassa is moving from prototype systems toward repeatable production, larger facilities, more connected enterprise systems, and increasingly mission-critical software, infrastructure, and operational data flows. We're hiring a Director of Information Security to scale and mature the security foundations that will allow the company to scale quickly without losing control.
This is a hands-on, high-leverage builder role. You will own the technical direction of Panthalassa's information security program across corporate infrastructure, cloud environments, engineering systems, identity and access management, enterprise applications, and security operations. Your job is not to create bureaucracy. Your job is to build practical guardrails, resilient architectures, and clear operating mechanisms that make the company more secure while helping engineering, manufacturing, and business teams move faster.
You'll partner closely with IT, software, test, enterprise systems, manufacturing, and leadership to identify the highest-risk gaps, prioritize what matters, and implement controls that are robust, scalable, and usable in the real world. This is both an individual contributor and a strategic leadership role, in which you will shape the broader security organization, vendor strategy, and long-term roadmap.
Responsibilities
  • Own the technical roadmap for information security across Panthalassa's corporate, cloud, and enterprise systems environments
  • Design and implement security architecture for identity, endpoint, network, SaaS, and cloud systems, with a focus on secure-by-default standards
  • Scale and mature practical security guardrails into engineering and operational workflows, including source control, CI/CD, infrastructure as code, secrets management, logging, and access reviews
  • Partner with IT and infrastructure teams to harden corporate networks, cloud environments, endpoints, and collaboration systems
  • Define and implement identity and access management patterns, including SSO, MFA, role-based access controls, privileged access workflows, and lifecycle management
  • Lead vulnerability management across internal systems and applications, including scanner tuning, prioritization, remediation guidance, and verification of fixes
  • Establish detection and response capabilities appropriate for the company's scale, including telemetry strategy, alerting, incident playbooks, and forensic readiness
  • Secure enterprise systems and the digital thread that support engineering release, manufacturing, supply chain, and operations
  • Perform security architecture reviews for new tools, vendors, infrastructure changes, and internal systems
  • Build lightweight, durable security policies and standards that are aligned with how the company actually works
  • Partner with legal, finance, IT, and business operations on audit readiness, third-party risk, and customer or partner security requirements
  • Drive remediation of high-priority risks through direct implementation, automation, and close partnership with system owners
  • Create clear documentation, runbooks, and training that raise the security baseline across the company
  • Serve as a senior technical advisor during security incidents and significant operational events

Required Qualifications
  • 8+ years of experience in security engineering, infrastructure security, platform security, or a closely related domain
  • Strong hands-on experience securing cloud and enterprise environments, including identity, networking, endpoints, SaaS, and logging/monitoring systems
  • Experience building and operating security controls in modern engineering environments, including CI/CD pipelines, source control platforms, infrastructure as code, and developer tooling
  • Deep knowledge of identity and access management, including SSO, MFA, RBAC, provisioning/deprovisioning, and privileged access design
  • Proven experience leading vulnerability management and remediation programs in a fast-moving engineering environment
  • Experience designing security architectures and making high-quality tradeoff decisions in complex, ambiguous settings
  • Ability to move fluidly between strategic planning and hands-on execution
  • Clear written and verbal communication skills, with the ability to work effectively across technical and non-technical teams
  • Good judgment, high ownership, and a practical mindset about applying security where it matters most

Desired Qualifications
  • Experience as a founding or early security hire at a scaling startup
  • Experience securing environments that support hardware engineering, manufacturing, lab operations, or industrial/OT-adjacent systems
  • Familiarity with security requirements relevant to enterprise infrastructure, including SOC 2 and ISO 27001 control environments
  • Experience with zero trust architecture, device trust, and modern endpoint management
  • Experience with cloud security tooling, SIEM/log pipelines, EDR, MDM, and infrastructure policy enforcement
  • Familiarity with secure software supply chain controls, including artifact integrity, dependency management, and secrets detection
  • Experience evaluating and securing enterprise systems such as PLM, ERP, MRP, MES, QMS, and related integrations
  • Experience with incident response, threat modeling, tabletop exercises, and security reviews for critical vendors
  • Experience working in highly regulated, high-consequence, or mission-critical industries such as aerospace, defense, energy, robotics, or advanced manufacturing

The above qualifications are desired, not required. We encourage you to apply if you are a strong candidate with only some of the desired skills and experience listed.
Additional Requirements
  • This role requires regular on-site presence in Portland, Oregon
  • You should be comfortable working across office, lab, and industrial environments and partnering directly with teams doing hands-on technical work
  • Occasional travel to vendors, partner sites, test sites, or future facilities may be required
  • Intermittently able to work longer hours when supporting critical incidents, infrastructure changes, or time-sensitive operational needs

Compensation and Benefits
If hired for this full-time role, you will receive:
  • Cash compensation of $200,000 - $275,000
  • Equity in the company. We're all owners and if we're successful, this equity should be far and away the most valuable component of your compensation.
  • A benefits package that helps you take care of yourself and your family, including:
    • Flexible paid time off
    • Health insurance (the company pays 100% of gold level PPO plan for full-time employees, their partners, and dependents)
    • Dental insurance (the company pays 100% for full-time employees and 100% for their partners and dependents)
    • Vision insurance (the company pays 100% for full-time employees, their partners, and dependents)
    • Disability insurance (the company pays 100% for a policy to provide long-term financial support if you become disabled)
    • Ability to contribute to tax-advantaged accounts, including 401(k), health FSA, and dependent care FSA
  • Relocation assistance to facilitate your move to Portland (if needed).

Location
This is an on-site position with expectation of regular presence in our Portland facilities (4+ days/week). Our offices, lab, and shop are located in Portland, Oregon. This position may require occasional domestic and international travel for new office or facility buildouts.