The Engineer - Vulnerability Management is responsible for working with the VM Manager to design, implement, and maintain a robust vulnerability management program across hybrid environments ...
The Engineer - Vulnerability Management is responsible for working with the VM Manager to design, implement, and maintain a robust vulnerability management program across hybrid environments ...
The Engineer - Vulnerability Management is responsible for working with the VM Manager to design, implement, and maintain a robust vulnerability management program across hybrid environments ...
The Engineer - Vulnerability Management is responsible for working with the VM Manager to design, implement, and maintain a robust vulnerability management program across hybrid environments ...
Engineer - Vulnerability Management
Bolingbrook, IL · On-site
$91 - $120/hr
The Engineer - Vulnerability Management is responsible for working with the VM Manager to design, implement, and maintain a robust vulnerability management program across hybrid environments ...
Engineer - Vulnerability Management
Bolingbrook, IL · On-site
$91 - $120/hr
The Engineer - Vulnerability Management is responsible for working with the VM Manager to design, implement, and maintain a robust vulnerability management program across hybrid environments ...
Engineer - Vulnerability Management
Bolingbrook, IL · On-site
$91 - $120/hr
The Engineer - Vulnerability Management is responsible for working with the VM Manager to design, implement, and maintain a robust vulnerability management program across hybrid environments ...
New
Engineer - Vulnerability Management
Bolingbrook, IL · On-site
$91 - $120/hr
The Engineer - Vulnerability Management is responsible for working with the VM Manager to design, implement, and maintain a robust vulnerability management program across hybrid environments ...
New
The Engineer - Vulnerability Management is responsible for working with the VM Manager to design, implement, and maintain a robust vulnerability management program across hybrid environments ...
The Engineer - Vulnerability Management is responsible for working with the VM Manager to design, implement, and maintain a robust vulnerability management program across hybrid environments ...
Five or more years of relevant experience in cybersecurity, technology risk, vulnerability management, security governance, or a related field, including demonstrated experience conducting security ...
New
Quick apply
Five or more years of relevant experience in cybersecurity, technology risk, vulnerability management, security governance, or a related field, including demonstrated experience conducting security ...
New
What You'll Do The Principal, Patching and Vulnerability Management Coordinator, leads the coordination and execution of the patching and vulnerability management program across the organization ...
What You'll Do The Principal, Patching and Vulnerability Management Coordinator, leads the coordination and execution of the patching and vulnerability management program across the organization ...
What You'll Do The Principal, Patching and Vulnerability Management Coordinator, leads the coordination and execution of the patching and vulnerability management program across the organization ...
What You'll Do The Principal, Patching and Vulnerability Management Coordinator, leads the coordination and execution of the patching and vulnerability management program across the organization ...
Global Director - Vulnerability Management & Security Configuration
Chicago, IL · On-site
$164K - $288K/yr
Northern Trust is seeking a Global Director of Vulnerability Management & Security Configuration to define and execute the enterprise strategy for reducing technology risk across infrastructure ...
Global Director - Vulnerability Management & Security Configuration
Chicago, IL · On-site
$164K - $288K/yr
Northern Trust is seeking a Global Director of Vulnerability Management & Security Configuration to define and execute the enterprise strategy for reducing technology risk across infrastructure ...
Global Director - Vulnerability Management & Security Configuration
Chicago, IL · On-site
$164K - $288K/yr
Northern Trust is seeking a Global Director of Vulnerability Management & Security Configuration to define and execute the enterprise strategy for reducing technology risk across infrastructure ...
Global Director - Vulnerability Management & Security Configuration
Chicago, IL · On-site
$164K - $288K/yr
Northern Trust is seeking a Global Director of Vulnerability Management & Security Configuration to define and execute the enterprise strategy for reducing technology risk across infrastructure ...
Global Director - Vulnerability Management & Security Configuration
Chicago, IL · On-site
$164K - $288K/yr
Northern Trust is seeking a Global Director of Vulnerability Management & Security Configuration to define and execute the enterprise strategy for reducing technology risk across infrastructure ...
Global Director - Vulnerability Management & Security Configuration
Chicago, IL · On-site
$164K - $288K/yr
Northern Trust is seeking a Global Director of Vulnerability Management & Security Configuration to define and execute the enterprise strategy for reducing technology risk across infrastructure ...
Sr. Vulnerability Analyst
Chicago, IL · On-site
$90K - $120K/yr
The Global Vulnerability Management team is hiring a Sr Vulnerability Analyst. Join a highly talented, dynamic and energetic team that's passionate about attack surface reduction and contributing ...
Sr. Vulnerability Analyst
Chicago, IL · On-site
$90K - $120K/yr
The Global Vulnerability Management team is hiring a Sr Vulnerability Analyst. Join a highly talented, dynamic and energetic team that's passionate about attack surface reduction and contributing ...
Sr. Vulnerability Analyst
$90K - $120K/yr
The Global Vulnerability Management team is hiring a Sr Vulnerability Analyst. Join a highly talented, dynamic and energetic team that's passionate about attack surface reduction and contributing ...
Sr. Vulnerability Analyst
$90K - $120K/yr
The Global Vulnerability Management team is hiring a Sr Vulnerability Analyst. Join a highly talented, dynamic and energetic team that's passionate about attack surface reduction and contributing ...
Principal Cloud Security and Vulnerability
Chicago, IL · On-site
$100 - $130/hr
Lead and coordinate enterprise patch management and vulnerability remediation programs across server, network, and cloud environments, ensuring alignment, accountability, and consistent execution.
Principal Cloud Security and Vulnerability
Chicago, IL · On-site
$100 - $130/hr
Lead and coordinate enterprise patch management and vulnerability remediation programs across server, network, and cloud environments, ensuring alignment, accountability, and consistent execution.
Senior Director, Vulnerability Resiliency Engineering
Chicago, IL · On-site
$118K - $161K/yr
Define and manage executive-level operational metrics, including exploitable exposure, disruption effectiveness, remediation performance, vulnerability elimination rates, asset currency, and SLA ...
New
Senior Director, Vulnerability Resiliency Engineering
Chicago, IL · On-site
$118K - $161K/yr
Define and manage executive-level operational metrics, including exploitable exposure, disruption effectiveness, remediation performance, vulnerability elimination rates, asset currency, and SLA ...
New
Senior Cyber Risk and Vulnerability Analyst
Chicago, IL · On-site
$103K - $132K/yr
Five or more years of relevant experience in cybersecurity, technology risk, vulnerability management, security governance, or a related field, including demonstrated experience conducting security ...
Quick apply
Senior Cyber Risk and Vulnerability Analyst
Chicago, IL · On-site
$103K - $132K/yr
Five or more years of relevant experience in cybersecurity, technology risk, vulnerability management, security governance, or a related field, including demonstrated experience conducting security ...
Senior Director, Vulnerability Resiliency Engineering
Chicago, IL · On-site
$118K - $161K/yr
Define and manage executive-level operational metrics, including exploitable exposure, disruption effectiveness, remediation performance, vulnerability elimination rates, asset currency, and SLA ...
New
Senior Director, Vulnerability Resiliency Engineering
Chicago, IL · On-site
$118K - $161K/yr
Define and manage executive-level operational metrics, including exploitable exposure, disruption effectiveness, remediation performance, vulnerability elimination rates, asset currency, and SLA ...
New
Senior Cyber Risk and Vulnerability Analyst
Chicago, IL · On-site
$103K - $132K/yr
Five or more years of relevant experience in cybersecurity, technology risk, vulnerability management, security governance, or a related field, including demonstrated experience conducting security ...
Quick apply
Senior Cyber Risk and Vulnerability Analyst
Chicago, IL · On-site
$103K - $132K/yr
Five or more years of relevant experience in cybersecurity, technology risk, vulnerability management, security governance, or a related field, including demonstrated experience conducting security ...
Vulnerability Analyst
Lemont, IL · On-site
The Vulnerability Analyst will play an important role to identify, assess, prioritize, report, and ... The project managers measure work performed by the contractor on a task basis. The tasks typically ...
Vulnerability Analyst
Lemont, IL · On-site
The Vulnerability Analyst will play an important role to identify, assess, prioritize, report, and ... The project managers measure work performed by the contractor on a task basis. The tasks typically ...
Vulnerability Analyst
Lemont, IL · On-site
The Vulnerability Analyst will play an important role to identify, assess, prioritize, report, and ... The project managers measure work performed by the contractor on a task basis. The tasks typically ...
Quick apply
Vulnerability Analyst
Lemont, IL · On-site
The Vulnerability Analyst will play an important role to identify, assess, prioritize, report, and ... The project managers measure work performed by the contractor on a task basis. The tasks typically ...
Vulnerability Management information
What is vulnerability management?
A Vulnerability Management job involves identifying, assessing, prioritizing, and mitigating security vulnerabilities in an organization's systems, networks, and applications. Professionals in this role use tools like vulnerability scanners and threat intelligence to detect weaknesses and coordinate remediation efforts with IT and security teams. They also establish policies, monitor security risks, and ensure compliance with industry standards. The goal is to reduce the organization's exposure to cyber threats and improve overall security posture.
What are the common challenges faced in a vulnerability management role?
Professionals in Vulnerability Management often encounter challenges such as rapidly evolving threat landscapes, prioritizing remediation efforts among numerous vulnerabilities, and ensuring continuous communication between technical and non-technical stakeholders. They may also need to adapt to changing regulatory requirements and work within tight deadlines to protect the organization from emerging risks. As part of this role, you'll collaborate regularly with IT, security, and business teams to ensure remediation steps are effectively implemented. Continuous learning and adaptability are important, as technologies and attack vectors change frequently in this field. Being proactive and detail-oriented will help you address these challenges and advance your career in cybersecurity.
What are the key skills and qualifications needed to thrive in a vulnerability management position?
To thrive in Vulnerability Management, you need a strong understanding of cybersecurity principles, network protocols, and risk assessment, typically supported by a relevant degree and experience in information security. Familiarity with vulnerability scanning tools (such as Nessus or Qualys), security frameworks, and industry certifications like CISSP or CompTIA Security+ is highly valued. Exceptional analytical thinking, communication skills, and an ability to work collaboratively across IT and business teams help professionals excel in this field. These competencies are crucial to effectively identifying, prioritizing, and mitigating security risks in dynamic organizational environments.
Is vulnerability management a good career?
What does a vulnerability management do?
What are the most commonly searched types of Vulnerability Management jobs in Chicago, IL?
The most popular types of Vulnerability Management jobs in Chicago, IL are:
What are popular job titles related to Vulnerability Management jobs in Chicago, IL?
For Vulnerability Management jobs in Chicago, IL, the most frequently searched job titles are:
What job categories do people searching Vulnerability Management jobs in Chicago, IL look for?
The top searched job categories for Vulnerability Management jobs in Chicago, IL are:
What cities near Chicago, IL are hiring for Vulnerability Management jobs?
Cities near Chicago, IL with the most Vulnerability Management job openings:

Full-time
Medical, Dental, Vision, Life, PTO
Posted 18 days ago
Ulta Beauty rating
6.1
Based on 1,010 frontline employees who took The Breakroom Quiz
12th of 24 rated health and beauty retailers
Job description
Live the experience. From professional empowerment to continual learning opportunities. From ongoing investment in new and emerging technologies to a career of self-determination. At Ulta Beauty, our tech team is critical to our scalability-and is recognized that way. We've been defined as a "mature start-up." A place where interdepartmental exposure, open doors, and genuine collaboration is ubiquitous. Where challenges come fast and furious, requiring agility, mental dexterity, and creativity. Where our passion for better solutions drives us and is core to who we are.
We're engineering for the future of retail, and it's no-holds-barred. But for those motivated by continual change and ambiguity, by superior leadership, by whip smart colleagues who will press you daily for your very best, you'll find that virtually nothing's impossible at Ulta Beauty.
THE IMPACT YOU CAN HAVE:
The Engineer - Vulnerability Management is responsible for working with the VM Manager to design, implement, and maintain a robust vulnerability management program across hybrid environments, including on-premises, cloud, containers, and SaaS platforms. This role focuses on technical execution-deploying and tuning scanning tools (Tenable Security Center/Falcon Exposure Management), then using continuous, data driven communication to remediation teams via ServiceNow VR so that they are empowered to address the riskiest vulnerabilities within their environments. The engineer will leverage risk-based prioritization, threat intelligence, and business context to reduce exposure and improve resilience.
This position requires deep technical expertise in vulnerability scanning technologies, scripting and automation, and security practices across the traditional and cloud-native spectrum. The engineer will collaborate closely with infrastructure, cloud, application, and security teams to drive remediation according to organizational SLAs, and continuously improve program maturity through metrics, automation, and emerging technologies.
YOU'LL ACCOMPLISH THESE GOALS BY:
- Vulnerability Identification & Scanning
- Design, schedule, and optimize authenticated/credentialed scans for on-prem, cloud, and remote endpoints; ensure minimal disruption and scan hygiene
- Validate scanner configuration and coverage (e.g., Qualys/Tenable/Rapid7/Falcon Exposure Management) and continuously tune for false-positive reduction
- Risk-Based Prioritization
- Prioritize findings using context: exploit likelihood (EPSS), Known Exploited Vulnerabilities (CISA KEV), network exposure, business impact, compensating controls, and asset criticality
- Correlate with threat intel and active detections (EDR/XDR/SIEM), elevating actively exploited vulnerabilities to emergency treatment
- Define severity thresholds and SLAs per asset class; manage exceptions with time-bound risk acceptance and compensating controls.
- Remediation & Ticketing
- Drive remediation by regularly partnering with Infra/Platform, Cloud, and App teams to empower them to make informed decisions when weighing the priority of patches and configuration changes versus compensating controls and operational realities
- Integrate with ticketing systems (ServiceNow VR) to ensure that proper assignment logic is in place, and that automated validation scans determine the status of fix actions.
- Assist the Security Operations team as they execute zero-day/rapid-response playbooks (e.g. scans/queries, exploitability assessments, validations, enrich post-mortems)
- Asset & Exposure Discovery
- Contribute to and help maintain an accurate, continuously updated asset inventory across a primary scope of endpoints, servers, and network devices, as well as containers, mobile, OT/IoT, and cloud resources (IaaS, PaaS, SaaS)
- Integrate data from CMDB, cloud provider APIs, EDR/XDR, MDM, and attack surface management to reduce blind spots
- Assist CMDB owner with categorization of assets for business criticality, data sensitivity, internet-exposure, and ownership to enable risk-based prioritization
- Validation & Continuous Improvement
- Perform targeted rescans and exploit-simulation where safe to confirm remediation
- Tune detection rules to reduce noise; establish a feedback loop with platform owners for recurring findings
- Run root cause analyses for chronic issues (missing patch baselines, unsupported OS, inadequate maintenance windows)
- Governance, Metrics & Reporting
- Publish actionable dashboards and reports: weighted risk trends, criticality & exposure trends, SLA adherence, risky asset highlighting, KEV coverage, etc
- Align with risk and audit frameworks (NIST CSF/800-53, CIS Controls, ISO 27001, SOC 2) and support audit evidence requests
- Maintain policy/standards for scanning coverage, remediation SLAs, and risk acceptances.
- Cloud, Containers, and DevSecOps Integration
- Work with teams utilizing existing scanning in their CI/CD pipelines and enforce policy gates for images, IaC, and dependencies
- Partner with cloud engineering to communicate misconfigurations (CSPM/CNAPP) and high-risk services (public S3, exposed admin ports, overly permissive IAM)
- Champion SBOM generation and consumption; track vulnerable components (e.g., Log4j) across apps, images, and functions
- Collaboration & Stakeholder Management
- Act as the primary point of contact with Infra/Platform, Cloud, AppSec, Networking, and Business Owners for remediation prioritization
- Communicate risk in business terms; escalate blockers; provide clear, concise guidance
- Automation & Tooling
- Build automation for asset enrichment, ticket creation, SLA tracking, and report generation (APIs, scripts, workflows)
- Evaluate and pilot emerging capabilities (exposure management, ASM, CNAPP) and drive vendor/tool rationalization
ADDITIONAL RESPONSIBILITIES:
- Work across groups to identify opportunities for improvement within the environment, both technical and operational, along with plans to capture those benefits.
- Responsible for ensuring adherence to existing processes both operationally, and in support of PCI and/or SOX audit requirements.
- Collaborate with other members of the Engineering organization to create and maintain standards and operating procedures, and provide information as appropriate to manager, project manager, and various departments within the Company.
- Bachelor's degree in Computer Science, CIS, or equivalent experience (5+ years in cybersecurity)
- Preferred Certifications - CISSP or equivalent
- 3-5 years professional experience in a relevant field
- Excellent analysis/troubleshooting skills, able to solve problems efficiently
- Excellent communication skills; feels comfortable working with non-technical business partners
- Skilled and comfortable with tackling complex challenges, either in leading the troubleshooting effort or advising/leading others
- Work with production support and project consultants in an onshore / offshore model
- Able to prioritize and execute tasks in a high-pressure environment
- Solid knowledge of industry best practices and technical systems
- Knowledgeable as to IT security concepts, compliance, principles, and tools
- Ability to work in team in diverse/ multiple stakeholder environments
- Ability to follow-up, follow through and deliver timely results
- Proven track record of delivering high quality solutions on time and on schedule
- Flexibility of providing support during odd hours, weekends, and peak seasons
- Off-Hours support including 24x7 on-call required
- Minimal travel required (training/conferences)
- Retail industry experience preferred
#LI-HYBRID
The pay range for this position is $90,800.00 - $120,000.00 / Year with the opportunity for eligible associates to earn additional compensation pursuant to the Company's bonus plan. Exact pay will be based on factors including, but not limited to relevant education, qualifications, certifications, experience, level, shift, geographic location, and business and organizational needs. Full-time positions are eligible for paid time off, health, dental, vision, life and disability benefits. Part-time positions are eligible for dental, vision, life, and disability benefits. For additional information concerning our benefits, visit our Benefits and Career Development page: https://learn.bswift.com/ulta
ABOUT
At Ulta Beauty (NASDAQ: ULTA), the possibilities are beautiful. Ulta Beauty is the largest North American beauty retailer and the premier beauty destination for cosmetics, fragrance, skin care products, hair care products and salon services. We bring possibilities to life through the power of beauty each and every day in our stores and online with more than 25,000 products from approximately 500 well-established and emerging beauty brands across all categories and price points, including Ulta Beauty's own private label. Ulta Beauty also offers a full-service salon in every store featuring-hair, skin, brow, and make-up services.
We will consider for employment all qualified applicants, including those with arrest records, conviction records, or other criminal histories, in a manner consistent with the requirements of any applicable state and local laws, including the City of Los Angeles' Fair Chance Initiative for Hiring Ordinance, the San Francisco Fair Chance Ordinance, and the New York City Fair Chance Act.
What Ulta Beauty employees say
Pay
Benefits
Hours and flexibility
Workplace
Get the full story on Breakroom
About Ulta Beauty
Sourced by ZipRecruiter
Industry
Retail
Company size
10,000+ Employees
Headquarters location
Bolingbrook, IL, US
Year founded
1990