1

Vulnerability Management Jobs (NOW HIRING)

Vulnerability Management Engineer Client: ATL - AIM General Location: 55 Trinity Avenue, Suite G700 Atlanta, Georgia 30303-0000 Duration:07+ Months Position Summary The Vulnerability Management ...

Requirements • Minimum 6 years of experience in systems analysis, vulnerability management, information security, or a related IT infrastructure/security role. • Hands-on experience using Qualys ...

Foresite is seeking an enterprise-level Vulnerability Management Engineer dedicated to the administration, engineering, and day-to-day operations of our Tenable product infrastructure. In this ...

Vulnerability Management Lead (RFP)

Washington, DC · On-site

$115K - $152K/yr

They are in search of a highly motivated candidate to join their talented team as a Vulnerability Management Lead, responsible for coordinating vulnerability tracking, remediation support, reporting ...

The Vulnerability Management Lead directs client's vulnerability management program across the Continuous Diagnostics and Mitigation (CDM), Web Application Surveillance Program (WASP), and Cyber ...

Showing results 41-60

Vulnerability Management information

What is vulnerability management?

A Vulnerability Management job involves identifying, assessing, prioritizing, and mitigating security vulnerabilities in an organization's systems, networks, and applications. Professionals in this role use tools like vulnerability scanners and threat intelligence to detect weaknesses and coordinate remediation efforts with IT and security teams. They also establish policies, monitor security risks, and ensure compliance with industry standards. The goal is to reduce the organization's exposure to cyber threats and improve overall security posture.

What are the common challenges faced in a vulnerability management role?

Professionals in Vulnerability Management often encounter challenges such as rapidly evolving threat landscapes, prioritizing remediation efforts among numerous vulnerabilities, and ensuring continuous communication between technical and non-technical stakeholders. They may also need to adapt to changing regulatory requirements and work within tight deadlines to protect the organization from emerging risks. As part of this role, you'll collaborate regularly with IT, security, and business teams to ensure remediation steps are effectively implemented. Continuous learning and adaptability are important, as technologies and attack vectors change frequently in this field. Being proactive and detail-oriented will help you address these challenges and advance your career in cybersecurity.

What are the key skills and qualifications needed to thrive in a vulnerability management position?

To thrive in Vulnerability Management, you need a strong understanding of cybersecurity principles, network protocols, and risk assessment, typically supported by a relevant degree and experience in information security. Familiarity with vulnerability scanning tools (such as Nessus or Qualys), security frameworks, and industry certifications like CISSP or CompTIA Security+ is highly valued. Exceptional analytical thinking, communication skills, and an ability to work collaboratively across IT and business teams help professionals excel in this field. These competencies are crucial to effectively identifying, prioritizing, and mitigating security risks in dynamic organizational environments.

Is vulnerability management a good career?

Vulnerability management is a valuable cybersecurity role focused on identifying and mitigating security weaknesses in systems. It requires knowledge of security tools, risk assessment, and often certifications like CISSP or CompTIA Security+; the field offers strong job growth and competitive salaries. It is suitable for individuals interested in technical problem-solving and continuous learning in cybersecurity.

What does a vulnerability management do?

A vulnerability management professional is responsible for identifying, assessing, and prioritizing security vulnerabilities in an organization’s systems and networks. They use tools like vulnerability scanners and follow best practices to mitigate risks, often working closely with security teams and maintaining documentation for compliance. This role requires technical knowledge of cybersecurity principles and may involve certifications such as CISSP or CompTIA Security+.
More about Vulnerability Management jobs

What cities are hiring for Vulnerability Management jobs?

Cities with the most Vulnerability Management job openings:

What are the most commonly searched types of Vulnerability Management jobs?

The most popular types of Vulnerability Management jobs are:

What states have the most Vulnerability Management jobs?

States with the most job openings for Vulnerability Management jobs include:

Infographic showing various Vulnerability Management job openings in the United States as of August 2026, with employment types broken down into 1% As Needed, 84% Full Time, 13% Part Time, and 2% Contract. Highlights an 84% Physical, 3% Hybrid, and 13% Remote job distribution.

Vulnerability Management Engineer

nLeague

Atlanta, GA • On-site

Contractor

Re-posted 11 days ago


Job description

Job ID: 65214

Position: Vulnerability Management Engineer

Client: ATL - AIM General

Location: 55 Trinity Avenue, Suite G700   Atlanta,  Georgia    30303-0000

Duration:07+ Months

Position Summary

The Vulnerability Management Engineer is responsible for assessing, managing, and reducing security vulnerabilities across enterprise server and workstation environments. This role will perform scheduled vulnerability scans, evaluate risks, recommend remediation plans, support patch cycles, and develop reporting that improves the organization’s security maturity.

The ideal candidate has deep hands-on experience with enterprise patch management, security baselines, vulnerability scanning tools, scripting and remediation across Windows and/or Linux platforms.

Key Responsibilities

Vulnerability Identification & Analysis

· Perform recurring vulnerability scans for servers and workstation environments.

· Analyze scan results to identify actionable risks, false positives, and system exposure levels.

· Prioritize vulnerabilities based on industry frameworks (CVSS, KEV, CISA, etc.).

· Coordinate with application owners for patching and remediation scheduling.

Patch & Remediation Support

· Partner with server and desktop teams to support monthly and quarterly patching cycles.

· Provide technical guidance on workarounds, hotfixes, or remediate configuration issues.

· Assist in validating remediation success post-deployment.

· Help refine patch and configuration baselines for repeatability and security.

Reporting & Metrics

· Develop weekly, monthly, and quarterly dashboards on:

  • Remediation progress
  • Aging vulnerabilities
  • SLA/KPI compliance tracking
  • Platform-level trends

· Report critical vulnerabilities and escalating risks to leadership as needed.

Tooling & Automation

· Operate and tune vulnerability scanning and endpoint management tools (e.g., Qualys, Microsoft Defender, Intune, PatchMyPC, SCCM, Azure Update Manager, etc.).

· Recommend configuration improvements, automation, and scanning optimizations.

· Assist in integrating scan results into ticketing or workflow tools such as ServiceNow or Jira.

Security Standards & Compliance

· Ensure systems adhere to organization security policies, CIS benchmarks, NIST guidance, and other relevant frameworks.

· Help improve patching and vulnerability management SOPs, runbooks, and governance processes.

· Support internal or external audit and compliance reporting requirements.

Required Qualifications

· 3–7 years’ experience in vulnerability management, patch management, or endpoint/server security operations.

· Demonstrated technical proficiency with:

  • Windows Server and Windows desktop platforms
  • Patch deployment and configuration management

· Experience operating one or more security scanning platforms (e.g. Qualys, Defender, Azure Update Manager, PatchMyPC, etc.).

· Ability to analyze scan output, identify false positives, and communicate meaningful remediation guidance.

· Strong understanding of:

  • CVEs, CVSS scoring, and exploitability assessments
  • Common ransomware and threat vectors targeting enterprise endpoints

Preferred Experience

· Experience in mixed operating system environments (Windows and Linux).

· Familiarity with:

  • Microsoft Intune and/or SCCM
  • Azure Update Manager
  • Azure Arc
  • ServiceNow
  • CIS or NIST standards

· Ability to create automation scripts (PowerShell, Bash, Python, or similar).

· Experience working in enterprise or government environments.

Soft Skills

· Strong written and verbal communication.

· Ability to translate technical risk into business impact.

· Comfortable working independently and making data-based recommendations.

· Able to coordinate across multiple IT and security teams.