1

Vulnerability Manager Jobs in Virginia (NOW HIRING)

SOC Vulnerability Management Manager - Senior

Fairfax, VA · On-site

$105K - $143K/yr

Position Summary ECS is seeking a SOC Vulnerability Management Manager - Senior to support the Army National Guard (ARNG) Enterprise Network Operations and Cybersecurity Support (ENOCS) program. This ...

Vulnerability Assessor Location: Alexandria, VA (Hybrid - Telework with periodic on-site support as ... Collaborate with Information System Security Managers (ISSMs), Information System Security Officers ...

Vulnerability Assessor Location: Alexandria, VA (Hybrid - Telework with periodic on-site support as ... Collaborate with Information System Security Managers (ISSMs), Information System Security Officers ...

We are seeking a Vulnerability Management Analyst (Tenable/Nessus & Metrics ) to support vulnerability tracking, remediation coordination, and security metrics reporting in a federal technology ...

Vulnerability Management Lead

Alexandria, VA · Hybrid

$109K - $144K/yr

RiVidium is seeking a Vulnerability Management Lead to support our planned MODES III team supporting Military Community and Family Policy (MC&FP). This role supports IT, Cybersecurity, and Data ...

next page

Showing results 1-20

Vulnerability Manager information

See Virginia salary details

$9

$21

$53

How much do vulnerability manager jobs pay per hour?

As of Jun 28, 2026, the average hourly pay for vulnerability manager in Virginia is $21.71, according to ZipRecruiter salary data. Most workers in this role earn between $17.16 and $20.96 per hour, depending on experience, location, and employer.

What are the key skills and qualifications needed to thrive as a Vulnerability Manager, and why are they important?

To thrive as a Vulnerability Manager, you need expertise in risk assessment, vulnerability scanning, and cybersecurity fundamentals, typically supported by a degree in information security or a related field. Familiarity with tools like Nessus, Qualys, and vulnerability management platforms, as well as certifications such as CISSP or CEH, is often required. Strong analytical skills, attention to detail, and clear communication are crucial soft skills for effectively identifying issues and coordinating remediation efforts. These abilities ensure that organizations can proactively manage security risks and maintain robust defense against cyber threats.

What is the difference between Vulnerability Manager vs Security Analyst?

AspectVulnerability ManagerSecurity Analyst
CertificationsCertified Vulnerability Assessor (CVA), CISSP, CEHCISSP, Security+, CEH
Work EnvironmentOversees vulnerability assessments, manages teams, develops strategiesMonitors security systems, analyzes threats, responds to incidents
Employer & Industry UsageUsed in cybersecurity teams across industries to manage vulnerabilitiesCommonly employed in security operations centers (SOCs) to analyze threats

While both roles focus on cybersecurity, Vulnerability Managers primarily oversee vulnerability assessments and strategy, whereas Security Analysts focus on monitoring and incident response. Both roles require relevant certifications and work within cybersecurity teams, but their daily responsibilities and focus areas differ.

What does a Vulnerability Manager do?

A Vulnerability Manager is responsible for identifying, assessing, and mitigating security vulnerabilities within an organization's systems, networks, and applications. They oversee vulnerability scanning, analyze the results, prioritize risks, and work with various teams to implement remediation strategies. Their goal is to reduce the organization's exposure to cyber threats by ensuring that security weaknesses are addressed promptly and effectively.

What are some common challenges faced by Vulnerability Managers when prioritizing remediation efforts?

Vulnerability Managers often encounter challenges in balancing limited resources with a high volume of identified vulnerabilities. Prioritizing remediation efforts requires close collaboration with IT, development, and business teams to assess the potential impact and exploitability of each vulnerability. Additionally, they must stay updated on emerging threats, ensure compliance with industry standards, and communicate risk effectively to both technical and non-technical stakeholders. Navigating these complexities is essential for maintaining a strong security posture while minimizing disruption to business operations.
What cities in Virginia are hiring for Vulnerability Manager jobs? Cities in Virginia with the most Vulnerability Manager job openings:
Infographic showing various Vulnerability Manager job openings in Virginia as of June 2026, with employment types broken down into 73% Full Time, and 27% Contract. Highlights an 85% Physical, 2% Hybrid, and 13% Remote job distribution, with an average salary of $45,147 per year, or $21.7 per hour.
Vulnerability Management Consultant

Vulnerability Management Consultant

Seneca Resources Company, LLC

Mclean, VA • On-site, Remote

$45 - $48/hr

Contractor

Medical, Dental, Vision, Retirement

Posted 13 days ago


Job description

Position Title: Vulnerability Management Consultant
Location: Washington, DC; Virginia; Dallas, TX; or Boston, MA (Remote with occasional onsite requirements and up to 10% travel)
Clearance Requirements: None
Position Status: Contract (through December 31, 2026, with potential extension)
Pay Rate: $45-$48/hour
Position Description:
Seneca Resources is seeking an experienced Vulnerability Management Consultant to support enterprise cybersecurity initiatives focused on identifying, prioritizing, and mitigating security vulnerabilities. This hands-on, client-facing role requires expertise with Tenable One and vulnerability management best practices across complex IT environments. The ideal candidate will partner with stakeholders to assess security risks, enhance vulnerability management programs, provide actionable remediation guidance, and deliver meaningful metrics and reporting that drive informed security decisions.
Key Responsibilities:
• Lead and support vulnerability management assessments across enterprise environments, evaluating people, processes, and technologies.
• Deploy, configure, administer, and optimize Tenable One solutions and associated modules.
• Conduct vulnerability assessments and analyze security findings to identify control weaknesses and remediation opportunities.
• Perform root cause analysis and provide actionable recommendations for mitigating vulnerabilities and reducing organizational risk.
• Collaborate with client stakeholders, technical teams, and leadership to develop and implement vulnerability management strategies.
• Prioritize vulnerabilities using industry-standard frameworks and threat intelligence sources, including CVSS, EPSS, CISA KEV, CVE, and CWE.
• Develop executive and operational reporting, dashboards, and metrics using Excel, Power BI, or similar reporting tools.
• Evaluate vulnerability management technologies and support tool selection and implementation initiatives.
• Monitor project progress, identify risks, and communicate status updates to stakeholders.
• Stay current on emerging cyber threats, vulnerability trends, exploit techniques, and industry best practices.
• Support cybersecurity consulting engagements and contribute to client deliverables, presentations, and recommendations.
Required Skills/Education:
• Bachelor's degree in Cybersecurity, Information Technology, Computer Science, or a related field.
• 5+ years of experience in cybersecurity, vulnerability management, security operations, or related disciplines.
• Hands-on experience deploying, configuring, and operating Tenable One (required).
• Strong knowledge of vulnerability management methodologies, remediation workflows, and risk-based prioritization.
• Experience conducting vulnerability assessments across Windows, Linux, UNIX, cloud, and hybrid environments.
• Knowledge of cybersecurity frameworks and standards, including NIST, ISO 27001, CIS Controls, PCI DSS, COBIT, and ITIL.
• Understanding of OWASP Top 10, cloud security principles, application security, and enterprise security architecture.
• Experience leveraging threat intelligence, CVSS, EPSS, CISA KEV, CVE, and CWE frameworks for vulnerability analysis and prioritization.
• Scripting or automation experience using Python, PowerShell, or similar technologies.
• Experience developing security metrics, KPIs, dashboards, and executive reporting.
• Strong analytical, problem-solving, and root cause analysis skills.
• Excellent written and verbal communication skills with the ability to translate technical concepts into business-focused recommendations.
• Proven ability to work directly with clients, influence stakeholders, and manage multiple priorities simultaneously.
• Consulting experience preferred.
• Industry certifications such as CISSP, CEH, GSEC, Security+, or similar are highly desirable.
• Willingness to travel occasionally to support client needs.
About Seneca Resources
At Seneca Resources, we are more than just a staffing and consulting firm, we are a trusted career partner. With offices across the U.S. and clients ranging from Fortune 500 companies to government organizations, we provide opportunities that help professionals grow their careers while making an impact. When you work with Seneca, you're choosing a company that invests in your success, celebrates your achievements, and connects you to meaningful work with leading organizations nationwide. We take the time to understand your goals and match you with roles that align with your skills and career path. Our consultants and contractors enjoy competitive pay, comprehensive health, dental, and vision coverage, 401(k) retirement plans, and the support of a dedicated team who will advocate for you every step of the way. Seneca Resources is proud to be an Equal Opportunity Employer, committed to fostering a diverse and inclusive workplace where all qualified individuals are encouraged to apply.