1

Vulnerability Manager Jobs in Washington (NOW HIRING)

Requirements • Minimum 6 years of experience in systems analysis, vulnerability management, information security, or a related IT infrastructure/security role. • Hands-on experience using Qualys ...

Vulnerability Management

Andrews, MD · On-site

  • Medical

  • Dental

  • Vision

  • Life

  • Retirement

  • PTO

Vulnerability Management to support the Air Force National Capital Region IT Services program. The AFNCR IT Services program provides support services for information systems for Headquarters Air ...

Vulnerability Management Lead

Bethesda, MD · On-site

$109K - $144K/yr

We are seeking a Vulnerability Management Lead to join our team and support our client. The ideal candidate is a proactive cybersecurity professional with deep experience leading enterprise ...

Showing results 21-40

Vulnerability Manager information

See Washington salary details

$10

$24

$61

How much do vulnerability manager jobs pay per hour?

As of Aug 18, 2026, the average hourly pay for vulnerability manager in Washington is $24.80, according to ZipRecruiter salary data. Most workers in this role earn between $19.62 and $23.94 per hour, depending on experience, location, and employer.

What does a vulnerability manager do?

A Vulnerability Manager is responsible for identifying, assessing, and mitigating security vulnerabilities within an organization's systems, networks, and applications. They oversee vulnerability scanning, analyze the results, prioritize risks, and work with various teams to implement remediation strategies. Their goal is to reduce the organization's exposure to cyber threats by ensuring that security weaknesses are addressed promptly and effectively.

What are the key skills and qualifications needed to thrive as a vulnerability manager, and why are they important?

To thrive as a Vulnerability Manager, you need expertise in risk assessment, vulnerability scanning, and cybersecurity fundamentals, typically supported by a degree in information security or a related field. Familiarity with tools like Nessus, Qualys, and vulnerability management platforms, as well as certifications such as CISSP or CEH, is often required. Strong analytical skills, attention to detail, and clear communication are crucial soft skills for effectively identifying issues and coordinating remediation efforts. These abilities ensure that organizations can proactively manage security risks and maintain robust defense against cyber threats.

What are some common challenges faced by vulnerability managers when prioritizing remediation efforts?

Vulnerability Managers often encounter challenges in balancing limited resources with a high volume of identified vulnerabilities. Prioritizing remediation efforts requires close collaboration with IT, development, and business teams to assess the potential impact and exploitability of each vulnerability. Additionally, they must stay updated on emerging threats, ensure compliance with industry standards, and communicate risk effectively to both technical and non-technical stakeholders. Navigating these complexities is essential for maintaining a strong security posture while minimizing disruption to business operations.

What is the difference between Vulnerability Manager vs Security Analyst?

AspectVulnerability ManagerSecurity Analyst
CertificationsCertified Vulnerability Assessor (CVA), CISSP, CEHCISSP, Security+, CEH
Work EnvironmentOversees vulnerability assessments, manages teams, develops strategiesMonitors security systems, analyzes threats, responds to incidents
Employer & Industry UsageUsed in cybersecurity teams across industries to manage vulnerabilitiesCommonly employed in security operations centers (SOCs) to analyze threats

While both roles focus on cybersecurity, Vulnerability Managers primarily oversee vulnerability assessments and strategy, whereas Security Analysts focus on monitoring and incident response. Both roles require relevant certifications and work within cybersecurity teams, but their daily responsibilities and focus areas differ.

What cities in Washington are hiring for Vulnerability Manager jobs?

Cities in Washington with the most Vulnerability Manager job openings:

Infographic showing various Vulnerability Manager job openings in Washington as of August 2026, with employment types broken down into 84% Full Time, 9% Part Time, 2% Temporary, and 5% Contract. Highlights an 77% Physical, 2% Hybrid, and 21% Remote job distribution, with an average salary of $51,576 per year, or $24.8 per hour.

Vulnerability Management Team Lead

Govcio LLC

Bethesda, MD • On-site

Full-time

Posted 12 days ago


GovCIO rating

7.5

Company rating: 7.5 out of 10

Based on 9 frontline employees who took The Breakroom Quiz

109th of 224 rated it services


Job description

Overview:

GovCIO is currently hiring for a Vulnerability Management Team Lead to provide support to a Federal government contract. The Vulnerability Team Lead will be leading critical support for the Information Security’s vulnerability management program (VM) as part of the Office of the CIO. They will help create a robust proactive approach for preventing unauthorized access, changes, or exploitation of vulnerabilities through mitigation, active defenses, and automated responses. The VM team’s portfolio of activities includes providing vulnerability detection and remediation oversight, vulnerability research, secure baseline compliance, web application security, host-based security, network security, and acting as security subject matter experts for all of the organization.  This position will be located in Bethesda, MD and will be a hybrid remote position.

Responsibilities:
  • Perform Project Management activities, including assigning tasks, 1-1 coaching, timesheet reconciliation, performance evaluations, etc.).
  • Lead the redesign, build and day-to-day operations of the vulnerability management (VM) team to include standardization of processes and managing customer expectations.
  • Effectively manage a team of vulnerability management professionals who are focused on proactively preventing the exploitation of IT vulnerabilities that exist across the
  • Successfully assign and complete VM projects, tasks, and\or initiatives on time and to vulnerability management standards.
  • Maintain a schedule of all VM team projects, tasks, and/or initiatives.
  • Track all team projects, tasks, and/or initiatives in a centralized location (e.g., Microsoft Lists, Jira, etc.).
  • Provide presentations and/or communications on relevant security documents across multiple teams and various layers of Federal management. Includes preparation of VM weekly project status reports, updates to the ISSO Forum presentation, updates to the monthly Executive briefing, and ad hoc reports/presentations as required.
  • Drive actionable metrics which help ensure the team reduce the time and resources needed to detect, investigate, analyze and remediate vulnerabilities.
  • Manage performance of risk‐based assessments of current and emerging information security issues to support the mission by prioritizing remediation efforts.
  • Proactively delegate support of regular vulnerability, compliance/configuration, database, and web application scanning.
  • Provide Subject Matter Expert support and guidance to Information Security Systems Officers (ISSO), System Owners and others as needed through the risk management process and secure configuration baseline management, including regulatory and remediation compliance monitoring.
  • Apply effective problem solving and critical thinking skills to evaluate applicable solutions, conduct pilot/evaluations for proof of concepts and ultimately implement better mitigating controls.
  • Research current and emerging information security exploits, threats, and vulnerabilities and disseminate contextual information to appropriate stakeholders.
  • Facilitate exception handling, waiver processing and escalations as needed.
  • Gather and organize technical information about the organization’s security posture, its mission goals and needs, information systems, and networks. Proactively identify & troubleshoot problems within managed security tools.
  • Maintain regular communication with security leaderships on process optimization, tools tuning and resetting of VM priorities as business needs prudently recommend.
Qualifications:

Bachelor of Arts (B.A.) or Bachelor of Science (B.S.) degree, preferably in Computer Science, Information Technology, Electrical Engineering, or related field. with 12+ years (or commensurate experience)

Required Skills and Experience

  • 12 or more years of professional work experience in cybersecurity with at least 5 years in Vulnerability Management.
  • 3 or more years managing\supervising a team of vulnerability management professionals.
  • Information Security-related certification(s) such as GPEN, GEVA, CISSP, etc.

VM Lead Technical Competencies:

  • Extensive knowledge and hands-on experience with a variety of Vulnerability Management Tools such as Tenable, DB Protect, Netsparker, Qualys, etc.
  • Expert knowledge of the Vulnerability Management lifecycle
  • Proven track record of designing, implementing, and managing a Fortune 100 level Vulnerability Management Program
  • Strong knowledge of networking, operating systems, databases, and web applications
  • Strong knowledge of cybersecurity operations (Cyber Threat Intelligence, Penetration testing, & Incident Response)
  • Deep knowledge and experience of performing both manual and automated asset discovery and enumeration
  • Deep knowledge and experience of systematic and data-driven asset prioritization
  • Expert knowledge and successful application of risk management frameworks

VM Lead Management Competencies:

  • Track record of leading enterprise-level vulnerability management teams with a history of increasing responsibility
  • Expert project management skills
  • Ability to explain vulnerability management concepts to a wide range of audiences verbally and in writing
  • Expertise in developing and improving vulnerability management operations and processes
  • Strong interpersonal skills and the ability to collaborate with a variety of stakeholders to ensure vulnerability management compliance
  • Expert problem solving and critical thinking skills
  • Proactive disposition and ability to execute on leadership vision with minimal oversight

Clearance Required: US Citizenship is required to obtain and maintain Public Trust

Posted Salary Range: USD $150,000.00 - USD $180,000.00 /Yr.

What GovCIO employees say

Pay

Benefits

Hours and flexibility

Workplace

Get the full story on Breakroom