1

Vulnerability Jobs in Wisconsin (NOW HIRING)

WI ยท On-site

$180 - $260/hr

Directly manage the four functional leads -- GRC, AppSec, Cloud/Vulnerability, and SecOps -- setting priorities, removing blockers, and holding them accountable to delivery. * Run the operating ...

Vulnerability Management * Endpoint Security * Firewall Administration and Security Operations * Threat Detection and Response * Governance, Risk, and Compliance (GRC) * Cybersecurity Frameworks (CSF ...

$203K - $305K/yr

Strong command of secure coding and common vulnerability classes (OWASP Top 10 and beyond) * Hands-on secure development experience across several languages. * Practical penetration testing, security ...

Perform end-to-end infrastructure vulnerability management, ensuring timely identification, assessment, and remediation of security risks. Manage and execute infrastructure security scans to detect ...

Showing results 21-40

Vulnerability information

See Wisconsin salary details

$37.9K

$108.9K

$144.3K

How much do vulnerability jobs pay per year?

As of Aug 6, 2026, the average yearly pay for vulnerability in Wisconsin is $108,911.00, according to ZipRecruiter salary data. Most workers in this role earn between $94,900.00 and $118,600.00 per year, depending on experience, location, and employer.

What are some common challenges faced by professionals working in vulnerability management roles?

Professionals in vulnerability management often face the challenge of keeping up with constantly evolving threats and newly discovered vulnerabilities. Prioritizing which vulnerabilities to address first, especially in large environments with thousands of potential risks, can be demanding. Collaborating with IT, development, and security teams to ensure timely remediation and maintaining clear communication about risk levels are also essential parts of the role. Additionally, balancing the need for quick patching with the risk of disrupting business operations requires careful judgment.

What is the difference between Vulnerability vs Penetration Tester?

AspectVulnerabilityPenetration Tester
Primary FocusIdentifying security weaknesses and vulnerabilities in systemsSimulating cyberattacks to exploit vulnerabilities and test defenses
CertificationsCompTIA Security+, CEH, OSCP (for some roles)OSCP, CEH, GPEN, CISSP (often overlapping)
Work EnvironmentSecurity analysis, vulnerability scanning, reportingActive testing, exploitation, reporting
Industry UsageSecurity assessment, risk managementSecurity testing, red teaming

Vulnerability specialists focus on identifying weaknesses in systems, while penetration testers actively exploit those vulnerabilities to assess security effectiveness. Both roles require similar certifications and work in cybersecurity, but their methods and objectives differ: vulnerability analysts aim to find issues, whereas penetration testers simulate attacks to evaluate defenses.

What are the key skills and qualifications needed to thrive as a vulnerability analyst?

To thrive as a Vulnerability Analyst, you need a solid understanding of network security, operating systems, and vulnerability assessment methodologies, typically supported by a degree in cybersecurity or IT and relevant certifications like CompTIA Security+ or CEH. Familiarity with tools such as Nessus, OpenVAS, Metasploit, and vulnerability management platforms is essential. Strong analytical thinking, attention to detail, and effective communication help in identifying risks and explaining findings to diverse stakeholders. These skills ensure timely detection and remediation of security weaknesses, protecting organizations from cyber threats.

Is vulnerability management a good career?

Vulnerability management is a valuable cybersecurity role focused on identifying and mitigating security weaknesses in systems. It requires skills in security tools, risk assessment, and often certifications like CISSP or CompTIA Security+; the field offers steady demand and opportunities for advancement. Overall, it is considered a good career for those interested in cybersecurity and protecting digital assets.

What is a vulnerability analyst?

Vulnerability analysts are cybersecurity professionals who identify, assess, and help remediate security weaknesses in computer systems, networks, and software. They use various tools and techniques to scan for vulnerabilities, analyze threats, and recommend solutions to mitigate risks. Their work is crucial in preventing cyberattacks and ensuring the security of organizational assets. Vulnerability analysts often collaborate with IT and security teams to prioritize and address vulnerabilities based on their potential impact.
What are the most commonly searched types of Vulnerability jobs in Wisconsin? The most popular types of Vulnerability jobs in Wisconsin are:
What are popular job titles related to Vulnerability jobs in Wisconsin? For Vulnerability jobs in Wisconsin, the most frequently searched job titles are:
What job categories do people searching Vulnerability jobs in Wisconsin look for? The top searched job categories for Vulnerability jobs in Wisconsin are:
Infographic showing various Vulnerability job openings in Wisconsin as of August 2026, with employment types broken down into 100% Full Time. Highlights an 100% In-person job distribution, with an average salary of $108,911 per year, or $52.4 per hour.

Information Security Manager

Wisconsin Foundation and Alumni Association

Madison, WI โ€ข On-site, Remote

Full-time

Retirement

Re-posted 14 days ago


Job description

Overview
The Wisconsin Foundation and Alumni Association (WFAA)*, the private fundraising and alumni relations organization for the University of Wisconsin-Madison is seeking an Information Security Manager to join the Information Technology department!
The Information Security Manager is responsible for leading and continuously improving the security posture, day-to-day operations, security engineering, incident response, vulnerability management, and governance, risk, and compliance (GRC) functions, and executing the organization's strategic direction. This role is also highly focused on operational excellence, a security-first culture, and a strong mandate to drive automation and AI adoption across security operations. This position provides direct people leadership and technical oversight across the security program, recommending and setting standards and metrics to ensure a resilient and proactive and effective security posture. The Information Security Manager partners closely with the Sr. Managing Director, Infrastructure & Security, Infrastructure & Security team members, and other stakeholders to translate organizational priorities into actionable security roadmaps, ensuring consistent operational excellence across all security functions, and to develop the engineers and administrators within the team.
The ideal candidate combines deep technical credibility in cybersecurity with proven people management skills, strong judgment under pressure, and the ability to influence security culture and provide security education across technical and non-technical teams. This is a hybrid position that will require you to work on-site in our Madison, WI office location at least two days a week.
Who is WFAA?
The Wisconsin Foundation and Alumni Association is a private, nonprofit corporation that encourages individuals and organizations to make gifts to the university and to connect with the UW. In 2014, the UW Foundation merged with the Wisconsin Alumni Associationยฎ to better serve a growing population of UW alumni and donors. We believe that private support grows out of good relationships between campus leaders, faculty and program staff who need support, and the alumni and friends who want to invest in UW-Madison. We provide important engagement opportunities to link UW-Madison alumni to each other and to their alma mater, building a strong community of Badgers.
Diversity and Inclusion:
Just as the university community benefits from differing viewpoints, perspectives, and experiences, inclusion and diversity are imperative for the success of our mission. WFAA values people and the differences that they bring to the organization, and creates an environment in which all staff members and constituents feel respected and have opportunities to thrive.
Essential Functions
Security Governance, Risk & Compliance
  • Lead and oversee the compliance with regulatory frameworks and internal policy requirements including HIPAA, PCI-DSS, and NIST.
  • Ensure consistent application of security patches, vulnerability remediation, access controls, and configuration hardening across endpoints, servers, cloud workloads, and network environments.
  • Lead and oversee vulnerability management efforts, risk assessments, and compliance audits, ensuring findings are prioritized and remediated in alignment with business risk tolerance.
  • Oversee the development and maintenance of security policies, standards, and procedures across the organization.
  • Lead or oversee penetration testing efforts and coordinate remediation of identified vulnerabilities.
  • Oversee third-party risk management processes, ensuring vendor security practices are evaluated and contractual security requirements are enforced.
  • Promote a culture of security accountability and risk-informed decision-making across technical and business teams.
  • Lead and oversee the security awareness training program for the organization.

Strategic Direction & Stakeholder Management
  • Partner with the Sr. Managing Director, Infrastructure & Security to define and execute the strategic roadmap for the organization's security program.
  • Translate organizational and business priorities into actionable project plans, resourcing decisions, and operational standards.
  • Provide architectural and operational oversight for security initiatives, ensuring alignment with infrastructure standards, compliance requirements, and scalability needs.
  • Serve as an escalation point and primary liaison with external security vendors, Managed Detection & Response (MDR) providers, third-party security partners, overseeing service deliver, performance and SLA compliance.
  • Stay current with industry trends, emerging threats, threat intelligence, and vendor roadmaps to inform security strategy, tooling, and investment decisions.
  • Report on team performance, project status, capacity, security posture and risk to the Sr. Managing Director and other stakeholders, including budget and resourcing recommendations.
  • Drive cross-functional collaboration with other Infrastructure & Security teams on security requirements and shared initiatives.

Security Optimization, Automation & AI Enablement
  • Oversee the day-to-day operations of the Security team, ensuring a reliable, proactive, and high-performing security program across the organization's technology environments.
  • Ensure timely triage, escalation, and resolution of security incidents, acting as an escalation point for complex or high-impact security events.
  • Review and approve security changes, ensuring adherence to change management practices and minimizing operational and security risk.
  • Oversee root cause analysis, post-incident reviews, and remediation planning for significant security incidents, breaches, or degradations.
  • Ensure incident response plans, disaster recovery procedures, and business continuity mechanisms are maintained and regularly tested in collaboration with cross-functional teams.
  • Champion automation, scripting and AI-enabled security tooling to reduce manual effort and improve operational efficiency across security operations.
  • Maintain oversight of technical documentation, security configuration standards, and monitoring/alerting baselines for all security systems.
  • Manage and prioritize the security project portfolio, ensuring projects are delivered on time, within scope, and aligned with business needs.
  • Work cross-functionally within the Infrastructure & Security team to identify and assist with operational optimization for other teams

Team Leadership & Development
  • Lead, coach, and develop the security team including hiring, onboarding, performance management, and career development.
  • Set team goals, workload priorities, staffing plans, schedules, on-call rotations, and after-hours coverage to support reliable security operations.
  • Conduct regular one-on-ones, performance reviews, and development planning to build technical depth, bench strength, and succession readiness.
  • Foster a collaborative, accountable, service-oriented culture that emphasizes security excellence, customer engagement, documentation, continuous learning, innovation, and operational ownership.
  • Identify skills gaps and training needs and coordinate certifications and professional development opportunities for team members.

Qualifications
Required Qualifications:
  • Bachelor's degree in Information Technology, Computer Science, or relevant experience that provides equivalent knowledge, skills, or abilities.
  • 7 + years of progressive experience in cybersecurity, security engineering, or a related field.
  • 3 + years of experience directly managing or leading technical security teams, including hiring, performance management, and staff development.
  • 5 + years of hands-on experience with enterprise security tools and technologies, including SIEM, EDR, IDS/IPS, firewalls, and endpoint protection platforms.
  • 5 + years of experience with security architecture, incident response, vulnerability management, and compliance programs.
  • Experience managing relationships with Managed Detection & Response (MDR) providers, security vendors, and other third-party security partners.
  • Demonstrated experience leading cross-functional security projects using established project management methodologies.
  • Demonstrated success driving security process improvements, automation, or operational optimization initiatives.
  • Familiarity with regulatory frameworks and compliance standards including HIPAA, PCI-DSS, and NIST.
  • Deep understanding of cybersecurity principles, protocols, architecture, and best practices.
  • Proven ability to lead, motivate, and develop technical security teams.
  • Strong understanding of regulatory frameworks, compliance standards, and enterprise risk.
  • Excellent analytical, problem-solving, and decision-making skills, with the ability to prioritize competing demands.
  • Ability to work under pressure and manage multiple complex initiatives simultaneously.
  • Strong communication, interpersonal, and stakeholder management skills, including the ability to present to senior leadership.
  • Ability to design, document, and maintain effective procedures, processes, and automations.
  • Capable of maintaining a high degree of confidentiality and responsibility regarding information related to WFAA and any affiliate organizations.
  • Energetic, motivated, service-oriented, and able to effectively manage multiple competing priorities.
  • Flexible to new situations and challenges, and an advocate for change.
  • Experience implementing or managing AI-enabled security operations, security automation frameworks, or SOAR platforms.
  • Ability to lead cross-functional projects using lightweight project management practices.
  • Ability to understand business needs and balance usability and security.

Other Qualifications:
  • Certified Information Systems Security Professional (CISSP), Certified Information Security Manager (CISM)
  • Strong analytical and reporting skills with experience building dashboards and using service data to drive prioritization, root-cause analysis, and continuous improvement.

At WFAA, we are dedicated to creating an inspiring, creative, and respectful work environment for our employees. We offer competitive pay and an outstanding benefits program, including a generous 10% 401k contribution after just one year of service! Join us and be part of a team that values your growth and well-being. Click here to learn more about our employee benefits!
The Wisconsin Foundation and Alumni Association is an Equal Opportunity Employer *The Wisconsin Foundation and Alumni Association is the "doing business as" name of the merged organization comprising the University of Wisconsin Foundation (supportuw.org) and the Wisconsin Alumni Association (uwalumni.com). Its legal corporate name is registered as the University of Wisconsin Foundation.