Analyst IT Vulnerability Management
$70k - $120kJetBlue Airways Corporation
Position Summary At JetBlue, cybersecurity is driven by risk management, threat-informed defense, and operational resilience. The Analyst, Vulnerability Management - Cloud supports JetBlue's vulnerability management program across cloud-hosted infrastructure, cloud control planes, containers, infrastructure as code, and application-adjacent cloud services. This Crewmember identifies, analyzes, validates, reports, and coordinates remediation of cloud vulnerabilities and misconfigurations across JetBlue's multi-cloud environment, including AWS, Azure, GCP, OCI, and future cloud platforms as adopted. The Analyst works closely with Cybersecurity, Cloud Engineering, DevOps, Infrastructure, Application, Product, GRC, Threat Intelligence, and Managed Service Provider teams to improve vulnerability visibility, remediation accountability, and risk-based prioritization. Essential Responsibilities Conduct and support vulnerability assessments across cloud-hosted infrastructure, cloud configurations, containers, Kubernetes, infrastructure as code, application components, and related cloud services. Use approved vulnerability management, cloud security, CSPM/CNAPP, container, code-scanning, and external attack-surface tools to identify vulnerabilities, misconfigurations, exposed services, outdated software, and insecure deployment patterns. Analyze findings using severity, exploitability, CISA KEV status, exposure, asset criticality, data sensitivity, compensating controls, and business impact. Coordinate with cloud engineering, DevOps, application, infrastructure, and product owners to prioritize and track remediation through patching, configuration changes, code changes, image updates, infrastructure-as-code changes, or compensating controls. Validate remediation through rescans, evidence review, configuration review, ticket closure checks, or other approved verification methods. Assist with authenticated scan coverage, agent deployment coordination, cloud account onboarding, asset tagging, ownership validation, and CMDB/application mapping. Support remediation governance by tracking findings against JetBlue policy timelines and escalating overdue, disputed, or blocked remediation items. Collaborate with engineering and QA teams to ensure proper Software Development Life Cycle (SDLC) practices and minimize the release of vulnerable software through the deployment pipeline. Route non-remediated or delayed findings through the approved cyber risk exception / acceptance process when required. Configure and maintain vulnerability metrics and reporting for cloud findings, remediation progress, risk exposure, aging, coverage gaps, recurring issues, and exception trends. Partner with Threat Intelligence, Detection & Response, Penetration Testing, and Application Security teams to incorporate active exploitation, external exposure, attack path, and test-result context into prioritization. Support Cyber compliance requirements with evidence, reporting, and control validation for PCI, SOX, TSA-related obligations, and other applicable oversight frameworks. Participate in cross-functional working sessions to improve cloud vulnerability remediation processes, reduce direct exposure, strengthen compensating controls, and improve cloud security visibility. Other duties as assigned. Minimum Experience and Qualifications Bachelor's Degree in Computer Science, Information Security, Information Technology, Cybersecurity, Cloud Computing, or a related field; OR demonstrated capability to perform job responsibilities with a High School Diploma/GED and at least four (4) years of previous relevant work experience One (1) year of experience in vulnerability management, cloud security, security operations, infrastructure security, DevOps, application security, or a related cybersecurity role. Working knowledge of at least one major cloud provider; AWS/Azure preferred. Experience with vulnerability scanning tools such as Tenable, Qualys, Rapid7, Prisma Cloud, Wiz, Defender for Cloud, AWS Inspector, or similar. Understanding of cloud shared responsibility models, cloud networking, identity, compute, storage, containers, Kubernetes, and infrastructure-as-code concepts. Ability to analyze scan results, identify false positives, validate risk, and communicate remediation needs clearly. Knowledge of vulnerability risk factors such as CVSS, exploitability, internet exposure, asset criticality, data sensitivity, compensating controls, and remediation timelines. Familiarity with patch management, configuration remediation, change management, and remediation validation. Strong written and verbal communication skills with the ability to interact effectively with stakeholders across all levels of the organization. Ability to work collaboratively with Cybersecurity, IT, DevOps, infrastructure, product, application, compliance, and managed service provider teams.Available for occasional overnight travel (10%). Must pass a pre-employment drug test. Must be legally eligible to work in the country in which the position is located. Authorization to work in the United States is required; this position is not eligible for visa sponsorship. Preferred Experience and Qualifications Two (2) years of experience in vulnerability management, cloud security, DevSecOps, infrastructure security, or application security. Experience with CSPM, CNAPP, CWPP, container scanning, code scanning, IaC scanning, or external attack surface management. Working knowledge with AWS Systems Manager, Azure Update Manager, cloud-native patching tools, or enterprise patch platforms. Understanding with Kubernetes, container registries, golden images, base-image maintenance, and CI/CD security gates. Experience using Terraform, CloudFormation, ARM/Bicep, Kubernetes manifests, or other infrastructure-as-code technologies. Knowledge of NIST CSF, CIS Controls, CIS Benchmarks, PCI DSS, TSA cybersecurity requirements, ISO 27001, or similar standards. Certifications such as Security+, CySA+, AWS Security Specialty, Azure Security Engineer, Google Professional Cloud Security Engineer, CCSK, CCSP, or equivalent. Crewmember Expectations Regular attendance and punctuality. Potential need to work flexible hours and be available to respond on short notice. Able to maintain a professional appearance. When working or traveling on JetBlue flights, and if time permits, all capable crewmembers are asked to assist with light cleaning of aircraft. Must be an appropriate organizational fit for the JetBlue culture, that is, exhibit the JetBlue values of Safety, Caring, Integrity, Passion and Fun. Promote JetBlue's #1 value of safety as a Safety Ambassador, supporting JetBlue's Safety Management System components, Safety Policy, and behavioral standards. Identify safety and/or security concerns, issues, incidents or hazards that should be reported and report them whenever possible and by any means necessary including JetBlue's confidential reporting systems (Aviation Safety Action Program (ASAP) or Safety Action Report (SAR)) The use of ChatGPT or any other automated tool during the interview process will disqualify a candidate from being considered for the position. Equipment Computer and other office equipment. Work Environment Traditional office environment. Physical Effort Generally not required, or up to 10 pounds occasionally, 0 pounds frequently. (Sedentary) Compensation The base pay range for this position is between $70,000.00 and $120,000.00 per year. Base pay is one component of JetBlue’s total compensation package, which may also include access to healthcare benefits, a 401(k) plan and company match, crewmember stock purchase plan, short-term and long-term disability coverage, basic life insurance, free space available travel on JetBlue, and more.
#LI-AC1
#LI-Hybrid$70k - $120k
...Analyst IT Vulnerability Management Location: Long Island City, NY, US, 11101 Washington, DC, US, 20005 Orlando, FL, US, 32827 Salt Lake City, UT, US, 84121 Req ID: 58229 Category: Information Technology Position Summary: At JetBlue, cybersecurity is driven by risk...SuggestedTemporary workWork experience placementNight shift- ...Principal Reporting Analyst This Reporting Analyst will join the Commercial and Private... ...the development of briefings for executive management Aggregate data from multiple sources... ...Large Financial Institution performing in an IT capacity ~3+ years supporting SDLC ~2...SuggestedWork experience placement
- ...Role: Business Systems Analyst The Firm: Wasatch Global Investors is a stable, independent, employee-owned investment management firm in Salt Lake City, Utah. We focus exclusively... ...up-to-date on the latest process and IT advancements to automate and modernize...SuggestedWork experience placement
- ...Conservice: Conservice is a fast-growing leader in utility management services, committed to enhancing operational efficiency and... ...through data. We are seeking a dynamic and experienced Business Analyst to join our analytics team. This individual will play a...Suggested
- ...operating as a collection of great banks under local brands and management teams in high-growth western markets. Zions is regularly... ...Zions Bancorporation is now accepting resumes for our Business Analyst position in our Loan Collections department located in at our...SuggestedWork experience placementWork at officeLocal areaFlexible hours
$60k - $66k
...Number PRN45299B Job Title Technical Business Analysts Working Title Technical Business Analyst I... ...Biomedical Informatics Core (BMIC) on the core application and data management, user services support team to provide support to research teams...Full timePart timeWork experience placementWork at officeShift work- ...implementation and ongoing optimization of Karbon, our firm-wide practice management platform, and provide support across other key business... ...services firm providing tax, accounting, assurance, IT consulting, and wealth management services to small and medium sized...Work at officeRemote work
- ...Job Description The IAR Lead Data Analyst is responsible for extracting, processing... ...leaders across IAR, Data Engineering, Product Management, Finance, EdTech, and Faculty staff. They... ...from analyses and research, making it accessible in ways that increase the university...Full timeFlexible hours
- ...IT Software QA Analyst III or Sr. Schedule: Monday - Friday (40 hrs/wk) 8:00 AM - 5:00 PM Department: IT Software QA - 215 Primary... ...progress and test results. Communicate with product team members, management and technical support on test efforts and support needs....Work at officeMonday to Friday
$32.9k - $63.77k
...Number PRN45334B Job Title Financial Reporting Analysts Working Title Grant Financial Analyst I/II... ...and beyond. Within this environment, the Office of Research Management & Compliance (RMC) plays a critical role in ensuring research...Full timePart timeWork experience placementWork at officeMonday to FridayFlexible hoursShift work$41.59 - $70.69 per hour
...IT Analyst III - GIS Data Analyst/Programmer FT / PT Status - Full-Time Salary - $41.59 - $70.69 Hourly Wage Remote Work / In... ...position's eligibility for telework is established by agency management and is subject to change at their discretion at any time and for...Hourly payFull timeWork at officeLocal areaRemote work2 days per week$137.5k - $171.88k
...service, and world-class user experience design. As a Lead Data Analyst , you will be the primary technical lead for our most... ...governance and compliance standards. Advanced Project & Knowledge Management: Oversee the reporting roadmap and project lifecycle via Jira...Full timeWork at officeFlexible hours2 days per week$60k - $65k
About the Role iCapital is seeking an Alternative Data Management Analyst to join the Data Solutions team. This individual must be comfortable working in a dynamic, performance-driven, fast-paced environment, and committed to delivering a high-quality, accurate product...Full timeWork at officeRemote work- ...ZipRecruiter SENIOR CYBER SECURITY ANALYST III (ISSM) This is a... ...· Coordinate with Risk Management Framework team to ensure design... ...· Perform regular STIG and vulnerability analysis in compliance with DoD... ...all operated and maintained IT assets, recommending corrective...
$100k - $135k
...This individual will be responsible for moving and transforming data and developing a deep understanding of the business context behind it and help teams act on insights. Responsibilities Develop and automate large scale, high-performance data platform pipelines and...Full timeWork at officeRemote work- ...Job Description Job Description The Management Trust Position Title: Reserve Analyst Location: St. George and Lindon, UT Reporting To: Assistant Director of Central Reserves Status: Exempt, Full-Time Salary: DOE COMPANY PROFILE: The Management...Full timeWork at officeRelocationMonday to FridayShift workNight shift
- ...Senior Cyber and Technology Risk Analyst serves as a member of the Cyber and Technology Risk Management team in our second line of... ...Assess risk and control gaps of IT systems, processes, and... ...scenarios across domains such as vulnerability management, resilience, SDLC,...Full timeWork experience placementWork at officeRemote work
- ...intention at everystage;from design and development to construction, management, and community impact. Every detail reflects a belief that... ...seen,safeand valued. Job Description: The Development Analyst will focus primarily on multifamily projects, especially those...Full timeTemporary workWork at officeMonday to FridayFlexible hours
- ...Sr Metering Analyst location: SALT LAKE CITY, UT, US, 84116 Company: PacifiCorp POWER YOUR GREATNESS PacifiCorp... ...and recommendations. Presents analysis and recommendations to management and may implement selected alternative. Analyses include, but...Full timeTemporary workLocal area
$75.2k - $124.1k
...range of clients from our most venerable institutions to dynamic new entrants across Banking and Capital Markets, Wealth and Asset Management and Insurance. Our purpose is to help build a financial services industry in which financial institutions are trusted and...Full timeSummer holidayFlexible hours$58k - $65k
...Cybersecurity Information Analyst Location 1366 S. Legend Hills Dr., Suite 210, Clearfield, UT, 84015, United States Base Pay $... ...Analyst Employee Type FT Exempt Required Degree High school Manage Others No Minimum Experience 2 Years Description Summary...- .... Subject: Cybersecurity Analyst I (Junior) Location: Clearfield... ...and provide input for Risk Management Framework packages to the... ...updates to the PM Perform vulnerability analysis and STIG validation... ...all operated and maintained IT assets, recommending corrective...
- ...thrive! KēSTA I.T. is actively seeking a Sr. Data Governance Analyst for an immediate full-time opportunity with our industry... ...individual oversees data validation and stewardship processes, manages complex data structures, and supports strategic reporting and data...Permanent employmentFull timeTemporary workImmediate start
- ...Florida. We provide flexible financing solutions to small businesses across the United States. We are seeking a Senior Data Protection Analyst (DLP) to lead our Data Egress & Collaboration Security program. This role focuses on preventing unauthorized data exfiltration,...Remote workMonday to FridayFlexible hours
- ...00+ funds and SPVs, representing nearly $185B in assets under management, with tools designed to enhance the strategic impact of fund CFOs... ...markets data. The Problems You’ll Solve As a Data Ops Analyst, you will be responsible for the lifecycle of quarterly data...Work at office
$15.05 - $23.08 per hour
...Background Verification Analyst Since 2003, Entrata has evolved from a visionary, student-led startup into a global leader in AI-driven property management technology. Today, we power the industry's most essential operating system, serving owners and residents worldwide...Local areaRemote workWorldwideFlexible hours- ...of a portfolio of companies managed by Waseyabek Development Company... ...Senior Business Intelligence Analyst (BIA) supports the Program... ...functional line for the Hill CEDC IT Operations & Maintenance... ...cybersecurity analytics, including vulnerability trends, system hardening...Contract workFor subcontractorCasual workWork at officeMonday to FridayAfternoon shift
- ...Strategy Analyst Or Associate PDQ, founded in Salt Lake City, UT, USA, makes device management simple, secure, and Pretty Damn Quick. IT teams use our products to reduce complexity, improve efficiency, and enhance control in their unique environments. We are backed...Full timeTemporary workH1bLocal areaFlexible hours
$65k - $70k
...know how to rise to a challenge and handle it head on. EōS Fitness' Core Purpose is to... ...is growing fast and looking for an IT Analyst who loves supporting reliable systems, solving... ...(including PowerShell) Mobile device management (Intune and JAMF Pro) Software...Daily paidFull timePart timeWork at office- ...energy, exploration, and connection. Reports to: Sr. Pricing Analyst Location: Cottonwood Heights, Utah (Hybrid - 3x/week in-... ..., your background, and what you are looking for. # Hiring Manager Interview - Conversation with the Sr. Pricing Analyst focused...Price workSeasonal workWork at officeRemote work
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Analyst IT Vulnerability Management. Be the first to apply!


