Senior Vulnerability Analyst (US)
Ten Eleven Ventures
Senior Vulnerability Analyst Location: MA / Austin TX / MD Team: Research Employment Type: Full-Time, Remote
About VulnCheck
Exploitation prevention is only as strong as the intelligence driving those efforts, and most of the industry is still running on intelligence that lacks exploit context. VulnCheck, The Exploit Intelligence Company, delivers structured exploit intelligence on what is actively weaponized in the wild, purpose-built for the data lakes, ETL pipelines, automation, and AI and LLM workflows your infrastructure already runs on, raising the capability of everything it powers.
About the Role
Are you passionate about advancing the science of vulnerability analysis and threat intelligence? Do you want to join a mission-driven team that delivers real-world impact—and has the resources and technical culture to fuel your curiosity?
We’re searching for a Senior Vulnerability Analyst with a deep understanding of the vulnerability management ecosystem, hands-on experience with the CVE process, and expert knowledge in standard frameworks like MITRE ATT&CK, CAPEC, CWE, and CVSS. This is a rare opportunity to leverage your skills and experience as a contributor to, or expert user of, CVE and related MITRE capabilities—while taking your career in vulnerability research to the next level.
We are expanding our Threat Intelligence team and are looking for a detail-oriented analyst to join VulnCheck. This is a 100% remote role with preference for candidates located in Massachusetts, Maryland, OR Greater Austin TX.
#### What You’ll Do
- Map vulnerabilities: Analyze and map discovered vulnerabilities to MITRE ATT&CK techniques and CAPEC attack patterns with precision and consistency.
- CWE assignment: Determine and assign accurate CWE (Common Weakness Enumeration) IDs, producing well-documented rationales.
- CVSS calculation: Authoritatively calculate CVSS v3/v4 base scores, providing transparent, defensible justifications.
- CVE Processing: Review, draft, and curate CVE Records, ensuring data quality, fidelity, and consistency with CVE Program standards.
- Collaboration: Liaise with vulnerability researchers, product security teams, and standards communities to ensure best practices and knowledge transfer.
- Process improvement: Develop and refine workflows and playbooks for vulnerability triage, mapping, and reporting.
- Mentorship: Share your expertise by mentoring junior analysts and driving team knowledge-sharing initiatives.
- Proven experience with the CVE Program—either as an analyst, CNA, or significant contributor in a major software or security organization.
- Expert knowledge of MITRE ATT&CK, CAPEC, CWE, and working experience mapping vulnerabilities to these frameworks.
- Advanced understanding of CVSS (v3 and v4), including real-world application to vulnerability scoring and risk communication.
- Strong analytical, technical, and research skills, with a passion for data quality and process rigor.
- Exceptional written and verbal communication skills—including the ability to translate complex technical details for diverse audiences.
- Experience engaging with community initiatives, standards bodies, or open-source projects in the vulnerability or threat intelligence space is highly desirable.
- Experience contributing to the evolution of vulnerability standards (e.g., participation in CVE Editorial Boards, CAPEC Working Groups, or similar).
- Familiarity with automation tools or programming/scripting languages (Python, Golang, etc.) for data enrichment or workflow improvement.
- Published research, whitepapers, or presentations in the field of vulnerability analysis, mapping, or threat intelligence.
What We Offer
We believe people do their best work when they feel supported, trusted, and valued. VulnCheck offers benefits designed to meet a wide range of needs and lifestyles:
Benefits and Perks
- Unlimited PTO
- 401k plan with company match
- Comprehensive healthcare coverage
- Generous paid parental leave
- Remote friendly environment with flexibility
- Expense reimbursement for Cell Phone & Internet
- Ongoing professional development, coaching, and learning resources
- Opportunities for career advancement within a fast-growing team
Why Join Us
Built on over two decades of cybersecurity experience, our team of experts understands the intricacies of vulnerabilities, their exploitation in the wild, and how to leverage this data to build more effective cybersecurity products that produce better outcomes for organizations.
VulnCheck gives organizations a tactical advantage by providing best-in-class exploit & vulnerability intelligence information. We have a sense of duty to protect the critical infrastructure we rely on including medical devices, power grids and telecommunication networks. We were founded in 2021 in Lexington, Massachusetts.
VulnCheck has a transparent, collaborative, and supportive culture - we are looking for people who have a growth mindset, are curious and innovative. Our team is smart, but humble, hardworking, and supportive.
VulnCheck is proud to be an Equal Employer Opportunity employer. We do not discriminate based upon race, religion, color, national origin, gender (including pregnancy, childbirth, or related medical conditions), sexual orientation, gender identity, gender expression, age, status as a protected veteran, status as an individual with a disability, or other applicable legally protected characteristics. VulnCheck is committed to working with and providing reasonable accommodations to applicants with physical and mental disabilities. *Even if your experience doesn’t perfectly align with the job description, we encourage you to apply—we value potential just as much as a perfect resume.
- ...Job Description Job Description Job Title: Senior Database Vulnerability Analyst Location: Fort Meade, MD 20755 Clearance Level: Active Secret... ...Our team has been providing expertise and solutions to the US Government (Department of Defense, Department of State,...SeniorFull timeWork experience placementCasual work
- ...What You Will Do: As a System Vulnerability Analyst, Level 3 at Independent Software, you will identify, analyze, and help mitigate vulnerabilities... ...and support to grow, succeed, and thrive. When you join us, you will: Support critical national security missions...SuggestedFull time
$157k - $175k
...Job Description Job Description System Vulnerability Analyst 3 Location: Annapolis Junction, MD | Onsite Clearance Required: TS/SCI with... ...contribute, grow, and build something meaningful alongside us. At Weeghman & Briggs, you're more than a number, you're part...SuggestedFull timeContract workLocal area- ...any industry. Our broad interdisciplinary understanding allows us to provide the right solution, even if it is from outside the... ...Military expertise to every case. We are hiring a System Vulnerability Analyst to work in the Fort Meade, MD vicinity. Position location is...SuggestedFull timeLocal areaWork from homeFlexible hours
$131.3k - $237.35k
...has a new and exciting opportunity for a Senior Information System Security Officer in... ...Parental Paid Leave, and much more. Join us and make a difference in National Security... ...assessments of system and network vulnerabilities.Primary Roles and ResponsibilitiesProvide...SeniorFull timeImmediate startFlexible hours- ...What You Will Do: As a Mid-Level Vulnerability Assessment Analyst at Independent Software, you will support vulnerability management and continuous... ...support to grow, succeed, and thrive. When you join us, you will: Support critical national security missions...Full timePart time
- ...Group is seeking a Cyber Security Fusion Analyst to support GSM-O II on the DODIN at Fort... ...include developing SOPs, conducting vulnerability assessments, and producing written analytic... .../SCI clearance and advanced cyber defense expertise. #J-18808-Ljbffr Jobleads-USSenior
$10k
...Description: Columbia Technology Partners is seeking a Vulnerability Assessment Analyst to support enterprise vulnerability management and... ...Security Clearance with appropriate Polygraph. About us: Founded in 2007, Columbia Technology Partners is a Service...Temporary workFor contractorsLocal areaShift workWeekend workAfternoon shiftWeekday work- ..., Inc. , a GTSC company, is growing its team! Seeking a Vulnerability Assessment Analyst - Information Systems Security Engineer (ISSE), Level 1 .... ...assistance with our online application process, please tell us how we can help by contacting us at ****@*****.***...Full timeTemporary workPart timeLocal areaWeekend workAfternoon shift
$100k - $200k
...the custom solutions that ANS delivers. Together, let’s ensure today is safe and tomorrow is smarter.ANS is seeking a System Vulnerability Analyst to join our team in Annapolis Junction, MD. RequirementsActive TS/SCI clearance with Polygraph requiredA Bachelor's degree...Temporary workLocal area- ...Will Do: At Independent Software, as a Senior Information Systems Security Officer, you... ...through security operations, risk and vulnerability assessments, configuration management, security... ..., succeed, and thrive. When you join us, you will: Support critical national...SeniorFull time
- ...Will Do: At Independent Software, as a Senior Information System Security Officer (... ...system security, conduct audits, manage vulnerabilities, and support accreditation efforts, including... ..., succeed, and thrive. When you join us, you will: Support critical national...Senior
- ...lifecycle. You will drive system authorization activities, oversee vulnerability management efforts, and guide remediation strategies to... ...tools and support to grow, succeed, and thrive. When you join us, you will: Support critical national security missions that...Senior
$131.3k - $237.35k
...for a Cyber Security Fusion Analyst on the DISA GSM-O II program... ...analysis, metric development, and vulnerability information dissemination.... ...experience briefing Senior Executive Service (SES) and General... ...consistent with relevant laws. #J-18808-Ljbffr Jobleads-USSenior$10k
...evaluating security solutions for classified processing, and conducting vulnerability and risk analysis/assessments for system authorization.... ...are ultimately made by humans. If you would like more information about how your data is processed, please contact us....SeniorHourly payFull timeContract workTemporary workWork experience placementSummer workImmediate start$127k - $157k
...Job Description Job Description What Impact You'll Have GRVTY is seeking experienced System Vulnerability Analyst to identify vulnerabilities of an attacks to the design and operation of a system (H/W, S/W. personnel, procedures, logistics, and physical security...Contract workImmediate start- ...verification and governance within an Agile DevSecOps environment. The role requires active Top Secret clearance, DoD 8570/ ANI standards familiarity, and collaboration with cross-functional teams on Sentinel program cybersecurity tasks. #J-18808-Ljbffr Jobleads-USSenior
- ...Systems seeks a Sr. Principal Cyber Software Engineer (Level 2 CNO Analyst/Programmer) to design and develop end-to-end software for... ...Perl, work with Windows/.NET and UNIX build environments, and contribute to documentation and reviews. #J-18808-Ljbffr Jobleads-USSenior
- ...most driven, and talented people to help us support all our customers. With certified... ...address the customer’s mission. Senior Security Engineer Required Qualifications... ...classified information Perform vulnerability/risk assessment analysis to support certification...SeniorFor contractors
$127k - $150k
...and Software Engineering services for the U.S. Government. Nyla embraces a forward-thinking and bold approach at every turn, earning us a solid reputation of technical trendsetters within the industry. We have a passion for developing solutions that have a quick and...SeniorHourly payContract workWork experience placementImmediate startFlexible hours- ...AnaVation is seeking two highly experienced Senior Cyber Advisors to provide senior-level... ...managers, technical leads, intelligence analysts, and mission partners to gather operational... ...Federal Intelligence Community. We are a US owned company headquartered in Chantilly,...SeniorFull timeTemporary workWork at officeImmediate start
- ...About the Role VulnCheck is looking for a Senior AI Software Engineer to design and build... ...that automate real stages of the vulnerability research lifecycle, including patch diffing... ...within a fast-growing team Why Join Us Built on over two decades of cybersecurity...SeniorFull timeWork experience placementImmediate startRemote workWorldwide
- ...United States seeks a Principal Cyber Software Engineer (Level 0 CNO Analyst/Programmer) to design and develop specialized tools, with... ...travel up to 10%. Locations include Annapolis Junction, MD; San Antonio, TX; Aurora, CO; Carey, NC. #J-18808-Ljbffr Jobleads-USSenior
$200.85k - $213k
Senior Principal Systems Engineer As a Senior-Level Systems Engineer for CISR, you’ll be a lead member of cross-functional hardware and system... ..., and more See more at gdmissionsystems.com/careers/why-work-for-us/benefits Workplace Options: This position is fully on-site with...SeniorFlexible hours$133k - $157k
...frameworks, baseline hardening, security protocol enforcement, and vulnerability patching. Network Infrastructure Services: Hands-on... ...embraces a forward-thinking and bold approach at every turn, earning us a solid reputation of technical trendsetters within the...SeniorHourly payContract workWork experience placementImmediate startFlexible hours$190k - $225k
...and Software Engineering services for the U.S. Government. Nyla embraces a forward-thinking and bold approach at every turn, earning us a solid reputation of technical trendsetters within the industry. We have a passion for developing solutions that have a quick and...SeniorHourly payContract workWork experience placementImmediate startFlexible hours- ...AnaVation is seeking a highly experienced Cybersecurity Architect – Senior Technical Advisor to provide senior-level technical advisory and... ...processing in the U.S. Federal Intelligence Community. We are a US owned company headquartered in Chantilly, Virginia. We deliver...SeniorFull timeTemporary workWork at officeImmediate start
- ...Weekends Clearance: Active TS/SCI with Full Scope Polygraph required Position Overview Our client is seeking a Vulnerability Assessment Analyst / Information Systems Security Engineer (ISSE) to support vulnerability management and continuous monitoring...Part timeFor contractorsWeekend workAfternoon shift
- ...automated test coverage for AutoChem software products. As our Senior Software Development Engineer you will partner closely with... ...make accessible to any and all users. If you would like to contact us regarding the accessibility of our website or need assistance completing...SeniorFull timeTemporary workH1bLocal areaWorldwideVisa sponsorshipWork visaFlexible hours
$99k - $225k
...Cyber System Security Engineer, Senior The Opportunity: Are you... ...applications required to assess vulnerabilities and recommend optimal... ...You’ll perform ongoing system analyst activities for programs, perform... ...Tasking Orders, or FRAGOs. Join us. The world can’t wait. You...SeniorFull timeContract workPart timeLocal areaRemote work
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Senior Vulnerability Analyst (US). Be the first to apply!


