Vulnerability Analyst
$76.4k - $138.6kErnst & Young Oman
At EY, we’re all in to shape your future with confidence. We’ll help you succeed in a globally connected powerhouse of diverse teams and take your career wherever you want it to go. Join EY and help to build a better working world. Today’s world is fueled by vast amounts of information. Data is more valuable than ever before. Protecting data and information systems is central to doing business, and everyone in EY Information Security has a critical role to play. Join a global team of almost 950 people who collaborate to support the business of EY by protecting EY and client information assets! Our Information Security professionals enable EY to work securely and deliver secure products and services, as well as detect and quickly respond to security events as they happen. Together, the efforts of our dedicated team helps protect the EY brand and build client trust. Within Information Security we blend risk strategy, digital identity, cyber defense, application security and technology solutions as we consider the entire security lifecycle. You will join a team of hardworking, security-focused individuals dedicated to supporting, protecting and enabling the business through innovative, secure solutions that provide speed to market and business value. The opportunity As an Offensive Security Analyst on the Vulnerability Management team, you will play a supporting role in the meticulous evaluation and management of EY's digital exposure, working under the guidance of the Vulnerability Exposure Management Lead to identify and mitigate vulnerabilities in the EY digital attack surface. Your responsibilities will include aiding in the assessment and validation of third‑party risk assessments and ensuring that EY's security standards are upheld across all digital assets. Additionally, the analyst will influence and implement proactive defense strategies to maintain the integrity and security of the business's digital footprint. Your key responsibilities The Analyst will leverage offensive security skills to evaluate the business's digital exposure, identifying and mitigating risks stemming from misconfigurations, vulnerabilities, and mismanaged assets. The candidate will play a crucial role in managing third‑party risk assessments and identifying assets susceptible to exploitation and abuse by cyber threat actors. Collaborating closely with multiple functions, the analyst will work to execute the Attack Surface Management strategy to protect EY's digital assets. Additionally, the analyst will emulate cyber threat actors to conduct recon against the EY attack surface to identify threats and advise proactive measures to safeguard the business. Skills and attributes for success Expert attention to detail Aptitude for thinking critically Ability to handle high volume requests Flexibility and comfortability pivoting between diverse environments Developing communication skills Familiarity with research methodologies To qualify for the role you must have A minimum of 3 years of experience in vulnerability management, red team, or purple team Familiarity with cloud services, network security, and data protection principles Well‑developed knowledge of offensive security principles Professional‑level analytical and problem‑solving skills Developing ability to translate vulnerability information to business impact Demonstrated experience with third‑party risk assessments Strong communication and interpersonal skills Experience providing prioritization recommendations to stakeholders Ideally, you’ll also have OWASP training Incident response experience What we look for We are looking for a developing Offensive Security Analyst that can operate with supervision and bring new approaches to discovering and evaluating the business's externally‑exposed vulnerabilities. We are seeking a seasoned analyst to improve the organization's ability to reduce the attack surface while enabling the business. The ideal candidate will seek to improve others while continuously learning and identifying ways to strengthen the organization. What we offer you The compensation ranges below are provided in order to comply with United States pay transparency laws. Other geographies will follow their local salary guidelines, which may not be a direct conversion of published US salary ranges. At EY, we’ll develop you with future‑focused skills and equip you with world‑class experiences. We’ll empower you in a flexible environment, and fuel you and your extraordinary talents in a diverse and inclusive culture of globally connected teams. Learn more . We offer a comprehensive compensation and benefits package where you’ll be rewarded based on your performance and recognized for the value you bring to the business. The base salary range for this job in all geographic locations in the US is $76,400 to $138,600. The base salary range for New York City Metro Area, Washington State and California (excluding Sacramento) is $91,700 to $157,500. Individual salaries within those ranges are determined through a wide variety of factors including but not limited to education, experience, knowledge, skills and geography. In addition, our Total Rewards package includes medical and dental coverage, pension and 401(k) plans, and a wide range of paid time off options. Join us in our team‑led and leader‑enabled hybrid model. Our expectation is for most people in external, client serving roles to work together in person 40‑60% of the time over the course of an engagement, project or year. Under our flexible vacation policy, you’ll decide how much vacation time you need based on your own personal circumstances. You’ll also be granted time off for designated EY Paid Holidays, Winter/Summer breaks, Personal/Family Care, and other leaves of absence when needed to support your physical, financial, and emotional well‑being. Equal Employment Opportunity EY provides equal employment opportunities to applicants and employees without regard to race, color, religion, age, sex, sexual orientation, gender identity/expression, pregnancy, genetic information, national origin, protected veteran status, disability status, or any other legally protected basis, including arrest and conviction records, in accordance with applicable law. EY is committed to providing reasonable accommodation to qualified individuals with disabilities including veterans with disabilities. If you have a disability and either need assistance applying online or need to request an accommodation during any part of the application process, please call 1-800-EY-HELP3, select Option 2 for candidate related inquiries, then select Option 1 for candidate queries and finally select Option 2 for candidates with an inquiry which will route you to EY’s Talent Shared Services Team (TSS) or email the TSS at View email address on click.appcast.io . #J-18808-Ljbffr Ernst & Young Oman
- ...security policies, working with appropriate partners to complete assessments and simulations, identifying misconfigurations and vulnerabilities, and reporting on associated risk. These individuals partner closely with security partners, CIO clients and multiples lines of...SuggestedWork at officeShift workDay shift
$95.86k - $208.27k
The KPMG Advisory practice is at the forefront of transformation, offering excellent opportunities for individuals to advance their careers and expertise with KPMG. Looking ahead, we anticipate continued evolution and success within the practice, fostering both personal...SuggestedH1bLocal area$500 per month
Become a Professional Game Tester We're looking for passionate gamers to join our elite team of mobile game testers. Get paid to play and test the latest games before they launch. $500+ Avg Monthly Pay 5-10 Hours/Week 100% Remote Position Requirements: ...SuggestedRemote work10 hours per week$104k - $156k
...qualifications: ~ Experience securing cloud-native applications / SaaS solutions and networks. ~ Familiarity with vulnerability scanning and threat protection. ~ Relevant certifications: ~ Microsoft Certified: Azure Security Engineer...SuggestedRemote work- Under limited supervision, the Control Systems & Security Administrator is responsible for the administration, maintenance, troubleshooting, and security of industrial control systems/operational technologies (ICS/OT), cybersecurity assets, networks, and databases, including...Suggested
- Chief Information Security Officer (CISO) About the Company Mission-driven online provider of musculoskeletal therapy Industry Health, Wellness and Fitness Type Privately Held, VC-backed Founded 2015 Employees 501-1000 Funding $200+ million ...
- ...defined milestones. Drive remediation of audit, regulatory, and penetration testing findings. Ensure strong incident response, vulnerability management, and change management and development programs. Implement metrics that demonstrate real risk reduction and...Contract workRemote workNight shift
- Chief Information Security Officer (CISO), Growth About the Company Accomplished provider of top-tier security services Industry Security and Investigations Type Privately Held About the Role The Company is seeking a Chief Information ...
- A modern fintech company is seeking a Chief Information Security Officer (CISO) to lead their Information Security Program. The ideal candidate will have over 10 years of information security experience in regulated environments, such as banking or fintech. This role is...Remote work
$141.9k - $286k
...advancing RSM's mission to build a world-class consulting organization-delivering solutions that address information security risks, vulnerabilities, incidents, data breaches, secure architecture, and regulatory compliance. Responsibilities Work directly with the...Work experience placementInternshipLocal area- Virtual Chief Information Security Officer (CISO) About the Company Flourishing provider of market research & business intelligence services Industry Market Research Type Privately Held About the Role The Company is in need of a Virtual...Part time
$72.34k - $93.06k
Salary: $72,342.40 - $93,059.20 Annually Location : Jacksonville Beach City Hall, FL Job Type: Full-Time Regular Job Number: 00705 Department: Information Systems Division: Administration Opening Date: 05/08/2026 CORE PURPOSE AND VALUES...Full timeWork at officeMonday to FridayFlexible hours- ...Title: ICS: Systems Analyst - Wonderware Belong, Connect, Grow, with KBR! Program Summary KBR Government Solutions pioneers comprehensive professional and technical services, enhancing operational preparedness and fostering innovation across diverse domains...Work at officeLocal areaRemote workWorldwideFlexible hours
- A leading fintech company is seeking a Chief Information Security Officer (CISO) to lead and enhance its enterprise security program. This fully remote role involves participating in strategic decision-making, overseeing the security team, and ensuring compliance with banking...Remote work
$134.6k - $184.5k
...Enterprise Architectural Frameworks (e.g. SABSA, TOGAF, O-ESA). Very knowledgeable of multiple security concepts and methods such as vulnerability assessments, data classification, privacy assessments, incident response, security policy creation, enterprise security...Work experience placementLocal areaRemote workWork from home- ...number one resource. If you are a problem-solving people-person, apply today! We are seeking a highly skilled Computer Systems Analyst to work on-site at our Jacksonville, FL location. Key Responsibilities : Provide superior customer service to internal...For contractorsLocal areaRemote work
- ...resources solutions to businesses, ensuring they operate smoothly while maintaining compliance with regulations. We are seeking a System Analyst to join our team. The System Analyst is responsible for providing system support in assigned PrismHR and related software, which...
- Position Type : Full time Type Of Hire : Experienced (relevant combo of work and education) Education Desired : Bachelor of Accounting Travel Percentage : 1 - 5% Job Description As the world works and lives faster, FIS is leading the way....Full timeWork at office
$102k - $138k
Sr IT Auditor The Senior IT Auditor independently evaluates the adequacy and operating effectiveness of internal information systems controls. This job audits information technology (IT) infrastructure, data flows/processes, and operating procedures in accordance with...For contractorsWork experience placement- Position Title * IT Security Specialist Position Responsibilities IT Security Specialist Location: Jacksonville Florida ( 3 days onsite 2 days remote) Need nearby Candidates ( only W2 required) Responsibilities: • Establish...Remote work
- ...Risk, and Compliance maintain said policies, ensure controls are operating effectively via assessment and attestation, and own the vulnerability management program to identify and correct any problems within. Responsibilities Security Metrics – Uses automated and...Work experience placement
- Overview: Job Purpose Intercontinental Exchange is looking for a Senior IT Auditor in our Atlanta, GA office. This position will be responsible for developing, leading, and performing information technology (IT) audits and if needed, assisting the Sarbanes-Oxley IT ...Work at office
$171k - $311k
Known for being a great place to work and build a career, KPMG provides audit, tax and advisory services for organizations in today's most important industries. Our growth is driven by delivering real results for our clients. It's also enabled by our culture, which encourages...Work experience placementH1bLocal areaRemote work- SDET/Software Engineer in Test Looking for a Software Engineer in Test to join our Mobility team. On this team you will solve complex problems and work alongside talented Data Engineers, Software Engineers, Data Scientists, Agile Delivery Leads, and Technical Product...
- **Please strictly adhere to the following resume naming convention: ALL CAPS, NO SPACES B/T UNDERSCORES PTN_US_GBAMSREQID_CandidateBeelineID i.e. PTN_US_9999999_SKIPJOHNSON0413 MSP Owner: Andres Villegas Location: Irvine, CA 100% onsite Duration: 6 months...
- Location: Remote Duration: 6 months Role: Senior Physical Network Security Consultant Act as subject matter expert (SME) for physical security systems and architecture Work as an extension of internal teams across Security, IT, HR, and Facilities...Remote work
- ...these protections into production Continuously improve security posture through infrastructure management, threat analysis, and vulnerability mitigation Collaborate with business leaders, project managers, and technical teams to ensure security considerations are factored...
- Expert in firewalls (Checkpoint, Fortinet), load balancer (F5 and cisco) and proxy servers. Certifications:- Checkpoint certified, CCSE Certified, CCIE and other network/security Technical JD : Ten plus (10+) years industry experience in networking environment...
- Overview: Responsibilities Develop a thorough understanding of the Company’s operations. Assist in the risk assessment process for various functional areas. Perform and document control testing to support the Internal Audit plan and SOX 404 internal control assessment...
- Job Title: Security Engineer - LLM SecOps Location: Hybrid - most remotely with ability to travel to California or NY when needed Project Duration: May to December (with potential extension) Interview: Video Need banking / financial services / payments...Remote work
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Vulnerability Analyst. Be the first to apply!

