Vulnerability Management Analyst
DecisionPoint | Cortek
Overview DecisionPoint seeks a Vulnerability Management Analyst to support enterprise cybersecurity operations across a federal and DoD-aligned mission environment. This role conducts vulnerability scanning, patch verification, security analysis, prioritization of findings, mitigation tracking, and updates to Plan of Action and Milestones (POA&Ms). The analyst will help ensure systems remain compliant with DoD and federal cybersecurity controls by continuously identifying, validating, and monitoring vulnerabilities across cloud and on-premise environments.
The Vulnerability Management Analyst plays a key role in enhancing the security posture of mission systems by providing actionable insights, collaborating with engineering teams, and maintaining visibility into risk trends and remediation progress.
This position is fully remote.
Note: By applying to this position, you acknowledge and consent to having your resume included in an active competitive government contract bid.
Duties & Responsibilities The Vulnerability Management Analyst will:
Must hold an active Top Secret clearance, supported by a Tier 5 background investigation.
Education (Required)
Bachelor's degree in Cybersecurity, Information Technology, or a related field.
Experience (Required)
The Vulnerability Management Analyst plays a key role in enhancing the security posture of mission systems by providing actionable insights, collaborating with engineering teams, and maintaining visibility into risk trends and remediation progress.
This position is fully remote.
Note: By applying to this position, you acknowledge and consent to having your resume included in an active competitive government contract bid.
Duties & Responsibilities The Vulnerability Management Analyst will:
- Conduct ACAS vulnerability scans across enterprise systems, applications, and cloud workloads.
- Validate vulnerability scan results, confirm patch levels, and verify remediation status across environments.
- Analyze vulnerabilities for exploitability, potential impact, and relevance to mission systems.
- Prioritize vulnerabilities based on severity, risk scoring, operational context, and DoD guidance.
- Coordinate with engineering, system administration, and cloud teams on mitigation steps and remediation timelines.
- Update, track, and maintain POA&Ms with accurate vulnerability details and milestone progress.
- Provide vulnerability summaries, dashboards, and reporting to cybersecurity leadership and government stakeholders.
- Support continuous monitoring activities and reporting cycles in accordance with DoD RMF requirements.
- Validate STIG-related findings and support configuration compliance checks.
- Maintain ACAS scanning schedules, asset coverage, and scan completeness across environments.
- Contribute to incident response efforts when vulnerabilities are linked to active threats.
- Document vulnerability processes, scanning standards, and remediation workflows.
Must hold an active Top Secret clearance, supported by a Tier 5 background investigation.
Education (Required)
Bachelor's degree in Cybersecurity, Information Technology, or a related field.
Experience (Required)
- Minimum 5 years of experience in vulnerability management, cybersecurity operations, or system security analysis.
- Experience running ACAS/Nessus scans and validating vulnerability data.
- Experience analyzing vulnerabilities, prioritizing risk, and coordinating remediation with technical teams.
- Experience updating POA&Ms, tracking mitigation progress, and supporting RMF continuous monitoring.
- Experience performing patch verification and configuration-compliance checks.
- Proficiency with ACAS and Nessus scanning tools.
- Knowledge of vulnerability scoring (CVSS), exploitability assessment, and prioritization frameworks.
- Understanding of DoD RMF continuous monitoring requirements and POA&M processes.
- Knowledge of STIGs, secure configuration baselines, and compliance validation.
- Familiarity with SIEM platforms, log analysis, and threat context enumeration.
- Experience with cloud security scanning tools, especially AWS-native or container security scanners.
- Experience with automation or scripting (Python, PowerShell) for data extraction or report generation.
- Familiarity with enterprise asset management and CMDB tools.
- Security+
- ACAS Certification
- CEH
- Additional DoD 8570/8140 cybersecurity certifications
- Strong analytical and investigative abilities for evaluating vulnerabilities and identifying true risk.
- Excellent written and verbal communication skills for producing reports and collaborating with technical teams.
- High attention to detail for validating scan results, documenting findings, and maintaining POA&M accuracy.
- Ability to manage multiple priorities and operate in a fast-paced, mission-critical environment.
- Strong organizational and documentation skills to support tracking, reporting, and compliance workflows.
- EEO and Affirmative Action Policy: DecisionPoint Corporation is an Equal Employment Opportunity and Affirmative Action employer. It is the policy of DecisionPoint Corporation to provide equal employment opportunity in accordance with all applicable Equal Employment Opportunity/Affirmative Action laws, directives and regulations to all employees and qualified applicants without regard to race, ethnicity, color, religion, national origin, sex, age, disability status, pregnancy, sexual orientation, gender identity, genetic information, protected veteran status, or any other protected status under Federal, State or Local laws.
- Pay Transparency Policy: In accordance with Presidential Executive Order 13665, DecisionPoint Corporation will not discharge or in any other manner discriminate against employees or applicants because they have inquired about, discussed, or disclosed their own pay or the pay of another employee or applicant. However, employees who have access to the compensation information of other employees or applicants as a part of their essential job functions cannot disclose the pay of other employees or applicants to individuals who do not otherwise have access to compensation information, unless the disclosure is (a) in response to a formal complaint or charge, (b) in furtherance of an investigation, proceeding, hearing, or action, including an investigation conducted by the employer, or (c) consistent with the contractor's legal duty to furnish information.
- Authorization to Share Resume and Personal Information: By expressing your interest and submitting your resume for this position, you authorize DecisionPoint Corporation to share your resume, as well as personal information included on the resume, with its subsidiaries, affiliates and teaming partners for the purpose of considering you for this position and other available positions requiring comparable skills, education and experience. Should DecisionPoint Corporation. or its affiliates and teaming partners wish to initiate pre-employment discussions, you will be asked to complete an employment application and related employment documents.
Vacancy posted 19 hours ago
Similar jobs that could be interesting for youBased on the Vulnerability Management Analyst in United States vacancy
- ...contribute to transformative projects across banking, wealth management, and insurance sectors. If you're passionate about AI and eager... ..., risk assessments, and reporting processes• Maintain vulnerability management standard, procedures, and guidelines• Identify vulnerabilities...SuggestedFull timeTemporary workRelocation
$105k - $120k
Current Employees and Contractors Apply HereOsaic CareersIT Vulnerability Opportunity in Financial Services Senior Vulnerability Management Analyst Location(s): Atlanta: 2300 Windy Ridge Pkwy SE, Suite750, Atlanta, GA 30339La Vista:12325 Port Grace Blvd, La Vista, NE 68...SuggestedFull timeFor contractorsWork at officeShift work$106.4k - $149k
...you want to be part of an inclusive, adaptable, and forward-thinking organization, apply now.We are currently seeking a Vulnerability Management Analyst- Bilingual Japanese/English to join our team in Dallas, Texas (US-TX), United States (US).The Vulnerability Management...SuggestedFull timeTemporary workWork at officeRemote workFlexible hours- What We Are Looking ForPrimary Purpose:We are seeking a skilled Sr. Patching and Vulnerability Management Analyst to support enterprise-wide patch management and vulnerability remediation across Windows servers and endpoints. This role operates as part of a collaborative...Suggested
- ...Vulnerability Management Analyst DecisionPoint seeks a Vulnerability Management Analyst to support enterprise cybersecurity operations across a federal and DoD-aligned mission environment. This role conducts vulnerability scanning, patch verification, security analysis...SuggestedContract workFor contractorsLocal areaRemote work
- ...Vulnerability Management Analyst Type: Contract Location: Remote Must Have Skills: Brinqa Vulnerability tool is MUST HAVE Advanced Excel skills MUST HAVE Financial Services experience is preferred PowerBI - preferred Relationship building skills...Contract workRemote work
- ...Vulnerability Management Analyst We are seeking a technically strong Vulnerability Management Analyst / Engineer to lead vulnerability identification, prioritization, and remediation across infrastructure, web applications, and cloud environments. This role combines...Local areaRemote workWorldwide
- ...Job Title: Mid-Level Vulnerability Management Analyst Location: Bethesda, Maryland Type: Direct Hire / Perm Work Model: 99% remote with occasional onsite for meetings Security Clearance: Public Trust Position Summary The Mid-Level...Permanent employmentFull timeLocal areaRemote work
- ...experience. Direct relevant experience building models and analytics for cybersecurity, insurance, and other data intensive risk management related domains, structuring operational and log data in cloud native analytics environments. Demonstrated ability to work as...Remote work
$35 - $60 per hour
...Vulnerability Management Analyst $35-60/hr Remote Freelance CODING About the Role We partner with the world's leading AI research labs to build smarter, safer AI systems — and we need experienced security professionals to help get there. As a Vulnerability Management...Hourly payOngoing contractContract workFreelanceRemote workFlexible hours- cFocus Software seeks a Vulnerability Management Analyst to join our program supporting the United States International Defense Finance Agency (DFC). This position is remote. This position requires an Active Public Trust clearance. Qualifications: ~ Active Public...Full timeFor contractorsRemote work
$115k - $131k
...Job Description Job Description Copper River Cyber Solutions is seeking a highly motivated The Vulnerability Management Analyst to support the NIH cybersecurity program by identifying, analyzing, tracking, and reporting security vulnerabilities across enterprise...Contract workLocal areaFlexible hours- ...Job Description Job Description Vulnerability Management Analyst Location- Joint Base Andrews, MD Clearance- Secret Certifications- CompTIA Security+ or equivalent About TIME Systems At TIME Systems, we are at the forefront of Technology, Innovation...Temporary workLocal areaFlexible hours
- ...Vulnerability Management Analyst We are seeking a highly skilled professional to join our team as a Vulnerability Management Analyst. This role involves working closely with system administrators, network teams, and application owners to ensure the security and integrity...Work experience placement
- ...Copper River Cyber Solutions is seeking a highly motivated Vulnerability Management Analyst to support the NIH cybersecurity program by identifying, analyzing, tracking, and reporting security vulnerabilities across enterprise systems, applications, databases, cloud...Full time
- ...benefits, and ongoing learning opportunities, backed by a culture that values and supports our team. We are seeking a Vulnerability Management Analyst (Tenable/Nessus & Metrics ) to support vulnerability tracking, remediation coordination, and security metrics...Full timeWork from homeFlexible hours1 day per week
- ...Job Description Job Description Job Description / Qualifications Description The Vulnerability Management Analyst will provide ongoing support to the information security vulnerability management team. This role is expected to handle operational tickets to maintain...Work experience placementWork at office
- ...Job Description Vulnerability Management Analyst Location: Alpharetta, GA (3 days onsite minimum) Contract Job Summary: Stand up vulnerability management reporting and tracking for Equity Zen to close the Legal Day 1 gap and align with Client's...Contract workTemporary work
$90k - $155k
...tech company. We're a community of innovators, engineers, analysts and business professionals working together with our customers... ...new professionals to join our team. ABSC is seeking a Vulnerability Management Analyst to join our team supporting the Air Force National...Contract workRemote workFlexible hours- ...teams to work at the highest levels possible. Job Summary The Cybersecurity Vulnerability Governance Analyst is responsible for governing and overseeing the organization's Vulnerability Management Program from a risk, compliance, and accountability perspective. This role...Full timeImmediate startFlexible hours
$160k - $195k
...Vulnerability Management Data Analyst Princeton NJ or Berwyn PA or Clifton, NJ or Austin, TX or Atlanta, GA or Sacramento, CA or Boston, MA or Quincy, MA (4 days a week in office) Full Time $160-195K/Yr plus Bonus plus Benefit Role: Recruit an experienced...Full timeWork at office$87.1k - $157.45k
Description Leidos has a career opportunity for a Vulnerability Management Analyst to support the Air Force National Capital Region IT Services program. The AFNCR IT Services program provides support services for information systems for Headquarters Air Force (HAF), Air...Work at office- Horizon Blue Cross Blue Shield of New Jersey is seeking a skilled Vulnerability Management Analyst to lead scanning strategies and coordinate remediation across a large enterprise. The role emphasizes collaboration with the EBTS division, risk-based prioritization, and...
$106.4k - $149k
...us. If you want to be part of an inclusive, adaptable, and forward-thinking organization. We are currently seeking a Vulnerability Management Analyst- Hybrid in Dallas, TX to join our team in Dallas, Texas (US-TX), United States (US). The Vulnerability Management Analyst...Temporary workWork at officeRemote workFlexible hours$110k - $130k
Position Title Vulnerability Management Analyst 2 Posting Information Posting Number: 2026-15806 Location: US-NY-New York Hybrid Remote Work Classification: Mostly Remote: Remote more than 60% of time Department: Security Operations School/Division: NYU IT (WS1170...Full timePart timeWork experience placementRemote work$87.1k - $157.45k
Leidos has a career opportunity for a Vulnerability Management Analyst to support the Air Force National Capital Region IT Services program. The AFNCR IT Services program provides support services for information systems for Headquarters Air Force (HAF), Air Force District...Work at officeWorldwide$131.32k - $154.49k
...LLC. (BGS) has created this Evergreen Talent Pool post for gathering qualified candidates for a position relating to Vulnerability Management Analyst to support our clients in various locations across the US. BGS is an engineering, technology, and security firm helping...Full timeContract workTemporary workRemote workMonday to FridayNight shift- Alignerr is seeking a Vulnerability Management Analyst focused on AI training to help shape how frontier AI models reason about cybersecurity risk. You will analyze CVEs, exposure, and remediation workflows to improve risk decisions across production environments. The...Remote jobHourly payContract workFlexible hours
- Tata Consultancy Services is seeking an Information Security Analyst to support enterprise security operations with a focus on vulnerability management, patching, and risk remediation. You will collaborate with engineering and infrastructure teams to identify, analyze,...
- Themesoft Inc. is seeking a candidate knowledgeable in cybersecurity principles and vulnerability management for a contract role in Burlington, MA. Responsibilities include performing vulnerability scans and coordinating vulnerability remediation efforts. The ideal candidate...Contract work
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Vulnerability Management Analyst. Be the first to apply!
Related searches
- ethical hacker United States
- vulnerability management analyst United States
- vulnerability analyst United States
- penetration tester United States
- remote senior business analyst United States
- loan iq business analyst United States
- senior business analyst United States
- telecom business analyst United States
- business strategy analyst United States
- business analyst part time remote United States


