Vulnerability Scan Analyst
Fully Remote CA
Job Type
Contract
Description

Position Summary

Runs and analyzes automated vulnerability scans across servers, workstations, web applications, and general devices, then validates, filters, and prioritizes results into actionable, management-ready findings.


Key Responsibilities

• Configure and run vulnerability scanning tools without causing system disruption or service degradation.

• Validate scan results, eliminate false positives, and prioritize critical/high/moderate findings. 

• Produce both filtered curated reports and raw/unfiltered native scan output as required by the RFP.

• Document whether tools used are commercial, proprietary, or open source.

Requirements

Required Qualifications

• 3+ years of vulnerability management or scan analysis experience.

• Proficiency with enterprise vulnerability scanners (Tenable/Nessus, Qualys, Rapid7, or equivalent).

• Strong analytical skills for false-positive triage and risk prioritization.


Preferred Qualifications

• GVMA, CompTIA PenTest+, or Security+ certification.

• Experience coordinating scan timing with client IT teams to minimize operational impact.


Travel

Fully remote; must remain within the continental United States.