Associate, Vulnerability Assessment

3 weeks, 5 days ago
Full-time
Entry Level
Cybersecurity
Coalfire

Coalfire

Coalfire is a cybersecurity advisor that helps organizations avert threats, reduce risk, and turn security into a competitive advantage, fueling their success.

Internet Software & Services
251-1K
Founded 2001
$9M raised

Description

  • Operate, review, and assess vulnerability scanning tool implementations.
  • Provide recommendations for remediating host-based and web application vulnerabilities.
  • Conduct manual validation to confirm vulnerability closure.
  • Analyze raw scan data and produce reports on credential success, inventory validation, and open vulnerabilities.
  • Evaluate client justifications for vendor dependencies, false positives, operational requirements, and risk adjustments.
  • Collaborate with Coalfire personnel to deliver findings, analysis results, and validated justifications on time.
  • Support customer satisfaction throughout the vulnerability assessment process.
  • Help prioritize risks and support mitigation efforts to reduce security risk severity.

Requirements

  • Less than 2 years of vulnerability assessment experience.
  • Past experience with a leading vulnerability scanning tool such as Tenable, Qualys, Nexpose, Prisma Cloud, or Burp.
  • Bachelor’s degree in Cybersecurity, Information Technology, Computer Science, or equivalent education and experience.
  • Understanding of vulnerability identification, scanning, analysis, remediation tactics, and reporting within an organization.
  • In-depth knowledge of industry best practices for vulnerability management.
  • Experience with security frameworks and regulatory requirements such as ISO, NIST, COBIT, and HIPAA/HITECH.
  • Certification in Security+, CCSK, AWS Cloud Practitioner, SSCP, GSEC, CEH, Cloud+, SC-900, ISC² CC, AZ‑900, Cloud Essentials+, or GCP.
  • Preferred: Familiarity with 3 or more frameworks such as FedRAMP, FISMA, SOC, ISO, HIPAA, or HITRUST.
  • Preferred: Experience creating system inventories, boundary diagrams, or plans of actions and milestones (POA&M).
  • Preferred: Familiarity with cloud services such as AWS, GCP, and Azure.
  • Preferred: Familiarity with configuration baseline standards such as CIS and STIG.
  • Preferred: Experience with scripting languages such as Python, Bash, or PowerShell.

Benefits

  • Flexible work model with the option to work from home or an office.
  • Paid parental leave.
  • Flexible time off.
  • Certification and training reimbursement.
  • Digital mental health and wellbeing support membership.
  • Comprehensive insurance options.
  • Employee resource groups and in-person/virtual events.

Interested in this position?

Apply directly on the company website

Apply Now

Similar Roles

Risk Control Analyst, Card & ATO Risk

Binance 5K-10K Capital Markets

Binance is hiring a Risk Control Analyst to manage card issuer-side fraud and account takeover risk strategies across payment and risk operations.

Blockchain SQL
5 hours, 53 minutes ago

Vulnerability Management Analyst

Copper River Management 11-50 Internet Software & Services

Copper River Cyber Solutions is hiring a Vulnerability Management Analyst to support the NIH cybersecurity program by identifying, prioritizing, tracking, and reporting vulnerabilities across enterprise systems and infrastructure.

Cybersecurity
1 day, 4 hours ago

SOC Supervisor

Central Transportation Services, Inc. 11-50 transportation/trucking/railroad

CTS is seeking a remote SOC Supervisor to lead daily security operations, incident response, and team performance within its managed services environment.

SIEM
1 day, 5 hours ago

Senior Governance, Risk, and Compliance (GRC) Analyst (Remote)

RainFocus 251-1K IT Services

RainFocus is hiring a Senior Governance, Risk, and Compliance (GRC) Analyst to own and advance its security and privacy compliance program for a fast-growing event software platform serving enterprise customers.

2 days, 5 hours ago

You're on a roll! Sign up now to keep applying.

Sign Up

Already have an account? Log in

Used by 14,729+ remote workers