Source Job

$95,000–$130,000/yr
US

  • Run continuous vulnerability scanning in Tenable and CrowdStrike Falcon to ensure full coverage of cloud assets.
  • Prioritize findings by real-world risk using exploitability, threat intelligence, and asset context, and validate high-priority findings hands-on.
  • Automate scan-to-ticket workflows with Python, push validated fixes through Jira, and help define vulnerability management standards and SLAs.

Python AWS Jira

15 jobs similar to Vulnerability/Threat Management Analyst

Jobs ranked by similarity.

US Unlimited PTO

  • Design, configure, and support ServiceNow Vulnerability Response (VR) to manage the end-to-end vulnerability lifecycle.
  • Build and maintain remediation workflows, vulnerability groups, assignment rules, and calculators using Flow Designer and other ServiceNow technologies.
  • Configure and manage vulnerability scanning and security tool integrations via APIs including Qualys, Tenable, Rapid7, Microsoft Defender, and CrowdStrike.

GuidePoint Security provides trusted cybersecurity expertise, solutions and services that help organizations minimize risk and make better decisions. Since 2011, the company has grown to over 1,300 employees and serves as a trusted advisor to more than 6,200 customers, with a culture driven by core values and collaboration.

  • Own end-to-end vulnerability lifecycle, attack surface management, and cloud security posture across AWS, Azure, and OCI.
  • Operate CTEM phases, consolidate exposure data into prioritized views, and track KPIs for stakeholder reporting.
  • Embed security into SDLC, support penetration testing, and translate technical risk clearly for business audiences.

Version 1 is a trusted technology and transformation solutions provider with partnerships including Microsoft, AWS, and Oracle. We're an award-winning, values-driven employer of 3,300+ people and a Great Place to Work in the UK and Ireland.

Europe 16w maternity 16w paternity

  • Own identity, SSO, and device management across Google Workspace and macOS, automating joiner and leaver flows from day one.
  • Secure cloud and SaaS environments by managing IAM, cloud guardrails, and vulnerability management end to end.
  • Bring a security perspective to incidents and audits, using AI-assisted workflows to reduce manual work.

Maze is a user research platform that helps product teams build the right products faster by making user insights accessible. With less than 150 team members and a global remote workforce, Maze fosters a culture of transparency and inclusion.

$120,000–$150,000/yr
US

  • Fix vulnerabilities across the stack by writing pull requests in application repositories and Terraform.
  • Build and tune SIEM detections, mapping coverage to MITRE ATT&CK and reducing false positives.
  • Lead incident response, harden AWS estate, and automate security workflows with code.

Cloudbeds is a hospitality management platform powering hotels across 150 countries, processing billions in bookings annually. The company is a remote-first team of 650+ across 40+ countries, recognized for innovation and an inclusive culture.

US Unlimited PTO

  • Deploy, configure, and operate Axonius Asset Cloud for risk-based vulnerability management.
  • Build unified asset inventories, prioritization models, and automated remediation workflows.
  • Support security platform operations and automation to drive risk reduction.

GuidePoint Security provides trusted cybersecurity expertise, solutions and services that help organizations minimize risk. With over 1,300 employees and strong core values, it serves more than 6,200 customers.

US

  • Lead threat modeling and security reviews across Wiz's products and cloud infrastructure, identifying attack surfaces and developing scalable mitigation strategies.
  • Build automation, policy-as-code, and security tooling that enables development teams to 'shift left' and integrate end-to-end security into their workflows.
  • Drive vulnerability management and remediation efforts, prioritizing issues, implementing mitigations, and designing strategic preventative controls in software supply chains from development through production.

Wiz is redefining security for the AI era, enabling teams to secure cloud and AI applications by connecting code, cloud, and runtime into a single shared context. As one of the fastest-growing startups ever, we are trusted by over 65% of the Fortune 100 and scan over 230 billion files daily, with a culture that values world-class talent and is now powered by Google.

North America Unlimited PTO

  • Triage incoming bug bounty reports and vulnerabilities, assess impact, and coordinate with development teams.
  • Communicate professionally with security researchers and support CVE assignment processes.
  • Maintain accurate records, monitor metrics, and improve runbooks for vulnerability handling.

GitLab is the intelligent orchestration platform for DevSecOps, enabling organizations to increase developer productivity and reduce security risk. More than 50 million registered users and over 50% of the Fortune 100 trust GitLab, which fosters a high-performance culture driven by values and continuous knowledge exchange.

$175,000–$200,000/yr
US Canada Unlimited PTO

  • Partner with engineering teams on architecture reviews, threat modeling, and secure design to translate risks into practical recommendations.
  • Improve security tooling, strengthen SDLC and CI/CD controls, and serve as a GCP security subject matter expert.
  • Drive vulnerability management, coordinate penetration testing, and enable engineers through documentation and mentorship.

Doppel builds an AI-native platform for social engineering defense, protecting executives, employees, customers, and brands from phishing, impersonation, and fraud across digital channels. Backed by Andreessen Horowitz and Bessemer Venture Partners, it is a rapidly growing Series C startup with a team focused on cybersecurity expertise and startup velocity.

$135,000–$155,000/yr
US

  • Design and enforce cloud security controls and IAM policies across multi-account AWS environments.
  • Embed automated security tools into CI/CD pipelines to catch vulnerabilities pre-deployment.
  • Develop automated detection and remediation workflows using Python, Bash, or Go and IaC tools.

The Tripadvisor Group connects people to experiences worth sharing, aiming to be the world's most trusted source for travel and experiences. It is a publicly traded company with a global portfolio of travel brands, fostering a culture of collaboration, agility, and traveler-first mindset.

Australia

  • Lead security incident response in a 24/7 global rotation, managing incidents from detection through recovery.
  • Create and maintain comprehensive incident response documentation, including runbooks and procedures.
  • Design and implement automated security processes to improve operational efficiency and reduce manual intervention.

GitLab is the intelligent orchestration platform for DevSecOps, helping organizations improve developer productivity, operational efficiency, and security. With over 50 million users and a high-performance culture, GitLab values innovation, continuous knowledge exchange, and inclusion.

Global

  • Monitor security systems, logs, and alerts to detect and respond to threats.
  • Run vulnerability scans and coordinate remediation with IT and engineering.
  • Maintain compliance with SOC 2 and support security awareness programs.

Power Digital is an AI-native growth firm combining talent and proprietary technology to help brands drive measurable business outcomes. With a people-first culture, the company values diversity and collaboration, using its AI operating system Omega to amplify capacity for strategy, creativity, and analysis.

EMEA

  • Lead the Application Security program across all products, embedding security throughout the SDLC.
  • Integrate AppSec findings into centralized vulnerability workflows, correlating them with asset and exploit intelligence.
  • Automate security testing pipelines and mentor engineers on secure coding and threat modeling.

ServiceNow is the AI control tower for business reinvention, helping 85% of the Fortune 500 work smarter with its AI platform. The company is building an AI-native culture where technology and talent are unstoppable together.

Europe

  • Own cloud and product security across AWS and GCP, setting baselines for IAM, networking, data protection, and workload configuration.
  • Partner with platform, SRE, and product teams to embed practical security controls into developer workflows and automate guardrails in delivery pipelines.
  • Perform security architecture reviews, threat modeling, and incident response, and drive systemic improvements with meaningful security metrics.

We create intelligent software development tools used by more than 15 million users and 300,000 companies, including 88 of the Fortune Global Top 100. Our mission is to make development teams more productive and AI adoptable at scale, and we foster an open and inclusive workplace.

$150,000–$155,000/yr
US

  • Conduct application and cloud security assessments to identify risks and vulnerabilities.
  • Collaborate with development teams to integrate security best practices into the SDLC.
  • Support vulnerability management, incident response, and security awareness education.

Business Wire is a leading global news release distribution service. The company is a large organization with a remote-first culture and offers competitive benefits.

US

  • Design, develop, and maintain integrations between enterprise systems and work-tracking platforms to automate security intake and triage.
  • Build workflow automation for request routing, data enrichment, notifications, and reporting.
  • Collaborate with security, engineering, and business stakeholders to define requirements and deliver scalable automation.

Marlabs is a global AI and Digital Solutions Consulting firm delivering intelligent solutions across AI, data, analytics, and product engineering. Since 2000, they have partnered with large healthcare, life sciences, financial services, and government organizations, and continue to expand globally.