9 vulnerability analyst jobs at 9 companies in Washington

2w
Save
Mark Applied
Hide
Vulnerability Analyst (Remote)
United States or Alaska or California or Colorado or Connecticut or District of Columbia or Hawaii or Louisiana or Massachusetts or Minnesota or Missouri or Nebraska or Nevada or New Hampshire or New Jersey or New Mexico or New York or North Dakota or Oregon or Rhode Island or Vermont or Washington or Wyoming or Puerto Rico
RemoteFull Time
Oxley Enterprises
Oxley Enterprises: Provider of enterprise IT solutions and organizational management consulting.
Remote U.S. role; posting provides no specific skills or years required in the job text beyond generic instructions and benefits.
1mo
Save
Mark Applied
Hide
Cyber Security Analyst III (Vulnerability Management)
Washington or United States or Richland
$90k-$158k/yr OnsiteFull Time
OSC Technical Solutions
OSC Technical Solutions: Cybersecurity and IT engineering for critical infrastructure and government.
5+ YOEBachelor's degree in cybersecurity/IT/CS, 5+ years vulnerability management or security operations experience, proficiency with vulnerability scanning/tools and Microsoft Office, ability to obtain DOE access badge and pass background/drug screening.
Tenable.sc, Nessus, Qualys, ACAS, ServiceNow CMDB, eMASS, RegScale, ServiceNow GRC, Microsoft Word, Microsoft Excel, Microsoft PowerPoint
1w
Save
Mark Applied
Hide
Information Security Analyst III (On-Site)
Richland, Washington, United States
$80k-$121k/yr HybridFull Time
HAPO Community Credit Union
HAPO Community Credit Union: A member-owned credit union providing personal and business banking services.
Experienced information security analyst to monitor, investigate, and respond to security events, support vulnerability management, phishing campaigns, risk assessments, and mentor Level I/II analysts.
Microsoft Defender for Endpoint, Microsoft Purview, Defender for Office, Kusto Query Language, SIEM, Sentinel, Microsoft Office, FFIEC Cyber Assessment Tool, NIST 800-53, CIS Top 20
3w
Save
Mark Applied
Hide
Product Security Analyst
Boston or Austin or Washington or Seattle or San Francisco
$120k-$155k/yr RemoteFull Time
HackerOne
HackerOne: Connecting organizations with ethical hackers to find security vulnerabilities.
3+ YOE3+ years security testing/vulnerability research on web/mobile apps, strong OWASP Top 10 knowledge, experience with Burp Suite and CVSS, ability to reproduce/validate findings and communicate technical impact in English.
Burp Suite, Common Vulnerability Scoring System (CVSS)
1mo
Save
Mark Applied
Hide
Senior Application Security Analyst
Olympia, Washington, United States
$114k-$124k/yr HybridFull Time
Washington Health Benefit Exchange
Washington Health Benefit Exchange: Operates Washington state's health insurance enrollment marketplace.
7+ YOE7+ years in information security with application security, secure SDLC, DevSecOps, cloud/Azure experience; experience with code reviews, threat modeling, vulnerability management, and tools like Nessus, Rapid7, Nmap, and Burp Suite.
Microsoft Azure, Nessus, Rapid7, Nmap, Burp Suite, Static Application Security Testing (SAST), Dynamic Application Security Testing (DAST), Software Composition Analysis (SCA), CI/CD, OWASP, STRIDE, MITRE ATT&CK, Security Information and Event Management (SIEM), Endpoint Detection & Response
1mo
Save
Mark Applied
Hide
Senior Application Security Analyst
Olympia, Washington, United States
$114k-$148k/yr HybridFull Time
Washington State Department of Ecology
Washington State Department of Ecology: Provides environmental regulation and conservation services for Washington state.
7+ YOE7+ years information security experience in application security, vulnerability management, penetration testing or related areas; strong secure SDLC, cloud/DevSecOps, threat modeling, code review, and remediation skills; familiarity with NIST/OWASP and regulatory requirements.
Microsoft Azure, Nessus, Rapid7, Nmap, Burp Suite, SAST, DAST, SCA, STRIDE, MITRE ATT&CK, Security Information and Event Management (SIEM), Endpoint Detection & Response (EDR)
3w
Save
Mark Applied
Hide
Product Security Analyst III
United States or Seattle
$135k-$149k/yr RemoteFull Time
ExtraHop
ExtraHop: Provides network detection and response software for cybersecurity.
5+ YOE5+ years cybersecurity experience with FedRAMP/SOC 2 compliance focus, 2+ years hands-on compliance or cloud security work, Bachelor's in a technical field, experience with vulnerability management, SIEM and Jira, strong communication and analytical skills, U.S. work authorization required.
FedRAMP, SOC 2, ISO 27001, CSA STAR, CMMC, IL4, DoDIN APL, NIAP, FIPS, Jira, SIEM, Plan of Action & Milestones (POA&M), Continuous Monitoring (ConMon)
1mo
Save
Mark Applied
Hide
Senior Analyst, Cybersecurity Operations & Response
Philadelphia or Atlanta or Atlantic City or Montgomery County or Boston or Charlotte or Chicago or Dallas or Denver or Chester County or Greensboro or Greenville or Kansas City or Las Vegas or Los Angeles or Miami or Minneapolis or Morristown or New York or Oklahoma City or Pittsburgh or Princeton or Raleigh or San Francisco or Sarasota or Seattle or Bucks County or Washington or West Palm Beach or Wilmington
$100k-$155k/yr OnsiteFull Time
Fox Rothschild
Fox Rothschild: National law firm providing comprehensive legal services.
5+ YOEBachelor's in information security (or equivalent), 5+ years information security experience including security operations/incident response, knowledge of NIST and MITRE ATT&CK, threat & vulnerability management, playbook development, strong communication.
NIST, MITRE ATT&CK
1mo
Save
Mark Applied
Hide
Senior 2 Attack Surface Analyst (Hybrid - Seattle)
Seattle, Washington, United States
$166k-$258k/yr HybridFull Time
Nordstrom
Nordstrom: Operates luxury department stores and off-price retail outlets.
6+ YOE6+ years in security operations, vulnerability management, or offensive security; deep knowledge of MITRE ATT&CK, multi-cloud security, IT architecture, offensive security, networking, and scripting (Python, PowerShell). Bachelor's/Master's in IT/CS/Cybersecurity preferred.
MITRE ATT&CK, Python, PowerShell