{"schemaVersion":"jobsearcher.job.v1","id":"f3885f25d561faf7b2dbfd05","url":"https://jobsearcher.com/jobs/f3885f25d561faf7b2dbfd05","canonicalUrl":"https://jobsearcher.com/jobs/f3885f25d561faf7b2dbfd05","title":"Vulnerability Analyst II","description":"Job Title\nVulnerability Analyst II\nReporting To\nManager- CyberSecurity\nFLSA Status (exempt, non-exempt)\nSalary Exempt\nDescription\nThe Vulnerability Analyst II has been working in a cybersecurity role for three or more years. Ideally you have experience in Level 2 Help Desk and deliver excellent customer service in a professional environment. As a Vulnerability Analyst, you will play a crucial role in ensuring the security and integrity of our client's digital assets by identifying and mitigating potential vulnerabilities. You will be responsible for conducting regular assessments, collaborating with other IT and security teams, and implementing measures to safeguard against cyber threats. You understand high-quality customer service, respond with appropriate professionalism and urgency, and have a knack for adapting your interpersonal style to many different types of users. The Vulnerability Analyst is responsible for the completion of tasks, projects that will be assigned and tracked. Some travel and after hours/on call hour work may be required. To succeed in this role, you need to be detail-oriented, with strong organizational and time management skills.\nAutomation and Scripting\nAutomate repeatable processes using a variety of tools including scripting.\nDesirable scripting languages: PowerShell, Automate RMM, Datto RMM, and Python.\nVulnerability Assessment\nConduct regular vulnerability assessments on systems, networks, and applications.\nUtilize scanning tools and methodologies to identify vulnerabilities.\nAnalyze and interpret vulnerability scan results to prioritize high-risk areas.\nProject Management\nCreate and conduct reoccurring meetings with customers to talk through scan results, remediation steps and prioritization.\nPlan and execute remediation projects that prioritize critical items, maximize operational efficiency, and minimize client impact.\nSecurity Audits\nAnalyze and interpret security audits and communicate the results to stakeholders with a wide range of technical knowledge.\nCollect evidence and artifacts to fulfill contractual and compliance requirements.\nSecurity Patch Management\nMonitor and track security patches for various software and systems.\nCoordinate with different teams to ensure timely deployment of patches and updates.\nIncident Response\nAssist in incident response activities related to security vulnerabilities.\nInvestigate and analyze security incidents to support remediation efforts.\nDocumentation and Reporting\nMaintain detailed documentation of vulnerability assessment findings and remediation efforts.\nPrepare and present reports to management on the overall security posture.\nEducation & Qualifications\n\nValid Driver License and Proof of Auto Insurance\nBachelor's degree in Information Technology, or a related field, OR equivalent relevant experience.\nRelevant certifications such as Certified Information Systems Security Professional\n(CISSP), Offensive Security Certified Professional (OSCP), Certified Ethical Hacker (CEH), or other red team certifications are a plus.\nProven experience in conducting vulnerability assessments and/or penetration testing.\nFamiliarity with common security and compliance frameworks (e.g., CIS, NIST CSF, HIPAA/HITRUST, PCI DSS, ISO 27001).\nStrong understanding of networking protocols, operating systems, and web applications.\nExperience with Microsoft cloud technologies including Entra ID, Azure VMs, and cloud networking (VNETs and NSGs).\nKnowledge of encryption standards and technologies, including data at rest as well as data in transit.\nExperience using and interpreting vulnerability software such as Connect Secure, Tenable, Rapid7, or Qualsys.\nProficiency with data visualization and processing; proficiency with PowerBI and Excel.\nApply the common vulnerability scoring system (CVSS) to prioritize remediation items.\nFamiliar with industry best practices for security hardening of IT infrastructure, including networking equipment, VPN, Windows, MacOS and Linux OS, and cloud resources.\nStay up to date on the latest trends, threats, CVEs and Zero-Days, workarounds, and patches in the cybersecurity landscape.\nAble to apply the latest threat intelligence to vulnerability management strategy.\nProven track record of developing creative and effective solutions to technical challenges.\nPolicy administration experience with Group Policy Objects (GPOs) and Intune.\nExperience with Automate Patch Manager, WSUS, or other patch management tools.\nUnderstanding of business needs to ensure remediation recommendations are appropriate.\nProficient in using vulnerability scanning tools and penetration testing tools.\nExcellent analytical and problem-solving skills.\nStrong communication and collaboration skills.\nAble to distill complex technical concepts and jargon for a lay audience.\nExcellent time management skills.\nPassion for technology and cybersecurity.\nSoft Skills\nSupervision/Autonomy\nAble to independently set direction and scope of work. Able to evaluate the work of others and make decisions that affect personal or team productivity within a well-defined area of responsibility.\nPlanning/Organization\nAble to organize incoming requests for work from multiple sources and plan projects without well-defined goals, maintaining day to day productivity with few requests for help.\nProcess Management\nUnderstands and follows established processes. Able to adapt to ongoing changes in processes, priorities, tasks, and workload. Able to help develop and define processes and process improvement for Applied Tech.\nCommunication\nStrong written and verbal communication skills. Demonstrates clear and professional written communication that conveys confidence and competence. Able to explain complicated concepts with poise to large groups.\nPeople Skills/Conflict Management\nStrong interpersonal skills for effective interaction with clients, third parties, and teammates. Able to demonstrate confidence in high-pressure situations and resolve conflicts.\nPhysical Requirements\nAbility to use computers daily in an interactive manner for extended periods of time, possibly exceeding 8 hours per day.\nAbility to sit for an extended period.\nAbility to frequently and accurately communicate with employees, customers, and vendors in person, via the telephone or by email.\nNOTE: This job description is not intended to be all-inclusive. Employees may perform other related duties as requested to meet the ongoing needs of the organization.","company":"Applied Tech","rawCompany":"applied tech","city":"Remote","state":"OR","isRemote":false,"isActive":false,"createdAt":"2026-04-12T21:26:14.578Z","occupations":[{"code":"15-1212.00","title":"Information Security Analysts","slug":"information-security-analysts"},{"code":"15-1299.05","title":"Information Security Engineers","slug":"information-security-engineers"},{"code":"15-1299.04","title":"Penetration Testers","slug":"penetration-testers"}],"industries":[{"code":"541512","title":"Computer Systems Design Services","slug":"computer-systems-design-services"},{"code":"541690","title":"Other Scientific and Technical Consulting Services","slug":"other-scientific-and-technical-consulting-services"},{"code":"541519","title":"Other Computer Related Services","slug":"other-computer-related-services"}],"jobPosting":{"@context":"https://schema.org","@type":"JobPosting","title":"Vulnerability Analyst II","description":"Job Title\nVulnerability Analyst II\nReporting To\nManager- CyberSecurity\nFLSA Status (exempt, non-exempt)\nSalary Exempt\nDescription\nThe Vulnerability Analyst II has been working in a cybersecurity role for three or more years. Ideally you have experience in Level 2 Help Desk and deliver excellent customer service in a professional environment. As a Vulnerability Analyst, you will play a crucial role in ensuring the security and integrity of our client's digital assets by identifying and mitigating potential vulnerabilities. You will be responsible for conducting regular assessments, collaborating with other IT and security teams, and implementing measures to safeguard against cyber threats. You understand high-quality customer service, respond with appropriate professionalism and urgency, and have a knack for adapting your interpersonal style to many different types of users. The Vulnerability Analyst is responsible for the completion of tasks, projects that will be assigned and tracked. Some travel and after hours/on call hour work may be required. To succeed in this role, you need to be detail-oriented, with strong organizational and time management skills.\nAutomation and Scripting\nAutomate repeatable processes using a variety of tools including scripting.\nDesirable scripting languages: PowerShell, Automate RMM, Datto RMM, and Python.\nVulnerability Assessment\nConduct regular vulnerability assessments on systems, networks, and applications.\nUtilize scanning tools and methodologies to identify vulnerabilities.\nAnalyze and interpret vulnerability scan results to prioritize high-risk areas.\nProject Management\nCreate and conduct reoccurring meetings with customers to talk through scan results, remediation steps and prioritization.\nPlan and execute remediation projects that prioritize critical items, maximize operational efficiency, and minimize client impact.\nSecurity Audits\nAnalyze and interpret security audits and communicate the results to stakeholders with a wide range of technical knowledge.\nCollect evidence and artifacts to fulfill contractual and compliance requirements.\nSecurity Patch Management\nMonitor and track security patches for various software and systems.\nCoordinate with different teams to ensure timely deployment of patches and updates.\nIncident Response\nAssist in incident response activities related to security vulnerabilities.\nInvestigate and analyze security incidents to support remediation efforts.\nDocumentation and Reporting\nMaintain detailed documentation of vulnerability assessment findings and remediation efforts.\nPrepare and present reports to management on the overall security posture.\nEducation & Qualifications\n\nValid Driver License and Proof of Auto Insurance\nBachelor's degree in Information Technology, or a related field, OR equivalent relevant experience.\nRelevant certifications such as Certified Information Systems Security Professional\n(CISSP), Offensive Security Certified Professional (OSCP), Certified Ethical Hacker (CEH), or other red team certifications are a plus.\nProven experience in conducting vulnerability assessments and/or penetration testing.\nFamiliarity with common security and compliance frameworks (e.g., CIS, NIST CSF, HIPAA/HITRUST, PCI DSS, ISO 27001).\nStrong understanding of networking protocols, operating systems, and web applications.\nExperience with Microsoft cloud technologies including Entra ID, Azure VMs, and cloud networking (VNETs and NSGs).\nKnowledge of encryption standards and technologies, including data at rest as well as data in transit.\nExperience using and interpreting vulnerability software such as Connect Secure, Tenable, Rapid7, or Qualsys.\nProficiency with data visualization and processing; proficiency with PowerBI and Excel.\nApply the common vulnerability scoring system (CVSS) to prioritize remediation items.\nFamiliar with industry best practices for security hardening of IT infrastructure, including networking equipment, VPN, Windows, MacOS and Linux OS, and cloud resources.\nStay up to date on the latest trends, threats, CVEs and Zero-Days, workarounds, and patches in the cybersecurity landscape.\nAble to apply the latest threat intelligence to vulnerability management strategy.\nProven track record of developing creative and effective solutions to technical challenges.\nPolicy administration experience with Group Policy Objects (GPOs) and Intune.\nExperience with Automate Patch Manager, WSUS, or other patch management tools.\nUnderstanding of business needs to ensure remediation recommendations are appropriate.\nProficient in using vulnerability scanning tools and penetration testing tools.\nExcellent analytical and problem-solving skills.\nStrong communication and collaboration skills.\nAble to distill complex technical concepts and jargon for a lay audience.\nExcellent time management skills.\nPassion for technology and cybersecurity.\nSoft Skills\nSupervision/Autonomy\nAble to independently set direction and scope of work. Able to evaluate the work of others and make decisions that affect personal or team productivity within a well-defined area of responsibility.\nPlanning/Organization\nAble to organize incoming requests for work from multiple sources and plan projects without well-defined goals, maintaining day to day productivity with few requests for help.\nProcess Management\nUnderstands and follows established processes. Able to adapt to ongoing changes in processes, priorities, tasks, and workload. Able to help develop and define processes and process improvement for Applied Tech.\nCommunication\nStrong written and verbal communication skills. Demonstrates clear and professional written communication that conveys confidence and competence. Able to explain complicated concepts with poise to large groups.\nPeople Skills/Conflict Management\nStrong interpersonal skills for effective interaction with clients, third parties, and teammates. Able to demonstrate confidence in high-pressure situations and resolve conflicts.\nPhysical Requirements\nAbility to use computers daily in an interactive manner for extended periods of time, possibly exceeding 8 hours per day.\nAbility to sit for an extended period.\nAbility to frequently and accurately communicate with employees, customers, and vendors in person, via the telephone or by email.\nNOTE: This job description is not intended to be all-inclusive. Employees may perform other related duties as requested to meet the ongoing needs of the organization.","datePosted":"2026-04-12T21:26:14.578Z","dateModified":"2026-04-12T21:26:14.578Z","hiringOrganization":{"@type":"Organization","name":"Applied Tech","sameAs":"https://jobsearcher.com"},"jobLocation":{"@type":"Place","address":{"@type":"PostalAddress","addressLocality":"Remote","addressRegion":"OR","addressCountry":"US"}},"identifier":{"@type":"PropertyValue","name":"JobSearcher","value":"f3885f25d561faf7b2dbfd05"},"url":"https://jobsearcher.com/jobs/f3885f25d561faf7b2dbfd05"}}