Vulnerability Scan Analyst

Xtreme Inc
United States
about 1 month ago
Apply on www.indeed.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Experienced
Experience required
3 years minimum
Working hours
Regular working hours
Job source

Tech stack

Open Source Technology Comptia Pentest+ CE Software Vulnerability Management Web Applications Nessus Network Server Qualys Vulnerability Analysis

Job description

Runs and analyzes automated vulnerability scans across servers, workstations, web applications, and general devices, then validates, filters, and prioritizes results into actionable, management-ready findings., * Configure and run vulnerability scanning tools without causing system disruption or service degradation.

  • Validate scan results, eliminate false positives, and prioritize critical/high/moderate findings.
  • Produce both filtered curated reports and raw/unfiltered native scan output as required by the RFP.
  • Document whether tools used are commercial, proprietary, or open source.

Requirements

  • 3+ years of vulnerability management or scan analysis experience.
  • Proficiency with enterprise vulnerability scanners (Tenable/Nessus, Qualys, Rapid7, or equivalent).
  • Strong analytical skills for false-positive triage and risk prioritization.

Preferred Qualifications

  • GVMA, CompTIA PenTest+, or Security+ certification.
  • Experience coordinating scan timing with client IT teams to minimize operational impact.

Travel

Fully remote; must remain within the continental United States.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.indeed.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

3:50 min

Queues in TCP stacks and continuous network connections

Clemens Vasters Clemens Vasters · World Congress 2022

1:30 min

Integrating automated security and vulnerability scanning

Alexandra Petri · World Congress 2023

1:27 min

Binding executable logic into network servers

Saoussen Chaabnia Saoussen Chaabnia · Europe 2026 Virtual

2:40 min

Examining real-world zero-day exploits in enterprise applications

Sonya Moisset · World Congress 2023

2:55 min

Prioritizing system vulnerabilities and enhancing automated security posture

Raz Cohen · LIVE

13:51 min

Integrating automated recordings to fix asynchronous state bugs

Filip Hric · LIVE

Videos

See all

Related articles

See all