> Markdown version of [/jobs/ext/599824-security-vulnerability-analyst](https://www.wearedevelopers.com/jobs/ext/599824-security-vulnerability-analyst). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Security Vulnerability Analyst - **Company:** FRSecure LLC - **Location:** Edina, MN, United States (Remote available) - **Salary:** $55,000.0 - $61,500.0 - **Contract:** Permanent contract - **Skills:** Application Lifecycle Management, Cyber Security, Microsoft Office, Open Web Application Security, Web Applications, Information Security Management System, Software Security, Information Technology, Nessus, Qualys, Vulnerability Analysis - **Published:** June 18, 2026 - **Apply:** https://www.indeed.com/viewjob?jk=183854f58880ad09 ## About the Role Do you have experience in Vuls?, Do you have a Associate's degree?, * Associate's degree in information technology, programming or information security preferred or equivalent experience, education and/or certifications * Minimum 1 year of experience in the information security industry preferred * Knowledge with network engineering, system and/or application management Foundational knowledge of networking, operating systems, and application security concepts * Exposure to vulnerability scanning tools (i.e., Nessus, Qualys, OpenVAS or similar) * Understanding of common vulnerabilities (i.e., OWASP Top 10) * Strong analytical and problem-solving skills with attention to detail * Demonstrated ability to summarize complex security findings into clear, business-relevant recommendations * Proven customer service mindset and professionalism in client interactions * Proficient with all Microsoft Office Suite products ## Description * Flexible Work Environment: We empower employees with flexible schedules and remote or hybrid work options. * Meaningful, Mission-Driven Work: Join a team that is passionate about making a real impact, with opportunities to contribute in a collaborative, values-driven environment. * Mental Health & Wellbeing Support: Access to an Employee Assistance Program (EAP) and a culture that actively promotes mental wellbeing, open communication, and sustainable work practices. * Growth & Development: Ongoing learning opportunities and support for professional development to help you grow in your career., Position Summary: The Security Vulnerability Analyst is responsible for identifying, analyzing, and communicating security weaknesses across client environments and delivering actionable recommendations to improve their overall security posture. This role combines technical vulnerability assessment expertise with strong client communication skills to translate complex findings into clear, business-relevant insights., * Perform internal, external, vulnerability scanning, and web application vulnerability tests using industry standard tools including but not limited to; Nessus, Qualys, OpenVAS * Conducting vulnerability identification and analysis to eliminate false positives and assess real-world exploitability * Developing clear, concise, and professional information security reports for both technical and non-technical audiences * Presenting vulnerability scanning and test findings, recommendations, and executive level summaries to external stakeholders * Collaborating with team members and stakeholders to define project scopes, review test results, and determine remediation steps * Partnering with internal teams to help guide remediation efforts for clients * Completing certifications and trainings as required Working Hours: This is a full-time position worked Monday-Friday each week, with the expectation that the responsibilities can be completed in 40 hours each week. Primary business hours are Monday-Friday, 8:00am-5:00pm Central Time, however this position offers flexibility in setting the working schedule best fit for you, while most importantly maintaining the expectations of the position, completing projects within defined deadlines, and participating in company and team meetings. Travel: There is minimal travel associated with this position, typically less than 5-10%. Occasional travel includes conferences or on-site client projects as needed, as well as any team or company activities. ## Related Videos - [Thinking Differently - How to Make Money from Cyber Attacks & Cheats](https://www.wearedevelopers.com/videos/745-thinking-differently-how-to-make-money-from-cyber-attacks-cheats) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Reporting Active Exploits in 24 Hours: Are You Ready for the CRA?](https://www.wearedevelopers.com/videos/100248-reporting-active-exploits-in-24-hours-are-you-ready-for-the-cra) - [Cyber Security: Small, and Large!](https://www.wearedevelopers.com/videos/259-cyber-security-small-and-large) - [Less Is More: How Lagom and Agile Can Create Harmonious Workflows](https://www.wearedevelopers.com/videos/1993-less-is-more-how-lagom-and-agile-can-create-harmonious-workflows) - [Maturity assessment for technicians or how I learned to love OWASP SAMM](https://www.wearedevelopers.com/videos/351-maturity-assessment-for-technicians-or-how-i-learned-to-love-owasp-samm) ## Related Articles - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities) - [Walking Into The Era of Supply Chain Risks](https://www.wearedevelopers.com/magazine/106-walking-into-the-era-of-supply-chain-risks) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Fully Remote Software Engineer Jobs](https://www.wearedevelopers.com/magazine/447-fully-remote-software-engineer-jobs) - [Is Software Engineering Over-Saturated?](https://www.wearedevelopers.com/magazine/418-is-software-engineering-over-saturated) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed)