Coalfire

Associate, Vulnerability Assessment

Coalfire$86K — $96K *
US-AnywhereRemote in United States
Information Technology
Less than 5 years of experience
Job Overview by Ladders

Qualifications

  • Less than 2 years of vulnerability assessment experience.
  • Experience with leading vulnerability scan tools (Tenable, Qualys, Nexpose, etc.).
  • Bachelor's degree in Cybersecurity, IT, Computer Science, or equivalent experience.
  • Understanding of vulnerability identification and remediation policies and procedures.
  • In-depth knowledge of industry best practices for vulnerability management.
  • Expertise in Security Frameworks (ISO, NIST, HIPAA, etc.).
  • Relevant certification (e.g., Security+, CEH, Cloud Essentials+).

Responsibilities

  • Operate and assess implementations of vulnerability scanning tools.
  • Provide remediation recommendations for vulnerabilities.
  • Conduct manual validation of vulnerability closure.
  • Analyze scan data for reporting on vulnerabilities.
  • Validate client justifications for vendor dependencies and risk adjustments.
  • Collaborate to ensure timely delivery of vulnerability findings and analysis.

Benefits

  • Flexible work model allowing choice of remote or office work.
  • Company prioritizing connection and wellbeing culture.
  • Opportunities for participation in employee resource groups and events.
  • Paid parental leave and flexible time off policies.
  • Reimbursement for certifications and training.
  • Access to digital mental health support.
  • Comprehensive insurance options.
Full Job Description
POSITION SUMMARY

The Vulnerability Assessment Associate is responsible for identifying, analyzing, and reporting security vulnerabilities across systems, networks, and applications. This role supports the organization's cybersecurity posture by conducting regular assessments, prioritizing risks, and collaborating with technical teams to remediate identified issues or determine mitigating controls to reduce security risk severities.

What You'll Do

  • Operate, review, or assess implementations of vulnerability scanning tools (Tenable, Qualys, Nexpose, Prisma Cloud, Burp, etc.).
  • Provide recommendations on remediating host-based and web application vulnerabilities.
  • Conduct manual validation to confirm vulnerability closure.
  • Analyze raw scan data to provide reports detailing credential success, inventory validation, and open vulnerabilities.
  • Perform analysis to validate justifications provided by clients for vendor dependencies, false positives, operational requirements, and risk adjustments.
  • Collaborate with other Coalfire personnel to drive customer satisfaction and ensure timely delivery of vulnerability scan findings, analysis results, and validated justifications.


What You'll Bring

  • Less than 2 years of vulnerability assessment experience.
  • Past experience with a leading vulnerability scan tool (Tenable, Qualys, Nexpose, Prisma Cloud, Burp, etc.).
  • Bachelor's degree in related Cybersecurity, Information Technology, Computer Science, or equivalent combination of education and experience.
  • Understanding of policies, procedures, development, and implementation of vulnerability identification, scanning, analysis, remediation tactics, and reporting within an organization.
  • In depth knowledge and experience of industry best practices for vulnerability management.
  • Expertise in Security Frameworks (ISO, NIST, COBIT, HIPAA/HITECH, etc.) and regulatory requirements.
  • Certification in Security+, CCSK, AWS Cloud Practitioner, SSCP, GSEC, CEH, Cloud+, SC-900, ISCb2 CC, AZ-900, Cloud Essentials+, or GCP


Bonus Points

  • Familiarity with 3 or more frameworks such as FedRAMP, FISMA, SOC, ISO, HIPAA, HITRUST, etc.
  • Experience creating system inventories, boundary diagrams, and/or plans of actions and milestones (POA&M).
  • Familiarity with Cloud services such as AWS, GCP, & Azure.
  • Familiarity with configuration baseline standards such as CIS & STIG.
  • Experience with scripting such as Python, Bash, PowerShell.


$86,000 - $96,000 a year

The salary range listed is a reasonable estimate of the compensation range for this role based on national salary averages. The actual salary offer to the successful candidate will be based on job-related education, geographic location, training, licensure and certifications and other factors. You may also be eligible to participate in annual incentive, commission, and/or recognition programs.

At Coalfire, youll find the support you need to thrive personally and professionally. In many cases, we provide a flexible work model that empowers you to choose when and where youll work most effectively - whether youre at home or an office.

Regardless of location, youll experience a company that prioritizes connection and wellbeing and be part of a team where people care about each other and our communities. Youll have opportunities to join employee resource groups, participate in in-person and virtual events, and more. And youll enjoy competitive perks and benefits to support you and your family, like paid parental leave, flexible time off, certification and training reimbursement, digital mental health and wellbeing support membership, and comprehensive insurance options.

About Coalfire

Coalfire is a cybersecurity company that provides advisory, audit, and assessment services. The company was founded in 2001 and is headquartered in Broomfield, Colorado. Coalfire's services include compliance and risk assessments, penetration testing, and cyber engineering services. The company serves clients in various industries, including healthcare, financial services, and government.
Learn more about Coalfire
Size
1,200 employees
Industry
Founded
2001
5 Year Trend
+20%
Revenue
$140 million

Similar Jobs

More Jobs at Coalfire

More Information Technology Jobs

Find similar Associate, Vulnerability Assessment jobs: