×
Register Here to Apply for Jobs or Post Jobs. X

Vulnerability Management Configuration Assurance Analyst , MA, Springfield

Job in Springfield, Hampden County, Massachusetts, 01119, USA
Listing for: Rose International
Full Time position
Listed on 2026-06-08
Job specializations:
  • IT/Tech
    Cybersecurity, Information Security, Data Security
Job Description & How to Apply Below
Position: Vulnerability Management Configuration Assurance Analyst Jobs in USA, MA, Springfield | Rose International Job
Required

Education:
  • Bachelor's degree

    Required Qualifications / Skills /

    Experience:
  • Hands-on 5 years of experience with enterprise vulnerability management tools such as Qualys, Wiz, Tenable, Rapid7, or similar platforms
  • Experience identifying, assessing, prioritizing, and tracking vulnerabilities across endpoints, servers, cloud environments, and hybrid infrastructure
  • Strong understanding of CVSS scoring, exploitability analysis, threat intelligence, and risk-based vulnerability prioritization
  • Experience assessing and validating secure configurations against industry standards and frameworks
  • Experience integrating vulnerability and configuration management data into SIEM, GRC, and ticketing platforms
  • Knowledge of security frameworks including CIS, NIST, ISO, and PCI-DSS
  • Experience working with cloud platforms, including AWS, Azure, and/or GCP
  • Strong analytical, problem-solving, and risk assessment capabilities
  • Experience developing executive and technical security reporting

    Preferred Qualifications / Skills /

    Experience:
  • Experience with container security and hybrid infrastructure environments
  • Experience creating dashboards and visualizations using tools such as Tableau
  • Experience working within enterprise security operations, governance, risk, and compliance environments

    Vulnerability Management & Configuration Assurance Analyst Overview:
  • The Vulnerability Management and Configuration Assurance (VMCA) Analyst is responsible for identifying, assessing, and reducing cyber risk across enterprise environments through effective vulnerability management and configuration assurance practices
  • This role drives visibility into security vulnerabilities and configuration weaknesses across on-premises, cloud, and hybrid environments
  • The analyst leverages enterprise security tools, analytics, and reporting capabilities to assess vulnerabilities, monitor compliance with secure configuration standards, and provide actionable remediation guidance
  • Responsibilities include analyzing vulnerability scan results, prioritizing remediation activities based on risk and exploitability, validating secure configurations, and implementing compensating controls when required
  • The role partners closely with Infrastructure, Cloud, Engineering, Security, and Business Information Security stakeholders to improve overall security posture
  • The analyst supports governance, audit readiness, executive reporting, and continuous security improvement initiatives through accurate risk metrics, compliance reporting, and remediation tracking
  • Success in this position requires strong analytical skills, risk-based decision-making, collaboration, operational ownership, and the ability to communicate complex security risks to both technical and executive audiences

    Job Duties:
  • Perform vulnerability assessments across on-premises, cloud, and hybrid environments
  • Analyze vulnerability scan results and prioritize remediation efforts based on risk, exploitability, and business impact
  • Assess and validate secure configuration standards across enterprise platforms and technologies
  • Monitor configuration compliance and identify security gaps or misconfigurations
  • Implement and recommend compensating controls where remediation cannot be immediately completed
  • Develop risk metrics, dashboards, and executive reporting related to vulnerability management and configuration assurance
  • Collaborate with Infrastructure, Cloud, Engineering, Security, and Business Information Security teams to drive remediation activities
  • Integrate vulnerability and configuration data into SIEM, GRC, ticketing, and governance platforms
  • Support audit readiness, compliance assessments, and security governance initiatives
  • Identify trends, anomalies, and risk concentrations through data analysis
  • Provide actionable recommendations to improve security posture and control effectiveness
  • Continuously improve vulnerability management and configuration assurance processes

    Specific Details to Call Attention To:
  • Strong hands-on experience with vulnerability management platforms such as Qualys, Wiz, Tenable, Rapid7, or similar tools is required
  • Must have experience performing risk-based vulnerability analysis using CVSS scoring,…
  • To View & Apply for jobs on this site that accept applications from your location or country, tap the button below to make a Search.
    (If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
     
     
     
    Search for further Jobs Here:
    (Try combinations for better Results! Or enter less keywords for broader Results)
    Location
    Increase/decrease your Search Radius (miles)
    0
    200
    Filters
    Education Level
    Experience Level (years)
    Posted in last:
    Salary