Home › Companies › Advisorgroup › Senior Vulnerability Management Analyst
Senior Vulnerability Management Analyst
Advisorgroup · Scottsdale, AZ · Hybrid · Active · Workday Recruiting
Job facts
| Field | Value |
|---|---|
| Company | Advisorgroup |
| Title | Senior Vulnerability Management Analyst |
| Normalized title | - |
| Department / team | - |
| Location | Scottsdale, AZ, United States |
| Work model | Hybrid / Hybrid |
| Employment type | Full Time |
| Salary | - |
| Status | active |
| ATS provider | Workday Recruiting |
| Posted / first seen | 2026-06-04 / 2026-06-06 |
| Changed / last seen | 2026-06-06 / 2026-06-06 |
Related slices
| Page | What it contains | Open |
|---|---|---|
| Company jobs | Active postings from Advisorgroup. | Open |
| Company breakdowns | Role, location, ATS, and work model facets for this company. | Open |
| ATS provider jobs | Active postings observed through Workday Recruiting. | Open |
| Provider filtered search | The same provider as a filtered job collection. | Open |
| City jobs | Active postings in Scottsdale. | Open |
| Work model jobs | Active Hybrid postings. | Open |
| Lifecycle events | Open, update, close, and reopen events for this posting. | Open |
| Original posting | Canonical source or apply URL captured from the ATS. | Open |
Linked records
| Company | Advisorgroup |
| Source | 2545dc73-9b80-4bb7-a53c-b936c2f18611 |
| ATS provider | Workday Recruiting |
Description
Current Employees and Contractors Apply Here Osaic Careers IT Vulnerability Opportunity in Financial Services
Senior Vulnerability Management Analyst
Location(s):
Atlanta: 2300 Windy Ridge Pkwy SE, Suite750, Atlanta, GA 30339
La Vista:12325 Port Grace Blvd, La Vista, NE 68128
Oakdale: 7755 3rd St. N, Oakdale, MN 55128
Scottsdale: 18700 N Hayden Rd, Suite 255, Scottsdale, AZ 85255
St. Petersburg: 877 Executive Center Dr. W, Suite 300, St. Petersburg, FL 33702
Osaic has returned to the office on a hybrid schedule requiring a minimum of 4 days weekly in the office. Applicants should be located at one of our hubs listed above and must be willing to work this schedule.
Role Type: Full-time, Non-Exempt
Salary: $114,000 - $160,000 per year + annual performance-based bonus
Actual compensation offered will be determined individually, based on a number of job-related factors, including location, skills, licensure, experience, and education.
Our competitive compensation is just one component of Osaic’s total compensation package. Additional benefits include health, vision, dental insurance, 401k, paid time away, volunteer days and much more. To view more details of what you can look forward to, visit our careers page: Osaic Benefits .
Summary:
We’re seeking a Senior Vulnerability Analyst to lead and mature our enterprise vulnerability programs across SDLC (secure development lifecycle), external attack surface , and internal infrastructure/applications . This role drives end‑to‑end vulnerability lifecycle management, from discovery and risk triage to remediation validation and program metrics, while partnering closely with Engineering, Product, Cloud/SRE, and IT. You’ll also coordinate penetration testing readiness , evidence collection, and remediation plans, and help embed security into the development workflow. The ideal candidate has strong application development experience, practical threat modeling skills, and a pragmatic approach to risk.
Education Requirements:
Bachelor’s degree preferred, high school diploma (or equivalent) in combination with significant experience will be considered in lieu of degree. Minimum of high school diploma or equivalent is required.
Responsibilities:
Lead vulnerability prioritization using CVSS, KEV, exploit intel, and asset criticality. Partner with engineering and application teams to remove remediation blockers. Own complex vulnerability investigations and coordinate cross-team resolution. Mentor junior analysts and help improve internal processes. Provide remediation guidance and secure configuration recommendations. Help with pen test pre‑work : scope definition, rules of engagement, asset inventories, credential/test data coordination, and stakeholder comms. Manage findings intake , severity validation, and remediation plans with accountable owners; track to closure and report to leadership. Lead lessons learned and control improvements to reduce recurring issues and improve test efficiency. Lead continuous reduction of external attack surface : internet‑exposed services, DNS, certificates, cloud perimeters, API endpoints, and third‑party exposures. Partner with Cloud, SRE, and Networking to harden configurations , minimize unknown/legacy exposures, and validate fixes. Partner with engineering to mature SAST/DAST/IAST/OSS/SBOM practices, secure build pipelines, and implement “shift‑left” controls (pre‑commit, PR gates, CI quality bars). Guide threat modeling , security requirements, and secure coding practices ; advise on remediation patterns and safer libraries/frameworks. Review architecture and code for high‑risk components (authN/Z, crypto, secrets handling, supply chain, multi‑tenant boundaries). All other duties as assigned.
Basic Requirements:
Deep technical/domain expertise and ability to lead initiatives. Strong understanding of OS, cloud environments, and vulnerability lifecycles. Partner with Detection & Response to ensure logging, alerting, and containment strategies account for known weaknesses. Target certifications: CISSP, GIAC (GSEC/GCIA/GCIH), CCSP.
Preferred Requirements:
Experience with KEV catalog operationalization and threat-intel integrations. Knowledge of automation platforms Current Employees and Contractors Apply Here
Full job record
| Job ID | 10fd98ccd3e23037e41cca1877fa0fefb1d9e3a7 |
| Org ID | a8f481bd-363e-47bf-a5b9-96181f7520e7 |
| Source ID | 2545dc73-9b80-4bb7-a53c-b936c2f18611 |
| Board ID | 2545dc73-9b80-4bb7-a53c-b936c2f18611 |
| Provider | workday |
| Provider Job Key | /job/Scottsdale-AZ/Senior-Vulnerability-Management-Analyst_R0005025 |
| Title | Senior Vulnerability Management Analyst |
| Normalized Title | — |
| Status | active |
| Active | yes |
| Location Text | Scottsdale, AZ |
| Department | — |
| Team | — |
| Employment Type | full_time |
| Workplace Type | hybrid |
| Remote Policy | hybrid |
| Country | United States |
| Region | AZ |
| City | Scottsdale |
| Salary Raw | — |
| Salary Min | — |
| Salary Max | — |
| Salary Currency | — |
| Salary Period | — |
| Source URL | https://advisorgroup.wd1.myworkdayjobs.com/Advisor_Career_Site/job/Scottsdale-AZ/Senior-Vulnerability-Management-Analyst_R0005025 |
| Apply URL | https://advisorgroup.wd1.myworkdayjobs.com/Advisor_Career_Site/job/Scottsdale-AZ/Senior-Vulnerability-Management-Analyst_R0005025 |
| First Seen At | 2026-06-06 09:44:27Z |
| Last Seen At | 2026-06-06 19:41:18Z |
| Last Checked At | 2026-06-06 19:41:18Z |
| Last Changed At | 2026-06-06 09:44:27Z |
| Inactive At | — |
| Source Posted At | 2026-06-04 00:00:00Z |
| Source Updated At | — |
| Raw Payload Uri | s3://job-postings-prod-raw-590183727216/raw/provider=workday/board=advisorgroup.wd1.myworkdayjobs.com|advisorgroup|Advisor_Career_Site/date=2026-06-06/2026-06-06T19-41-09-875Z-5f0a91205d3e9e8d1750331e7b0c3436e03c6d1376a1529eab8de25319e02c14.json |
Event Fields
{
"content_hash": "24fbfcb1c3492c845dddb40142f744c2c72f3cc9a57cadf53a9a5f6dcda97f42",
"source_hash": "4f59e46e0dc7429830b1ba424c0fa5b3de148ed5bb0107e1a7daf470413844dd",
"last_changed_at": "2026-06-06T09:44:27.284Z",
"active_status": "active"
}Parsed Structured
{
"language": "en",
"location": {
"raw": "Scottsdale, AZ",
"city": "Scottsdale",
"region": "AZ",
"country": "United States",
"is_remote": false,
"confidence": 0.8
},
"salary_max": null,
"salary_min": null,
"inferred_at": "2026-06-06T19:41:18.435Z",
"launch_scope": {
"reason": "workday_production_catalog",
"included": true,
"location": {
"raw": "Scottsdale, AZ",
"city": "Scottsdale",
"region": "AZ",
"country": "United States",
"is_remote": false,
"confidence": 0.8
},
"countries": [
"United States"
]
},
"remote_policy": "hybrid",
"salary_period": null,
"workplace_type": "hybrid",
"salary_currency": null
}Extensions
{}Native Structured
{
"list_job": {
"title": "Senior Vulnerability Management Analyst",
"postedOn": "Posted 2 Days Ago",
"bulletFields": [
"R0005025"
],
"externalPath": "/job/Scottsdale-AZ/Senior-Vulnerability-Management-Analyst_R0005025",
"locationsText": "Scottsdale, AZ"
},
"detail_errors": [],
"detail_job_posting_info": {
"id": "62b0c56709491001aee13274464a0000",
"title": "Senior Vulnerability Management Analyst",
"posted": true,
"country": {
"id": "bc33aa3152ec42d4995f4791a106ed09",
"descriptor": "United States of America"
},
"canApply": true,
"jobReqId": "R0005025",
"location": "Scottsdale, AZ",
"postedOn": "Posted 2 Days Ago",
"timeType": "Full time",
"logoImage": {
"alt": "Osaic",
"src": "/wday/cxs/advisorgroup/Advisor_Career_Site/sidebarimage/fdc1f50d9c2e100158866e3657b90000"
},
"startDate": "2026-06-04",
"externalUrl": "https://advisorgroup.wd1.myworkdayjobs.com/Advisor_Career_Site/job/Scottsdale-AZ/Senior-Vulnerability-Management-Analyst_R0005025",
"jobPostingId": "Senior-Vulnerability-Management-Analyst_R0005025",
"jobDescription": "<h1><a href=\"https://www.myworkday.com/advisorgroup/d/home.htmld\" target=\"_blank\"><span class=\"emphasis-3\">Current Employees and Contractors Apply Here</span></a></h1><h1>Osaic Careers</h1><p><b>IT Vulnerability Opportunity in Financial Services </b></p><p><b>Senior Vulnerability Management Analyst </b></p><p></p><p><b>Location(s): </b></p><p>Atlanta: 2300 Windy Ridge Pkwy SE, Suite750, Atlanta, GA 30339</p><p>La Vista:12325 Port Grace Blvd, La Vista, NE 68128</p><p>Oakdale: 7755 3rd St. N, Oakdale, MN 55128</p><p>Scottsdale: 18700 N Hayden Rd, Suite 255, Scottsdale, AZ 85255</p><p>St. Petersburg: 877 Executive Center Dr. W, Suite 300, St. Petersburg, FL 33702</p><p></p><p>Osaic has returned to the office on a hybrid schedule requiring a minimum of 4 days weekly in the office. Applicants should be located at one of our hubs listed above and must be willing to work this schedule.</p><p></p><p><b>Role Type: </b>Full-time, Non-Exempt</p><p></p><p><b>Salary:</b> $114,000 - $160,000 per year + annual performance-based bonus</p><p>Actual compensation offered will be determined individually, based on a number of job-related factors, including location, skills, licensure, experience, and education.</p><p></p><p>Our competitive compensation is just one component of Osaic’s total compensation package. Additional benefits include health, vision, dental insurance, 401k, paid time away, volunteer days and much more. To view more details of what you can look forward to, visit our careers page: <a href=\"https://careers.osaic.com/Creative/Benefits\" target=\"_blank\">Osaic Benefits</a>.</p><p></p><p><b>Summary: </b></p><p></p><p>We’re seeking a <b>Senior Vulnerability Analyst</b> to lead and mature our enterprise vulnerability programs across <b>SDLC (secure development lifecycle), external attack surface</b>, and <b>internal infrastructure/applications</b>. This role drives end‑to‑end vulnerability lifecycle management, from discovery and risk triage to remediation validation and program metrics, while partnering closely with Engineering, Product, Cloud/SRE, and IT. You’ll also coordinate <b>penetration testing readiness</b>, evidence collection, and remediation plans, and help embed security into the development workflow. The ideal candidate has strong application development experience, practical threat modeling skills, and a pragmatic approach to risk.</p><p></p><p><b>Education Requirements: </b></p><p>Bachelor’s degree preferred, high school diploma (or equivalent) in combination with significant experience will be considered in lieu of degree. Minimum of high school diploma or equivalent is required.</p><p></p><p><b>Responsibilities: </b></p><ul><li>Lead vulnerability prioritization using CVSS, KEV, exploit intel, and asset criticality.</li><li>Partner with engineering and application teams to remove remediation blockers.</li><li>Own complex vulnerability investigations and coordinate cross-team resolution.</li><li>Mentor junior analysts and help improve internal processes.</li><li>Provide remediation guidance and secure configuration recommendations.</li><li>Help with <b>pen test pre‑work</b>: scope definition, rules of engagement, asset inventories, credential/test data coordination, and stakeholder comms.</li><li>Manage <b>findings intake</b>, severity validation, and <b>remediation plans</b> with accountable owners; track to closure and report to leadership.</li><li>Lead <b>lessons learned</b> and control improvements to reduce recurring issues and improve test efficiency.</li><li>Lead continuous reduction of <b>external attack surface</b>: internet‑exposed services, DNS, certificates, cloud perimeters, API endpoints, and third‑party exposures.</li><li>Partner with Cloud, SRE, and Networking to <b>harden configurations</b>, minimize unknown/legacy exposures, and validate fixes.</li><li>Partner with engineering to mature <b>SAST/DAST/IAST/OSS/SBOM</b> practices, secure build pipelines, and implement <b>“shift‑left”</b> controls (pre‑commit, PR gates, CI quality bars).</li><li>Guide <b>threat modeling</b>, security requirements, and <b>secure coding practices</b>; advise on remediation patterns and safer libraries/frameworks.</li><li>Review <b>architecture and code</b> for high‑risk components (authN/Z, crypto, secrets handling, supply chain, multi‑tenant boundaries).</li><li>All other duties as assigned.</li></ul><p></p><p></p><p><b>Basic Requirements: </b></p><ul><li>Deep technical/domain expertise and ability to lead initiatives.</li><li>Strong understanding of OS, cloud environments, and vulnerability lifecycles.</li><li>Partner with Detection & Response to ensure <b>logging, alerting, and containment</b> strategies account for known weaknesses.</li><li>Target certifications: CISSP, GIAC (GSEC/GCIA/GCIH), CCSP.</li></ul><p></p><p><b>Preferred Requirements: </b></p><ul><li>Experience with KEV catalog operationalization and threat-intel integrations.</li><li>Knowledge of automation platforms</li></ul><h1><a href=\"https://www.myworkday.com/advisorgroup/d/home.htmld\" target=\"_blank\"><span class=\"emphasis-3\">Current Employees and Contractors Apply Here</span></a></h1>",
"questionnaireId": "4cc2c5b4901501010c5761891dbd0000",
"jobPostingSiteId": "Advisor_Career_Site",
"includeResumeParsing": true,
"jobRequisitionLocation": {
"country": {
"id": "bc33aa3152ec42d4995f4791a106ed09",
"alpha2Code": "US",
"descriptor": "United States of America"
},
"descriptor": "Scottsdale, AZ"
}
}
}Get this page with API
Rendered from the bluedoor Job Postings API. Reproduce it:
GET https://api.bluedoor.sh/job-postings/v1/jobs/10fd98ccd3e23037e41cca1877fa0fefb1d9e3a7?include=descriptionJSONGET https://api.bluedoor.sh/job-postings/v1/orgs/a8f481bd-363e-47bf-a5b9-96181f7520e7JSONGET https://api.bluedoor.sh/job-postings/v1/sources/2545dc73-9b80-4bb7-a53c-b936c2f18611JSONGET https://api.bluedoor.sh/job-postings/v1/jobs/10fd98ccd3e23037e41cca1877fa0fefb1d9e3a7/eventsJSON