Advisor

Advisor

Senior Vulnerability Management Analyst

Scottsdale, AZ · Senior · Full-time

Sponsorship not specified$105k-$120kDetected 30 days ago
Cloud PlatformsSite Reliability EngineeringCybersecurityPenetration TestingSupply ChainDNSCISSP

About the role

  • N, Oakdale, MN 55128 Scottsdale: 18700 N Hayden Rd, Suite 255, Scottsdale, AZ 85255 St.
  • Petersburg, FL 33702 Osaic has returned to the office on a hybrid schedule requiring a minimum of 4 days weekly in the office.
  • You'll also coordinate penetration testing readiness, evidence collection, and remediation plans, and help embed security into the development workflow.

Responsibilities

  • Lead vulnerability prioritization using CVSS, KEV, exploit intel, and asset criticality.
  • Partner with engineering and application teams to remove remediation blockers.
  • Own complex vulnerability investigations and coordinate cross-team resolution.
  • Manage findings intake, severity validation, and remediation plans with accountable owners
  • Lead lessons learned and control improvements to reduce recurring issues and improve test efficiency.
  • Lead continuous reduction of external attack surface: internet‑exposed services, DNS, certificates, cloud perimeters, API endpoints, and third‑party exposures.
  • Partner with Cloud, SRE, and Networking to harden configurations, minimize unknown/legacy exposures, and validate fixes.
  • Partner with engineering to mature SAST/DAST/IAST/OSS/SBOM practices, secure build pipelines, and implement "shift‑left" controls (pre‑commit, PR gates, CI quality bars).
  • Manage findings intake, severity validation, and remediation plans with accountable owners; track to closure and report to leadership.
  • Deep technical/domain expertise and ability to lead initiatives.

Requirements

  • Minimum of high school diploma or equivalent is required.
  • Strong understanding of OS, cloud environments, and vulnerability lifecycles.
  • Experience with KEV catalog operationalization and threat-intel integrations.
  • Knowledge of automation platforms
  • Applicants should be located at one of our hubs listed above and must be willing to work this schedule.

Nice to have

  • Preferred Requirements:
  • Bachelor's degree preferred, high school diploma (or equivalent) in combination with significant experience will be considered in lieu of degree.

Skills

  • Guide threat modeling, security requirements, and secure coding practices; advise on remediation patterns and safer libraries/frameworks.
  • Review architecture and code for high‑risk components (authN/Z, crypto, secrets handling, supply chain, multi‑tenant boundaries).
  • All other duties as assigned.

Compensation

  • $105,000 - $120,000 per year + annual performance-based bonus
  • Actual compensation offered will be determined individually, based on a number of job-related factors, including location, skills, licensure, experience, and education.
  • Our competitive compensation is just one component of Osaic's total compensation package.

Benefits

  • Additional benefits include health, vision, dental insurance, 401k, paid time away, volunteer days and much more.
  • To view more details of what you can look forward to, visit our careers page: Osaic Benefits.
  • Education Requirements:

This listing is sourced directly from Advisor's careers page and normalized into a canonical job model.