North Logo

North

Vulnerability Management Analyst

Posted 13 Days Ago
Remote
Hiring Remotely in US
70K-110K Annually
Mid level
Remote
Hiring Remotely in US
70K-110K Annually
Mid level
Identify, analyze, prioritize, and track vulnerabilities across cloud, container, data center, network, and endpoint environments using Wiz and Tenable. Partner with engineering, IT, cloud infrastructure, and operations teams to advocate remediation, monitor SLAs, report risk metrics, support PCI-DSS audits, and improve vulnerability management processes and automation.
The summary above was generated by AI

Vulnerability Management Analyst

North - Remote

North is seeking a detail-oriented Vulnerability Management Analyst to join our Cybersecurity team. In this role, you will help protect our payment processing platform, cloud environments, and internal infrastructure by identifying, analyzing, and prioritizing technical vulnerabilities.

Working closely with engineering, cloud infrastructure, and IT teams, you will leverage enterprise security tools (such as Wiz and Tenable) to track risk and diplomatically advocate for timely remediation. This role is ideal for an early-to-mid career cybersecurity professional with strong analytical and interpersonal skills who enjoys turning security data into actionable fixes.

What you'll do:

  • Vulnerability Identification & Scanning: Operate, maintain, and assist in configuring scanning platforms (Wiz, Tenable) across cloud assets, containers, data centers, network infrastructure, and endpoints.

  • Analysis & Prioritization: Review vulnerability data, reduce false positives, and prioritize risks based on business context, CVSS scores, threat intelligence, and payment industry risk factors.

  • Remediation Advocacy: Act as a liaison to engineering, IT, and operations teams to champion patching initiatives, explain technical risks, and follow up on overdue SLAs.

  • Tracking & Metrics: Track remediation progress, communicate risk posture to leadership, and maintain dashboards, reports, and key performance indicators (KPIs).

  • Compliance Support: Support security audit and compliance efforts (such as PCI-DSS) by providing evidence of regular vulnerability scanning and remediation.

  • Continuous Improvement: Refine vulnerability management processes, playbooks, and automated workflows to reduce exposure windows.

What we need from you: 

Education and Experience

  • Bachelor’s degree in Cybersecurity, Computer Science, Information Technology, or a related technical field (or equivalent practical experience).

  • 3 years of hands-on experience in cybersecurity, IT, system administration, or risk management.

  • Hands-on experience operating enterprise scanning platforms, specifically Wiz and Tenable.

Knowledge, Skills & Abilities

  • Core Vulnerability Concepts: Solid understanding of the vulnerability management lifecycle, Common Vulnerabilities and Exposures (CVEs), CVSS scoring, and common attack vectors and vulnerability exploitation.

  • Tooling Familiarity: Exposure to enterprise scanner technologies (Tenable) and cloud security/exposure management tools (Wiz).

  • Analytical Mindset: Ability to analyze large datasets of vulnerability scans, identify trends, and translate raw data into clear, actionable reporting.

  • Interpersonal & Communication Skills: Excellent verbal and written communication skills while building relationships across teams and encouraging patch completion.

  • Technical Foundations: Understanding of core OS concepts (Windows, Linux), cloud security fundamentals (AWS, Azure, or GCP), and enterprise networking.

How to stand out (Preferred):

  • 5 years of relevant or hands-on experience in cybersecurity, IT, system administration, or risk management

  • Experience within fintech, payment processing, or another highly regulated, fast-paced environment.

  • Familiarity with payment industry standards and security frameworks (PCI-DSS, NIST Cybersecurity Framework, CIS Benchmarks).

  • Experience using ticketing and project tracking tools such as Jira to track vulnerability work items.

  • Basic scripting knowledge (Python, PowerShell, Bash, or API queries) to automate reporting or routine tasks. 

  • Certifications such as CompTIA Security+, Network+, or eJPT are a plus, but not required.

Salary range: $70,000-$110,000

Pay within this range varies by work location and on job-related knowledge, skills, and experience. We look forward to discussing your salary expectations and our full total rewards offerings throughout the interview process.

Please note: North is a US based company and no sponsorship is available for this position at this time.

Who we are: 

North, and our family of companies, are committed to helping entrepreneurs grow their businesses. As an end-to-end payment solutions company, we provide everything business owners need to get paid, whether they serve customers in a physical storefront, online, or both. We pride ourselves on being large enough to offer customized solutions to our enterprise-level clients while remaining agile enough to take an award-winning, hands-on approach to personal service that our merchants won’t find anywhere else.

Let’s go North, together! Our most important resource is our people. Join our diverse team of innovators and do-ers and make your mark on the future of payments technology. We're proud to offer benefits that help our team members further their overall well-being through unique initiatives that are both personally and professionally fulfilling. 

At North, we celebrate diversity and create an inclusive environment for everyone. We are an equal opportunity employer.

To learn more about North, and our family of companies, visit our website: north.com

Similar Jobs

An Hour Ago
Remote
United States
Senior level
Senior level
Artificial Intelligence • Cloud • Information Technology • Cybersecurity
Conduct vulnerability scans across enterprise, cloud, and on-premises environments; validate findings and patch levels; assess exploitability and risk; prioritize remediation; maintain POA&Ms; coordinate with technical teams; support RMF continuous monitoring, STIG compliance, reporting, and incident response. The role requires active Top Secret clearance, cybersecurity experience, ACAS/Nessus expertise, and Security+, ACAS, and CEH certifications.
Top Skills: AcasAWSCmdbCvssDod RmfNessusPoa&MPowershellPythonSIEMStigs
A Minute Ago
In-Office or Remote
9 Locations
150K-170K Annually
Senior level
150K-170K Annually
Senior level
Productivity • Software • App development • Automation
Manage and close complex B2B software license opportunities across LATAM. Responsibilities include qualifying inbound leads, prospecting, conducting consultative sales with business and technical executives, collaborating with Solution Engineers, analyzing competition, proposing solutions, managing Salesforce pipeline, and achieving sales quotas. The role requires fluent English and Spanish, strong negotiation and presentation skills, and light travel to conferences and prospect meetings.
Top Skills: DoolyLinkedin Sales NavigatorOutreachSalesforce CRMSoftware Development Kits (Sdks)Zoominfo
5 Minutes Ago
Remote
United States
177K-283K Annually
Expert/Leader
177K-283K Annually
Expert/Leader
Cloud • Fintech • Food • Information Technology • Software • Hospitality
Leads Enterprise Customer Success for Toast’s largest global customers, owning retention, expansion, revenue outcomes, customer health, and escalations. Builds and coaches managers and CSMs, designs scalable international coverage models, establishes operating cadences, and develops executive relationships with complex enterprise accounts. Partners with Sales, Care, Onboarding, and Product while using data for health scoring, risk forecasting, capacity planning, and performance management.
Top Skills: Ai-Enabled Customer Success ToolingCustomer Success PlatformsSalesforce CRM

What you need to know about the Boston Tech Scene

Boston is a powerhouse for technology innovation thanks to world-class research universities like MIT and Harvard and a robust pipeline of venture capital investment. Host to the first telephone call and one of the first general-purpose computers ever put into use, Boston is now a hub for biotechnology, robotics and artificial intelligence — though it’s also home to several B2B software giants. So it’s no surprise that the city consistently ranks among the greatest startup ecosystems in the world.

Key Facts About Boston Tech

  • Number of Tech Workers: 269,000; 9.4% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Thermo Fisher Scientific, Toast, Klaviyo, HubSpot, DraftKings
  • Key Industries: Artificial intelligence, biotechnology, robotics, software, aerospace
  • Funding Landscape: $15.7 billion in venture capital funding in 2024 (Pitchbook)
  • Notable Investors: Summit Partners, Volition Capital, Bain Capital Ventures, MassVentures, Highland Capital Partners
  • Research Centers and Universities: MIT, Harvard University, Boston College, Tufts University, Boston University, Northeastern University, Smithsonian Astrophysical Observatory, National Bureau of Economic Research, Broad Institute, Lowell Center for Space Science & Technology, National Emerging Infectious Diseases Laboratories

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account