Security Vulnerability Analyst
US - VA - Remote
Full time
Job Description
Stride is seeking a Security Vulnerability Analyst professional to drive the technical execution and maturity of our vulnerability management function within the Security Operations team. This is a hands-on technical role, focused on overseeing vulnerability scanning, technical assessments, and remediation tracking across Stride’s AWS, Azure, and SaaS environments. The role collaborates closely with Engineering, AppSec, DevOps, and Infrastructure teams to ensure effective risk reduction through secure practices and data-driven remediation.
ESSENTIAL FUNCTIONS: Reasonable accommodations may be made to enable individuals with disabilities to perform the essential duties.
- Lead/Assist vulnerability management operations across all cloud (AWS/Azure) and SaaS environments.
- Own the configuration, tuning, and operational use of vulnerability management tooling (Tenable One or equivalent).
- Prioritize vulnerabilities using threat-based models (EPSS, CVSS, CISA KEVs), working closely with the SOC and threat intel teams.
- Serve as the primary liaison to Engineering, Infrastructure, and AppSec teams to coordinate remediation plans and validate fixes.
- Track and report remediation SLAs, exceptions, and risk acceptance items.
- Provide vulnerability metrics and trends for leadership, compliance, and audit purposes (SOX, FRAPRA).
- Participate in incident response activities related to active exploitation or critical vulnerabilities.
- Develop SOPs, playbooks, and dashboards for vulnerability tracking and reporting.
- Document all vulnerability management policies, procedures, and standards and keep them update.
- Correlate vulnerability findings with threat intelligence feeds to assess real-world risk.
- Track emerging vulnerabilities (zero-day threats, CVEs) and evaluate their potential impact on the organization.
- Develop and maintain asset inventory and vulnerability baselines.
- Assist with vulnerability remediation verification and rescanning activities.
- Assist with Yearly external Pentest with Vendors.
Supervisory Responsibilities: This position has no formal supervisory responsibilities.
MINIMUM REQUIRED QUALIFICATIONS:
- Three (3) years of experience in security operations or vulnerability management
OTHER REQUIRED QUALIFICATIONS
- Hands-on experience with Tenable, Qualys, or similar vulnerability platforms in cloud-native environments.
- Deep knowledge of cloud security principles, particularly around AWS and Azure services.
- Familiarity with regulatory frameworks (NIST CSF, SOX, FRAPRA).
- Strong interpersonal and communication skills, with experience leading cross-functional remediation efforts.
- Ability to present risk findings to both technical and executive stakeholders.
- Ability to clear required background check
Certificates and Licenses: None required.
DEIRED QUALIFICATIONS:
WORK ENVIRONMENT: The work environment characteristics described here are representative of those an employee encounters while performing the essential functions of this job. Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions.
- This position is virtual and open to residents of the 50 states, D.C.
Compensation & Benefits: Stride, Inc. considers a person’s education, experience, and qualifications, as well as the position’s work location, expected quality and quantity of work, required travel (if any), external market and internal value when determining a new employee’s salary level. Salaries will differ based on these factors, the position’s level and expected contribution, and the employee’s benefits elections. Offers will typically be in the bottom half of the range.
- We anticipate the salary range to be $53,944.50- $100,000.00. The upper end of this range is not likely to be offered, as an individual’s compensation can vary based on several factors. These factors include, but are not limited to, geographic location, experience, training, education, and local market conditions. Eligible employees may receive a bonus. Stride offers a robust benefits package for eligible employees that can include health benefits, retirement contributions, and paid time off.
The above job is not intended to be an all-inclusive list of duties and standards of the position. Incumbents will follow any other instructions, and perform any other related duties, as assigned by their supervisor. All employment is “at-will” as governed by the law of the state where the employee works. It is further understood that the “at-will” nature of employment is one aspect of employment that cannot be changed except in writing and signed by an authorized officer.
Job Type
Regular
The above job is not intended to be an all-inclusive list of duties and standards of the position. Incumbents will follow any other instructions, and perform any other related duties, as assigned by their supervisor. All employment is “at-will” as governed by the law of the state where the employee works. It is further understood that the “at-will” nature of employment is one aspect of employment that cannot be changed except in writing and signed by an authorized officer.
If you are a job seeker with a disability and require a reasonable accommodation to apply for one of our jobs, you can request the appropriate accommodation by contacting stridecareers@k12.com.
Equal Opportunity Employer/Protected Veterans/Individuals with Disabilities
Stride, Inc. is an equal opportunity employer. Applicants receive consideration for employment based on merit without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability or protected veteran status, or any other basis prohibited by federal, state, or local law. Stride, Inc. complies with all legally required affirmative action obligations. Applicants will not be discriminated against because they have inquired about, discussed, or disclosed their own pay or the pay of another employee or applicant.