Jobs and Careers
ID

Senior Vulnerability Management Security Analyst, Information Security

IDEXX
United StatesRemotefull_timeVerifiedPosted 8 Aug 2025
💰 $140,000/yr($120,000/yr – $140,000/yr)

About the role

IDEXX is seeking a Senior Vulnerability Management Security Analyst to join our Information Security / Cybersecurity team as we develop and mature our vulnerability management program. This is a highly hands-on role, ideal for someone who is eager to roll up their sleeves and drive outcomes directly, not solely through delegation.

This position will involve both strategic planning and tactical, sometimes manual and detailed work.  From configuring scans and interpreting results to influencing enterprise remediation and lifecycle strategy, this role will be integral to shaping the foundation and future of our vulnerability management efforts.

You’ll collaborate with internal teams using industry-standard tools for vulnerability management, container security, and code analysis to build operational discipline and expand our coverage across a hybrid environment through 2026.

Join IDEXX in this exciting Vulnerability Management role where you’ll be a key player in developing and maturing vulnerability management processes!  You’ll also play a key role in evolving our vulnerability management strategy, with clear visibility into how your work strengthens our security posture.

In this role you will be responsible for….

  • Vulnerability Assessment & Analysis
    • Lead and conduct vulnerability scans across on-prem and multi-cloud environments using industry standard tools
    • Perform detailed analysis of scan results across infrastructure, applications, containers, and code.
    • Correlate vulnerabilities with threat intelligence and system context to drive accurate risk assessment for prioritization.
  • Remediation & Lifecycle Management
    • Collaborate directly with infrastructure, cloud, and development teams to prioritize and drive remediation.
    • Contribute to the creation and scaling of a structured vulnerability lifecycle management program.
    • This role is expected to engage in both planning and execution including automation of manual workflows.
  • Application & Container Security
    • Use GHAS (CodeQL) for code analysis and Aqua for container runtime and image security.
    • Work with developers to integrate tools and remediations into workflows and pipelines.
  • Threat Intel & Incident Response
    • Stay informed on emerging vulnerabilities and threat activity.
    • Assist in response efforts when exploitation of known vulnerabilities is detected.
  • Reporting & Communication
    • Produce and deliver reporting and dashboards that reflect current risk and remediation efforts.
    • Communicate technical findings clearly and effectively to both technical and non-technical stakeholders.
  • Process Improvement & Mentorship
    • Drive continuous improvement of processes, metrics, and tool configurations.
    • Mentor junior team members and provide coverage when needed across vulnerability operations.

Qualifications

  • At least 8-10 years in vulnerability management analysis, security engineering, or a related cybersecurity role.
  • Deep familiarity with sources of vulnerability information, including
    • System and container scans
    • Cloud Security Posture Management
    • Static and dynamic code analysis
  • Strong grasp of vulnerability scoring (CVSS), prioritization techniques (KVE, EPSS), and remediation workflows. 
  • You’re comfortable navigating evolving priorities and enjoy iterating toward scalable, automated solutions.
  • You are experienced in developing and maturing a vulnerability management program
  • Bachelor’s degree in cybersecurity, computer science, or a related field—or equivalent hands-on experience.
  • Adaptable and proactive, ready to engage in hands-on work where needed while continuously seeking opportunities to streamline and automate processes as the program matures.
  • Strong analytical skills and ability to distill technical information into actionable insights.
  • Scripting or automation experience (e.g., Python, Bash, PowerShell) is a plus.
  • Certifications like CISSP, GCIH, OSCP, or similar are beneficial but not required.

Location:  It is preferred that you are driving distance to our corporate location at Westbrook, Maine.  We are also open to qualified individuals in the EST or CST time zones.

What you can expect from us:

  • Base annual salary target: $120000 - $140000 (yes, we do have flexibility if needed)
  • Opportunity for annual cash bonus
  • Health / Dental / Vision Benefits Day-One
  • 5% matching 401k
  • Additional benefits including but not limited to financial support, pet insurance, mental health

Apply for this role

Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.

Apply Now →Generate Application Kit

Free account required — sign up in 30s

Company

IDEXX

View company profile →