Back to Jobs
Revinate
Engineering & Architecture 4d ago

Vulnerability Management Analyst

Revinate
GabonGabon
Full-time
Not Disclosed
Mid-Level

Job Description

Key Skills Required

Master these to land this role

Python2h 41mFree Trial ✨
Start 10-Day Free Trial
JiraCrowdStrike FalconTenableCybersecurity

Want to know if you're a match for this job?

Calculate My Match Score

What You'll Do

  • Run continuous vulnerability scanning in Tenable and CrowdStrike Falcon to ensure every asset across our public cloud environment is inventoried, covered, and assessed.

  • Prioritize findings by real-world risk, using exploitability, threat intelligence, and asset context rather than CVSS severity scores alone, so we never send teams chasing vulnerabilities that can't actually be exploited.

  • Validate high-priority findings hands-on, whether by spinning up a test virtual machine in our cloud VPC or using AI-assisted tooling to confirm exploitability in our test environments.

  • Automate the path from finding to ticket with existing tools, push validated fixes through remediation teams via our ticketing workflow (Jira), and follow up to ensure SLAs are met.

  • Help define vulnerability management standards and report on program health, and participate in the mandatory on-call rotation for security incident response alongside the Director of Security and our AI-driven SOC alert analyst.

What You'll Bring

  • Hands-on, real-world experience running vulnerability management in a business environment, ideally with Tenable (Qualys, Rapid7 InsightVM, or Kenna also translate).
  • Experience working in public cloud environments (AWS, Azure, or GCP), including the ability to stand up test infrastructure to validate findings.

  • Strong scripting skills for automating scan-to-ticket workflows (Python is a plus).

  • A working knowledge of offensive security techniques, at the level of PenTest+ or OSCP, sufficient to confirm whether a finding is genuinely exploitable.

  • Experience with remediation ticketing workflows (Jira) and endpoint security tooling; hands-on time with CrowdStrike Falcon Complete will make you stand out.

  • Certifications such as CompTIA CySA+ or GIAC GEVA (most valued), or Security+, GSEC, PenTest+, OSCP, or SSCP. Certifications are a plus, not a requirement, and no degree is required. Proven hands-on experience matters most to us.

  • A background in security compliance, security operations, or application security. On a lean team, the ability to wear more than one hat goes a long way.

Role Overview

Revinate's security program is lean, built from the ground up, and growing, and we're looking for a Vulnerability Management Analyst to take ownership of one of its most important engines. Reporting directly to our Director of Security and based in Atlanta, you'll become the second dedicated member of the security team and the owner of our vulnerability management pipeline, from scan to ticket to fix.

Your work will directly shrink the attack surface of a cloud-based hospitality SaaS platform trusted by more than 12,500 hotels. This is a defensive role at its core: you'll use offensive know-how to confirm whether findings are truly exploitable, but your success will be measured by complete scan coverage, clean prioritization, and vulnerabilities that actually get fixed. If you love building automation that turns noise into action, you'll have no shortage of meaningful work here.

Top Three Outcomes for Year One

  • Own the pipeline. Take full ownership of the vulnerability management pipeline already in place, with Tenable and CrowdStrike Falcon scan coverage across our cloud assets and no blind spots in the asset inventory.

  • Automate from finding to ticket. Build out Python automation that turns scan results into risk-prioritized, validated tickets, so remediation teams only see findings that truly matter and our existing backlog shrinks measurably.

  • Make the program measurable. Help define our vulnerability management standards and remediation SLAs, and deliver reporting that shows leadership exactly how the program is performing: coverage, time to remediate, SLA compliance, and risk trends.

How would you rate this job post?

See what other professionals think about this role.

banner

Revinate (operating at revinate.com) is a leading direct booking platform engineered for the hospitality industry. Founded in 2009 and headquartered in Palo Alto, CA, Revinate empowers hoteliers to drive more direct bookings and grow revenue by leveraging guest data at every stage of the guest journey. Unlike traditional third-party booking systems that split commissions, Revinate’s cloud-based enterprise software centralizes reservations, marketing, and revenue management into a unified platform. Under the hood, it integrates AI-driven analytics, dynamic pricing tools, and seamless omnichannel distribution to optimize direct bookings. This allows hoteliers—ranging from boutique properties to large chains—to maximize revenue by reducing reliance on OTAs (Online Travel Agencies) and fostering stronger guest relationships. Backed by $51.5 million in funding from investors like Serent Capital, Benchmark, and Tenaya Capital, Revinate powers $24 billion in direct revenue for over 12,500 hotels worldwide.

Safety First

  • Never pay for a job application.
  • Do not share sensitive bank info.
  • Verify the client before starting work.
Learn More
Vulnerability Management Analyst at Revinate | HireSkys