Vulnerability Management Analyst
Alignerr · New York, NY · 2 days ago
RemoteRemoteSalesContract
About The Role
We're partnering with the world's leading AI research labs to build smarter, more capable AI systems — and we need experienced security practitioners to make it happen. As a Vulnerability Management Analyst, you'll bring your real-world knowledge of CVEs, exposure management, and remediation workflows to help train and evaluate cutting-edge AI models. This is a unique opportunity to do meaningful work at the intersection of cybersecurity and artificial intelligence — on your own schedule, from anywhere in the world.
What You'll Do
- Analyze vulnerability reports, CVEs, and exposure scenarios across infrastructure and application environments
- Classify severity, exploitability, and business impact using industry-standard frameworks
- Evaluate and validate patching, mitigation, and remediation decision-making scenarios
- Generate, label, and review realistic security-reasoning data used to train and benchmark AI systems
- Apply your practitioner instincts to help AI understand the difference between theoretical risk and what actually matters in production
Who You Are
- 2+ years of experience in vulnerability management, security operations, or infrastructure security
- Solid working knowledge of CVEs, vulnerability scanners, patching workflows, and risk prioritization frameworks (e.g., CVSS, EPSS, SSVC)
- Understand the real-world tradeoffs security teams face when managing and prioritizing risk at scale
- An analytical and structured thinker who can communicate complex security concepts clearly
- Self-motivated and comfortable working independently on asynchronous, task-based assignments
Nice to Have
- Experience with tools like Tenable, Qualys, Rapid7, or similar vulnerability management platforms
- Familiarity with cloud infrastructure security or container environments
- Background in threat intelligence, red teaming, or security engineering
- Prior experience contributing to AI training, data labeling, or technical evaluation projects