
Senior Vulnerability Analyst
Horizon3.ai
full-time
Posted on:
Location Type: Remote
Location: Remote • 🇺🇸 United States
Visit company websiteSalary
💰 $195,000 - $242,000 per year
Job Level
Senior
Tech Stack
Go
About the role
- Analyze the outcomes of NodeZero pentests to understand customer exposure to vulnerabilities and threats to inform our research prioritization
- Research, document and publish mitigation and remediation techniques for the most impactful vulnerabilities affecting our customers
- Monitor public vulnerability databases and threat intelligence sources to stay current on emerging threats
- Track product coverage for emerging vulnerabilities and drive communication updates for both internal and external partners
- Write, edit and publish public facing content about vulnerabilities
- Create internal content about vulnerabilities and threat actors to support Go To Market and Marketing teams at Horizon3.ai
- Collaborate cross-functionally with attack engineers, product managers, product marketing and customer teams
Requirements
- 8+ years of experience in vulnerability analysis/research or cyber threat intelligence
- Hands-on vulnerability research exposure, e.g., triage, root-cause analysis, exploit reproduction/validation, or proof-of-concept evaluation
- Active exploitation awareness, including how zero-days/n-days propagate, PoC weaponization trends, and defender impact
- Proven ability to work with discretion, handle sensitive information, and build trusted relationships
- Vulnerability ecosystem fluency: CVE/CWE, NVD/NIST, CISA KEV, EPSS, vendor advisories, and patch/mitigation lifecycles
- Familiarity with the penetration testing industry and vulnerability management ecosystems
- Outstanding communication and interpersonal skills
Benefits
- Health insurance for you and your family
- Vision insurance
- Dental insurance
- Flexible vacation policy
- Generous parental leave
- Equity package in the form of stock options
Applicant Tracking System Keywords
Tip: use these terms in your resume and cover letter to boost ATS matches.
Hard skills
vulnerability analysiscyber threat intelligencetriageroot-cause analysisexploit reproductionproof-of-concept evaluationactive exploitation awarenesszero-daysn-daysPoC weaponization
Soft skills
discretionhandling sensitive informationbuilding trusted relationshipscommunicationinterpersonal skills