Threat and Vulnerability Management Analyst

Posted Yesterday
Be an Early Applicant
Hollywood, FL, USA
In-Office
Mid level
Aerospace
The Role
Identifies, prioritizes, and coordinates remediation of vulnerabilities across applications, endpoints, networks, cloud, and hybrid environments. The analyst operates scanning tools, validates defenses with penetration-testing techniques, monitors sensitive-data exposure and excessive access, analyzes threat intelligence, coordinates patching and hardening, and produces technical and executive remediation dashboards. The role also documents standards, exceptions, and response playbooks while collaborating with IT, DevOps, systems administration, GRC, and compliance teams.
Summary Generated by Built In
Job Summary & Responsibilities

For 68 years, HEICO Corporation, a NYSE traded company, has thrived by serving niche segments of the aviation, defense, space and electronics industries by providing innovative and cost-saving products and services.  HEICO’s high-energy culture focuses our Team Members on providing high quality products and services to our customer base, which is made up of most of the world’s airlines, the defense industry, satellite manufacturers and other electronics companies.  Our leadership approach creates a dynamic environment that continually challenges our Team Members to grow professionally and develop in an entrepreneurially-spirited setting.

 

HEICO is seeking a Threat and Vulnerability Management Analyst for a full time direct hire on-site role in Hollywood, FL.

 

ROLE: The Threat and Vulnerability Management Analyst is responsible for identifying, prioritizing, and coordinating the remediation of security weaknesses across HEICO’s applications, endpoints, networks, and cloud environments. This role acts as a critical link between threat intelligence and the systems teams executing remediation. In addition to standard vulnerability management, this position proactively validates external defenses through security configuration testing and monitors for sensitive data exposure to ensure a robust overall data security posture.

 

 

 

ESSENTIAL DUTIES AND RESPONSIBILITIES

 

  • Scanning & Identification
    • Run regular vulnerability scans across on-premises, hybrid, and cloud environments.
    • Configure, maintain, and tune scanning tools to ensure accurate coverage and minimize false positives.
  • Data Security & Access Monitoring
    • Monitor for excessive or inappropriate access to sensitive data and verify compliance with data protection standards; collaborate with the GRC and Compliance functions to ensure findings are tracked and remediated appropriately.
    • Assess data flows and access permissions to identify over-privileged accounts and potential data exposure risks.
  • Active Defense Validation & Testing
    • Conduct targeted external penetration and security configuration tests to validate the strength of perimeter defenses; penetration testing tools are used primarily to validate vulnerability scan results rather than conduct full-scope red-team engagements.
    • Replicate common threat actor techniques to identify and document exploitable paths within the infrastructure.
  • Analysis & Prioritization
    • Triage incoming vulnerability reports, threat intelligence feeds, and security testing findings.
    • Analyze risks using severity metrics combined with internal business context to prioritize remediation efforts.
  • Remediation Coordination
    • Collaborate closely with IT, DevOps, and systems administrators to guide, track, and validate patching and configuration hardening efforts.
    • Assist in organizing patch cycles and developing response plans for zero-day vulnerabilities.
  • Reporting & Tracking
    • Generate executive and technical dashboards tracking remediation progress, vulnerability aging, and team KPIs.
    • Maintain up-to-date documentation on vulnerability standards, exception requests, and remediation playbooks.

 

SUPERVISORY RESPONSIBILITIES

 

None. This position operates as an individual contributor but is expected to collaborate extensively with technical teams across the organization.

 

Preferred Qualifications

Education:

 

    • Bachelor’s degree in Computer Science, Information Technology, Cybersecurity, or a related field; or an equivalent combination of education and professional experience.

 

Experience:

 

    • Minimum two (2) to four (4) years of dedicated experience in cybersecurity, with a strong focus on threat and vulnerability management.
    • Hands-on experience with industry-standard vulnerability scanners (such as Tenable Nessus, Qualys, or Rapid7) and cloud security platforms.
    • Direct experience performing security validation using standard penetration testing tools (such as Metasploit, OWASP ZAP, or Burp Suite) primarily to validate scan findings and confirm exploitability — not as a full-scope red-team practitioner.
    • Familiarity with Data Security Posture Management (DSPM) platforms (such as LightBeam) and data loss prevention methodologies.
    • Familiarity with risk frameworks (CVSS, MITRE ATT&CK, NIST, or OWASP).
    • Exceptional communication skills with the ability to translate complex technical vulnerabilities and configuration issues into clear, actionable business risks for non-security teams.

 

Desired Qualifications:

 

    • Proficiency with Python or PowerShell to automate reporting and scanning tasks.
    • Experience managing vulnerabilities within containerized environments (Kubernetes/Docker) and cloud-native workloads.
    • Exposure to Industrial Control Systems (ICS) or Operational Technology (OT) networks.
    • Professional certifications such as CompTIA CySA+, PenTest+, CEH, or similar.

 

PHYSICAL DEMANDS

 

Office environment with phone/computer work; low noise level except when on the manufacturing floor where noise may be medium to high. Periodic travel to operating sites may be required.

 

Skills Required

  • Bachelor's degree in Computer Science, Information Technology, Cybersecurity, or a related field, or equivalent education and professional experience
  • Two to four years of dedicated cybersecurity experience focused on threat and vulnerability management
  • Hands-on experience with vulnerability scanners such as Tenable Nessus, Qualys, or Rapid7
  • Experience with cloud security platforms
  • Experience using Metasploit, OWASP ZAP, Burp Suite, or similar penetration-testing tools to validate scan findings and exploitability
  • Familiarity with Data Security Posture Management platforms such as LightBeam
  • Familiarity with data loss prevention methodologies
  • Familiarity with CVSS, MITRE ATT&CK, NIST, or OWASP risk frameworks
  • Exceptional communication skills and ability to translate technical vulnerabilities into actionable business risks
  • Proficiency with Python or PowerShell for reporting and scanning automation
  • Experience managing vulnerabilities in Kubernetes, Docker, and cloud-native workloads
  • Exposure to Industrial Control Systems or Operational Technology networks
  • Professional certification such as CompTIA CySA+, PenTest+, CEH, or similar

HEICO Compensation & Benefits Highlights

The following summarizes recurring compensation and benefits themes identified from responses generated by popular LLMs to common candidate questions about HEICO and has not been reviewed or approved by HEICO.

  • Retirement Support The company maintains a long‑standing 401(k) program with company matching available to nearly all U.S. employees, with matches sometimes delivered in company stock. Official materials indicate broad participation and subsidiary‑level match structures.
  • Flexible Benefits The package spans medical, dental, vision, HSAs/FSAs, life and disability coverage, PTO and holidays, tuition reimbursement, an EAP, and various discounts, with multiple plan choices. Eligibility and specifics can differ by subsidiary.
  • Wellbeing & Lifestyle Benefits Wellness programs such as health fairs, screenings, flu shots, and on‑site classes appear alongside fitness, retail, and entertainment discounts. These offerings complement core coverage and support day‑to‑day wellbeing.

HEICO Insights

Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
HQ: Hollywood, FL
709 Employees
Year Founded: 1957

What We Do

HEICO Corporation, through its subsidiaries, engages in the design, manufacture, and sale of aerospace, defense, and electronics related products and services in the United States and internationally. The company operates through two segments, Flight Support Group (FSG/HEICO Aerospace) and Electronic Technologies Group (ETG). HEICO Aerospace offers jet engine and aircraft component replacement parts. It also involves in manufacturing specialty aircraft/defense related parts; offering thermal insulation blankets primarily for aerospace, defense, and commercial applications; subcontracting for original equipment manufacturers (OEMs); providing specialty parts as a subcontractor for aerospace and industrial OEMs, and the United States government. In addition, this segment distributes hydraulic, pneumatic, mechanical, and electro-mechanical components for the aviation markets.

Similar Jobs

Worth Logo Worth

Development Engineer

Artificial Intelligence • Fintech • Software • Financial Services
In-Office or Remote
4 Locations
70 Employees

Worth Logo Worth

Senior Software Engineer

Artificial Intelligence • Fintech • Software • Financial Services
In-Office or Remote
5 Locations
70 Employees

Worth Logo Worth

Senior Devops Engineer

Artificial Intelligence • Fintech • Software • Financial Services
In-Office or Remote
4 Locations
70 Employees

Worth Logo Worth

Engineering Manager

Artificial Intelligence • Fintech • Software • Financial Services
In-Office or Remote
4 Locations
70 Employees

Similar Companies Hiring

Caliola Engineering Thumbnail
Software • Machine Learning • Hardware • Defense • Data Privacy • App development • Aerospace
Colorado Springs, CO
68 Employees
Red 6 Thumbnail
Aerospace • Hardware • Software • Virtual Reality • Defense
Orlando, Florida
186 Employees
Outpost Space Thumbnail
Aerospace • Defense
US
24 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account