Vulnerability/Threat Management Analyst

Revinate•Atlanta, GA
•$95,000 - $130,000•Remote

About The Position

Revinate is the hotel data activation platform for hotels, groups, resorts, and enterprise brands. This is a remote position, and candidates must reside in the Greater Atlanta area. Revinate's security program is lean, built from the ground up, and growing, and we're looking for a Vulnerability Management Analyst to take ownership of one of its most important engines. Reporting directly to our Director of Security and based in Atlanta, you'll become the second dedicated member of the security team and the owner of our vulnerability management pipeline, from scan to ticket to fix. Your work will directly shrink the attack surface of a cloud-based hospitality SaaS platform trusted by more than 12,500 hotels. This is a defensive role at its core: you'll use offensive know-how to confirm whether findings are truly exploitable, but your success will be measured by complete scan coverage, clean prioritization, and vulnerabilities that actually get fixed. If you love building automation that turns noise into action, you'll have no shortage of meaningful work here.

Requirements

  • Hands-on, real-world experience running vulnerability management in a business environment, ideally with Tenable (experience with Qualys, Rapid7 InsightVM, or Kenna also translates).
  • Experience working in public cloud environments (AWS, Azure, or GCP), including the ability to stand up test infrastructure to validate findings.
  • Strong scripting skills for automating scan-to-ticket workflows (Python is a plus).
  • A working knowledge of offensive security techniques, at the level of PenTest+ or OSCP, sufficient to confirm whether a finding is genuinely exploitable.
  • Experience with remediation ticketing workflows (Jira) and endpoint security tooling; hands-on time with CrowdStrike Falcon Complete will make you stand out.
  • Certifications such as CompTIA CySA+ or GIAC GEVA (most valued), or Security+, GSEC, PenTest+, OSCP, or SSCP. Certifications are a plus, not a requirement, and no degree is required. Proven hands-on experience matters most to us.
  • A background in security compliance, security operations, or application security. On a lean team, the ability to wear more than one hat goes a long way.

Nice To Haves

  • Candidates must reside in the Greater Atlanta area.

Responsibilities

  • Run continuous vulnerability scanning in Tenable and Crowdstrike Falcon to make sure every asset across our public cloud environment is inventoried, covered, and assessed.
  • Prioritize findings by real-world risk, using exploitability, threat intelligence, and asset context rather than CVSS severity scores alone, so we never send teams chasing vulnerabilities that can't actually be exploited.
  • Validate high-priority findings hands-on, whether by spinning up a test virtual machine in our cloud VPC or using AI-assisted tooling to confirm exploitability in our test environments.
  • Automate the path from finding to ticket with existing tools, push validated fixes through remediation teams via our ticketing workflow (Jira), and follow up to make sure SLAs are met.
  • Help define vulnerability management standards and report on program health, and participate in the mandatory on-call rotation for security incident response alongside the Director of Security and our AI-driven SOC alert analyst.

Benefits

  • Base salary
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service