Career

Cybersecurity careers by domain

Explore job families and certification issuers — two ways to map credentials to your path.

Vulnerability Management

Discovers, prioritizes, and tracks remediation of security weaknesses.

Roles in this job family

  • Vulnerability Analyst

    Mid-level

    Runs scanners, validates findings, and assigns risk scores.

  • Vulnerability Management Engineer

    Senior

    Automates workflows, integrates tools, and reports to leadership.

Related certifications

CySA+

CySA+

CompTIA Cybersecurity Analyst

CompTIA

Analyst-level credential covering threat detection, vulnerability management, and security monitoring operations.

Recruiter appeal
4.4
Difficulty
Medium
Community

CASP+

CASP+

CompTIA Advanced Security Practitioner

CompTIA

Advanced technical practitioner certification for enterprise security architecture, engineering, and integration — no managerial mandate.

Recruiter appeal
4.2
Difficulty
Hard
Community

PenTest+

PenTest+

CompTIA PenTest+

CompTIA

Intermediate penetration testing certification covering planning, scanning, exploitation, and reporting.

Recruiter appeal
4.4
Difficulty
Medium
Community

Sec+

Sec+

CompTIA Security+

CompTIA

Entry-level benchmark for core security concepts: network defense, compliance, identity management, and threat mitigation.

Recruiter appeal
4.5
Difficulty
Easy
Community

GCIH

GCIH

GIAC Certified Incident Handler

GIAC / SANS

Incident handling credential focused on detecting intrusions, collecting evidence, and coordinating effective response workflows.

Recruiter appeal
4.5
Difficulty
Medium
Community

GCIA

GCIA

GIAC Certified Intrusion Analyst

GIAC / SANS

Advanced SOC and intrusion analysis certification for network traffic, IDS/IPS, and attacker technique detection.

Recruiter appeal
4.5
Difficulty
Hard
Community

SC-200

SC-200

Microsoft Security Operations Analyst

Microsoft

SOC analyst path using Microsoft Sentinel and Defender for threat detection and incident response.

Recruiter appeal
4.4
Difficulty
Medium
Community

GSEC

GSEC

GIAC Security Essentials

GIAC / SANS

Broad technical security baseline covering networking, IAM, crypto, and defense fundamentals.

Recruiter appeal
4.4
Difficulty
Medium
Community

CCNP Sec

CCNP Sec

Cisco Certified Network Professional Security

Cisco

Network security professional track covering firewalls, VPNs, identity, automation, and secure network architecture on Cisco stacks.

Recruiter appeal
4.3
Difficulty
Hard
Community

SecurityX

SecurityX

CompTIA SecurityX

CompTIA

Advanced practitioner certification (CAS-004) for senior security architects — technical depth beyond CASP+ in enterprise environments.

Recruiter appeal
4.3
Difficulty
Hard
Community

CCFA

CCFA

CrowdStrike Certified Falcon Administrator

CrowdStrike

Validates deployment and administration of the CrowdStrike Falcon platform: sensors, prevention policies, detection tuning, and operational response workflows. Common for SOC and endpoint security teams standardizing on Falcon.

Recruiter appeal
4.3
Difficulty
Medium
Community

BTL1

BTL1

Blue Team Level 1

Security Blue Team

Practical blue-team certification focused on log analysis, SIEM workflows, and incident triage for SOC analysts.

Recruiter appeal
4.2
Difficulty
Easy
Community

CSLS

CSLS

Certified Stormshield Log Supervisor

Stormshield

Certification sur Stormshield Log Supervisor (SLS) : collecte de logs SNS, tableaux de bord, rapports, règles d'alarme et investigation SOC. Prérequis CSNA. Complète le parcours défensif Stormshield aux côtés de CSNE.

Recruiter appeal
4.2
Difficulty
Medium
Community

SSCP

SSCP

Systems Security Certified Practitioner

(ISC)²

Hands-on security operations certification spanning access controls, incident response, and network monitoring.

Recruiter appeal
4.1
Difficulty
Medium
Community

C)IHE

C)IHE

Mile2 Certified Incident Handling Engineer

Mile2

Mile2 Certified Incident Handling Engineer — professional certification on the Paul Jerimy security certification roadmap.

Recruiter appeal
4.0
Difficulty
Hard
Community

eCIR

eCIR

eLearnSecurity Certified Incident Responder

Ine

eLearnSecurity Certified Incident Responder — professional certification on the Paul Jerimy security certification roadmap.

Recruiter appeal
4.0
Difficulty
Hard
Community

GEIR

GEIR

GIAC Enterprise Incident Response

GIAC

GIAC Enterprise Incident Response — professional certification on the Paul Jerimy security certification roadmap.

Recruiter appeal
4.0
Difficulty
Hard
Community

ACE

ACE

AccessData Certified Examiner

Accessdata

AccessData Certified Examiner — professional certification on the Paul Jerimy security certification roadmap.

Recruiter appeal
4.0
Difficulty
Hard
Community

BTL2

BTL2

Security Blue Team Level 2

Securityblue

Security Blue Team Level 2 — professional certification on the Paul Jerimy security certification roadmap.

Recruiter appeal
4.0
Difficulty
Hard
Community

C)DRE

C)DRE

Mile2 Certified Disaster Recovery Engineer

Mile2

Mile2 Certified Disaster Recovery Engineer — professional certification on the Paul Jerimy security certification roadmap.

Recruiter appeal
4.0
Difficulty
Hard
Community

Learning resources