Security Engineer - Vulnerability Management

New
RemoteFull-TimeMiddle
Salary106,300 - 221,100 USD per year
Apply NowOpens the employer's application page

Job Details

Experience
4–6 years
Required Skills
Cloud Computing

Requirements

  • 4–6 years of experience in vulnerability management or a related information security role
  • Advanced knowledge of vulnerability management tools such as Tenable Nessus, Qualys, Rapid7, or OpenVAS
  • Strong understanding of vulnerability scanning, assessment, and risk prioritization
  • Familiarity with CVSS, NIST 800-53, and OWASP Top 10
  • Understanding of OS-level vulnerabilities (Windows, Linux, macOS)
  • Knowledge of core network protocols and components (TCP/IP, DNS, firewalls, routers, switches)
  • Experience with Cloud Service Providers (AWS, Azure, GCP) and cloud-native policies
  • Experience configuring and working with Identity Providers (IdP)
  • Experience with patch management tools and processes
  • Basic understanding of compliance requirements such as FISMA and SOX
  • Familiarity with NIST CSF, ISO 27001, CIS Controls
  • Bachelor’s degree in Cybersecurity, Computer Science, Information Technology, or related field (or equivalent experience)

Responsibilities

  • Manage and mature the organization’s vulnerability management program
  • Identify, assess, and prioritize vulnerabilities across applications, networks, endpoints, cloud environments, and enterprise systems
  • Collaborate with ISSOs and Controls Assessors to capture RMF artifacts and validate security control effectiveness
  • Review, advise, and refine security Control Statements to ensure systems are hardened and accurately represented in assessment documentation
  • Support compliance with federal frameworks including NIST 800-53, FISMA, and SOX
  • Implement best practices for vulnerability management, patching, configuration hardening, and risk reduction
  • Assist in incident response activities involving exploited vulnerabilities, providing risk assessment and remediation guidance
  • Establish repeatable vulnerability workflows and processes to support ATO readiness for new systems
  • Communicate risk clearly to stakeholders and recommend effective mitigation strategies
  • Contribute to the continuous improvement of security processes and controls
View Full Description & ApplyYou'll be redirected to the employer's site
106,300 - 221,100 USD per year
Apply Now