Назад
16 часов назад

Senior Security Engineer, Vulnerability Management (AI)

Формат работы
hybrid
Тип работы
fulltime
Грейд
senior
Английский
b2
Страна
US
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Senior Security Engineer, Vulnerability Management (AI) (AI and cloud security): Scaling the vulnerability lifecycle across multi-cloud products and services with an accent on risk-based prioritization, remediation automation, and root-cause analysis. Focus on building AI-assisted security workflows, validating externally reported vulnerabilities, and developing technical controls across the software development lifecycle.

Location: Hybrid in Boston, Massachusetts, USA, or New York, New York, USA

Company

Datadog develops multi-cloud products and services and builds security capabilities across its software supply chain.

What you will do

  • Manage the vulnerability lifecycle from detection and impact assessment through risk-based prioritization, remediation, and verification.
  • Build AI-assisted tools, services, and workflows that scale vulnerability management and reduce engineering toil.
  • Automate finding enrichment, ownership identification, fix recommendations or delivery, and outcome tracking through a “PRs, not tickets” approach.
  • Analyze recurring vulnerabilities and remediation failures to identify root causes and prevent issues earlier in the SDLC.
  • Partner with security, product, platform, engineering, and compliance teams to implement scalable, risk-informed solutions.
  • Provide evidence and subject-matter expertise for SOC 2, HIPAA, PCI, FedRAMP, and ISO compliance controls.

Requirements

  • Experience identifying, prioritizing, and driving remediation of vulnerabilities in large software, cloud, or infrastructure environments.
  • Ability to solve complex technical problems independently using Go, Python, Java, or another programming language.
  • Experience with cloud-native or multi-cloud environments, containers or orchestration platforms, infrastructure as code, and modern software-delivery workflows.
  • Experience reproducing and validating externally reported vulnerabilities.
  • Ability to make risk decisions using exploitability, exposure, technical context, and business impact.
  • BS, MS, or PhD in Computer Science, Engineering, or a related scientific field, or equivalent practical experience. Eligibility for any authorizations required by US export control regulations may be required.

Culture & Benefits

  • Hybrid workplace focused on office collaboration, relationships, creativity, and work-life harmony.
  • New-hire stock equity through RSUs and an employee stock purchase plan.
  • Professional development, product training, career pathing, and mentorship through mentor and buddy programs.
  • Inclusive culture with employee resource groups, inclusion talks, and community guilds.
  • Global mental health benefits for employees and dependents aged six and older, plus competitive benefits that vary by employment country and arrangement.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →