Назад
Company hidden
20 часов назад

Lead Engineer, Vulnerability & Exposure Management (Cybersecurity)

Формат работы
remote (только Brazil)
Тип работы
fulltime
Грейд
lead
Английский
b2
Страна
Brazil
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Lead Engineer, Vulnerability & Exposure Management (Cybersecurity): Engineering vulnerability and exposure data pipelines with an accent on scan coverage, data normalization, risk-based prioritization, and workflow automation. Focus on building Python, SQL, and API integrations, implementing EPSS and CISA KEV prioritization, and sustaining reliable ticketing and reporting services.

Location: Remote in Brazil

Company

hirify.global is a global science and technology company operating across life sciences, diagnostics, and biotechnology.

What you will do

  • Engineer vulnerability and exposure scanning, ingestion, normalization, prioritization, ticketing, and reporting pipelines.
  • Build Python, SQL, and REST API automation for prioritization, SLA logic, exception handling, and validation.
  • Implement and refine the CTEM operating model in collaboration with the Global Lead.
  • Develop pipeline runbooks, data-quality checks, and service-ownership mappings.
  • Integrate vulnerability workflows with cloud, endpoint, application, and remediation teams.

Requirements

  • 5+ years of experience in vulnerability management or security engineering.
  • Hands-on experience with vulnerability and exposure tools such as Tenable, Qualys, Rapid7, CrowdStrike FEM, or Defender.
  • Experience with scan coverage, authenticated scanning, and vulnerability data normalization.
  • Experience building Python, SQL, and REST API integrations across vulnerability, ticketing, cloud, and endpoint data sources.
  • Experience applying risk-based prioritization using EPSS, CISA KEV, threat intelligence, and asset context.
  • Relevant certification such as CrowdStrike CCFA, Tenable VM Specialist, Qualys VMDR, GIAC GSEC/GMON, or a cloud security certification.

Nice to have

  • Bachelor's degree in Cybersecurity, Computer Science, Information Technology, Engineering, or a related field.
  • Experience with attack surface management, cloud posture, or container/Kubernetes exposure.
  • Experience with patch and remediation orchestration tools such as BigFix, SCCM/MECM, or Red Hat Satellite.

Culture & Benefits

  • Remote role within hirify.global Information Security in Brazil.
  • Culture focused on continuous improvement, belonging, and internal career development.
  • Opportunity to contribute to science, diagnostics, biotechnology, and life sciences initiatives.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →