20 часов назад
Lead Engineer, Vulnerability & Exposure Management (Cybersecurity)
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
Текст:
TL;DR
Lead Engineer, Vulnerability & Exposure Management (Cybersecurity): Engineering vulnerability and exposure data pipelines with an accent on scan coverage, data normalization, risk-based prioritization, and workflow automation. Focus on building Python, SQL, and API integrations, implementing EPSS and CISA KEV prioritization, and sustaining reliable ticketing and reporting services.
Location: Remote in Brazil
Company
is a global science and technology company operating across life sciences, diagnostics, and biotechnology.
What you will do
- Engineer vulnerability and exposure scanning, ingestion, normalization, prioritization, ticketing, and reporting pipelines.
- Build Python, SQL, and REST API automation for prioritization, SLA logic, exception handling, and validation.
- Implement and refine the CTEM operating model in collaboration with the Global Lead.
- Develop pipeline runbooks, data-quality checks, and service-ownership mappings.
- Integrate vulnerability workflows with cloud, endpoint, application, and remediation teams.
Requirements
- 5+ years of experience in vulnerability management or security engineering.
- Hands-on experience with vulnerability and exposure tools such as Tenable, Qualys, Rapid7, CrowdStrike FEM, or Defender.
- Experience with scan coverage, authenticated scanning, and vulnerability data normalization.
- Experience building Python, SQL, and REST API integrations across vulnerability, ticketing, cloud, and endpoint data sources.
- Experience applying risk-based prioritization using EPSS, CISA KEV, threat intelligence, and asset context.
- Relevant certification such as CrowdStrike CCFA, Tenable VM Specialist, Qualys VMDR, GIAC GSEC/GMON, or a cloud security certification.
Nice to have
- Bachelor's degree in Cybersecurity, Computer Science, Information Technology, Engineering, or a related field.
- Experience with attack surface management, cloud posture, or container/Kubernetes exposure.
- Experience with patch and remediation orchestration tools such as BigFix, SCCM/MECM, or Red Hat Satellite.
Culture & Benefits
- Remote role within Information Security in Brazil.
- Culture focused on continuous improvement, belonging, and internal career development.
- Opportunity to contribute to science, diagnostics, biotechnology, and life sciences initiatives.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →
Похожие вакансии
3 дня назад
Vulnerability Management Engineer (Cybersecurity)
75 000 - 125 000$
3 дня назад
Vulnerability Management Engineer (Cybersecurity)
75 000 - 125 000$
3 дня назад
SOC Lead (Cybersecurity)
Endor Labs
4 дня назад
Security Engineer (Vulnerability Management)
Datadog
2 дня назад
Senior Security Engineer, Vulnerability Management (AI)
CrowdStrike
1 день назад
Product Security Engineer, Vulnerability Intelligence (Cybersecurity)
120 000 - 180 000$