5 дней назад
Lead InfoSec Engineer (Vulnerability Management)
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
Текст:
TL;DR
Lead InfoSec Engineer (Vulnerability Management): Managing enterprise vulnerability programs and reducing cybersecurity risk across cloud, container, operating system, and platform environments with an accent on vulnerability scanning, threat intelligence, and remediation coordination. Focus on configuring and optimizing vulnerability scans, analyzing security threats and technical solutions, and integrating security requirements into CI/CD and the SDLC.
Location: Irvine, California, United States; remote-friendly
Company
develops data, automation, and AI solutions that help organizations make faster and clearer business decisions.
What you will do
- Manage vulnerability management projects, triage identified vulnerabilities, and track remediation through the full vulnerability lifecycle.
- Install, administer, monitor, troubleshoot, and test enterprise vulnerability scanning tools.
- Use threat intelligence and vulnerability data to identify risks and support responses to potential adversaries.
- Partner with engineering teams to monitor cloud and container infrastructure.
- Analyze security threats, technical solutions, and design decisions, while developing remediation plans for IT, Engineering, and Security stakeholders.
- Maintain scan coverage across intended assets and contribute to security policies, procedures, and process documentation.
Requirements
- Bachelor’s degree in Computer Science or a related field, or equivalent experience and training.
- 5+ years of experience in Information Security or IT, preferably in vulnerability management, offensive security, penetration testing, incident response, reverse engineering, red teaming, or consulting.
- Experience with enterprise vulnerability management platforms such as Tenable.io, Rapid7, or Qualys.
- Demonstrated success managing vulnerability programs or remediation efforts.
- Experience with Terraform, Ansible, Git, Jenkins, Docker, and Kubernetes.
- Knowledge of CI/CD practices and incorporating security requirements into the SDLC, along with strong critical-thinking and problem-solving skills.
Nice to have
- Security certifications such as CISSP.
- Knowledge of AWS, GCP, or Azure.
Culture & Benefits
- Full-time employment with benefits and perks for associates.
- Growth-mindset support throughout different career stages.
- Commitment to a diverse, equitable, and inclusive workplace.
- Employment is subject to the applicant’s ability to comply with U.S. export controls.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →
Похожие вакансии
9 дней назад
Manager, Vulnerability Operations (Cybersecurity)
124 000 - 155 000$
8 дней назад
Senior Cloud Security Engineer (AWS)
163 000 - 206 000$
5 дней назад
Senior DevOps & Security Engineer (AWS/Kubernetes)
11 дней назад
Security Engineer (AI)
95 000 - 110 000$
6 дней назад
Information Security Analyst (Cybersecurity)
9 дней назад