Cyber Security Vulnerability Management Specialist (Associate)
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
TL;DR
Cyber Security Vulnerability Management Specialist (Associate): Supporting the identification, triage, and remediation of security vulnerabilities across applications and infrastructure with an accent on risk-based prioritization and secure design practices. Focus on collaborating with engineering teams to drive timely remediation and implementing security automation tools.
Location: Must be based in Salt Lake City, Utah, USA. Role requires in-office attendance Monday-Thursday, with remote flexibility on Fridays.
Salary: $70,000–$90,000
Company
is a leading financial technology platform providing access to alternative investments for the wealth management industry.
What you will do
- Triage and prioritize security vulnerabilities using risk-based approaches like CVSS and EPSS.
- Track and drive the remediation of security findings across infrastructure and applications.
- Collaborate with InfoSec and development teams to embed secure coding practices.
- Support the implementation of security automation and tooling.
- Document security workflows and guidelines for engineering teams.
Requirements
- Understanding of vulnerability management concepts and exposure management.
- Experience with secure coding practices, OWASP Top 10, and API security.
- Familiarity with scripting or basic development experience.
- Demonstrated interest in security concepts and technical problem-solving.
- Must be based in Salt Lake City, Utah, and able to work in-office Monday-Thursday.
Nice to have
- Hands-on security certifications.
Culture & Benefits
- Comprehensive benefits package including subsidized healthcare, dental, and vision.
- Employer-matched retirement plan.
- Unlimited paid time off (PTO).
- Parental leave and virtual mental health counseling.
- Equity participation for all full-time employees.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →