Назад
Company hidden
1 день назад

Staff Security Engineer (Vulnerability Management)

110 000 - 230 000$
Тип работы
fulltime
Грейд
senior
Английский
b2
Страна
US
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Staff Security Engineer (Vulnerability Management): Leading vulnerability management across a complex hybrid technology ecosystem with an accent on vulnerability research, attack surface management, automation, and security data analysis. Focus on building durable security pipelines, validating attack paths, prioritizing remediation, and improving operational reliability across infrastructure, cloud, and product engineering.

Location: Seattle, WA, United States

Annual salary: $110,000–$230,000

Company

hirify.global is a large United States auto insurer and a member of the Berkshire Hathaway family of companies.

What you will do

  • Lead the strategy, architecture, and execution of vulnerability management across a complex hybrid technology ecosystem.
  • Own the full vulnerability lifecycle, including discovery, validation, contextual risk analysis, prioritization, remediation tracking, and reporting.
  • Build durable pipelines and integrations across asset inventory, scanning, ticketing, and engineering workflows.
  • Apply vulnerability research and an offensive security mindset to identify exploitable weaknesses, attack paths, and exposure across internal and external assets.
  • Use advanced SQL and data mining to analyze security and operational datasets and generate actionable risk-reduction insights.
  • Partner with infrastructure, cloud, DevOps, product engineering, risk, governance, and incident response teams while mentoring engineers and participating in on-call rotations.

Requirements

  • 8+ years of experience in cybersecurity or security engineering.
  • Deep expertise in vulnerability management, security engineering, cloud, containers, and distributed systems.
  • Strong programming or scripting skills in Python, Go, Java, or similar languages, including automation at scale.
  • Exceptional SQL, data mining, and analytical capabilities for large security datasets.
  • Strong understanding of systems, networking, identity, and security architecture.
  • Ability to operate independently, own outcomes, and influence technical and senior stakeholders.

Nice to have

  • Experience with vulnerability research, offensive security, threat modeling, attack surface management, or exposure analysis.
  • Experience integrating security into CI/CD and DevSecOps practices.
  • Knowledge of PCI and NYDFS regulatory and control frameworks.
  • Experience with SIEM, SOAR, large-scale security data pipelines, or relevant security certifications such as CISSP or OSCP.
  • Master’s degree in computer science, cybersecurity, or equivalent practical experience.

Culture & Benefits

  • Professional development programs, mentorship, and certification assistance.
  • Inclusive and collaborative culture focused on shared success.
  • Competitive pay, benefits, and flexibility supporting employee well-being.
  • hirify.global will consider sponsoring a qualified new applicant for employment authorization.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →