Назад
Company hidden
5 часов назад

Lead Vulnerability Management Engineer (AI)

Формат работы
hybrid
Тип работы
fulltime
Грейд
lead
Английский
b2
Страна
US
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Lead Vulnerability Management Engineer (AI): Architecting and operating global vulnerability management systems, scanning programs, remediation workflows, and audit evidence with an accent on scalable security integrations, risk prioritization, and compliance readiness. Focus on designing AI-driven vulnerability lifecycle automation, validating exploitability, translating regulatory requirements into scanning policies, and leading large-scale remediation initiatives.

Location: Hybrid; available location is Austin, Texas, United States. An in-person interview may be required at a hirify.global office or hub at the offer stage.

Company

hirify.global operates a large global network that protects and accelerates Internet applications for customers ranging from individual bloggers to Fortune 500 companies.

What you will do

  • Serve as the primary technical lead for the Vulnerability Management team, providing architecture guidance and mentoring.
  • Design the architecture, systems, integrations, and long-term technology strategy for the global vulnerability management program.
  • Lead advanced vulnerability scanning, validate findings, filter false positives, and prioritize critical risks.
  • Collaborate with Engineering, Infrastructure, Product, and technology owners to drive remediation of complex vulnerabilities.
  • Manage the remediation backlog, track risk reduction, and report systemic security trends.
  • Design AI-driven solutions to automate the vulnerability lifecycle and operational tasks while supporting audits and compliance requirements.

Requirements

  • 5+ years of Vulnerability Management experience in a senior or lead technical capacity.
  • Experience with vulnerability scanning platforms such as Qualys, Nessus, or Rapid7 InsightVM.
  • Strong knowledge of vulnerability risk scoring, including CVSS and EPSS, and practical exploitability analysis.
  • Experience with security frameworks and compliance programs such as SOC 2, NIST, PCI-DSS, ISO 27001, or FedRAMP.
  • Experience using AI to develop and manage complex workflows and applications.
  • Ability to translate compliance requirements into technical scanning configurations, remediation SLAs, and audit evidence.

Nice to have

  • Python or another scripting language for automation.
  • Experience with AI development tools such as Opencode or Windsurf.
  • Experience with JIRA and infrastructure penetration-testing tools.
  • Bachelor's degree in Computer Science or Information Security, or relevant security certifications.

Culture & Benefits

  • Flexible paid time off covering vacation and sick leave.
  • Medical, dental, vision, flexible spending, commuter, fertility, family-forming, and mental health benefits.
  • Short- and long-term disability, life and accident insurance, 401(k), and employee stock participation plans.
  • Leave programs covering parental, pregnancy health, medical, and bereavement leave.
  • Global travel medical insurance and participation in equity programs.
  • Occasional on-call availability outside standard working hours may be required.

Hiring process

  • Candidates progressing to the offer stage may be asked to attend an in-person interview at a hirify.global office or hub.
  • Offers may depend on authorization to access technology controlled under U.S. export laws without sponsorship for an export license.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →