To Apply for this Job Click Here
NOTE: This is a remote role aligned to Pacific Time hours.
Senior Vulnerability Management Engineer / Exposure Management Engineer
Description:
This is a hands-on engineering role, not primarily a reporting, coordination, or GRC position. The ideal candidate can own the vulnerability-management technology, understand the underlying network/infrastructure, determine actual exposure, troubleshoot scanning and visibility gaps, integrate security platforms, and drive vulnerabilities from discovery through remediation and verification.
Must Haves
- 5+ years of hands-on experience in Vulnerability Management, Security Engineering, Infrastructure Security, or Exposure Management
- Strong experience administering enterprise vulnerability management platforms, including scanners, agents, scan policies, credentials, scheduling, upgrades, and integrations
- Hands-on experience with credentialed and unauthenticated vulnerability scanning across Windows, Linux, network, cloud, and hybrid environments
- Strong understanding of TCP/IP, DNS, routing, firewalls, network segmentation, authentication, and enterprise infrastructure
- Experience identifying and troubleshooting vulnerability coverage and asset-discovery gaps
- Strong vulnerability analysis experience, including false-positive validation, exploitability/exposure analysis, risk prioritization, remediation, rescanning, and closure
- Experience integrating vulnerability/security platforms with ServiceNow and other enterprise security/infrastructure systems
- Experience with APIs and automation using Python, PowerShell, Bash, Ansible, or similar technologies
- Ability to work directly with infrastructure, network, cloud, application, database, and endpoint teams to drive vulnerabilities through remediation
- Experience working across hybrid/multi-platform environments
Highly Preferred
- Tenable Vulnerability Management, Nessus scanners/agents
- Wiz
- ServiceNow Vulnerability Response / Exposure Management
- AWS and/or Azure
- Exposure management / attack-surface analysis
- Threat intelligence and risk-based vulnerability prioritization
- SIEM, PAM, asset-management, or security-platform integrations
- Relevant cybersecurity or vulnerability-management certifications
Interested candidates may submit their resumes online or call at 310-906-4780 for further information regarding the position.
NS-VMEC-NS_1790211217
