Security Engineer II - Cloud & Vulnerability Management
Own and improve vulnerability-management operations across cloud, on-premises, network, and endpoint environments, driving risk-based prioritization, remediation, SLA tracking, and closure validation. The role requires 3–5 years of security experience, including direct vulnerability-management responsibility, plus incident support and on-call participation.
About the job
Responsibilities
- Own recurring vulnerability scanning, triage, risk-based prioritization, remediation tracking, exception follow-up, and closure validation across hybrid infrastructure.
- Operate and improve vulnerability-management tooling, including Rapid7 InsightVM or comparable platforms.
- Use Wiz and other asset or cloud-security data to add workload, exposure, ownership, and business context to vulnerability decisions.
- Maintain visibility into servers, network devices, endpoints, cloud workloads, and other in-scope assets by reconciling scanner, endpoint, cloud, and inventory data.
- Prioritize findings using exploitability, exposure, asset criticality, business impact, compensating controls, and threat intelligence.
- Partner with Engineering, SRE, IT, and Infrastructure teams to assign owners, agree on remediation plans, manage blockers, and verify risk reduction.
- Track remediation SLAs, exceptions, recurring weaknesses, and coverage gaps; escalate material risk with clear evidence.
- Produce concise reporting for technical teams and security leadership.
- Recommend improvements to patching, configuration hygiene, asset ownership, reporting, and remediation workflows.
- Lead and support security incidents as part of an on-call rotation.
- Maintain runbooks, evidence, scan records, and remediation documentation for operational continuity and audit readiness.
- Use AI-assisted tools for triage, analysis, reporting, and workflow improvement while protecting sensitive data and validating outputs.
Requirements
- Hands-on experience operating a recurring vulnerability-management program or major workstream.
- Experience with vulnerability discovery, triage, risk-based prioritization, remediation coordination, and closure validation.
- Experience working with infrastructure, endpoint, network, or cloud asset owners to drive remediation.
- Practical experience with Rapid7 InsightVM, Tenable, Qualys, or an equivalent platform.
- Experience supporting security incidents as part of an on-call rotation.
- Vulnerability-management experience in a hybrid environment; AWS experience preferred.
- Understanding of CVE/CVSS concepts, exploitability, asset criticality, network exposure, and compensating controls.
- Working knowledge of infrastructure and network security fundamentals.
- Ability to translate technical findings into clear priorities and actions.
- Demonstrated ownership, follow-through, and escalation of blockers.
- Professional experience using AI-assisted tools with appropriate review, validation, and data-handling judgment.
- Typically 3–5 years of relevant security experience, including at least 2 years of direct vulnerability-management responsibility.
Nice-to-haves
- Rapid7 InsightVM experience.
- Wiz or another CSPM platform experience.
- Experience reconciling scanner data with CMDB, endpoint, cloud inventory, or ticketing systems.
- Familiarity with CIS Benchmarks, CISA Known Exploited Vulnerabilities, EPSS, and risk-exception workflows.
- Scripting, API, workflow automation, or security-reporting experience.
- Experience improving asset coverage, remediation SLA performance, backlog quality, or recurring-finding rates.
- Experience across cloud, on-premises, network, and endpoint assets.
- Experience creating repeatable, securely validated AI-assisted security workflows.
- Relevant degree or certifications such as Security+, CySA+, or a cloud-security certification.
Benefits
- Comprehensive health, dental, and vision plans.
- Company-paid life and disability insurance.
- 401(k) and Roth IRA retirement plans.
- Paid time off and paid holidays.
- Employee onboarding, training, and professional development resources.
- Wellbeing offerings and pre-tax savings accounts with company contributions.
- Employee referral bonuses.
Skills
Vulnerability Management, Rapid7 Insightvm, Wiz, AWS, Tenable, Qualys, Cve, Cvss, Cspm, Cis Benchmarks, Epss, Scripting, API, Workflow Automation, Security+ Certificates
Similar jobs
Security Engineering jobsThe Security Engineer will track advanced adversaries targeting frontier AI infrastructure, build intelligence pipelines, conduct threat hunts, and create production detections. The role requires hands-on malware and infrastructure analysis, production programming, and close collaboration with detection and incident response teams.
Security Scientist analyzing attacker and user behavior, building data-driven detections, and leading security investigations and design reviews. Requires strong security and anti-abuse knowledge, SQL fluency, scripting proficiency, and experience with distributed data systems and statistical methods.
Own and build the company’s security program as its first full-time security hire, covering product, cloud, infrastructure, incident response, compliance, and customer trust. The role requires hands-on security engineering and incident leadership, with experience operating SOC 2 or comparable frameworks.
Conduct proactive threat hunting and adversary simulation to uncover financial fraud tactics, enrich threat intelligence, and improve platform controls. The role requires at least five years of relevant cybersecurity, abuse, or trust experience plus strong Python, SQL, investigative, and data-analysis skills.
Conduct offensive security operations, red-team engagements, penetration testing, and adversarial simulations across cloud, endpoint, and bare-metal environments. The role requires at least five years of experience, strong engineering skills, and expertise across multiple security domains.