Sr Cybersecurity Engineer – Vulnerability Management focusAustin, TX – hybrid work from home schedule, 3 days onsite in the loop, 2 days WFH SummaryWe're looking for a Senior Cybersecurity Engineer to focus on Vulnerability Management, on a team of 5 cybersecurity engineers. While vulnerability management will be the focus, you'll have dynamic responsibilities to drive Risk Assessments that tie into the vulnerability management, and to this end, are looking for someone to have an understanding of the common IT security frameworks such as ISO 27001, NIST, SOC 2, COBIT, etc. (don't need experience with all, just at least 1!). We are a hybrid-cloud environment, primarily a Microsoft shop (Azure + Windows) but also do operate Linux boxes.
We are big on scripting, so also looking for someone to be strong with scripting, Powershell or Python would be preferred, but any scripting language is fine.
And then, if you have experience with other areas of cybersecurity, would be a plus, for you to contribute to as well: IAM technologies, authentication systems, EDR, firewalls, IDS/IPS, encryption, and log.
All this said, we are not looking for someone to have experience in all these areas from day 1, we want someone hungry to learn, and grow your career with us over time! If this sounds like you, apply today.
What you'll be doing- Perform security risk assessments on new technologies, IT projects, and third-party vendors, and respond to client and partner security assessments, questionnaires, and audits.
- Manage and mature vulnerability management and security assessment programs, including developing metrics, procedures, and supporting documentation.
- Monitor emerging threats and vulnerabilities, triage findings, and coordinate appropriate remediation and response activities.
- Partner with Security Architecture and other technical teams to evaluate, recommend, and implement security technologies and controls.
- Provide subject matter expertise and consulting on information security topics to technical teams, business leadership, and attorneys.
- Support the development and maintenance of security policies, standards, processes, and guidelines.
- Assist with long-term information security strategy, planning, and issue management, including exceptions and findings.
- Train, mentor, and support junior cybersecurity engineers, contributing to team growth and capability building.
Skills we're seeking - 5+ years of experience with Cybersecurity Engineering, Security Operations Engineering, IT Risk Management, or similar functions
- Must have strong experience with Vulnerability Assessment and Management tools
- Must have experience with Risk Assessments + ISO 27001, NIST, SOC 2 and/or COBIT
- Must have experience with scripting, ideally Powershell or Python
- Must have experience working in hybrid-cloud environments, ideally Azure environments but any is fine
Nice to haves - Experience with other areas of security such as: IAM, authentication systems, EDR, firewalls, IDS/IPS, encryption, and log analysis
- Bachelor's Degree, ideally in Computer Science or an IT/security related field
- Cybersecurity certifications such as CISSP, CEH, or OSCP