As a Security Engineer - Vulnerability Management Specialist, you will be responsible for managing and enhancing the organization's vulnerability management program. Your primary focus will be on identifying, assessing, and mitigating security vulnerabilities across the organization's systems, networks, and applications. You will work closely with IT, security, and development teams to ensure a robust security posture and compliance with industry standards.
The role requires a proactive approach to identifying and addressing security gaps, implementing best practices, and communicating risks effectively to stakeholders. You will also contribute to the continuous improvement of vulnerability management processes, tools, and reporting mechanisms.
Key Responsibilities:
Advanced skills in vulnerability exploitation and proof of concept (PoC) development.
Familiarity with exploit frameworks like Metasploit.
Experience with cloud security tools and platforms (e.g., AWS Inspector, Azure - Security Center, or GCP Security Command Center).
Expertise in identifying and mitigating critical vulnerabilities in complex environments.
Experience with configuration assessment tools such as SCAP or CIS-CAT.
Knowledge of threat intelligence tools and processes to correlate vulnerabilities with real-world threats.
Understanding of threat modeling and attack surface analysis.
Experience with SIEM tools (e.g., Splunk, QRadar) and integration with vulnerability management processes.
Knowledge of log analysis and event correlation.
Advanced certifications, such as:
GIAC Certified Vulnerability Analyst (GCVA).
Offensive Security Certified Professional (OSCP).
Certified Information Systems Security Professional (CISSP).
Certified Information Security Manager (CISM).
Required Qualifications:
Minimum of 4–6 years of experience in vulnerability management or a related information security role.
This is a remote position.
Numbers & Facts
Location
Reston, VA (Remote)
Job Type
Full-time
Skills
Amazon Web Services (AWS)unmatched
Analysis Skillsunmatched
Best Practicesunmatched
CISM - Certified Information Security Managerunmatched
CISSP - Certified Information Systems Security Professionalunmatched
Cloud Computingunmatched
Communication Skillsunmatched
Computer Securityunmatched
Computer Systemsunmatched
Continuous Improvementunmatched
Dental Insuranceunmatched
Event Correlationunmatched
GCP (Good Clinical Practices)unmatched
GIAC - Global Information Assurance Certificationunmatched
Health Insuranceunmatched
Industry Standardsunmatched
Information/Data Security (InfoSec)unmatched
Metasploitunmatched
Microsoft Windows Azureunmatched
Process Improvementunmatched
Proof of Conceptunmatched
Regulatory Complianceunmatched
Security Analysisunmatched
Security Information and Event Management (SIEM)unmatched
Security Infrastructureunmatched
Splunkunmatched
Surface Modelingunmatched
System Architectureunmatched
Systems Engineeringunmatched
Threat Modelingunmatched
Vision Planunmatched
🎯
Be found by employers
5,500+ employers search our resume database daily. Add yours to get found by recruiters looking for candidates like you.
Level up your application
Professional resume templates
Browse dozens of recruiter approved resume templates, layouts and formats. Choose your favorite and make it your own in minutes.