At AppFolio, we paddle as one. We ride and make waves together, with a relentless focus on building great products for the way our customers work and live today – and tomorrow. AppFolio is a destination organization where careers are made and accelerated. Here, innovation is a team sport.
As a Vulnerability Management Specialist, you will contribute to security initiatives and work on high-impact projects as a member of the security engineering team. You will provide expertise and support to your team members in your areas of strength. Staying abreast of industry trends and technology is key to this role, and you will actively seek to continue to develop your skills and competencies with our support.
Success in this role requires a strong passion for computer, network, and application security. Experience in vulnerability management at a Software-as-a-Service company is preferred.
Your impact
You will validate, prioritize, communicate, and track vulnerabilities to continuously improve the overall security posture of AppFolio technology systems and applications.
You will respond to emerging threats and potential security events as 0-day vulnerabilities are released.
You will work to ensure compliance with our vulnerability management policies, processes, and procedures, and drive the adoption of emerging industry best practices.
You will help streamline the vulnerability management process through the use of Artificial Intelligence, Machine Learning, and automation, improving the end-to-end process and reducing the time-to-action for known vulnerabilities.
Through an exceptional vulnerability management program, you will build trust and confidence with our customers and partners.
Qualifications
BS in Computer Science or a related technical discipline, or equivalent industry experience
Cybersecurity-relevant certifications, such as but not limited to GCIA, GCIH, CEH, CISSP, CISM, or OSCP
Project management-relevant certifications, such as but not limited to CAPM or PMP
Must have
2-5 years of experience in a related cybersecurity role, preferably with a focus on Vulnerability Management, Penetration Testing, or Incident Response.
Ability to write scripts in Ruby, Python, or other scripting languages
Hands-on experience with Vulnerability Management tools such as DefectDojo, Invicti, Wiz, or Cycode.
Hands-on experience with manual testing tools, especially validating vulnerabilities
Understanding the capabilities and limitations of SAST, DAST, SCA, and pen test tools.
Proficiency in various operating systems (Linux, MacOS, Windows)
Ability to assess security risks associated with vulnernabilities and prioritize them using existing frameworks like CVSS, accounting for local environmental factors.
Strong communication skills and an ability to explain complex security issues to technical and non-technical stakeholders
Ability to maintain strict organization while overseeing complex security findings, applying structured project-style oversight to guide multiple simultaneous vulnerabilities to remediation or risk acceptance.
Nice to Have
Hands-on experience with network protocol vulnerabilities
Experience identifying and managing vulnerabilities during CI/CD
Hands-on experience in cloud environments (AWS, GCP, Azure)
Hands-on experience with Burp Suite and Tenable or similar
Hands-on experience with Metasploit Framework or similar
Compensation & Benefits
The compensation that we reasonably expect to pay for this role is: $104,000 - $130,000 base pay. The actual compensation for this role will be determined by a variety of factors, including but not limited to the candidate’s skills, education, experience, and internal equity.
Please note that compensation is just one aspect of a comprehensive Total Rewards package. The compensation range listed here does not include additional benefits or any discretionary bonuses you may be eligible for based on your role and/or employment type.
Regular full-time employees are eligible for benefits -see here.
#LI-KB1
| Location | Remote - Atlanta, GA (Remote) |
| Salary | $104,000–$130,000 Per Year |
Browse dozens of recruiter approved resume templates, layouts and formats. Choose your favorite and make it your own in minutes.
Free resume templatesImprove your existing resume or start from scratch and create a standout, ATS-friendly resume. Add job-specific content, download and apply.
Free resume builder