Vulnerability Management Specialist

AppFolio, Inc
  • Remote - Atlanta, GA
  • Remote
  • $104,000–$130,000 Per Year
Today

Job Description

At AppFolio, we paddle as one. We ride and make waves together, with a relentless focus on building great products for the way our customers work and live today – and tomorrow. AppFolio is a destination organization where careers are made and accelerated. Here, innovation is a team sport.

 

As a Vulnerability Management Specialist, you will contribute to security initiatives and work on high-impact projects as a member of the security engineering team. You will provide expertise and support to your team members in your areas of strength. Staying abreast of industry trends and technology is key to this role, and you will actively seek to continue to develop your skills and competencies with our support.

 

Success in this role requires a strong passion for computer, network, and application security. Experience in vulnerability management at a Software-as-a-Service company is preferred.

 

Your impact 

  • You will validate, prioritize, communicate, and track vulnerabilities to continuously improve the overall security posture of AppFolio technology systems and applications.

  • You will respond to emerging threats and potential security events as 0-day vulnerabilities are released.

  • You will work to ensure compliance with our vulnerability management policies, processes, and procedures, and drive the adoption of emerging industry best practices.

  • You will help streamline the vulnerability management process through the use of Artificial Intelligence, Machine Learning, and automation, improving the end-to-end process and reducing the time-to-action for known vulnerabilities.

  • Through an exceptional vulnerability management program, you will build trust and confidence with our customers and partners.

 

Qualifications 

  • BS in Computer Science or a related technical discipline, or equivalent industry experience

  • Cybersecurity-relevant certifications, such as but not limited to GCIA, GCIH, CEH, CISSP, CISM, or OSCP

  • Project management-relevant certifications, such as but not limited to CAPM or PMP

 

Must have

  • 2-5 years of experience in a related cybersecurity role, preferably with a focus on Vulnerability Management, Penetration Testing, or Incident Response.

  • Ability to write scripts in Ruby, Python, or other scripting languages

  • Hands-on experience with Vulnerability Management tools such as DefectDojo, Invicti, Wiz, or Cycode.

  • Hands-on experience with manual testing tools, especially validating vulnerabilities

  • Understanding the capabilities and limitations of SAST, DAST, SCA, and pen test tools.

  • Proficiency in various operating systems (Linux, MacOS, Windows)

  • Ability to assess security risks associated with vulnernabilities and prioritize them using existing frameworks like CVSS, accounting for local environmental factors.

  • Strong communication skills and an ability to explain complex security issues to technical and non-technical stakeholders

  • Ability to maintain strict organization while overseeing complex security findings, applying structured project-style oversight to guide multiple simultaneous vulnerabilities to remediation or risk acceptance.

 

Nice to Have

  • Hands-on experience with network protocol vulnerabilities

  • Experience identifying and managing vulnerabilities during CI/CD

  • Hands-on experience in cloud environments (AWS, GCP, Azure)

  • Hands-on experience with Burp Suite and Tenable or similar

  • Hands-on experience with Metasploit Framework or similar

 

Compensation & Benefits

The compensation that we reasonably expect to pay for this role is: $104,000 - $130,000 base pay. The actual compensation for this role will be determined by a variety of factors, including but not limited to the candidate’s skills, education, experience, and internal equity.

Please note that compensation is just one aspect of a comprehensive Total Rewards package. The compensation range listed here does not include additional benefits or any discretionary bonuses you may be eligible for based on your role and/or employment type.

Regular full-time employees are eligible for benefits -see here.

#LI-KB1

 

Numbers & Facts

LocationRemote - Atlanta, GA (
Remote
)
Salary$104,000–$130,000 Per Year

Skills

  • Accountingunmatched
  • Applications Securityunmatched
  • Artificial Intelligence (AI)unmatched
  • Automationunmatched
  • Best Practicesunmatched
  • CISM - Certified Information Security Managerunmatched
  • CISSP - Certified Information Systems Security Professionalunmatched
  • Communication Skillsunmatched
  • Computer Networksunmatched
  • Computer Scienceunmatched
  • Computer Securityunmatched
  • Continuous Deployment/Deliveryunmatched
  • Continuous Improvementunmatched
  • Continuous Integrationunmatched
  • Establish Prioritiesunmatched
  • GCIA - GIAC Certified Intrusion Analystunmatched
  • GCIH - GIAC Certified Incident Handlerunmatched
  • Incident Responseunmatched
  • Industry/Trade Analysisunmatched
  • Internet Securityunmatched
  • Linux Operating Systemunmatched
  • Mac Operating Systemunmatched
  • Machine Learningunmatched
  • Maintain Complianceunmatched
  • Metasploitunmatched
  • Microsoft Windows Operating Systemunmatched
  • Network Securityunmatched
  • Operating Systemsunmatched
  • Penetration Testingunmatched
  • Product Developmentunmatched
  • Project Management Certificationunmatched
  • Project Management Professional (PMP)unmatched
  • Project Trackingunmatched
  • Python Programming/Scripting Languageunmatched
  • Riskunmatched
  • Risk Analysisunmatched
  • Rubyunmatched
  • Scripting (Scripting Languages)unmatched
  • Security Analysisunmatched
  • Security Attacksunmatched
  • Security Monitoringunmatched
  • Software Testingunmatched
  • Software as a Service (SaaS)unmatched
  • Style Guideunmatched
  • Team Buildingunmatched
  • Test Toolsunmatched
  • Time Managementunmatched
  • Writing Skillsunmatched

Be found by employers

5,500+ employers search our resume database daily. Add yours to get found by recruiters looking for candidates like you.

Level up your application

Professional resume templates

Browse dozens of recruiter approved resume templates, layouts and formats. Choose your favorite and make it your own in minutes.

Free resume templates

Free resume builder

Improve your existing resume or start from scratch and create a standout, ATS-friendly resume. Add job-specific content, download and apply.

Free resume builder