Vulnerability Management - Security SME / Architect - Sunnyvale, CA 94085 (100% Onsite)

Sunnyvale, CA, CA, US • Posted 14 hours ago • Updated 14 hours ago
Full Time
On-site
Company Branding Image
Fitment

Dice Job Match Score™

🔢 Crunching numbers...

Job Details

Skills

  • Architect
  • Infrastructure
  • vulnerability management
  • Security SME

Summary

Role: Vulnerability Management - Security SME / Architect
Location: Sunnyvale, CA 94085 (100% Onsite)

Role Overview

The Security Subject Matter Expert (SME) Vulnerability Management is responsible for reviewing vulnerability management reports, validating findings, and providing hands-on remediation support across Application, Cloud, Infrastructure, and Security environments. This role serves as a technical advisor to engineering and security teams, ensuring vulnerabilities are accurately assessed, prioritized, and remediated in line with enterprise risk standards.

Key Responsibilities

Vulnerability Report Review & Analysis
  • Review vulnerability assessment reports from Application Security, Cloud Security, Infrastructure, and Endpoint scanning tools.
  • Validate findings to identify false positives, duplicates, and non-actionable vulnerabilities.
  • Analyze vulnerabilities based on severity, exploitability, asset criticality, and business impact.
Risk Assessment & Prioritization
  • Support risk-based prioritization using CVSS, threat intelligence, exploit availability, and exposure context.
  • Identify critical and high-risk vulnerabilities requiring immediate remediation.
  • Provide technical input for risk acceptance, exception handling, and compensating controls.
Remediation Support & Validation
  • Provide clear, actionable remediation guidance for applications, cloud workloads, operating systems, middleware, containers, and network components.
  • Work closely with Application Owners, Cloud Engineers, Infrastructure, DevOps, and Security teams to explain vulnerabilities and remediation steps.
  • Support remediation validation through re-scans and verification activities.
Cross-Functional Collaboration
  • Act as a technical SME supporting Vulnerability Management, AppSec, Cloud Security, SOC, and Infrastructure teams.
  • Participate in remediation review meetings, backlog reduction initiatives, and POD-based remediation efforts.
  • Support Program Managers and Architects with technical insights and remediation status updates.
Documentation & Knowledge Management
  • Develop and maintain remediation runbooks, SOPs, and technical guidance documents.
  • Assist with audit evidence preparation, compliance validation, and management reporting.
  • Contribute to continuous improvement of vulnerability management processes.

Required Skills & Qualifications

Technical Skills
  • Strong hands-on experience in Vulnerability Management and remediation.
  • Working knowledge of:
    • Application Security (SAST, DAST, SCA, API security)
    • Cloud Security (AWS/Azure/Google Cloud Platform vulnerabilities, misconfigurations)
    • Infrastructure & OS vulnerabilities (Windows, Linux, middleware, databases)
  • Familiarity with vulnerability scanning and security tools (e.g., VM scanners, AppSec tools, CSPM/CNAPP platforms).
  • Understanding of CVSS scoring, exploitability, and threat intelligence.
Professional Skills
  • Strong analytical and problem-solving skills.
  • Ability to clearly explain technical vulnerabilities to engineering teams.
  • Experience working in cross-functional, enterprise environments.
  • Strong documentation and communication skills.

Desired / Nice-to-Have

  • Experience supporting large vulnerability backlogs and remediation PODs.
  • Exposure to ITSM tools (e.g., ServiceNow) for vulnerability tracking.
  • Knowledge of compliance frameworks (ISO 27001, SOC 2, PCI-DSS, NIST).
  • Security certifications (e.g., CEH, GWAPT, Google Cloud PlatformN, AWS Security, OSCP) are a plus.

Employers have access to artificial intelligence language tools (“AI”) that help generate and enhance job descriptions and AI may have been used to create this description. The position description has been reviewed for accuracy and Dice believes it to correctly reflect the job opportunity.
  • Dice Id: 10118842
  • Position Id: 2026-1187
  • Posted 14 hours ago

Company Info

About NeoTech Solutions

Established in 1996, Neotech Solutions has devoted itself to encouraging and ensuring the growth of our clients across the globe for over two decades now. Operating in India, USA, Canada, and Vietnam, we have been able to secure successful partnerships with the leading names in the areas of automotive, aerospace, manufacturing, healthcare, VLSI, logistics, and BFSI.

Since inception, Neotech has seamlessly delivered over 10 million hours of technical and engineering solutions to our clients. In this fast-growing economy, we have been able to effortlessly keep up with the revolutionary changes and maintain steady, long-term partnerships with our clients, which is a testament to our commitment to the industry as well as the top tier service we provide.

Neotech has also made remarkable contributions to the areas of Automotive, Aerospace, IT & Digital, and Government Services and continues to excel in these domains.

About_Company_OneAbout_Company_Two
Create job alert
Set job alertNever miss an opportunity! Create an alert based on the job you applied for.

Similar Jobs

It looks like there aren't any Similar Jobs for this job yet.

Search all similar jobs