Security Engineer Vulnerability Management
Candidate doesn t have to be local and can be fully remote. No Secret Clearance required either.
inimum of 4 6 years of experience in vulnerability management or a related information security role.
- Advanced knowledge of vulnerability management tools and platforms such as Tenable Nessus, Qualys, Rapid7, OpenVAS, or similar.
- Strong understanding of vulnerability scanning, assessment, and risk prioritization.
- Familiarity with common vulnerability scoring systems and frameworks (e.g., CVSS, NIST 800-53, OWASP Top 10).
- Understanding of operating systems (Windows, Linux, macOS) and their associated vulnerabilities.
- Knowledge of network protocols and components (e.g., TCP/IP, DNS, firewalls, routers, and switches).
- Understanding and experience with Cloud Service Providers (CSP) and cloud native policies.
- Understanding and experience working withand configuring Identity Providers (IdP).
- Experience with patch management processes and tools.
- Basic understanding of compliance requirements, such as FISMA, and SOX.
- Familiarity with security frameworks such as NIST Cybersecurity Framework, ISO 27001, and CIS critical security controls.
- Ability to assess vulnerabilities, identify risks, and assist in incident response processes when vulnerabilities have been exploited.
- Bachelor s degree in Cybersecurity, Computer Science, Information Technology, or a related field (or equivalent work experience).