Senior Vulnerability Engineer

🕒 April 15

Apply Now
Find Similar Remote Jobs

📊 Check your resume score for this job

Improve your chances of getting an interview by checking your resume score before you apply.

Logo of Keeper Security, Inc.

Keeper Security, Inc.

501 - 1000 employees

Founded 2011

🔒 Cybersecurity

☁️ SaaS

🏢 Enterprise

💰 Private Equity Round - Keeper Security on 2023-05

Cybersecurity • SaaS • Enterprise

Keeper Security, Inc. is a cybersecurity company that delivers cloud-first, zero-trust privileged access management (PAM) and password management solutions. Its KeeperPAM platform, secrets manager, endpoint privilege manager, and related products secure credentials, sessions, and remote access for enterprises, MSPs, and public-sector organizations using end-to-end encryption and a zero-knowledge architecture. Keeper operates primarily as a SaaS provider, emphasizes stringent compliance (FedRAMP, ISO, SOC 2, FIPS, PCI DSS, HIPAA), and is focused on preventing data breaches and managing privileged access across large-scale environments.

📋 Description

• Design and implement scalable vulnerability scanning and asset discovery solutions across multi-cloud and SaaS environments • Engineer and maintain integrations between vulnerability management tools and internal systems, including CI/CD platforms, ticketing systems, and source control tools • Automate vulnerability ingestion, enrichment, prioritization, and remediation workflows using APIs and scripting • Develop risk-based prioritization models by correlating vulnerability data with threat intelligence and exploit activity • Build and maintain pipelines to integrate vulnerability scanning into CI/CD processes • Create dashboards and analytics to track vulnerability exposure, remediation SLAs, and risk trends • Continuously improve coverage and accuracy of asset inventory and scanning capabilities • Monitor and respond to zero-day vulnerabilities, CISA KEV bulletins, and active exploit campaigns • Partner with Engineering and DevOps teams to troubleshoot and remediate vulnerabilities in applications and infrastructure • Contribute to secure architecture and hardening efforts across cloud and application environments • Support compliance requirements, including FedRAMP, StateRAMP, SOC 2, ISO 27001, and NIST SP 800-53, through technical implementation and evidence generation • Document systems, workflows, and automation for repeatability and scale • Support the execution of red team exercises, penetration tests, and bug bounty programs in alignment with real-world threat scenarios • Coordinate and validate findings from internal and external testing activities, ensuring accuracy, severity calibration, and reproducibility • Integrate offensive security findings into vulnerability management workflows to drive prioritized remediation • Partner with external vendors and researchers to triage submissions and improve signal quality in bug bounty programs • Continuously improve testing methodologies, coverage, and tooling to reflect evolving attack techniques • Correlate red team, penetration testing, and bug bounty findings with vulnerability data to identify systemic weaknesses

🎯 Requirements

• 5–8+ years of experience in vulnerability management, security engineering, or related technical roles • Strong hands-on experience with vulnerability scanning tools, CVE/CVSS scoring, and exploit analysis • Experience building automation using Python, PowerShell, or similar scripting languages • Experience working with APIs and integrating security tools into engineering workflows • Strong understanding of cloud platforms, including AWS, GCP, and Azure, as well as modern application architectures • Experience embedding security into CI/CD pipelines and developer workflows • Ability to troubleshoot vulnerabilities across system, network, and application layers • Hands-on experience with penetration testing, red teaming, or bug bounty programs, including triage and validation of findings • Working knowledge of compliance frameworks such as NIST SP 800-53, CIS Controls, ISO 27001, and SOC 2

🏖️ Benefits

• Medical, Dental & Vision (inclusive of domestic partnerships) • Employer Paid Life Insurance & Employee/Spouse/Child Supplemental life • Voluntary Short/Long Term Disability Insurance • 401K (Roth/Traditional) • A generous PTO plan that celebrates your commitment and seniority (including paid Bereavement/Jury Duty, etc) • Above market annual bonuses

Apply Now

Similar Jobs

🕒 April 15

Deepgram

51 - 200

🤖 Artificial Intelligence

☁️ SaaS

🔌 API

Founding engineer building the Data Intelligence tools at Deepgram transforming unstructured audio into insights. Collaborating with teams on advanced AI models while focusing on automation.

Python

SQL

🕒 April 15

Parloa

201 - 500

Forward Deployed Engineer, VoIP responsible for enterprise telephony integration projects and customer solutions in real-world environments. Leading VoIP/SIP connectivity initiatives and troubleshooting complex technical issues.

🇺🇸 United States – Remote

💵 $202k - $231k / year

💰 Series B on 2024-04

⏰ Full Time

🟡 Mid-level

🟠 Senior

👷🏻‍♀️ Engineer

Azure

Cloud

Kubernetes

VoIP

🕒 April 15

Power Controls Engineer at Hanson, focusing on the design and implementation of power control systems. Collaborating with engineering teams on electric power infrastructure projects.

🕒 April 15

Envirogen Group

201 - 500

⚡ Energy

Senior Process Engineer designing and optimizing water treatment processes at Envirogen. Leading projects to provide clean and safe water through technology and engineering expertise.

🕒 April 15

Wood

10,000+ employees

⚡ Energy

Intermediate Mechanical Engineer specializing in HVAC design and analysis within life sciences industry. Focused on construction drawings, specifications, and equipment assessments for manufacturing plants.