Senior Vulnerability Engineer

🕒 il y a 1 mois

🗣️🇺🇸🇬🇧 Anglais requis

Postuler Maintenant
Trouver des Emplois à Distance Similaires

📊 Vérifiez votre score de CV pour ce poste

Améliorez vos chances d'obtenir un entretien en vérifiant votre score de CV avant de postuler.

Logo of Keeper Security, Inc.

Keeper Security, Inc.

501 - 1000 employés

Fondée en 2011

🔒 Cybersecurity

☁️ SaaS

🏢 Entreprise

💰 Private Equity Round - Keeper Security en 2023-05

Cybersecurity • SaaS • Enterprise

Keeper Security, Inc. est une entreprise de cybersécurité qui fournit des solutions de gestion des accès privilégiés (PAM) et de gestion des mots de passe, basées sur le cloud et sur une architecture de confiance zéro. Sa plateforme KeeperPAM, son gestionnaire de secrets, son gestionnaire de privilèges des terminaux et ses produits connexes sécurisent les identifiants, les sessions et l'accès à distance pour les entreprises, les MSP et les organisations du secteur public, grâce à un chiffrement de bout en bout et une architecture sans connaissance. Keeper opère principalement en tant que fournisseur SaaS, met l'accent sur une conformité rigoureuse (FedRAMP, ISO, SOC 2, FIPS, PCI DSS, HIPAA) et se concentre sur la prévention des violations de données et la gestion des accès privilégiés dans des environnements de grande envergure.

Description

• Design and implement scalable vulnerability scanning and asset discovery solutions across multi-cloud and SaaS environments • Engineer and maintain integrations between vulnerability management tools and internal systems, including CI/CD platforms, ticketing systems, and source control tools • Automate vulnerability ingestion, enrichment, prioritization, and remediation workflows using APIs and scripting • Develop risk-based prioritization models by correlating vulnerability data with threat intelligence and exploit activity • Build and maintain pipelines to integrate vulnerability scanning into CI/CD processes • Create dashboards and analytics to track vulnerability exposure, remediation SLAs, and risk trends • Continuously improve coverage and accuracy of asset inventory and scanning capabilities • Monitor and respond to zero-day vulnerabilities, CISA KEV bulletins, and active exploit campaigns • Partner with Engineering and DevOps teams to troubleshoot and remediate vulnerabilities in applications and infrastructure • Contribute to secure architecture and hardening efforts across cloud and application environments • Support compliance requirements, including FedRAMP, StateRAMP, SOC 2, ISO 27001, and NIST SP 800-53, through technical implementation and evidence generation • Document systems, workflows, and automation for repeatability and scale • Support the execution of red team exercises, penetration tests, and bug bounty programs in alignment with real-world threat scenarios • Coordinate and validate findings from internal and external testing activities, ensuring accuracy, severity calibration, and reproducibility • Integrate offensive security findings into vulnerability management workflows to drive prioritized remediation • Partner with external vendors and researchers to triage submissions and improve signal quality in bug bounty programs • Continuously improve testing methodologies, coverage, and tooling to reflect evolving attack techniques • Correlate red team, penetration testing, and bug bounty findings with vulnerability data to identify systemic weaknesses

🎯 Exigences

• 5–8+ years of experience in vulnerability management, security engineering, or related technical roles • Strong hands-on experience with vulnerability scanning tools, CVE/CVSS scoring, and exploit analysis • Experience building automation using Python, PowerShell, or similar scripting languages • Experience working with APIs and integrating security tools into engineering workflows • Strong understanding of cloud platforms, including AWS, GCP, and Azure, as well as modern application architectures • Experience embedding security into CI/CD pipelines and developer workflows • Ability to troubleshoot vulnerabilities across system, network, and application layers • Hands-on experience with penetration testing, red teaming, or bug bounty programs, including triage and validation of findings • Working knowledge of compliance frameworks such as NIST SP 800-53, CIS Controls, ISO 27001, and SOC 2

🏖️ Avantages

• Medical, Dental & Vision (inclusive of domestic partnerships) • Employer Paid Life Insurance & Employee/Spouse/Child Supplemental life • Voluntary Short/Long Term Disability Insurance • 401K (Roth/Traditional) • A generous PTO plan that celebrates your commitment and seniority (including paid Bereavement/Jury Duty, etc) • Above market annual bonuses

Postuler Maintenant

Emplois Similaires

🕒 il y a 1 mois

Deepgram

51 - 200

🤖 Intelligence artificielle

☁️ SaaS

🔌 API

Founding engineer building the Data Intelligence tools at Deepgram transforming unstructured audio into insights. Collaborating with teams on advanced AI models while focusing on automation.

🇺🇸 États-Unis – Télétravail

💵 $165 000 - $230 000 / an

💰 €47 000 000 Series B en 2022-11

⏰ Temps Plein

🟠 Senior

👷🏻‍♀️ Ingénieur

🦅 Parrain de Visa H1B

info

🗣️🇺🇸🇬🇧 Anglais requis

🕒 il y a 1 mois

Parloa

201 - 500

Forward Deployed Engineer, VoIP responsible for enterprise telephony integration projects and customer solutions in real-world environments. Leading VoIP/SIP connectivity initiatives and troubleshooting complex technical issues.

🇺🇸 États-Unis – Télétravail

💵 $202 000 - $231 000 / an

💰 Series B en 2024-04

⏰ Temps Plein

🟡 Intermédiaire

🟠 Senior

👷🏻‍♀️ Ingénieur

🗣️🇺🇸🇬🇧 Anglais requis

🕒 il y a 1 mois

Hanson Professional Services Inc.

501 - 1000

⚡ Énergie

Power Controls Engineer at Hanson, focusing on the design and implementation of power control systems. Collaborating with engineering teams on electric power infrastructure projects.

🇺🇸 États-Unis – Télétravail

💵 $105 000 - $160 000 / an

⏰ Temps Plein

🟡 Intermédiaire

🟠 Senior

👷🏻‍♀️ Ingénieur

🗣️🇺🇸🇬🇧 Anglais requis

🕒 il y a 1 mois

Envirogen Group

201 - 500

⚡ Énergie

Senior Process Engineer designing and optimizing water treatment processes at Envirogen. Leading projects to provide clean and safe water through technology and engineering expertise.

🇺🇸 États-Unis – Télétravail

⏰ Temps Plein

🟠 Senior

👷🏻‍♀️ Ingénieur

🗣️🇺🇸🇬🇧 Anglais requis

🕒 il y a 1 mois

Wood

10 000+ employés

⚡ Énergie

Intermediate Mechanical Engineer specializing in HVAC design and analysis within life sciences industry. Focused on construction drawings, specifications, and equipment assessments for manufacturing plants.

🗣️🇺🇸🇬🇧 Anglais requis