Cybersecurity Engineer I/II – Vulnerability & Patch Management

🔥 0 minutes ago

🇺🇸 United States – Remote

💵 $93.8k - $175k / year

⏰ Full Time

🟢 Junior

🟡 Mid-level

👮‍♂️ Cybersecurity / Security Engineer

🚫👨‍🎓 No degree required

👻 Ghost score 0%

infoinfo
Apply Now
Find Similar Remote Jobs

📊 Check your resume score for this job

Improve your chances of getting an interview by checking your resume score before you apply.

Logo of BNSF Railway

BNSF Railway

10,000+ employees

🚗 Transport

📦 Logistics

Transport • Logistics

BNSF Railway is a major freight railroad company that provides transportation services across North America. The company emphasizes inclusion, safety, and customer-focused service, and operates a broad range of rail-related functions (train crews, field operations, mechanical and electrical, track/structures/signals, dispatch, and police). BNSF also recruits across many job categories and offers benefits for health, retirement, and development for hourly and salaried employees.

📋 Description

• Run vulnerability scans using Nessus, Qualys, or similar platforms under senior engineer guidance • Track, triage, and document vulnerabilities across enterprise systems, cloud environments, and applications • Research CVEs and support vulnerability risk prioritization • Generate vulnerability reports and metrics for team review • Coordinate and track patch deployment across servers, endpoints, and network devices • Monitor patch status dashboards and follow up on outstanding or failed patch cycles • Support patch testing in non-production environments before broader rollout • Maintain patch schedules and documentation with IT and DevOps teams • Maintain runbooks and procedures for vulnerability and patch workflows • Support compliance-related documentation for NIST and SOX requirements • Collaborate with SOC and IT teams to align patching with incident response and threat intelligence priorities • Participate in team meetings, threat briefings, and ongoing security education • Develop beginner-level Python or PowerShell scripting to automate repetitive tasks • Gain exposure to SIEM platforms and security dashboards used to monitor patch compliance • Help protect BNSF’s critical freight rail infrastructure, customers, and employees against cyber threats

🎯 Requirements

• Authorized to work in the US • Minimum 2 years of experience in cybersecurity engineering or related roles • Basic understanding of common vulnerability concepts, including CVEs, CVSS scores, and patch cycles • Foundational familiarity with Windows and/or Linux operating systems • Eagerness to learn, ask questions, and grow in a structured team environment • Ability to work now and in the future without BNSF assistance in obtaining, maintaining, or extending employment authorization (preferred) • Entry-level certifications such as CompTIA Security+, CompTIA IT Fundamentals (ITF+), or vendor-specific cloud/security fundamentals certification (preferred) • Exposure to CEH, OSCP study materials, or similar (preferred) • Basic understanding of network concepts, including IP addresses, ports, firewalls, and traffic flows (preferred) • Exposure to vulnerability scanning tools such as Nessus, Qualys, or OpenVAS (preferred) • Awareness of patch management concepts (preferred) • Introductory scripting ability in Python, PowerShell, or Bash (preferred) • Exposure to AWS, Azure, or GCP cloud environments (preferred) • Strong attention to detail (preferred) • Good written and verbal communication (preferred) • Ability to document clearly (preferred) • Collaborative mindset and comfort working across teams (preferred) • Proactive attitude and follow-through (preferred) • Interest in current cybersecurity news and emerging threats (preferred) • Bachelor’s degree or higher in Computer Science, Cybersecurity, Information Technology, or related field (preferred) • Successful completion of pre-employment background verification, medical review, and drug screen • TWIC required if work requires unescorted access to secure areas of port facilities

🏖️ Benefits

• An industry-leading 401(k) and renowned Railroad Retirement program • Medical, dental, vision, telemedicine, mental health, cancer support, and high-quality care network options • Health care spending accounts (HSA) with employer contributions • Life and disability insurance provided at no cost • Parental, pediatric, and family building support • Adoption and surrogacy reimbursement • Dependent care spending account with employer match • Discounts on travel, gym memberships, counseling services, and wellness support • Annual bonus (Incentive Compensation Program) • Generous leave / time off policies • Travel expenses for business needs covered by BNSF • Mentorship from experienced engineers • Supportive and inclusive work environment

Apply Now

Similar Jobs

🔥 3 hours ago

CyberMaxx

51 - 200

🏥 Healthcare

⚖️ Legal

💼 Consulting

Cybersecurity Specialist monitoring alerts and investigating incidents for CyberMaxx’s managed detection and response services. Supporting customers through threat analysis, ticket escalation, and security documentation.

🔥 14 hours ago

Gormat

11 - 50

🔒 Cybersecurity

🏛️ Government

🎖️ Defense

Cloud security engineer designing, implementing, and evaluating information security solutions for cloud environments. Identifying risks, developing mitigations, and managing security-focused tools and services.

🇺🇸 United States – Remote

💵 $139k - $154k / year

⏰ Full Time

🟢 Junior

🟡 Mid-level

👮‍♂️ Cybersecurity / Security Engineer

🚫👨‍🎓 No degree required

🔥 16 hours ago

iSeatz

51 - 200

🏨 Hospitality

📦 Logistics

📣 Marketing

Cybersecurity Compliance Engineer supporting PCI DSS, SOC 2, and regulatory audits at a travel and loyalty technology company. Managing controls, vendor reviews, risk assessments, and remediation.

🔥 17 hours ago

Empower

10,000+ employees

💸 Finance

💳 Fintech

👥 B2C

Privacy and AML counsel guiding Empower’s retirement and wealth-management businesses. Advising on data protection, cybersecurity, financial crimes, and AI regulations.

🔥 17 hours ago

Granicus

501 - 1000

🏛️ Government

☁️ SaaS

📋 Compliance

Cybersecurity Operations Engineer protecting Granicus government SaaS products in AWS. Monitoring threats, managing vulnerabilities, and supporting FedRAMP and CJIS compliance.