Senior Vulnerability Management Engineer
Core
Independently identify, assess, prioritize, and drive remediation of vulnerabilities across applications, infrastructure, containers, Kubernetes, and third-party dependencies while owning internal vulnerability-management tools.
Role type
Senior Vulnerability Management Engineer
Builds
Internal vulnerability-management tools, repositories, APIs, reporting applications, dashboards, and automated remediation workflows.
Domain
Financial services / Cybersecurity / Cloud-native infrastructure
Deliverable
production ML models | product features | dashboards & analysis | infrastructure
Required skills
Vulnerability assessment and prioritization, dependency analysis (direct/transitive), remediation strategy, SCA/SAST/DAST tooling, container/Kubernetes security, API integration, Python/Java/Go/Bash scripting, risk-based decision making
Preferred skills
Cloud-native services, microservice architectures, vulnerability-management automation, Java dependency management (Gradle/Maven), regulated-industry experience
Technologies
Qualys, Kubernetes, Helm, CI/CD pipelines, Python, Java, Go, Bash, Gradle, Maven
Responsibilities
Perform vulnerability assessments across applications, OS, containers, and dependencies; investigate vulnerable dependencies and recommend safe remediation; maintain source-code repositories for security tools; integrate security tools with ticketing and reporting platforms via APIs; develop dashboards for risk and SLA tracking; lead remediation initiatives and provide technical guidance to engineering teams
Seniority
Senior, hands-on IC
