Staff Security Operations Engineer
Core
Own and mature enterprise Attack Surface Management, Vulnerability Management, Zero Trust, Secrets Security, Detection Engineering, and Security Automation capabilities.
Role type
Staff Security Operations Engineer (hands-on IC with team building)
Builds
Scalable security operations processes, automated remediation solutions, and risk reduction dashboards for Engineering, Cloud, and Infrastructure teams.
Domain
Cybersecurity, Cloud Security, Zero Trust, Vulnerability Management
Deliverable
production ML models | product features | dashboards & analysis | infrastructure
Required skills
Attack Surface Management, Vulnerability Management, Zero Trust architecture, Secrets and Credential Security, Detection Engineering, Security Automation, Risk-based prioritization, API integration, Scripting, SOAR, Cloud security, Incident response
Preferred skills
Zscaler (ZIA/ZPA/ZDeception), Tenable/Qualys/Rapid7, GitGuardian/Gitleaks/TruffleHog, Splunk, CrowdStrike/EDR, AWS/Azure/GCP, DevSecOps, External Attack Surface Management (EASM)
Technologies
Tenable, Qualys, Wiz, Prisma Cloud, Zscaler, CrowdStrike, Splunk, GitGuardian, Gitleaks, TruffleHog, AWS, Azure, GCP, REST APIs, SOAR platforms
Responsibilities
Lead enterprise Attack Surface and Vulnerability Management across cloud, infrastructure, and endpoints; Establish operating processes, remediation SLAs, KPIs/KRIs, and governance; Drive automation and integrations using APIs, scripting, and SOAR; Partner with engineering and business leaders to drive remediation of security exposures; Translate complex security risks into clear recommendations for leadership.
Seniority
Staff, hands-on IC with team building and strategy execution