Lead InfoSec Engineer
Core
Managing enterprise cyber security risk by governing and maturing the vulnerability management program, conducting investigations, and ensuring comprehensive monitoring of system vulnerabilities.
Role type
Senior IC vulnerability management engineer
Builds
Enterprise vulnerability management program and security posture
Domain
Cybersecurity / Information Security
Required skills
Vulnerability lifecycle management, threat intelligence analysis, cloud infrastructure monitoring, CI/CD security integration, security tool administration, remediation planning
Preferred skills
Red teaming, offensive security, penetration testing, reverse engineering, incident response
Technologies
Tenable.io, Rapid7, Qualys, Terraform, Ansible, Git, Jenkins, Docker, Kubernetes, AWS, GCP, Azure
Responsibilities
Triage identified vulnerabilities and track them through the lifecycle; Monitor for known vulnerabilities posing risk to the platform; Install, monitor, test, and administer vulnerability scanning tools; Partner with engineering teams to monitor cloud and container infrastructure; Perform security and technical analysis of solutions and threats; Configure and optimize vulnerability scans against new and existing platforms; Develop effective communication and remediation plans for stakeholders; Contribute to security policies and procedures documentation
Seniority
Senior, hands-on IC