For Employers

PCI Professional Services LLC

Security Engineer - Vulnerability Management

Posted 3 days ago
$156K - $170K per year
5-10 years experience
Apply Now

Please mention DailyRemote when applying

?/100
Resume Match Score

Match your resume skills with our AI powered skill match!

Get professional review
AI Summary

You will be responsible for managing and enhancing the organization's vulnerability management program by identifying, assessing, and mitigating security risks across systems and networks. The role involves collaborating with IT and development teams to ensure compliance with industry standards and implementing proactive security best practices.

Role Description:
 
As a Security Engineer - Vulnerability Management Specialist, you will be responsible for managing and enhancing the organization's vulnerability management program. Your primary focus will be on identifying, assessing, and mitigating security vulnerabilities across the organization's systems, networks, and applications. You will work closely with IT, security, and development teams to ensure a robust security posture and compliance with industry standards.
 
The role requires a proactive approach to identifying and addressing security gaps, implementing best practices, and communicating risks effectively to stakeholders. You will also contribute to the continuous improvement of vulnerability management processes, tools, and reporting mechanisms.
 
Minimum Skills:
  • Minimum of 4–6 years of experience in vulnerability management or a related information security role.
  • Advanced knowledge of vulnerability management tools and platforms such as Tenable Nessus, Qualys, Rapid7, OpenVAS, or similar.
  • Strong understanding of vulnerability scanning, assessment, and risk prioritization.
  • Familiarity with common vulnerability scoring systems and frameworks (e.g., CVSS, NIST 800-53, OWASP Top 10).
  • Understanding of operating systems (Windows, Linux, macOS) and their associated vulnerabilities.
  • Knowledge of network protocols and components (e.g., TCP/IP, DNS, firewalls, routers, and switches).
  • Experience with patch management processes and tools.
  • Basic understanding of compliance requirements, such as FISMA, and SOX.
  • Familiarity with security frameworks such as NIST Cybersecurity Framework, ISO 27001, and CIS critical security controls.
  • Ability to assess vulnerabilities, identify risks, and assist in incident response processes when vulnerabilities have been exploited.
  • Bachelor’s degree in Cybersecurity, Computer Science, Information Technology, or a related field (or equivalent work experience).
 
Preferred Skills:
  • Advanced skills in vulnerability exploitation and proof of concept (PoC) development.
  • Familiarity with exploit frameworks like Metasploit.
  • Experience with cloud security tools and platforms (e.g., AWS Inspector, Azure - Security Center, or GCP Security Command Center).
  • Expertise in identifying and mitigating critical vulnerabilities in complex environments.
  • Experience with configuration assessment tools such as SCAP or CIS-CAT.
  • Knowledge of threat intelligence tools and processes to correlate vulnerabilities with real-world threats.
  • Understanding of threat modeling and attack surface analysis.
  • Experience with SIEM tools (e.g., Splunk, QRadar) and integration with vulnerability management processes.
  • Knowledge of log analysis and event correlation.
  • Advanced certifications, such as:
  • GIAC Certified Vulnerability Analyst (GCVA)
  • Offensive Security Certified Professional (OSCP).
  • Certified Information Systems Security Professional (CISSP).
  • Certified Information Security Manager (CISM).
 

PCI Federal Services (PCIFS) and its subsidiaries is an equal-opportunity employer. PCIFS does not discriminate on the basis of age, sex, race, national origin, religion, marital status, sexual orientation or identity, Veterans or Disability status.

 

Preference may be extended to qualified Native American Indian candidates

in accordance with applicable federal law.


Automatically Apply to the Best Remote Jobs

Stop the endless job search. Our AI finds and applies to the best jobs for you.

Try it Now
Keep looking

Similar Jobs

See all Remote Software Development jobs →

Database Developer

Full Time United States Software Development

Data & AI Engineer (m/w/d)

Full Time Germany €80000 - €95000 per year Software Development

Senior Cloud Infrastructure Engineer

Full Time United States $110K - $140K per year Software Development

Senior .Net Engineer (C# / IoT)

Full Time Ukraine Software Development

Software Engineer Fullstack - Cross-functional Team H/F

Full Time France €50000 - €55000 per year Software Development

Senior Software Engineer - Squad Portail Facturation H/F

Full Time France €50000 - €55000 per year Software Development
Apply Now

Personalize your Remote Job Search in 3 Easy Steps!

Discover remote opportunities in Security Engineer

Answer easy questions

Answer easy questions

200,000+ jobs across 15+ categories

Get your best job matches

Get your best job matches

Only hand-screened, legit jobs

Find a remote job faster

Find a remote job faster

No ads, scams, or junk

I was the first applicant for a remote marketing position that got listed on the company website the same day I applied. Had an interview within 48 hours!”

Sarah J. — Sarah J. · Marketing Manager ★★★★★ Verified