Jobiba hiring network

Vulnerability Management Engineer Jobs

121 active opportunities · Updated for October 2026

Fresh results

15 shown

Explore current vulnerability management engineer jobs. Use filters to narrow by work mode, employment type, experience and date posted.

G
Guidepoint
📍 Mumbai• Full-time
16 days ago

Overview: The role is responsible for managing and supporting the operations of Global Network Engineering in a hybrid/cloud environment and provides senior-level expertise to the network engineering team. We're looking for an expert in on-premises networking, cloud infrastructure networking (Azure/AWS), and telecommunications (VOIP) in global environments, with knowledge and focus on zero-trust networking methodologies. This position requires off-hours on-call availability. This is a remote position with a 3 PM - 12 AM Shift. Candidates may need to visit the Mumbai office as and when needed in the general shift. What You'll Do: Manage physical network management and support covering Guidepoint offices, including, but not limited to, firewalls, routers, switches, etc. Responsible for managing the Enterprise WiFi Operations ZScaler Network management Monitor global traffic latency, issues, and application performance Update and design next-generation network models Network detection and response Intrusion detection and prevention technologies Azure Cloud Traffic integrating with On-prem traffic Azure Web Security CASB models and methodologies What You Have: 8+ years of experience with core networking in an enterprise environment, ideally global network design and security methodologies. 5+ years of working experience with advanced Azure cloud networking technologies. Must have substantial experience with managing WiFi Operations. CCNP Certified or equivalent experience 3+ years of hands-on experience, preferably with Sonic-wall/Netgear. Solid engineering knowledge of routing, switching (VLANs), Azure networking, firewalls, and traffic management. Update network security based on VNETs and Subnets, with traffic monitoring, etc. Knowledgeable in Azure Application Gateways, Front Door, and other security tools. Nice to have: Must know telecommunication technologies (VOIP, SIP Trunking, Microsoft Teams) Network security experience (vulnerability manage

awsazureai
View job →
O
OpenAI
📍 San Francisco• Full-time
1mo ago

About the Team The Release Engineer team is responsible for building and maintaining the systems that power software delivery—from CI/CD pipelines and artifact management to release automation and fleet telemetry. We ensure software across bootloaders, firmware, operating systems, and cloud services is built reproducibly, validated rigorously, and released safely at scale. About the Role As a Release Engineer, you’ll design, build, and operate release infrastructure that enables reliable, secure, and traceable software delivery across complex multi-component systems. You’ll partner closely with embedded, cloud, and QA teams to ensure that every build—from development to OTA deployment—is fast, verifiable, and production-ready. We’re looking for engineers who take pride in automation, build reproducibility, and system reliability—and who enjoy building the connective tissue that allows hardware and software to ship together seamlessly. This role is based in San Francisco, CA. We use a hybrid work model of four days in the office per week and offer relocation assistance to new employees. In this role, you will: Design and operate CI/CD pipelines for multi-component builds (bootloader, firmware, OS images, backend, companion apps) using hermetic toolchains. Define versioning and branching strategies; automate promotions, changelogs, and artifact retention. Integrate unit, integration, and hardware-in-the-loop (HIL) test results; quarantine flaky tests, auto-bisect failures, and block unsafe promotions. Build A/B OTA update flows with verity and health checks; run staged rollouts and canaries; implement safe rollback and roll-forward strategies. Implement code signing for binaries and firmware, generate SBOMs, run vulnerability scanning, and attach build attestations and provenance. Manage dashboards and alerts for build health, promotion latency, failure rates, and fleet update telemetry. You might thrive in this role if you: Have experience building and operating buil

pythonawsci/cd
View job →

Senior Systems Engineer (Flight Crew Operations Integrator) Company: The Boeing Company Boeing Defense, Space & Security (BDS) is seeking a Senior Systems Engineer (Level 5) to support the Phantom Works organization in Hazelwood, MO . The successful candidates will develop equipment and escape/crew station system integration concepts and other design methods to provide and coordinate product definition for Integrated Product Teams, various engineering functions, production operations, qualification/flight testing, suppliers and external customers throughout the product lifecycle. Position Responsibilities Applies an interdisciplinary, collaborative approach to lead activities to plan, design, develop and verify complex lifecycle balanced system of systems and system solutions. Leads others to evaluate customer/operational needs to define system performance requirements, integrate technical parameters and assure compatibility of all physical, functional and program interfaces. Leads analyses to optimize total system of systems and/or system architecture. Leads analyses for affordability, safety, reliability, maintainability, testability, human systems integration, survivability, vulnerability, susceptibility, system security, regulatory, certification, product assurance and other specialties quality factors into a preferred configuration to ensure mission success. Leads, develops, maintains and identifies improvements the planning, organization, implementation and monitoring of requirements management processes, tools, risk, issues, opportunity management and technology readiness assessment processes. Travel may be required up to 10% of the time; Domestically and/or interna

SAPrecruitment
View job →
P
Point72
📍 Bengaluru• Full-time
16 days ago

Linux Engineer A Career with point72’s Technology team As Point72 reimagines the future of investing, our Technology team is constantly evolving our firm’s IT infrastructure and engineering capabilities, positioning us at the forefront of a rapidly evolving technology landscape. We’re a team of experts who experiment and work to discover new ways to harness open-source solutions, modern cloud architectures, and sophisticated Artificial Intelligence (AI) solutions, while embracing enterprise agile methodologies. Our commitment to building and innovating in the AI space provides the framework intended to drive smarter decision making and enhance how we build and operate our platforms and applications. As a member of Point72’s Technology team, we encourage and support your professional development from day one—helping you advance your technical skills, contribute innovative ideas, and satisfy your own intellectual curiosity—all while delivering real business impact for our multi-billion-dollar global business. What you’ll do Support, maintain, and troubleshoot Linux systems in production and development environments Assist with system provisioning, configuration, and lifecycle management Monitor system performance, availability, and capacity; respond to incidents and outages Work closely with developers and quants to support research and trading workloads Automate operational tasks using scripting and configuration management tools Assist with patching, upgrades, and vulnerability remediation Maintain documentation and operational runbooks Participate in on-call rotation (as appropriate for level) What’s REQUIRED Bachelor’s degree in computer science, information technology, engineering, or a related field. 5+ years of professional experience administering Ubuntu Linux systems and ZFS Strong understanding of Linux fundamentals including processes, memory, CPU, filesystems, and networking as well as systemd, cron, logging, and package management (apt) Experie

linuxagileai
View job →
A
Asana
📍 San Francisco• Full-time• $202K – $230K/yr
1mo ago

We are dedicated to ensuring proactive elimination of entire classes of security risk by engineering the core libraries, platforms and frameworks that provide secure guardrails for all Asanas. We are looking for a Senior Software Engineer to join our new Security Development team. This team is focused on building durable, secure-by-default solutions to protect Asana's infrastructure and product. Instead of acting as gatekeepers, we build guardrails that empower engineering teams to move quickly and safely. You will be responsible for engineering preventative controls at scale, focusing on building platforms and frameworks that eradicate systemic risks. This role is based in our San Francisco office with an office-centric hybrid schedule. The standard in-office days are Monday, Tuesday, and Thursday. Most Asanas have the option to work from home on Wednesdays. Working from home on Fridays depends on the type of work you do and the teams with which you partner. If you're interviewing for this role, your recruiter will share more about the in-office requirements. What you’ll achieve: Design, build, and maintain secure-by-default frameworks, libraries, and platforms to eliminate entire classes of vulnerabilities. Engineer and improve core security services, including our access control frameworks, secrets management infrastructure, and AWS permissions systems. Develop and own the platform for vulnerability remediation, creating tooling that empowers engineering teams to address risks efficiently. Partner with product and infrastructure teams to architect and implement foundational security controls for Asana including cloud networking, and compute infrastructure. Partner with product teams to effectively offer recommendations for how to secure projects at all phases of implementation (design, development, launch, and/or incidents) Influence engineering initiatives through design reviews, communicating security principles, and helping teams make sound security trad

awsrestai
View job →
A
Asana
📍 San Francisco• Full-time• $202K – $230K/yr
1mo ago

We are dedicated to ensuring proactive elimination of entire classes of security risk by engineering the core libraries, platforms and frameworks that provide secure guardrails for all Asanas. We are looking for a Senior Software Engineer to join our new Security Development team. This team is focused on building durable, secure-by-default solutions to protect Asana's infrastructure and product. Instead of acting as gatekeepers, we build guardrails that empower engineering teams to move quickly and safely. You will be responsible for engineering preventative controls at scale, focusing on building platforms and frameworks that eradicate systemic risks. This role is based in our San Francisco office with an office-centric hybrid schedule. The standard in-office days are Monday, Tuesday, and Thursday. Most Asanas have the option to work from home on Wednesdays. Working from home on Fridays depends on the type of work you do and the teams with which you partner. If you're interviewing for this role, your recruiter will share more about the in-office requirements. What you’ll achieve: Design, build, and maintain secure-by-default frameworks, libraries, and platforms to eliminate entire classes of vulnerabilities. Engineer and improve core security services, including our access control frameworks, secrets management infrastructure, and AWS permissions systems. Develop and own the platform for vulnerability remediation, creating tooling that empowers engineering teams to address risks efficiently. Partner with product and infrastructure teams to architect and implement foundational security controls for Asana including cloud networking, and compute infrastructure. Partner with product teams to effectively offer recommendations for how to secure projects at all phases of implementation (design, development, launch, and/or incidents) Influence engineering initiatives through design reviews, communicating security principles, and helping teams make sound security trad

awsrestai
View job →
C
Clearwater
📍 India• Full-time• $30K – $35K/yr
16 days ago

SPECIFIC JOB RESPONSIBILITIES Defensive Operations (SecOps): Design and automate the Security Incident Response (SIR) and Vulnerability Response (VR) lifecycles. Build playbooks in Flow Designer to automate threat containment and remediation. Offensive Operations: Develop custom scoped applications to track penetration testing results, manage red-team engagement lifecycles, and automate the ingestion of reconnaissance data. Compliance & GRC: Configure and customize Integrated Risk Management (IRM) modules to map technical controls to frameworks like SOC2, ISO 27001, HIPAA, and FedRAMP. Integrations & Orchestration: Build robust, secure integrations (REST/SOAP, IntegrationHub , MID Servers) with our XDR, SIEM (Splunk/Sentinel), and cloud-native services (AWS/Azure/GCP). Multi-Tenancy & MSSP Architecture: Architect a scalable, multi-tenant environment that ensures strict data isolation between clients while allowing for unified " ClickOps " and Terraform-driven automation. AI & Innovation: Explore and implement Now Assist (GenAI) and AI-heavy workflows to automate security reporting and incident summarization. Defensive Operations (SecOps): Design and automate the Security Incident Response (SIR) and Vulnerability Response (VR) lifecycles. Build playbooks in Flow Designer to automate threat containment and remediation. Offensive Operations: Develop custom scoped applications to track penetration testing results, manage red-team engagement lifecycles, and automate the ingestion of reconnaissance data. Compliance & GRC: Configure and customize Integrated Risk Management (IRM) modules to map technical controls to frameworks like SOC2, ISO 27001, HIPAA, and FedRAMP. Integrations & Orchestration: Build robust, secure integrations (REST/SOAP, IntegrationHub , MID Servers) with our XDR, SIEM (Splunk/Sentinel), and cloud-native services (AWS/Azure/GCP)

awsazuregcp
View job →

About Us: Paytm is India’s largest digital payments and financial services platform, leading the mobile QR revolution. We power millions of businesses and individuals, and we’re building scalable, resilient systems to serve half a billion Indians and beyond. Here at Paytm, technology isn't just about keeping up, it's about building the future. We believe the next generation of engineers must not only scale systems to billions but also leverage AI and GPT tools to accelerate innovation. Role Overview: We are seeking an experienced Senior Information Security Manager to lead our security initiatives and ensure the integrity, confidentiality, and availability of our systems and data. This role is crucial in safeguarding our digital assets and maintaining compliance with industry standards. 1. Should take care of Infosec functions by coordinating with various stakeholders 2. Lead and manage Vulnerability Assessment (VA) and Penetration Testing (PT) programs end to end. 3. Should have technical hands-on knowledge on different VAPT tools, like Qualys, Tenable, BurpSuite, Checkmarx etc. 4. Ensure all cyber security compliance and audits directions issued from time to time by the regulator like SEBI, RBI etc. 5. Coordination with SOC, Technology team to follow up the incidents till closure 6. Follow escalation matrix for delayed issues 7. Assist in Internal and External Audits (Regulatory) and work towards closure of observations if any 8. Should have project management espouse, to run the security PMO for ensuring the multiple initiatives with internal / external teams, vendors, and regulators. 9. Prepare and review new/existing policies, procedures, and secure configure/ hardening documents. 10. Should possess technical skills and knowledge to handle/manage security solutions if required 11. Should have understanding of data protection technologies & laws, including DLP, DSPM, DPDPA, IT Act and international regulations like GDPR 12. Exposure to Cloud Environment & Appl

awsgitai
View job →
A
Asana
📍 San Francisco• Full-time• From $194K/yr
1mo ago

At Asana, security is foundational to our mission of helping teams work together effortlessly. Our security team protects Asana's employees, users, and customers by proactively addressing threats, ensuring compliance, and fostering a culture of security throughout our product and operations. As the Security Risk Manager, you will own Asana's internal security risk management program end-to-end. This is a senior role for someone who goes beyond frameworks and checklists — you will engineer the quantitative and automated foundations that let Asana continuously measure and make confident decisions about security risk. You'll build the systems and processes that make risk scalable, not just the policies that describe it, and serve as a trusted advisor to senior leadership. This role is based in our San Francisco office with an office-centric hybrid schedule. The standard in-office days are Monday, Tuesday, and Thursday. Most Asanas have the option to work from home on Wednesdays. Working from home on Fridays depends on the type of work you do and the teams with which you partner. If you're interviewing for this role, your recruiter will share more about the in-office requirements What you'll achieve Own Asana's security risk management program: Design and continuously mature a quantitative risk framework — including risk scoring methodologies, likelihood and impact modeling, and risk appetite thresholds — that enables consistent, data-driven risk decisions across the organization. Build and maintain a living risk register: Own Asana's central security risk register, developing KRIs, tracking trends over time, and driving accountability for risk treatment and remediation with business and technical owners. Automate risk identification and monitoring: Design and implement automated data pipelines and integrations that continuously surface security risks — pulling signals from vulnerability scanners, cloud security tooling, SIEMs, and third-party risk sources — so Asana's

restaigo
View job →
C
16 days ago

POSITION SUMMARY The Consultant is responsible for supporting the Consulting Services Team in delivering cybersecurity, privacy, and compliance services across a diverse portfolio of client engagements. This role operates as a flexible, deployable resource, contributing to multiple concurrent or sequential engagements based on business needs. This role requires proactive initiative to study, ask questions, and rapidly learn the organization’s solutions, methodologies, and delivery standards. Consultants must be comfortable transitioning between engagements, adapting quickly to new client environments, and delivering value immediately. Consultants focus on executing client deliverables, enhancing service quality, and improving project efficiency under the guidance of senior team members. They are expected to develop broad subject matter expertise, contribute to process improvements, and build trusted relationships across a variety of clients and internal teams. SPECIFIC JOB RESPONSIBILITIES Serve as a deployable consulting resource, supporting multiple client engagements across varying industries, with a focus on healthcare. Adapt quickly to new client environments, priorities, and team structures while maintaining high-quality delivery. Support the execution of cybersecurity and compliance consulting engagements under senior leadership guidance. Work closely with clients to collect data, conduct risk assessments, gap analyses, and document findings. Assist in evaluating client security postures, including vulnerability management, compliance alignment, and risk exposure. Develop and contribute to recommendations aligned with industry frameworks such as NIST, ISO 27001, CIS Controls, and HIPAA. Support clients in designing and implementing security controls, policies, and procedures.

airustexcel
View job →
PE
1mo ago

Role Summary We are seeking an experienced SOC / Security Operations Lead to oversee and strengthen the organization's Security Operations Center (SOC), threat detection, incident response, vulnerability management, data protection, and security monitoring capabilities. The ideal candidate will possess extensive experience in managing enterprise security operations, SIEM/SOAR platforms, threat hunting, incident response, DLP, endpoint security, and vulnerability management programs. The role requires leadership of a multi-functional security operations team responsible for protecting critical business systems, customer data, and digital assets while ensuring compliance with RBI regulations and industry security standards. Key Responsibilities Security Operations Center (SOC) Management -Lead and manage 24x7 Security Operations Center (SOC) functions. -Establish and enhance SOC processes, playbooks, escalation procedures, and operational metrics. -Ensure timely detection, triage, investigation, containment, and remediation of security incidents. -Develop SOC maturity roadmaps aligned with industry best practices and regulatory expectations. -Monitor security KPIs, SLAs, MTTR, MTTD, and incident response effectiveness. SIEM, XSIAM & Threat Detection -Lead implementation, administration, and optimization of: -Palo Alto Cortex XSIAM -SIEM Platforms -SOAR Platforms -UEBA Solutions -Threat Intelligence Platforms -Develop and tune correlation rules, detection logic, and analytics use cases. -Enhance detection coverage across cloud, endpoints, applications, networks, and third-party environments. -Drive threat hunting and proactive security monitoring initiatives. Incident Response & Threat Management -Lead enterprise cyber incident response activities. -Develop and maintain incident response plans, runbooks, and communication procedures. -Coordinate investigations involving malware, ransomware, phishing, insider threats, account compromise, fraud, and adv

PE
Private Employer
📍 India• Full-time
1mo ago

About the role We are seeking an experienced and detail-oriented Information Security and Cloud Security Auditor to join our team. The ideal candidate will have 3-7 years of expertise in data security and privacy control implementation, internal auditing, third-party risk management, cybersecurity governance, and cloud security (banking sector preferred). This role will be responsible for conducting comprehensive IT and cloud security audits, ensuring compliance with regulatory requirements, and enhancing our information security policies and procedures. Key Responsibilities -Conduct IT and cloud security audits across various domains, including IT General Controls (ITGC), Information Security Controls, Cloud Security, Network Security, Vulnerability Management, and Vendor Risk Assessments. -Assess compliance with relevant laws, regulations, industry standards, and organizational policies across both on-premises and cloud environments. -Develop and enhance information security and cloud security policies and procedures in alignment with industry best practices. -Maintain thorough documentation of audit findings, risk assessments, security measures, working papers, audit program checklists, and evidence for internal and external reporting. -Validate ITGC, cloud security, and application-specific controls and manage audit documentation, risk assessments, evidence gathering, and control testing. -Follow up on audit findings and ensure timely closure of non-compliance and security issues identified during audits. -Manage and oversee third-party risk assessments and audits, ensuring robust security controls are implemented across traditional and cloud-based service providers. -Lead and participate in the development, migration, and implementation of security controls and policies for network and cloud security solutions. -Conduct risk-based security assessments of internal, vendor, and third-party hosted environments, covering both traditional IT infrastructure and cloud

awsazuregcp
View job →

Spaulding Ridge is an advisory and IT implementation firm. We help global organizations get financial clarity into the complex, daily sales, and operational decisions that impact profitable revenue generations, efficient operational performance, and reliable financial management. At Spaulding Ridge, we believe all business is personal. Core to our values is our relationships with our clients, our business partners, our team, and the global community. Our employees dedicate their time to helping our clients transform their business, from strategy through implementation and business transformation. What You Will Do and Learn: The Cybersecurity Operations Analyst will support the Cybersecurity Manager in maintaining and improving Spaulding Ridge's security posture. This entry-level role is ideal for someone looking to develop a career in cybersecurity while gaining hands-on experience across security operations, vulnerability management, identity and access management, cloud security, and compliance. The analyst will assist in monitoring security events, responding to security alerts, supporting security projects, and maintaining security documentation while learning from senior members of the Technology & Security team. Security Operations Monitor and analyze security alerts from SIEM, EDR, Firewall, WAF, IDS/IPS, email security, and cloud security platforms. Conduct and Support threat hunting and detection of tuning activities. Monitors open-source and proprietary threat intelligence feeds daily to research threat actor tactics, techniques, and procedures (TTPs). Support the investigation and triage of security alerts and incidents under the guidance of the Cybersecurity Manager. Assist with incident response activities, including documentation, evidence collection, and follow-up actions. Help maintain security playbooks and operational procedures. Vulnerability Management Assist with vulnerability scanning across endpoints, servers, and cloud environments.

awsazurehuman resources
View job →

Our Purpose Mastercard powers economies and empowers people in 200+ countries and territories worldwide. Together with our customers, we’re helping build a sustainable economy where everyone can prosper. We support a wide range of digital payments choices, making transactions secure, simple, smart and accessible. Our technology and innovation, partnerships and networks combine to deliver a unique set of products and services that help people, businesses and governments realize their greatest potential. Title and Summary Lead Threat Intelligence Analyst Overview This is an exciting position for a Lead Threat Intelligence Analyst to join Vocalink’s dedicated Threat Intelligence function. You will be play an integral leading role in the Vocalink Threat Intelligence Team, working closely with the SOC and internal security teams to deliver actionable intelligence. You will support a diverse range of customers and contribute to key initiatives such as threat hunting, vulnerability management, and insider threat detection. Collaboration is at the heart of this position. You will work alongside Mastercard’s global threat intelligence capabilities and engage proactively with a wide network of stakeholders, including vendors, industry groups, our customers, and government organisations. This is a unique chance to help shape and grow a fast-evolving threat intelligence capability that serves Vocalink and its customers. If you are passionate about cyber security and eager to make an impact, this role offers an exciting platform to develop your leadership expertise and to help to grow and mature a threat intelligence function in a critical national infrastructure provider. Role Lead the day-to-day operations of the threat intelligence function within the Vocalink Security Operations Cent

D
1mo ago

APPLICATION AND WEB SECURITY SPECIALIST THE OPPORTUNITY The Application and Web Security Specialist will serve as a security consultant to Web and Application Developers. You will work with developers on identifying security risks within their applications and validating remediation. This role offers the opportunity to build solid relationships throughout the enterprise, with developers and vendors, while learning about the various technologies employed within our organization. There are other opportunities to serve included with this role that relate to other Security disciplines such as Threat Security, Vulnerability Management, and Event Correlation. THE TEAM The Information Security Team is responsible for the confidentiality of customer and employee information, ensuring the data stored and shared maintains integrity, all while making sure that all of this does not impact the availability of the entire Dillard’s enterprise. This team is expected to be high-performing. To meet this expectation, the team members are communicative and collaborative, always sharing knowledge and research. Members of this team should be able to understand what is expected of them and adjust on the fly, as priorities may change depending on the company's needs. If you are someone who sets a standard of excellence for yourself and you enjoy working alongside others who set the same standard and who genuinely want each of their peers to succeed, you may be the perfect addition to this team. WHAT YOU WILL DO Inspect and assess current solutions for Web and Application Security risks Architect and implement security controls within the Software Development Lifecycle (SDLC) Hold recurring cadences with development and security leadership to discuss findings and future paths for the company regarding application security posture Participate in vulnerability verification and assist development teams in remediation based on reports from scanners, along with manual application sec

reactawsdocker
View job →
🔔

Get new vulnerability management engineer jobs by email

Daily job updates · Unsubscribe anytime