Demo

Vulnerability OT, IoT and AI Scanning Engineer (REMOTE)

Lensa
Woonsocket, RI Remote Full Time
POSTED ON 4/14/2025
AVAILABLE BEFORE 5/13/2025
Lensa is the leading career site for job seekers at every stage of their career. Our client, Insight Global, is seeking professionals. Apply via Lensa today!

Job Description

A large healthcare company is seeking an experienced Vulnerability OT, IoT and AI Scanning Engineer to join its enterprise Endpoint Vulnerability Management security team. The client is over $370Bn in revenue and operates over 9,000 locations. They are dedicated to putting people first from their customers to their employees, engaging with customer feedback to further innovate to provide the best care possible, simplifying processes for care, creating a trusting environment, and to creating the safest and highest quality of care to keep patients protected. The client is dedicated to giving back to those around them. They have stared a Foundation to provide financial support to the communities to help with areas such as maternal health, mental health, scholarships, free health services/screenings, etc.

The Vulnerability OT, IoT and AI Scanning Engineer will lead efforts in identifying, assessing, and mitigating security vulnerabilities in Operational Technology (OT), IoT (Internet of Things) devices and AI/ML (Artificial Intelligence/Machine Learning) systems. The team does not currently have someone focused in AI/IoT so this resource will be helping shed light on what scan types can be used in these areas and conducting the scans. This role involves designing and implementing robust scanning mechanisms, analyzing vulnerabilities, and collaborating with cross-functional teams to ensure security best practices are followed throughout the lifecycle. Additionally, this role will also contribute to advancing our Continuous Threat Exposure Management program to reduce overall risk exposure. They will be given a framework to follow to assess what risk level is associated. The client is currently using Qualys Attack Surface Management (ASM), Wiz and Prisma, but can take someone that has exposure to Rapid 7, Tenable etc. They will also perform root cause analysis for failed scans, perform scans in Qualys and help consolidate Qualys scans to manage them better and be more efficient.

Key Responsibilities

Vulnerability Management

 Design, develop, and maintain automated vulnerability scanning solutions for OT, IoT and AI/ML systems.

 Conduct vulnerability assessments leveraging scanning tools and custom scripts for IoT and AI models.

 Identify, prioritize, and report vulnerabilities to stakeholders while recommending actionable mitigation strategies.

 Perform contextual risk analysis to assess vulnerabilities and threats against environmental, business and asset risk factors.

 Leverage the results of the analysis to recommend risk-based remediation prioritization.

 Monitor and analyze security vulnerabilities in IoT firmware, communication protocols, APIs, and AI models.

OT and IoT Security

 Partner with the penetration testing team to perform assessments on OT, IoT devices, embedded systems, and connected ecosystems.

 Assess risks associated with insecure communication channels, firmware updates, and hardware vulnerabilities.

 Analyze and evaluate IoT communication protocols (MQTT, CoAP, Zigbee, etc.) for potential threats.

 Develop methodologies to test and audit IoT device security, including physical and wireless interfaces.

AI/ML Model Security

 Conduct vulnerability assessments on AI/ML models, ensuring protection against adversarial attacks and model poisoning.

 Identify and mitigate model vulnerabilities such as data leakage, model inversion, and backdoor attacks.

 Collaborate with AI/ML engineers to integrate security-by-design principles during model development.

Continuous Threat Exposure Management (CTEM)

 Implement and maintain a Continuous Threat Exposure Management (CTEM) framework that identifies, assesses, and mitigates threats in real time.

 Utilize Attack Surface Management (ASM) tools to proactively discover shadow IT, misconfigured services, and exposed assets.

 Continuously monitor the attack surface, identifying security gaps, misconfigurations, and zero-day vulnerabilities.

 Develop workflows to prioritize and mitigate potential threats based on severity, exploitability, and business impact.

 Evaluate new and evolving threat vectors, ensuring security controls are updated accordingly.

Security Automation and Scripting

 Develop custom scripts and automation tools to enhance vulnerability scanning and testing processes.

 Utilize Python, Bash, or other scripting languages to automate repetitive tasks and enhance efficiency.

 Integrate scanning tools with CI/CD pipelines to ensure continuous security in the development lifecycle.

Threat Intelligence and Risk Assessment

 Stay up to date on emerging threats and vulnerabilities in IoT and AI/ML ecosystems.

 Incorporate threat intelligence feeds and frameworks (MITRE ATT&CK, Cyber Kill Chain) to simulate adversary behavior and predict possible attack vectors.

 Collaborate with red and blue teams to conduct threat simulations and refine incident response capabilities.

 Analyze threat actor tactics, techniques, and procedures (TTPs) to improve monitoring and detection strategies.

 Analyze potential threats and assess risk to proactively mitigate vulnerabilities before exploitation.

 Collaborate with incident response teams to address zero-day vulnerabilities in IoT and AI environments.

Compliance and Policy Adherence

 Ensure compliance with security standards such as NIST, ISO 27001, and PCI-DSS as they pertain to IoT and AI.

 Document vulnerability findings and remediation efforts in accordance with industry best practices.

Compensation

$50/hr to $57/hr.

Exact compensation may vary based on several factors, including skills, experience, and education.

Employees in this role will enjoy a comprehensive benefits package starting on day one of employment, including options for medical, dental, and vision insurance. Eligibility to enroll in the 401(k) retirement plan begins after 90 days of employment. Additionally, employees in this role will have access to paid sick leave and other paid time off benefits as required under the applicable law of the worksite location.

We are a company committed to creating diverse and inclusive environments where people can bring their full, authentic selves to work every day. We are an equal opportunity/affirmative action employer that believes everyone matters. Qualified candidates will receive consideration for employment regardless of their race, color, ethnicity, religion, sex (including pregnancy), sexual orientation, gender identity and expression, marital status, national origin, ancestry, genetic factors, age, disability, protected veteran status, military or uniformed service member status, or any other status or characteristic protected by applicable laws, regulations, and ordinances. If you need assistance and/or a reasonable accommodation due to a disability during the application or recruiting process, please send a request to HR@insightglobal.com .

   

To learn more about how we collect, keep, and process your private information, please review Insight Global's Workforce Privacy Policy: https://insightglobal.com/workforce-privacy-policy/ .

Skills And Requirements

  • 35 years of experience in vulnerability management, penetration testing, and security assessments for IoT and AI/ML environments.
  • hands-on with vulnerability scanning and penetration testing frameworks like Nessus, Qualys, Metasploit, or similar tools.
  • scripting and automation using Python, Bash, or PowerShell
  • Proficiency in IoT security testing tools such as Shodan, Burp Suite, and Wireshark.
  • Strong knowledge of AI/ML security techniques, including adversarial ML and model integrity analysis.
  • Hands-on experience with communication protocols used in IoT environments (e.g., MQTT, Zigbee, CoAP, Bluetooth).
  • Bachelors degree in Computer Science, Cybersecurity, Electrical Engineering, or a related field. -OSCP, CEH, or GPEN for penetration testing.
  • GIAC GICSP or IoT Security Certifications.
  • Certified Ethical Hacker (CEH) or Offensive Security Certified Professional (OSCP).
  • AI/ML-related certifications such as TensorFlow Security or AI Security certifications. null

We are a company committed to creating diverse and inclusive environments where people can bring their full, authentic selves to work every day. We are an equal employment opportunity/affirmative action employer that believes everyone matters. Qualified candidates will receive consideration for employment without regard to race, color, ethnicity, religion,sex (including pregnancy), sexual orientation, gender identity and expression, marital status, national origin, ancestry, genetic factors, age, disability, protected veteran status, military oruniformed service member status, or any other status or characteristic protected by applicable laws, regulations, andordinances. If you need assistance and/or a reasonable accommodation due to a disability during the application or the recruiting process, please send a request to HR@insightglobal.com.

Salary : $50 - $57

If your compensation planning software is too rigid to deploy winning incentive strategies, it’s time to find an adaptable solution. Compensation Planning
Enhance your organization's compensation strategy with salary data sets that HR and team managers can use to pay your staff right. Surveys & Data Sets

What is the career path for a Vulnerability OT, IoT and AI Scanning Engineer (REMOTE)?

Sign up to receive alerts about other jobs on the Vulnerability OT, IoT and AI Scanning Engineer (REMOTE) career path by checking the boxes next to the positions that interest you.
Income Estimation: 
$76,865 - $99,440
Income Estimation: 
$92,729 - $118,963
Income Estimation: 
$152,549 - $188,894
Income Estimation: 
$194,072 - $240,547
Income Estimation: 
$135,994 - $168,063
Income Estimation: 
$161,209 - $233,553
Income Estimation: 
$70,462 - $84,818
Income Estimation: 
$77,991 - $108,747
Income Estimation: 
$87,093 - $107,335
Income Estimation: 
$140,233 - $181,029
Income Estimation: 
$161,209 - $233,553
Income Estimation: 
$87,093 - $107,335
Income Estimation: 
$111,725 - $147,313
Income Estimation: 
$112,673 - $137,290
Income Estimation: 
$140,233 - $181,029
Income Estimation: 
$161,209 - $233,553
Income Estimation: 
$112,673 - $137,290
Income Estimation: 
$139,945 - $168,577
Income Estimation: 
$140,233 - $181,029
Income Estimation: 
$161,209 - $233,553
View Core, Job Family, and Industry Job Skills and Competency Data for more than 15,000 Job Titles Skills Library

Job openings at Lensa

Lensa
Hired Organization Address Allendale, MI Full Time
WBUR's Product and Audience Insights team is responsible for growing, engaging, and converting audiences across WBUR pla...
Lensa
Hired Organization Address Boston, MA Full Time
Job Description About the role : At Takeda, we are a forward-looking, world-class R&D organization that unlocks innovati...
Lensa
Hired Organization Address Greensboro, NC Full Time
The College of Science and Technology (CoST) at North Carolina A&T State University is seeking an experienced educator t...
Lensa
Hired Organization Address Dallas, TX Temporary
Develop personalized, intelligent InfoSites, Alerts, TAO’s and other site-based web assets. Manage the development of AJ...

Not the job you're looking for? Here are some other Vulnerability OT, IoT and AI Scanning Engineer (REMOTE) jobs in the Woonsocket, RI area that may be a better fit.

Senior Vulnerability Management Engineer

Western Digital, Providence, RI

Controls Engineer

Engineer Rec, Providence, RI

AI Assistant is available now!

Feel free to start your new journey!