Demo

Security Engineer - Vulnerability Management

NITYA Software Solutions, Inc.
Mountain View, CA Full Time
POSTED ON 3/7/2025
AVAILABLE BEFORE 5/7/2025

Job Details

Role: Security Engineer - Vulnerability Management

Location: Mountain View CA (100% Onsite)

C2C

Security Engineer - Vulnerability Management Role

Must-Have Skills (Non-Negotiable) - Vulnerability Management.
1. Proficient in Analyzing and prioritizing security vulnerabilities based on risk.
2. Proficient in Developing mitigation strategies and remediation plans.
3. Must be able to use environmental and threat intelligence for vulnerability analysis.
4. Experience in Securing environments in AWS, Google Cloud Platform, Docker, Kubernetes.
5. Proficient in Python, Java, Ruby, Node for security automation.
6. Experience with Tableau, Qlik Sense, SQL for security insights.
Good-to-Have Skills (Preferred but Not Mandatory) - Vulnerability Management.
1. Experience mitigating WAF evasion techniques.
2. Ability to influence engineering teams for secure coding practices.
3. Use AI-driven analytics for vulnerability detection and response.
4. Knowledge of security frameworks and regulatory compliance.

DETAILED JOB DUTIES

Skill Set for Security Engineer - Vulnerability Management Role

Must-Have Skills (Non-Negotiable) Vul. Mgmt

  1. Identify, Analyze, and Prioritize the Impact of Vulnerabilities
    1. Assess and prioritize vulnerabilities based on real-world impact.
    2. Examples: Using risk-based factors beyond CVSS, incorporating threat intelligence and environmental factors.
    3. Tools: OWASP, SANS 25, AWS Security Hub, Tableau, Qlik Sense for risk assessment.
  2. Mitigation if Patch is Not Ready
    1. Implement compensating controls and temporary mitigations for unpatched vulnerabilities.
    2. Examples: Using WAF rules, network segmentation, access controls until a patch is available.
    3. Tools: AWS, Kubernetes, Docker Security Measures, Advanced WAF Configurations.
  3. Automating Future Detection
    1. Develop and implement automated detection mechanisms for vulnerabilities.
    2. Examples: Automating scans, continuous vulnerability assessment, and reporting.
    3. Tools: Python, Java, Ruby, Node, AWS Security Hub, JIRA, ServiceNow.
  4. Detecting Malicious Payloads
    1. Identify and prevent malicious payloads before execution.
    2. Examples: Using threat intelligence and behavioural analytics for payload detection.
    3. Tools: CrowdStrike, AWS GuardDuty, SIEM solutions.
  5. Blocking Advanced WAF Evasion Techniques
    1. Enhance Web Application Firewall (WAF) security to detect and block advanced evasion attempts.
    2. Examples: Implementing custom WAF rules and monitoring attack patterns.
    3. Tools: AWS WAF, Cloudflare, ModSecurity, Imperva.
  6. Automating Threat Responses
    1. Automate incident response workflows for detected vulnerabilities.
    2. Examples: Using security playbooks to trigger automated remediation actions.
    3. Tools: AWS Lambda, Python automation, SIEM integrations.
  7. Risk-Based Factors Beyond CVSS
    1. Consider additional risk factors beyond CVSS scores when prioritizing vulnerabilities.
    2. Examples: Evaluating exploitability, business impact, attack surface exposure.
    3. Tools: Threat intelligence feeds, vulnerability management dashboards.

Good-to-Have Skills (Preferred but Not Mandatory) Vul. Mgmt

  1. Cloud Security & Container Security
    1. Secure AWS, Google Cloud Platform, Kubernetes, Docker environments.
  2. Data Analytics for Security Posture Improvement
    1. Utilize Tableau, Qlik Sense, SQL for security data analysis.
  3. Experience in Influencing Secure Software Development
    1. Work with developers to build security-first applications.

Employers have access to artificial intelligence language tools (“AI”) that help generate and enhance job descriptions and AI may have been used to create this description. The position description has been reviewed for accuracy and Dice believes it to correctly reflect the job opportunity.

If your compensation planning software is too rigid to deploy winning incentive strategies, it’s time to find an adaptable solution. Compensation Planning
Enhance your organization's compensation strategy with salary data sets that HR and team managers can use to pay your staff right. Surveys & Data Sets

What is the career path for a Security Engineer - Vulnerability Management?

Sign up to receive alerts about other jobs on the Security Engineer - Vulnerability Management career path by checking the boxes next to the positions that interest you.
Income Estimation: 
$65,440 - $83,454
Income Estimation: 
$102,189 - $143,024
Income Estimation: 
$70,462 - $84,818
Income Estimation: 
$77,991 - $108,747
Income Estimation: 
$87,093 - $107,335
Income Estimation: 
$140,233 - $181,029
Income Estimation: 
$161,209 - $233,553
Income Estimation: 
$87,093 - $107,335
Income Estimation: 
$111,725 - $147,313
Income Estimation: 
$112,673 - $137,290
Income Estimation: 
$140,233 - $181,029
Income Estimation: 
$161,209 - $233,553
Income Estimation: 
$112,673 - $137,290
Income Estimation: 
$139,945 - $168,577
Income Estimation: 
$140,233 - $181,029
Income Estimation: 
$161,209 - $233,553
Income Estimation: 
$139,945 - $168,577
Income Estimation: 
$164,835 - $201,088
Income Estimation: 
$135,994 - $168,063
Income Estimation: 
$161,209 - $233,553
View Core, Job Family, and Industry Job Skills and Competency Data for more than 15,000 Job Titles Skills Library

Job openings at NITYA Software Solutions, Inc.

NITYA Software Solutions, Inc.
Hired Organization Address Chicago, IL Full Time
Job Details Automation Test Lead/Architect Client Location: Chicago, IL 60604 (Onsite Job) Need locals Job Type: Long Te...
NITYA Software Solutions, Inc.
Hired Organization Address Texas, TX Full Time
Job Details Skills Include: Have strong engineering experience in building scalable, resilient, and observable micro ser...
NITYA Software Solutions, Inc.
Hired Organization Address Los Angeles, CA Full Time
Job Details Client: Mastek (End Client: LA CARE) .NET Developer with Healthcare (Claims, 834 Files, Benefit Enrollment) ...
NITYA Software Solutions, Inc.
Hired Organization Address Mountain View, CA Full Time
Job Details Role: Security Engineer - Data Loss Prevention Location: Mountain View CA (100% Onsite) C2C Security Enginee...

Not the job you're looking for? Here are some other Security Engineer - Vulnerability Management jobs in the Mountain View, CA area that may be a better fit.

Security Engineer with Vulnerability Management

e-IT Professionals Corp., Mountain View, CA

AI Assistant is available now!

Feel free to start your new journey!