Demo

Staff Security Engineer

Tech Tammina LLC
Hartford, CT Full Time
POSTED ON 1/30/2025
AVAILABLE BEFORE 4/29/2025

Job Description

Job Description

MUST HAVE STRONG :

  • 7 years in Cybersecurity roles, with at least 3 years specializing in Attack Surface Management.
  • 5 years of hands-on experience with Qualys ASM Platform (mandatory).
  • 5 years of experience with cloud platforms (AWS, Azure, or GCP) and securing cloud-based assets.

We are seeking an External Attack Surface Management Staff Security Engineer to lead our efforts in identifying, analyzing, and mitigating risks associated with our organization's internet-facing assets. This critical role ensures that external assets, services, and endpoints are continuously monitored, assessed, and protected against emerging threats. The ideal candidate will have a strong background in cybersecurity, deep expertise with Qualys ASM Platform (mandatory), and a proactive approach to managing risks.

Key Responsibilities :

Attack Surface Discovery and Inventory -

  • Leverage Qualys ASM Platform and advanced tools to identify external-facing assets such as cloud resources, domains, subdomains, APIs, and third-party integrations.
  • Maintain an up-to-date inventory of all external assets and ensure continuous monitoring for changes or exposures.
  • Vulnerability Identification and Remediation -

  • Conduct regular scans and assessments using Qualys ASM to identify vulnerabilities across the attack surface.
  • Collaborate with internal teams to prioritize and remediate vulnerabilities promptly.
  • Automate vulnerability detection and notification processes.
  • Risk Assessment and Threat Analysis -

  • Analyze risks associated with identified vulnerabilities and provide actionable recommendations to mitigate exposure.
  • Monitor emerging threats targeting external assets and take proactive measures to address them.
  • Incident Response and Escalation -

  • Act as the Subject Matter Expert (SME) for incidents involving external-facing assets.
  • Provide analysis and recommendations during incident response and forensic investigations.
  • Tool Management and Automation -

  • Manage and optimize Qualys ASM Platform, including configuration, updates, and integration with other security tools (e.g., SIEM, SOAR).
  • Develop scripts or workflows to automate attack surface discovery and monitoring.
  • Collaboration and Stakeholder Engagement -

  • Partner with development, DevOps, IT, and third-party vendors to secure external assets throughout their lifecycle.
  • Provide training and awareness on attack surface management best practices.
  • Policy and Governance -

  • Enforce security policies, standards, and guidelines for external assets.
  • Conduct regular security assessments and audits to mitigate risks and maintain compliance with regulations (e.g., PCI DSS, HIPAA, SOX).
  • Reporting and Metrics -

  • Develop reports and dashboards highlighting vulnerabilities, risk trends, and remediation progress.
  • Track and communicate KPIs to measure the effectiveness of the attack surface management program.
  • Preferred Qualifications :

  • Strong understanding of networking, DNS, web applications, APIs, and common vulnerabilities (e.g., OWASP Top 10).
  • Proficiency in scripting languages (e.g., Python, Bash, PowerShell) for automation.
  • Experience with vulnerability management and penetration testing methodologies.
  • Certifications such as CISSP, GSEC, GPEN, OSCP, or Qualys VMDR / CSAM are highly desirable.
  • Excellent communication, reporting, and problem-solving skills.
  • If your compensation planning software is too rigid to deploy winning incentive strategies, it’s time to find an adaptable solution. Compensation Planning
    Enhance your organization's compensation strategy with salary data sets that HR and team managers can use to pay your staff right. Surveys & Data Sets

    What is the career path for a Staff Security Engineer?

    Sign up to receive alerts about other jobs on the Staff Security Engineer career path by checking the boxes next to the positions that interest you.
    Income Estimation: 
    $179,455 - $227,077
    Income Estimation: 
    $214,167 - $272,269
    Income Estimation: 
    $152,549 - $188,894
    Income Estimation: 
    $194,072 - $240,547
    Income Estimation: 
    $135,994 - $168,063
    Income Estimation: 
    $161,209 - $233,553
    Income Estimation: 
    $70,462 - $84,818
    Income Estimation: 
    $77,991 - $108,747
    Income Estimation: 
    $87,093 - $107,335
    Income Estimation: 
    $140,233 - $181,029
    Income Estimation: 
    $161,209 - $233,553
    Income Estimation: 
    $87,093 - $107,335
    Income Estimation: 
    $111,725 - $147,313
    Income Estimation: 
    $112,673 - $137,290
    Income Estimation: 
    $140,233 - $181,029
    Income Estimation: 
    $161,209 - $233,553
    Income Estimation: 
    $112,673 - $137,290
    Income Estimation: 
    $139,945 - $168,577
    Income Estimation: 
    $140,233 - $181,029
    Income Estimation: 
    $161,209 - $233,553
    View Core, Job Family, and Industry Job Skills and Competency Data for more than 15,000 Job Titles Skills Library

    Job openings at Tech Tammina LLC

    Tech Tammina LLC
    Hired Organization Address AK Full Time
    Job Title : Workday Security Administrator Location : Remote (25% Travel Required) Job Type : Contract Are you a Workday...
    Tech Tammina LLC
    Hired Organization Address Rockville, MD Full Time
    Service Desk / Help Desk Support Specialist (Level 1 Support) We are in search of a motivated and detail-oriented Servic...
    Tech Tammina LLC
    Hired Organization Address VA Full Time
    Role : Senior Data Scientist Location : 100% remote Duration : Long term Rate : Market Key Responsibilities : Lead end-t...
    Tech Tammina LLC
    Hired Organization Address Auburn, MI Full Time
    Job Description Solution Architect Location: AUBURN HILLS, MI Duration: 12 Months Description: Knowledge of Linux Knowle...

    Not the job you're looking for? Here are some other Staff Security Engineer jobs in the Hartford, CT area that may be a better fit.

    Staff Product Security Engineer

    Medallia, Cuauhtémoc, CT

    Staff Engineer

    Tsunami Tsolutions, Glastonbury, CT

    AI Assistant is available now!

    Feel free to start your new journey!