What You’ll Do:
- Lead and manage the vulnerability management program, ensuring timely identification, assessment, and remediation of vulnerabilities.
- Conduct regular vulnerability assessments using tools such as Qualys, Veracode, Snyk, Prisma Cloud, Burp Suite, and BrightSec.
- Perform Static Application Security Testing (SAST), Dynamic Application Security Testing (DAST), and Software Composition Analysis (SCA) services.
- Investigate Common Vulnerabilities and Exposures (CVE) to determine their impact on the organization and recommend appropriate mitigation strategies.
- Engage with stakeholders, including engineering teams, to communicate vulnerabilities, steps to reproduce, and provide mitigation support.
- Drive the security exception process and ensure compliance with internal security policies and standards.
- Collaborate with third-party penetration testers and act as a bridge between engineering teams and external testers to address technical gaps.
- Work with engineering teams to remediate vulnerabilities within defined Service Level Agreements (SLAs) to meet compliance requirements.
- Support the compliance team and work on improving internal security processes.
- Conduct occasional internal penetration tests to identify and address security weaknesses.
- Utilize centralized vulnerability management tools like DefectDojo for tracking and reporting vulnerabilities.
- Engage with product owners to understand enhancements and ensure the security scan scope is comprehensive.
- Investigate vulnerabilities reported by external security researchers, reproduce reported issues, and assist engineers in fixing them.
- Manage the security scorecard and help the organization maintain advanced scores.
- Keep the leadership team informed by sharing security scorecards and metrics.
- Introduce new security services and fine-tune current security processes.
What You’ll Bring:
- 5+ years of experience in information security, with a focus on vulnerability management.
- Proficient understanding of security attacks, including OWASP Top 10 and SANS Top 25.
- Hands-on experience with security tools such as Qualys, Veracode, Snyk, Prisma Cloud, Burp Suite, and BrightSec.
- Basic understanding of AWS cloud and experience working in cloud security is an added advantage.
- Strong analytical and problem-solving skills with the ability to investigate and assess the impact of vulnerabilities.
- Excellent communication skills to effectively engage with stakeholders and engineering teams.
- Experience in driving security exception processes and supporting compliance initiatives.
- Familiarity with centralized vulnerability management tools like DefectDojo.
- Ability to perform occasional internal penetration tests and support third-party pentesting efforts.

0 applies
9 views
Other Jobs from EverBridge
Senior Software Engineer ( Java,React)
Senior Software Developer Engineer in Test
Software Engineer I (Flutter )
Salesforce Developer
Sr Security Engineer
C#/.NET Developer
Similar Jobs
Senior Workday Extend Developer
Platform Engineer
Senior Full Stack Engineer
Global Chapter Lead - DevOps & Testing - Ramboll Tech
There are more than 50,000 engineering jobs:
Subscribe to membership and unlock all jobs
Engineering Jobs
60,000+ jobs from 4,500+ well-funded companies
Updated Daily
New jobs are added every day as companies post them
Refined Search
Use filters like skill, location, etc to narrow results
Become a member
🥳🥳🥳 452 happy customers and counting...
Overall, over 80% of customers chose to renew their subscriptions after the initial sign-up.
To try it out
For active job seekers
For those who are passive looking
Cancel anytime
Frequently Asked Questions
- We prioritize job seekers as our customers, unlike bigger job sites, by charging a small fee to provide them with curated access to the best companies and up-to-date jobs. This focus allows us to deliver a more personalized and effective job search experience.
- We've got about 70,000 jobs from 5,000 vetted companies. No fake or sleazy jobs here!
- We aggregate jobs from 5,000+ companies' career pages, so you can be sure that you're getting the most up-to-date and relevant jobs.
- We're the only job board *for* software engineers, *by* software engineers… in case you needed a reminder! We add thousands of new jobs daily and offer powerful search filters just for you. 🛠️
- Every single hour! We add 2,000-3,000 new jobs daily, so you'll always have fresh opportunities. 🚀
- Typically, job searches take 3-6 months. EchoJobs helps you spend more time applying and less time hunting. 🎯
- Check daily! We're always updating with new jobs. Set up job alerts for even quicker access. 📅
What Fellow Engineers Say