Splunk

Principal, Vulnerability Management Engineer (Costa Rica)

Remote San Jose, CA
Microservices Docker Kubernetes
Description

Description

Splunk, a Cisco company, is building a safer and more resilient digital world with an end-to-end full stack platform made for a hybrid, multi-cloud world. Leading enterprises use our unified security and observability platform to keep their digital systems secure and reliable. Our customers love our technology, but it's our caring employees that make Splunk stand out as an amazing career destination. No matter where in the world or what level of the organization, we approach our work with kindness. So bring your work experience, problem-solving skills and talent, of course, but also bring your joy, your passion and all the things that make you, you. Come help organizations be their best, while you reach new heights with a team that has your back.

About The Role

Do you enjoy securing products which have a global impact? As a Senior Vulnerability Management Engineer you will lead security and vulnerability assessments in collaboration with internal teams, identify new capabilities for our Vulnerability Management Program, and assist in the development of other engineers to assure the security of Splunk products. This role will report to the Manager, of Vulnerability Management.
 
We are a passionate team who has fun, enjoys a good laugh, but above all else thinks security first. If you are passionate about and have an advanced level of working knowledge in information security, have a desire to always learn and improve, as well as mentor others this job is for you!

What you'll get to do

  • Build solutions/capabilities within the scope of Vulnerability Management to further improve Splunk’s Vulnerability Management Program (e.g., automation, data analysis, process development)
  • Analyze vulnerability data/Identifying trends to perform root-cause analysis
  • Assist in development of new security standards and baselines
  • Perform vulnerability assessments and act as a point of contact for engineering teams to drive remediation of security concerns and active incidents.
  • Respond to emerging security events and threats
  • Triage vulnerabilities to provide company specific severity guidance
  • Ensure remediation team compliance to regulatory standards
  • Comfortably lead security discussions, vulnerability assessments, propose and discuss solutions to security tools that are directly related to their area of focus.

Must-have Qualifications

  • 8+ years of experience in a vulnerability management engineer (or related information security role) capacity with a Bachelor's degree in computer science, information systems, or related degree
  • Must have experience with vulnerability management or assessments and security concepts
  • Proven proficiency with vulnerability scanning and management platforms such as Tenable, Qualys, Rapid7, or similar
  • Familiarity with how to assess and implement external configuration compliance standards such as CIS Benchmarks and DISA STIGs
  • Experience with risk-based vulnerability management, including threat modeling, CVSS scoring, and prioritization methodologies
  • In depth knowledge on the best remediation techniques for different vulnerabilities and the ability to explain them to engineering teams.
  • Strong analytical and problem-solving skills, with an ability to balance security needs with business impact
  • Knowledge of common security threats, such as attack-techniques, evasive techniques, and preventative & defensive methods.
  • Understanding of security features in Container and Container Orchestration technologies (Docker, Kubernetes, etc).
  • Deep knowledge of cloud operational models and secure SaaS architecture in a world of containerized microservices.
  • Familiarity of compliance requirements for certifications like PCI DSS, SOC2, HIPAA, FedRAMP
  • Experience addressing systemic security issues through root cause analysis, building security solutions, and project leadership.

Nice-to-have Qualifications

We’ve taken special care to separate the must-have qualifications from the nice-to-haves. “Nice-to-have” means just that: Nice. To. Have. So, don’t worry if you can’t check off every box. We’re not hiring a list of bullet points–we’re interested in the whole you.
  • Functional in using Splunk Search Processing Language (SPL)

Splunk is an Equal Opportunity Employer

Splunk, a Cisco company, is an Equal Opportunity Employer and all qualified applicants will receive consideration for employment without regard to race, color, religion, gender, sexual orientation, national origin, genetic information, age, disability, veteran status, or any other legally protected basis.

Note:

Thank you for your interest in Splunk!

There are more than 50,000 engineering jobs:

Subscribe to membership and unlock all jobs

Engineering Jobs

60,000+ jobs from 4,500+ well-funded companies

Updated Daily

New jobs are added every day as companies post them

Refined Search

Use filters like skill, location, etc to narrow results

Become a member

🥳🥳🥳 452 happy customers and counting...

Overall, over 80% of customers chose to renew their subscriptions after the initial sign-up.

To try it out

For active job seekers

For those who are passive looking

Cancel anytime

Frequently Asked Questions

  • We prioritize job seekers as our customers, unlike bigger job sites, by charging a small fee to provide them with curated access to the best companies and up-to-date jobs. This focus allows us to deliver a more personalized and effective job search experience.
  • We've got about 70,000 jobs from 5,000 vetted companies. No fake or sleazy jobs here!
  • We aggregate jobs from 5,000+ companies' career pages, so you can be sure that you're getting the most up-to-date and relevant jobs.
  • We're the only job board *for* software engineers, *by* software engineers… in case you needed a reminder! We add thousands of new jobs daily and offer powerful search filters just for you. 🛠️
  • Every single hour! We add 2,000-3,000 new jobs daily, so you'll always have fresh opportunities. 🚀
  • Typically, job searches take 3-6 months. EchoJobs helps you spend more time applying and less time hunting. 🎯
  • Check daily! We're always updating with new jobs. Set up job alerts for even quicker access. 📅

What Fellow Engineers Say

Sid avatar
Sid
Very nice portal for searching jobs in this rough market.
Mar 6, 2025
Michael Duran avatar
Michael Duran
Software Engineer
I've been using this job search site for a while now, and it’s honestly one of the best out there! The clean and easy-to-navigate UI makes the whole job-hunting process so much smoother. Plus, the job postings are always up-to-date, so I never feel like I’m wasting time. The cherry on top is the owner—super kind and always quick to respond. Definitely recommend checking it out if you're on the job hunt!
Aug 21, 2024
Sai avatar
Sai
It’s really great website for finding jobs based on skills it’s really helpful give a go
Aug 21, 2024
Adinadh avatar
Adinadh
What I like most about Echo Jobs is how easy it is to use. The platform helps me quickly find jobs that match my skills and interests, thanks to its great recommendations and filters. Yes, I would definitely recommend Echo Jobs to a friend. It makes job searching simple and efficient, making it a great tool for anyone looking for a new job.
Jul 23, 2024
As a student navigating the job market, I've found LinkedIn increasingly frustrating due to numerous fake postings by consultancies. In contrast, this job posting website has been a game-changer for me. It offers genuine opportunities and a straightforward application process, making it much easier to find and apply for real jobs. Highly recommend it to fellow students seeking reliable job listings!
Jul 16, 2024
Cliff Gor avatar
Echo Jobs has been exceptional in my job hunt where it provides one platform to job hunt and I don't have to open 10 websites just to look for a job. It has also helped me focus much on the job skill and the location filtering out the onsite jobs and remote ones. The only feature that I would request is to display fully remote jobs that are not restricted to a country since the one available shows ie, Remote, US yet. But if it could show remote only, that would be helpful not only to me but to other people applying for full remote and not tied to only US candidates
Apr 22, 2024
I found EchoJobs in 2022, and I love it. It has a lot of remote jobs. It's exclusive to software and technology jobs (helpful for devs like me). What I like the most are its filters and its API. If you're a tech professional seeking remote work, I highly recommend giving it a try to EchoJobs.
Mar 4, 2024
Would definitely recommend it! Excellent product, dedicated founder, Jobs are easier to find. Congrats 🎉 to the entire team!
Mar 3, 2024
Brandon Banks avatar
Brandon Banks
Echo Jobs is really impressive. It provides a great user experience with an ability to quickly search through the many job postings. There is an impressive amount of jobs here and it is quickly updated. The details in the each job posting is helpful when determining if it is worth pursuing. I would highly recommend using Echo Jobs to find the next step in your career.
Mar 2, 2024
Tyler Young avatar
Tyler Young
tylerayoung.com
Best wishes with EchoJobs—it's become my favorite job board overnight!
Dec 16, 2023
Simply put, it's the most up to date tech jobs aggregator I’ve found. I'm like... "I don't have to check 10+ jobs boards daily just to see if there's a new job listing? sign me up!" The filters are also quite helpful! The UI is very clean and straightforward. Love it!
Oct 5, 2023