Overview
Lead the technical direction, operation, and continuous improvement of application security and vulnerability management programs across cloud services, firmware/IoT, and corporate systems.
What you'll do
- Lead vulnerability management strategy, operations, and continuous improvement.
- Drive down mean time to remediate across the vulnerability backlog.
- Build automation and tooling for vulnerability detection and response.
- Set architectural direction and translate priorities into execution plans.
- Drive remediation through actionable guidance and engineering partnerships.
- Mentor engineers on secure design and remediation practices.
- Support vulnerability incident investigations and critical response on call.
What you'll need
- 10+ years of relevant cloud or security engineering experience.
- Hands-on vulnerability management across a broad, multi-product enterprise environment.
- Proficiency in Go, Python, and JavaScript.
- Experience setting technical direction and driving remediation without direct authority.
- Experience with vulnerability tools such as Wiz or Semgrep and CVSS and EPSS frameworks.
- Strong AWS background and understanding of SAST, DAST, and SCA.
- Hands-on AI/LLM tooling experience in security workflows.
Nice to have
- C/C++ experience relevant to firmware and embedded systems.
- Experience with Tines, AWS Lambda, and modern CI/CD vulnerability integration.
- Experience across SaaS, firmware, and corporate IT security programs.
- Experience in a FedRAMP-certified environment.
- Experience building AI security copilots or agents.
Details
- Remote position open to candidates residing in the United States.
- Full-time employment.
- Annual base salary: $165,200–$295,000 USD.
Read the full description and apply on the company’s own careers page.