Overview
Lead the technical direction of application security and vulnerability management programs across cloud services, firmware/IoT, and corporate systems.
What you'll do
- Lead strategy, operations, and continuous improvement for vulnerability management and application security programs.
- Reduce mean time to remediate across the vulnerability backlog.
- Build automation and tooling for vulnerability detection and response.
- Set technical and architectural direction and translate priorities into execution plans.
- Drive remediation through guidance and collaboration with engineering teams.
- Mentor engineers on secure design and remediation practices.
- Investigate high-profile vulnerabilities and support critical response on call.
What you'll need
- 10+ years of relevant cloud or security engineering experience.
- Hands-on vulnerability management across a broad, multi-product enterprise environment.
- Proficiency in Go, Python, and JavaScript.
- Experience setting technical direction and driving remediation without direct authority.
- Experience with vulnerability tools such as Wiz or Semgrep and CVSS and EPSS frameworks.
- Strong AWS background and deep understanding of SAST, DAST, and SCA.
- Hands-on use of AI/LLM tools in security workflows.
Nice to have
- Experience with C/C++ for firmware and embedded systems.
- Experience with Tines, AWS Lambda, and modern CI/CD pipelines.
- Experience across SaaS, firmware, and corporate IT security.
- Experience in a FedRAMP-certified environment.
- Experience building AI security copilots or agents.
Details
- Remote position for candidates residing in the United States.
- Full-time employment.
- Annual base salary: $165,200–$295,000 USD.
Read the full description and apply on the company’s own careers page.