Skip to main content
Group 1001

Senior Vulnerability Management Engineer

RemoteUnited States only
Published
Role
Security
Experience
Senior
Employment
Full-time
Company size
Enterprise
$190k–$230k/yr
Check eligibility

Open to US only. Set where you work from to check your eligibility.

No BS summary

Senior vulnerability management engineer with 5–7 years in information security (financial sector preferred). Must be hands-on with enterprise vulnerability scanners (Tenable, Microsoft Defender, Wiz, Tanium), automate VM pipelines (SOAR, APIs, queues, scripts) and work with cloud security (AWS/Azure/GCP). US-based pay markets; role is remote.

Core skills

Vulnerability managementVulnerability scanning automation

Required skills

TenableMicrosoft DefenderWizTaniumSwimlaneElasticAWSAzureGCPPythonGoJavaScriptRESTGraphQLSOAREDRCI/CD

Optional skills

EPSSKEVCVSSNISTISOCISLLM/AI tooling for security

What you'll do

  • Own the end-to-end vulnerability management pipeline: asset discovery > scanning > enrichment > prioritization > assignment > verification > closure.
  • Build, codify, and iterate a data-driven prioritization framework blending CVSS, EPSS, KEV, exploit availability, asset criticality, exposure/reachability, compensating controls, and business context.
  • Automate the full workflow via SOAR playbooks, webhooks, REST/GraphQL APIs, message queues, and custom scripts.
  • Develop and improve KPIs, metrics, and trending for vulnerability management functions.
  • Integrate scanners, CMDB/asset inventory, EDR, cloud providers (AWS/Azure/GCP), and others into a single pipeline.
  • Continuously reduce noise: dedupe, suppress known-benign, correlate related findings, and auto-close on evidence of remediation.
  • Evaluate and integrate AI/LLM tooling for triage, false-positive suppression, remediation guidance, and vulnerability research with appropriate guardrails.
  • Lead technical response for emergency patch cycles on various technical platforms.

What they require

  • Bachelor's degree in Computer Science, Information Security, or related academic field or equivalent experience.
  • 5-7 years of professional experience in information security, with focus on the financial sector.
  • Hands-on experience deploying, configuring, and managing vulnerability scanning solutions at enterprise scale, including policy design and tuning for noise reduction.
  • Hands-on experience engineering, integrating, and optimizing for automation of security platforms.
  • Strong knowledge of public cloud platforms (AWS, Azure, GCP) from an infrastructure and development aspect and their related security features.
  • Familiarity with DevSecOps practices and CI/CD pipelines.
  • Understanding of industry security frameworks, standards, and best practices (NIST, ISO, CIS).
  • Proficiency in one or more programming languages for automation (Python, Golang, JavaScript).
  • Strong communication and collaboration skills; ability to work closely with engineering, operations and infrastructure teams.
  • Familiarity with compliance standards and regulations.
  • Ability to serve as a mentor or subject matter expert within the organization in vulnerability management and systems engineering.

Benefits

  • Eligible employees working 30+ hours may enroll in the Company benefits package.
  • Comprehensive health, dental, and vision insurance plan options for employees and their families.
  • Basic and Supplemental Life Insurance, Short and Long-Term Disability.
  • Immediate access to Employee Assistance Program and wellness programs for all employees.
  • Participation in the Company’s 401K plan with matching contributions by the Company.

Group 1001 is a consumer-centric, technology-driven family of insurance companies on a mission to deliver outstanding value and operational performance by combining financial strength and stability with deep insurance expertise and a can-do culture.

InsuranceEnterprise
$190k–$230k/yr