Exposure Management Engineer - Northeast region (Remote)

1 week, 5 days ago
Full-time
Mid Level
DevOps and Infrastructure
GuidePoint Security

GuidePoint Security

GuidePoint Security is a trusted cybersecurity consulting firm that provides expertise, solutions, and services to help organizations make informed decisions and minimize risks. Their elite team of experts offers holistic perspectives on cybersecurity,...

Internet Software & Services
251-1K
Founded 2011

Description

  • Operate and maintain security platforms including vulnerability management, CAASM, and CNAPP tools.
  • Monitor security findings and support prioritization and remediation workflows.
  • Tune platform configurations and support integrations with client environments.
  • Onboard new assets, applications, and cloud environments into security platforms.
  • Review exposure findings and track remediation progress with client engineering teams.
  • Generate operational dashboards and reporting for security leadership.
  • Maintain asset inventory coverage and scanning accuracy.
  • Develop scripts and automation to improve security workflows and reduce manual effort.
  • Build integrations between security tools and ticketing systems.
  • Participate in client meetings, provide status updates, and contribute to documentation and playbooks.

Requirements

  • 3+ years of experience in cybersecurity engineering.
  • Experience in exposure management or risk-based vulnerability management.
  • Familiarity with vulnerability management, exposure management, or CNAPP platforms such as Tenable, Qualys, Rapid7, Wiz, Axonius, or similar tools.
  • Scripting experience with Python, PowerShell, or similar languages.
  • Experience working with APIs or automating workflows.
  • Understanding of security fundamentals including vulnerabilities, misconfigurations, identity and access control, and security monitoring.
  • Strong communication skills and ability to work with engineering teams.
  • Experience with CNAPP platforms such as Wiz, Prisma Cloud, Orca, or Lacework is preferred.
  • Experience with cloud platforms including AWS, Azure, or GCP is preferred.
  • Familiarity with container security and Kubernetes is preferred.
  • Experience integrating security tools with Jira or ServiceNow is preferred.
  • Experience using AI-assisted tools such as LLMs, copilots, or agent frameworks to support scripting and security operations is preferred.

Benefits

  • Remote workforce primarily, U.S.-based only.
  • Group medical insurance options with substantial employer premium contributions.
  • Group dental insurance with employer premium contributions.
  • 12 corporate holidays and a Flexible Time Off (FTO) program.
  • Healthy mobile phone and home internet allowance.
  • Eligibility for a retirement plan after 2 months at open enrollment.
  • Pet benefit option.

Interested in this position?

Apply directly on the company website

Apply Now

Similar Roles

Saviynt IAM Specialist

The Missing Link 51-250 Internet Software & Services

The Missing Link is seeking a Security Engineer - Saviynt to support large enterprise identity governance initiatives, design and deliver Saviynt-based solutions, and strengthen its growing cyber security practice.

Active Directory Azure Cybersecurity JavaScript PowerShell REST API SAP SQL
14 hours, 59 minutes ago

AI Security Architect (REMOTE - United States)

EnableComp 251-1K Insurance

EnableComp is seeking a remote AI Security Architect to secure and govern its AI and machine learning initiatives within its healthcare revenue cycle management environment.

Azure Cybersecurity HIPAA LLM Machine Learning
15 hours, 14 minutes ago

Senior Infrastructure Security Engineer

Dropbox 1K-5K Internet Software & Services

Dropbox is hiring a Security Engineer to secure its AI and agentic infrastructure while helping protect products and users across cloud and on-prem environments.

Bash CI/CD CrowdStrike Go Java Kubernetes Linux LLM Node.js OAuth OpenID Connect OWASP Python Ruby Rust SIEM
15 hours, 14 minutes ago

Staff, Security Engineer

Fullscript 251-1K Health Care Providers & Services

Fullscript is hiring a Staff Security Engineer to lead hands-on security engineering across its healthcare technology platform, shaping secure product development and protecting systems that support practitioners and patients.

AWS GitHub GitLab GraphQL JavaScript Node.js Penetration Testing Ruby on Rails
15 hours, 44 minutes ago

You're on a roll! Sign up now to keep applying.

Sign Up

Already have an account? Log in

Used by 14,729+ remote workers