Vulnerability Management Engineer (Qualys) - Mid-Atlantic region (Remote)

19 hours, 10 minutes ago
Full-time
Senior
DevOps and Infrastructure
GuidePoint Security

GuidePoint Security

GuidePoint Security is a trusted cybersecurity consulting firm that provides expertise, solutions, and services to help organizations make informed decisions and minimize risks. Their elite team of experts offers holistic perspectives on cybersecurity,...

Internet Software & Services
251-1K
Founded 2011

Description

  • Execute and manage vulnerability scanning for internal, external, and cloud assets.
  • Plan, design, and implement enterprise vulnerability scanning infrastructure in hybrid or multi-cloud environments.
  • Deploy vulnerability management infrastructure, including scanners, sensors, and agent configurations.
  • Perform vulnerability scanning using Qualys VMDR.
  • Analyze vulnerabilities and communicate their impact and risk to the organization.
  • Advise customers on vulnerability management best practices.
  • Develop custom compliance and audit files for Qualys compliance scanning.
  • Collaborate with peers on the vulnerability management practice team.
  • Establish and maintain credibility as a trusted advisor to customers.
  • Support multiple projects independently while managing time effectively.

Requirements

  • 5+ years of information security experience.
  • 3+ years of vulnerability engineering experience with Qualys required.
  • 3+ years of compliance scanning experience with Qualys, including CIS, NIST, and DISA.
  • Experience developing custom compliance and audit checks with Qualys VMDR required.
  • Experience with Qualys.io or Qualys Security Center required.
  • Experience with scripting tasks using BASH, PowerShell, Python, or similar native scripting languages.
  • Experience with Regex for data parsing.
  • Experience with cloud service providers such as AWS, Microsoft Azure, or Google Cloud Platform.
  • Experience with compliance frameworks such as CIS, NIST, and DISA required.
  • Experience developing Infrastructure as Code, such as Terraform or CloudFormation, is a plus.
  • Experience with Kubernetes, containers, CI/CD, or serverless is a plus.
  • Understanding of operating systems including Windows Server, Windows 10/7, Mac OSX, RHEL, and Ubuntu Linux, with ability to perform advanced CLI functions.
  • Strong written and verbal communication skills.
  • Ability to manage time independently while handling multiple projects concurrently.
  • Strong desire to learn new technologies and contribute to a fast-growing company.

Benefits

  • Remote workforce primarily for U.S.-based employees, with some travel possible depending on the role.
  • Group medical insurance options with substantial employer-paid premium coverage.
  • Group dental insurance with employer-paid premium coverage.
  • 12 corporate holidays and a Flexible Time Off (FTO) program.
  • Healthy mobile phone and home internet allowance.
  • Retirement plan eligibility after 2 months at open enrollment.
  • Pet benefit option.

Interested in this position?

Apply directly on the company website

Apply Now

Similar Roles

Senior Security Engineer

Prolific 51-250 Professional Services

Prolific is hiring a Senior Security Engineer to support security operations, cloud security, and compliance for a platform handling sensitive data at scale.

AWS CI/CD Datadog DevSecOps GCP Kubernetes Penetration Testing SIEM Terraform
8 hours, 10 minutes ago

Specialist Solutions Architect - Cloud Infrastructure & Security

Databricks 1K-5K IT Services

Databricks is seeking a Specialist Solutions Architect focused on Cloud Infrastructure and Security to help customers design, deploy, and secure Databricks environments across public cloud platforms.

Apache Spark AWS Azure Databricks Encryption GCP Hadoop Java Kafka Network Security OAuth Python SAML Scala SQL Terraform
8 hours, 10 minutes ago

Senior Security Engineer/ Security Manager (Crypto/ Web3)

Hyphen Connect 1-10 staffing & recruiting

Security Engineer role at a decentralised exchange focused on building secure, scalable on-chain trading infrastructure that combines institutional-grade systems with a simple, safe user experience.

Ansible Blockchain CI/CD DevSecOps Penetration Testing Terraform
8 hours, 55 minutes ago

Senior IT Security Engineer

Ensono 1K-5K IT Services

Ensono is hiring a Senior Information Security Engineer to design, implement, and maintain enterprise security solutions while leading incident response and supporting global cybersecurity and compliance efforts.

Carbon Black HIPAA Penetration Testing SIEM Splunk
8 hours, 55 minutes ago

You're on a roll! Sign up now to keep applying.

Sign Up

Already have an account? Log in

Used by 14,729+ remote workers