Senior Staff Security Engineer leading Vulnerability Management strategy and execution at GEICO. Drive meaningful improvements and mentor teams to ensure robust security posture.
Responsibilities
Lead the full vulnerability lifecycle: discovery, validation, risk analysis, prioritization, and remediation measurement
Leverage business contextualization, underlying systems, and threat intelligence to perform risk assessment for identifying true risk to drive remediation
Build integrations among scanning tools, asset inventory, CMDBs, ticketing, CI/CD, and monitoring pipelines to streamline workflows
Evaluate, test, and implement emerging tools and technologies that advance VM automation and intelligence
Design automation to reduce manual work, increase accuracy, and accelerate remediation
Generate data-driven insights that help teams understand, prioritize, and resolve vulnerabilities efficiently
Collaborate with cloud, infrastructure, DevOps, and product engineering groups to integrate vulnerability management into pipelines and delivery workflows
Work closely with risk, compliance, governance, and incident response teams to ensure alignment with organizational and regulatory standards
Communicate vulnerability trends, risk implications, and remediation strategies to technical and non-technical stakeholders
Define KPIs, SLAs, dashboards, and reporting models to drive accountability and measurable vulnerability reduction
Establish repeatable processes, playbooks, and workflows that ensure consistent VM operations across teams and environments
Ensure the reliability, performance, and scalability of VM tools and data pipelines
Mentor junior and mid-level engineers, offering guidance on advanced security concepts, engineering best practices, and career development
Serve as a multiplier by elevating skillsets across teams through coaching, pairing, design reviews, and knowledge-sharing
Requirements
8+ years of experience in cybersecurity or security engineering roles
Deep expertise with vulnerability management tools, methodologies, and industry standards
Hands-on experience with modern infrastructure, cloud services (AWS/Azure/GCP), container platforms, and operating systems
Proficiency with a modern programming language (Python, Go, Java, etc.) and scripting for automation at scale
Strong understanding of security architecture, networking, operating systems, identity, and cloud services
Proven ability to lead, mentor, and inspire engineers across multiple teams
Strong communication skills with the ability to influence senior stakeholders and translate complex risks into actionable guidance
Hands-on experience implementing cybersecurity frameworks e.g. NIST CSF
Hands-on experience with leading compliance initiatives to meet e.g. PCI, SOX, NYDFS, etc.
Benefits
Comprehensive Total Rewards program
Financial benefits including market-competitive compensation
401K savings plan vested from day one that offers a 6% match
Performance and recognition-based incentives
Tuition assistance
Access to additional benefits like mental healthcare
Cybersecurity Engineer focused on threat monitoring and incident response for Verizon's network security. Collaborating on security architecture and vulnerability management across multiple locations.
Senior Manager of Application Security leading initiatives to protect applications at Nordstrom through strategic leadership and AI - driven tooling. Collaborating with engineering to ensure secure software development practices.
Information Security Engineer responsible for deploying and supporting security tools across cloud and on - premise systems. Collaborating with IT to mitigate security risks in a hybrid work environment.
Casual Retail Security Officer for MSS Security ensuring safety at Tweed Mall in Tweed Heads. Responsible for patrols, incident response, and customer service.
Financial security advisor at Desjardins developing client relationships and selling life and health insurance products. Focusing on customer satisfaction and personalized financial solutions.
Principal Information Security Consultant at Westpac focusing on security protocols and employee benefits for staff. Hybrid role centrally located with opportunities for professional development and employee perks.
Engineer supporting secure development lifecycle processes for product lines in the energy sector. Collaborating with R&D on security requirements and compliance audits.
Automation Oversight Engineer providing oversight of compliance in automated device configurations for Comcast Business. Managing configuration checks and reporting, ensuring reliable oversight and improvement strategies.
Principal Systems Engineer - Cybersecurity role in protecting our nation's products as part of Integrated Platform Solutions team. Develop solutions utilizing RMF, Anti - Tamper, Software Assurance, and more.
Agent de Sécurité assurant la sécurité des usagers du réseau de transport TBM. Rattaché au Manager de Proximité Sûreté, garantissant la qualité de service public de transport en commun.