Senior Cyber Security Engineer - Vulnerability Operation

NVIDIA Ltd.
Santa Clara, CA, United States
13 days ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Compensation
$196,000.0 - $310,500.0
Working hours
Regular working hours

Tech stack

Application Programming Interfaces (APIs) Artificial Intelligence Amazon Web Services Build Automation Microsoft Azure Cloud Computing Security Cyber Security Continuous Integration Issue Tracking Systems Information Systems Security Architecture Professional Machine Learning Systems Development Life Cycle
+14 more
Software Engineering Systems Integration Software Vulnerability Management Scripting Cloud Platform System Software Security Cyber Threat Analysis Tanium Platform Expertise Falcon Platform Information Technology Data Analytics Devsecops Qualys Vulnerability Analysis

Job description

We are seeking a Senior Cyber Security Engineer to advance the evolution of our Vulnerability Operations engineering capability, with a strong focus on data-driven security, intelligent automation, and AI-assisted workflows. This is a senior, hands-on engineering role focused on building scalable, data-centric solutions, embedding security into the software development lifecycle (SDLC), and applying AI/ML techniques to enhance vulnerability detection, prioritization, and remediation. Operating at the intersection of security, engineering, data, and AI, you will drive the transformation of vulnerability management into a predictive, intelligence-led subject area, using AI-assisted workflows to enable faster decision-making and proactive risk reduction across a complex enterprise environment.

What You’ll Be Doing:

  • Design, improve, and operate scalable vulnerability management workflows across ingestion, triage, prioritization, remediation, and reporting.
  • Engineer integrations across vulnerability scanners, endpoint tools, cloud platforms, asset inventory, ticketing systems, and remediation workflows.
  • Build automation to reduce manual effort, improve consistency, and accelerate vulnerability response across engineering teams.
  • Partner with application, infrastructure, cloud, and platform teams to clarify remediation requirements and drive issues to closure.
  • Support risk-based vulnerability prioritization using asset context, exploitability, threat intelligence, and business impact.
  • Embed vulnerability management practices into engineering and CI/CD workflows where appropriate.
  • Track remediation progress, identify blockers, and communicate outstanding risk to technical and leadership audiences.
  • Contribute to process improvements, standards, and operational playbooks for enterprise vulnerability operations.

Requirements

  • 12+ years of experience in vulnerability management, security engineering, AppSec, DevSecOps, PSIRT, or a related technical field.
  • Bachelor’s degree in computer science, information technology, cybersecurity, or equivalent experience.
  • Strong understanding of vulnerability management lifecycle, enterprise risk management, CVSS, exploitability, and remediation practices.
  • Hands-on experience with vulnerability and security tools such as Tenable, Qualys, Tanium, CrowdStrike, or similar platforms.
  • Experience integrating security tools and workflows using APIs, scripting, automation, or orchestration.
  • Experience working with cloud environments such as AWS or Azure.
  • Familiarity with security frameworks and compliance standards such as ISO 27001, NIST, PCI, or SOX.
  • Strong communication and collaboration skills, with the ability to drive progress across teams without direct authority.
  • Ability to operate independently, handle ambiguity, and prioritize work in a fast-moving enterprise environment.

Ways To Stand Out From The Crowd:

  • Experience leading enterprise-wide vulnerability remediation campaigns.
  • Background in application security, cloud security, secure architecture, or infrastructure security.
  • Experience integrating vulnerability management into developer workflows or CI/CD pipelines.
  • Familiarity with threat intelligence and exploit prediction approaches.
  • Experience using automation or AI-assisted workflows to improve triage, ticket enrichment, remediation guidance, or operational efficiency.

Benefits & conditions

Your base salary will be determined based on your location, experience, and the pay of employees in similar positions. The base salary range is 196,000 USD - 310,500 USD.

About the company

NVIDIA is widely considered to be one of the technology world’s most desirable employers. We have some of the most forward-thinking and hardworking people on the planet working for us. If you’re creative and autonomous, we want to hear from you!

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.disabledperson.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

1:04 min

Introduction to Bitcoin script parsing tools

Steve Shadders · LIVE

1:15 min

Key lessons learned from implementing automated mobile DevSecOps

Moataz Nabil Moataz Nabil · LIVE

4:01 min

Finding personal fulfillment in the cybersecurity industry

LIVE

1:53 min

Evaluating traditional scripting languages for modern development tasks

Jens Knipper Jens Knipper · Europe 2026 Virtual

2:09 min

Shifting security left using the DevSecOps approach

Aarno Aukia · LIVE

3:22 min

Transitioning from software engineering to security roles

Anna Oliveira · Coffee With Developers

Videos

See all

Related articles

See all