> Markdown version of [/jobs/ext/1503126-senior-cyber-security-engineer-vulnerability-operation](https://www.wearedevelopers.com/jobs/ext/1503126-senior-cyber-security-engineer-vulnerability-operation). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Senior Cyber Security Engineer - Vulnerability Operation - **Company:** NVIDIA Ltd. - **Location:** Santa Clara, CA, United States - **Experience:** Expert - **Salary:** $196,000.0 - $310,500.0 - **Contract:** Permanent contract - **Skills:** Application Programming Interfaces (APIs), Artificial Intelligence, Amazon Web Services, Build Automation, Microsoft Azure, Cloud Computing Security, Cyber Security, Continuous Integration, Issue Tracking Systems, Information Systems Security Architecture Professional, Machine Learning, Systems Development Life Cycle, Software Engineering, Systems Integration, Software Vulnerability Management, Scripting, Cloud Platform System, Software Security, Cyber Threat Analysis, Tanium Platform Expertise, Falcon Platform, Information Technology, Data Analytics, Devsecops, Qualys, Vulnerability Analysis - **Published:** July 30, 2026 - **Apply:** https://www.disabledperson.com/jobs/73923733-senior-cyber-security-engineer-vulnerability-operation ## About the Role * 12+ years of experience in vulnerability management, security engineering, AppSec, DevSecOps, PSIRT, or a related technical field. * Bachelor's degree in computer science, information technology, cybersecurity, or equivalent experience. * Strong understanding of vulnerability management lifecycle, enterprise risk management, CVSS, exploitability, and remediation practices. * Hands-on experience with vulnerability and security tools such as Tenable, Qualys, Tanium, CrowdStrike, or similar platforms. * Experience integrating security tools and workflows using APIs, scripting, automation, or orchestration. * Experience working with cloud environments such as AWS or Azure. * Familiarity with security frameworks and compliance standards such as ISO 27001, NIST, PCI, or SOX. * Strong communication and collaboration skills, with the ability to drive progress across teams without direct authority. * Ability to operate independently, handle ambiguity, and prioritize work in a fast-moving enterprise environment. Ways To Stand Out From The Crowd: * Experience leading enterprise-wide vulnerability remediation campaigns. * Background in application security, cloud security, secure architecture, or infrastructure security. * Experience integrating vulnerability management into developer workflows or CI/CD pipelines. * Familiarity with threat intelligence and exploit prediction approaches. * Experience using automation or AI-assisted workflows to improve triage, ticket enrichment, remediation guidance, or operational efficiency. ## Description We are seeking a Senior Cyber Security Engineer to advance the evolution of our Vulnerability Operations engineering capability, with a strong focus on data-driven security, intelligent automation, and AI-assisted workflows. This is a senior, hands-on engineering role focused on building scalable, data-centric solutions, embedding security into the software development lifecycle (SDLC), and applying AI/ML techniques to enhance vulnerability detection, prioritization, and remediation. Operating at the intersection of security, engineering, data, and AI, you will drive the transformation of vulnerability management into a predictive, intelligence-led subject area, using AI-assisted workflows to enable faster decision-making and proactive risk reduction across a complex enterprise environment. What You'll Be Doing: * Design, improve, and operate scalable vulnerability management workflows across ingestion, triage, prioritization, remediation, and reporting. * Engineer integrations across vulnerability scanners, endpoint tools, cloud platforms, asset inventory, ticketing systems, and remediation workflows. * Build automation to reduce manual effort, improve consistency, and accelerate vulnerability response across engineering teams. * Partner with application, infrastructure, cloud, and platform teams to clarify remediation requirements and drive issues to closure. * Support risk-based vulnerability prioritization using asset context, exploitability, threat intelligence, and business impact. * Embed vulnerability management practices into engineering and CI/CD workflows where appropriate. * Track remediation progress, identify blockers, and communicate outstanding risk to technical and leadership audiences. * Contribute to process improvements, standards, and operational playbooks for enterprise vulnerability operations. ## Related Videos - [You can’t hack what you can’t see](https://www.wearedevelopers.com/videos/41-you-can-t-hack-what-you-can-t-see) - [JavaScript? No. Java Scripts! - Scripting with Java](https://www.wearedevelopers.com/videos/2094-javascript-no-java-scripts-scripting-with-java) - [DevSecOps: Injecting Security into Mobile CI/CD Pipelines](https://www.wearedevelopers.com/videos/273-devsecops-injecting-security-into-mobile-ci-cd-pipelines) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [DevSecOps culture](https://www.wearedevelopers.com/videos/783-devsecops-culture) - [Intermediate Bitcoin Script](https://www.wearedevelopers.com/videos/25-intermediate-bitcoin-script) ## Related Articles - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities) - [Walking Into The Era of Supply Chain Risks](https://www.wearedevelopers.com/magazine/106-walking-into-the-era-of-supply-chain-risks) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Highest Paying Tech Companies for Developers](https://www.wearedevelopers.com/magazine/220-highest-paying-tech-companies-for-developers) - [Is Software Engineering Over-Saturated?](https://www.wearedevelopers.com/magazine/418-is-software-engineering-over-saturated)