> Markdown version of [/jobs/ext/1971215-cloud-security-vulnerability-engineer-ic](https://www.wearedevelopers.com/jobs/ext/1971215-cloud-security-vulnerability-engineer-ic). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Cloud Security Vulnerability Engineer (IC) - **Company:** Charles Schwab Corporation - **Location:** Southlake, TX, United States - **Experience:** Experienced - **Contract:** Permanent contract - **Skills:** Microsoft Windows, Amazon Web Services, Cloud Computing Security, Linux, Software Vulnerability Management, Cloud Platform System, Vulnerability Analysis - **Published:** August 7, 2026 - **Apply:** https://us.experteer.com/career/view-jobs/cloud-security-vulnerability-engineer-ic-southlake-tx-usa-58826904 ## About the Role to identify risks, champion enhancements, and govern vulnerabilities Tasks * 5+ years in security control monitoring for cloud environments (AWS and/or GCP preferred) * 3+ years in vulnerability management or patching * 3+ years in process analysis, documentation, and improvement * Solid systems knowledge (Linux, Windows, networking) * Clear, collaborative communication style Key requirements * ## Description Experteer Overview In this role you will advance Schwab's vulnerability management for cloud by maturing governance and CSPM integration. You will partner across security to identify risks, drive enhancements, and govern secure configuration baselines for cloud. You will assess cloud image configurations, align with CIS best practices, and reduce noise while improving coverage through automation. You will help embed vulnerability management as an engineering-facing function, delivering measurable risk reduction in AWS and GCP environments. Compensation / Benefits * Lead creation, management, and enforcement of secure configuration baselines for cloud aligned to CIS * Evaluate configuration compliance for cloud images with developers, operations, and governance boards * Assess maturity of third-party vulnerability scanners versus cloud-native tools for monitoring * Advocate for scalable security: reduce noise, increase coverage, and automate checks * Foster cross-functional partnerships to identify risks, champion enhancements, and govern vulnerabilities Tasks * 5+ years in security control monitoring for cloud environments (AWS and/or GCP preferred) * 3+ years in vulnerability management or patching * 3+ years in process analysis, documentation, and improvement * Solid systems knowledge (Linux, Windows, networking) * Clear, collaborative communication style Key requirements * ## Related Videos - [Docker network without Docker](https://www.wearedevelopers.com/videos/1418-docker-network-without-docker) - [Fake or News: Translating Dog Barks, Notepad Gets an Upgrade and Michelin-Star Robots - Paul Tregoing](https://www.wearedevelopers.com/videos/1802-fake-or-news-translating-dog-barks-notepad-gets-an-upgrade-and-michelin-star-robots-paul-tregoing) - [Containers in the cloud - State of the Art in 2022](https://www.wearedevelopers.com/videos/410-containers-in-the-cloud-state-of-the-art-in-2022) - [Hacking MSSQL on Cloud. All of them. How I became sysadmin on Azure, AWS, GCP and Alibaba.](https://www.wearedevelopers.com/videos/100339-hacking-mssql-on-cloud-all-of-them-how-i-became-sysadmin-on-azure-aws-gcp-and-alibaba) - [Docker exec without Docker](https://www.wearedevelopers.com/videos/1094-docker-exec-without-docker) - [Reliable scalability: How Amazon.com scales on AWS](https://www.wearedevelopers.com/videos/983-reliable-scalability-how-amazon-com-scales-on-aws) ## Related Articles - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities) - [What Are The Top Skills Required For Azure Developers?](https://www.wearedevelopers.com/magazine/77-what-are-the-top-skills-required-for-azure-developers) - [Walking Into The Era of Supply Chain Risks](https://www.wearedevelopers.com/magazine/106-walking-into-the-era-of-supply-chain-risks) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [7 Cloud Computing Trends Coming in 2025 for Developers](https://www.wearedevelopers.com/magazine/412-7-cloud-computing-trends-coming-in-2025-for-developers) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed)