Cybersecurity Engineer/ Vulnerability Engineer

VVSOLUTIONS PRO, LLC
Dallas, TX, United States
about 1 month ago
Apply on www.indeed.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Compensation
$114,400.0 - $135,200.0
Working hours
Regular working hours
Job source

Tech stack

Microsoft Windows JIRA Ubuntu (Operating System) Cloud Computing Security Configuration Management Databases Control Objectives for Information and Related Technology (COBIT) Cyber Security Dynamic Host Configuration Protocol Debian Linux Linux Digital Assets Disaster Recovery
+37 more
Domain Name System (DNS) Fiddler (Software) Federal Information Processing Standards (FIPS) Infrastructure as a Service (IaaS) Issue Tracking Systems Information Technology Operations Intrusion Detection and Prevention Virtual Private Networks (VPN) Python (Programming Language) Linux Distribution Windows Servers Networking Basics Routing Citrix Systems Platform as a Service (PAAS) PCI Data Security Standards Windows PowerShell Security Software Security Information and Event Management Solaris (Operating System) TCP/IP Virtualization Technology VMware VSphere Software Vulnerability Management Scripting Google Cloud Load Balancing Cloudformation SolarWinds (Software) Network Support Patch Management Nessus CIS Benchmarks Splunk Qualys Servicenow Vulnerability Analysis

Job description

Vulnerability Scanning & Assessment

  • Conduct regular vulnerability scans across servers, workstations, network devices, and cloud infrastructure using tools such as Tenable/Nessus, Qualys, or Rapid7 InsightVM.
  • Validate and triage scan results to eliminate false positives and confirm exploitability.
  • Perform ad hoc scans in response to newly disclosed CVEs, zero-days, or emerging threats.

Risk Prioritization & Reporting

  • Score and prioritize vulnerabilities using CVSS, exploitability data, and asset criticality/business context.
  • Maintain vulnerability management dashboards and metrics (mean time to remediate, aging vulnerabilities, coverage gaps) for leadership and audit purposes.
  • Prepare executive-level summaries highlighting risk trends and remediation progress.

Remediation Coordination

  • Partner with system owners, IT operations, and application teams to track remediation timelines and validate patch/fix implementation.
  • Escalate overdue or high-risk vulnerabilities through governance and risk channels.
  • Support exception/risk acceptance processes when remediation isn’t immediately feasible, documenting compensating controls.

Process & Tooling

  • Maintain and tune vulnerability scanning tool configurations, scan schedules, and asset inventories.
  • Integrate vulnerability data with SIEM, CMDB, or ticketing systems (ServiceNow, Jira, Remedy) for streamlined tracking.
  • Support patch management cadence alignment with vulnerability remediation SLAs.

Compliance & Standards

  • Ensure vulnerability management practices align with frameworks such as NIST 800-40, CIS Benchmarks, PCI-DSS, or internal policy requirements.
  • Support audit and compliance requests related to vulnerability and patch management evidence.

Requirements

  • Nessus/Tenable.io, Qualys, or Rapid7 InsightVM
  • CVSS scoring methodology
  • Basic scripting (Python/PowerShell) for report automation
  • Ticketing/CMDB tools (ServiceNow, Jira)
  • Understanding of network and OS-level vulnerabilities (Windows, Linux), * Proven experience in cybersecurity engineering or related roles with a strong understanding of computer networking concepts including routing protocols (EIGRP, OSPF), TCP/IP stack, DNS, DHCP, VPNs, load balancing, and network support.
  • Hands-on knowledge of cybersecurity frameworks such as ISO 27000 series standards (ISO 27001), NIST standards (RMF), COBIT, DIACAP; familiarity with FIPS compliance is a plus.
  • Expertise in deploying and managing cybersecurity tools such as SIEM solutions (Splunk or SolarWinds), Endpoint Detection and Response (EDR) systems like Fiddler or PowerShell scripting for incident management automation.
  • Strong background in system administration across multiple operating systems including Windows Server environments, Linux distributions (Ubuntu, Debian), Solaris or BSD variants; experience with virtualization platforms like VMware vSphere or Citrix is advantageous.
  • Knowledge of cloud security engineering principles for PaaS/IaaS environments including AWS CloudFormation templates or Google Cloud Platform architecture design.
  • Ability to perform vulnerability research & assessment using attack frameworks; conduct threat detection & response investigations; execute system hardening techniques; and support disaster recovery planning.
  • Excellent problem-solving skills combined with the ability to communicate complex technical concepts clearly; relevant certifications such as CISSP, CISA or GIAC are preferred.

Join us in protecting critical digital assets through innovative cybersecurity strategies! We are committed to fostering an inclusive environment where talented professionals thrive while making a meaningful difference in the world of information security.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.indeed.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

4:01 min

Finding personal fulfillment in the cybersecurity industry

LIVE

5:02 min

Mapping distributed compute paradigms to modern vehicles

Joachim Werner · LIVE

52 sec

Running persistent Linux environments directly on Windows

Ben Breard Ben Breard · World Congress 2025

3:05 min

Integrating an assistant application with Jira software

Felix Augenstein · LIVE

3:50 min

Queues in TCP stacks and continuous network connections

Clemens Vasters Clemens Vasters · World Congress 2022

3:55 min

Demonstrating .NET installation on Debian and Azure Linux

Silvano Coriani Silvano Coriani · Europe 2026 Virtual

Videos

See all

Related articles

See all