Cybersecurity Engineer/ Vulnerability Engineer
VVSOLUTIONS PRO, LLC
Dallas, TX, United States
about 1 month ago
- Discuss this with your agent
- Open in Claude
- Open in ChatGPT
Apply on www.indeed.com
Prepare application
- Draft this with your agent
- Open in Claude
- Open in ChatGPT
Role details
Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Compensation
$114,400.0 - $135,200.0
Working hours
Regular working hours
Job source
Tech stack
Microsoft Windows
JIRA
Ubuntu (Operating System)
Cloud Computing Security
Configuration Management Databases
Control Objectives for Information and Related Technology (COBIT)
Cyber Security
Dynamic Host Configuration Protocol
Debian Linux
Linux
Digital Assets
Disaster Recovery
+37 more
Domain Name System (DNS)
Fiddler (Software)
Federal Information Processing Standards (FIPS)
Infrastructure as a Service (IaaS)
Issue Tracking Systems
Information Technology Operations
Intrusion Detection and Prevention
Virtual Private Networks (VPN)
Python (Programming Language)
Linux Distribution
Windows Servers
Networking Basics
Routing
Citrix Systems
Platform as a Service (PAAS)
PCI Data Security Standards
Windows PowerShell
Security Software
Security Information and Event Management
Solaris (Operating System)
TCP/IP
Virtualization Technology
VMware VSphere
Software Vulnerability Management
Scripting
Google Cloud
Load Balancing
Cloudformation
SolarWinds (Software)
Network Support
Patch Management
Nessus
CIS Benchmarks
Splunk
Qualys
Servicenow
Vulnerability Analysis
Job description
Vulnerability Scanning & Assessment
- Conduct regular vulnerability scans across servers, workstations, network devices, and cloud infrastructure using tools such as Tenable/Nessus, Qualys, or Rapid7 InsightVM.
- Validate and triage scan results to eliminate false positives and confirm exploitability.
- Perform ad hoc scans in response to newly disclosed CVEs, zero-days, or emerging threats.
Risk Prioritization & Reporting
- Score and prioritize vulnerabilities using CVSS, exploitability data, and asset criticality/business context.
- Maintain vulnerability management dashboards and metrics (mean time to remediate, aging vulnerabilities, coverage gaps) for leadership and audit purposes.
- Prepare executive-level summaries highlighting risk trends and remediation progress.
Remediation Coordination
- Partner with system owners, IT operations, and application teams to track remediation timelines and validate patch/fix implementation.
- Escalate overdue or high-risk vulnerabilities through governance and risk channels.
- Support exception/risk acceptance processes when remediation isn’t immediately feasible, documenting compensating controls.
Process & Tooling
- Maintain and tune vulnerability scanning tool configurations, scan schedules, and asset inventories.
- Integrate vulnerability data with SIEM, CMDB, or ticketing systems (ServiceNow, Jira, Remedy) for streamlined tracking.
- Support patch management cadence alignment with vulnerability remediation SLAs.
Compliance & Standards
- Ensure vulnerability management practices align with frameworks such as NIST 800-40, CIS Benchmarks, PCI-DSS, or internal policy requirements.
- Support audit and compliance requests related to vulnerability and patch management evidence.
Requirements
- Nessus/Tenable.io, Qualys, or Rapid7 InsightVM
- CVSS scoring methodology
- Basic scripting (Python/PowerShell) for report automation
- Ticketing/CMDB tools (ServiceNow, Jira)
- Understanding of network and OS-level vulnerabilities (Windows, Linux), * Proven experience in cybersecurity engineering or related roles with a strong understanding of computer networking concepts including routing protocols (EIGRP, OSPF), TCP/IP stack, DNS, DHCP, VPNs, load balancing, and network support.
- Hands-on knowledge of cybersecurity frameworks such as ISO 27000 series standards (ISO 27001), NIST standards (RMF), COBIT, DIACAP; familiarity with FIPS compliance is a plus.
- Expertise in deploying and managing cybersecurity tools such as SIEM solutions (Splunk or SolarWinds), Endpoint Detection and Response (EDR) systems like Fiddler or PowerShell scripting for incident management automation.
- Strong background in system administration across multiple operating systems including Windows Server environments, Linux distributions (Ubuntu, Debian), Solaris or BSD variants; experience with virtualization platforms like VMware vSphere or Citrix is advantageous.
- Knowledge of cloud security engineering principles for PaaS/IaaS environments including AWS CloudFormation templates or Google Cloud Platform architecture design.
- Ability to perform vulnerability research & assessment using attack frameworks; conduct threat detection & response investigations; execute system hardening techniques; and support disaster recovery planning.
- Excellent problem-solving skills combined with the ability to communicate complex technical concepts clearly; relevant certifications such as CISSP, CISA or GIAC are preferred.
Join us in protecting critical digital assets through innovative cybersecurity strategies! We are committed to fostering an inclusive environment where talented professionals thrive while making a meaningful difference in the world of information security.
Apply for this position
This job is hosted externally. Click below to view the full posting and apply.
Apply on www.indeed.com
Prepare application
- Draft this with your agent
- Open in Claude
- Open in ChatGPT
Good distractions
Talks and stories from around this role — technically off-topic, practically not.
Moments
Explore playlistsVideos
See allRelated articles
See all
DC
Daniel Cranney
over 1 year ago
LM
Luis Minvielle
9 Ways to Make Money Hacking
over 2 years ago
BB
Benedikt Bischof
Walking Into The Era of Supply Chain Risks
about 4 years ago
DC
Daniel Cranney
Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.
7 months ago
AJ
Austin Joy
What Are The Top Skills Required For Azure Developers?
over 4 years ago
LM
Luis Minvielle
Is Software Engineering Over-Saturated?
over 2 years ago