IT Security Engineer

Zoll Acute Care Technology
Chelmsford, MA, United States
5 days ago
Apply on jobs.localjobnetwork.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
5 years minimum
Compensation
$108,100.0 - $129,000.0
Working hours
Regular working hours

Tech stack

Application Programming Interfaces (APIs) Cloud Computing Cloud Computing Security Configuration Management Databases Cyber Security Identity and Access Management Zero Trust Network Access Software Vulnerability Management Web Applications Scripting Information Technology Cybercrime
+2 more
CIS Benchmarks Vulnerability Analysis

Job description

We are looking for a Vulnerability Management & Security Engineer to help strengthen our enterprise cybersecurity program. In this role, you will operate and improve vulnerability management capabilities, analyze security risk, coordinate remediation with technical teams, and help reduce exposure across a complex global technology environment.

This is a hands-on technical role with strong cross-functional visibility. You will work closely with Infrastructure, End User Services, Cloud Operations, application teams, and Security Operations to identify, prioritize, communicate, and validate remediation of vulnerabilities that matter most to the business. What You’ll Do

  • Operate, administer, and continuously improve enterprise vulnerability management platforms, including Tenable and related technologies.
  • Define and maintain vulnerability scanning strategies across servers, workstations, network devices, cloud resources, web applications, and externally exposed assets.
  • Analyze vulnerability findings and prioritize remediation using exploitability, threat intelligence, asset criticality, business impact, and risk context.
  • Partner with technical teams to drive remediation of critical and high-risk vulnerabilities through verified closure.
  • Improve scan coverage, authenticated assessment rates, asset visibility, vulnerability discovery accuracy, and reporting quality.
  • Develop dashboards, metrics, and reports that show vulnerability aging, SLA performance, asset coverage, exposure trends, remediation progress, and risk reduction.
  • Support exception reviews, compensating-control analysis, escalation activities, and evidence collection for audit-ready vulnerability management practices.
  • Contribute to broader cybersecurity engineering initiatives, including endpoint security, identity security, cloud security, Zero Trust, security hardening, threat hunting, and exposure reduction., * Improve vulnerability scan coverage and reliability across key enterprise asset populations.
  • Strengthen risk-based prioritization and remediation tracking for critical and high-risk vulnerabilities.
  • Deliver clear reporting that helps technical teams and leadership understand exposure, aging, remediation progress, and risk reduction.
  • Build strong working relationships with Security, Infrastructure, Cloud Operations, End User Services, application teams, and other remediation partners.
  • Identify opportunities to automate repetitive vulnerability management workflows and improve operational efficiency.

Requirements

  • Bachelor’s degree in cybersecurity, information technology, computer science, or equivalent practical experience.
  • 5+ years of cybersecurity, infrastructure, or security engineering experience.
  • 3+ years of experience managing or supporting enterprise vulnerability management programs.
  • Hands-on experience with Tenable or equivalent vulnerability assessment platforms.
  • Experience supporting vulnerability remediation across large, decentralized, or complex technology environments.
  • Strong working knowledge of vulnerability scoring, risk-based prioritization, CVSS, CIS Benchmarks, NIST guidance, and industry vulnerability management practices.
  • Ability to translate technical security findings into clear remediation guidance and practical business risk context.
  • Strong communication, stakeholder engagement, analytical, and problem-solving skills.

Preferred Qualifications

  • Cybersecurity certification such as CISSP, GIAC, CySA+, Security+, CVA, or similar.
  • Experience in healthcare, medical device, manufacturing, or other regulated environments.
  • Experience with vulnerability management platforms, security operations technologies, IT service management or CMDB platforms, cloud security technologies, scripting, APIs, or Infrastructure-as-Code.
  • Experience developing dashboards, operational metrics, executive-ready reporting, or audit evidence for cybersecurity programs.

About the company

At ZOLL, we’re passionate about improving patient outcomes and helping save lives.

We provide innovative technologies that make a meaningful difference in people’s lives. Our medical devices, software and related services are used worldwide to diagnose and treat patients suffering from serious cardiopulmonary and respiratory conditions., ZOLL is a fast-growing company that operates in more than 140 countries around the world. Our employees are inspired by a commitment to make a difference in patients’ lives, and our culture values innovation, self-motivation and an entrepreneurial spirit. Join us in our efforts to improve outcomes for underserved patients suffering from critical cardiopulmonary conditions and help save more lives.

The annual salary for this position is: $108,100.00 to $129,000.00

Factors which may affect starting salary include geography, skills, education, experience, and other qualifications of the successful candidate. Details of ZOLL’s comprehensive benefits plans can be found at www.zollbenefits.com.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on jobs.localjobnetwork.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

3:22 min

Transitioning from software engineering to security roles

Anna Oliveira · Coffee With Developers

1:04 min

Introduction to Bitcoin script parsing tools

Steve Shadders · LIVE

4:34 min

Motivational categories behind modern cybercriminal activities

Mauro Verderosa · LIVE

4:11 min

Introduction to cloud-native application developer security

Micah Silverman · World Congress 2022

4:01 min

Finding personal fulfillment in the cybersecurity industry

LIVE

1:53 min

Evaluating traditional scripting languages for modern development tasks

Jens Knipper Jens Knipper · Europe 2026 Virtual

Videos

See all

Related articles

See all