Security Engineer - Vulnerability Assessment

5 - 8 years

0 Lacs

Posted:1 day ago| Platform: Linkedin logo

Apply

Work Mode

On-site

Job Type

Full Time

Job Description

Key Responsibilities

  • Perform vulnerability assessments across cloud platforms and workloads using Wiz, Tenable, and SonarQube.
  • Classify vulnerabilities by severity, remediation type (Terraform fix, code refactor, policy update), and level of effort (LOE).
  • Track, manage, and drive remediation efforts to closure, ensuring timely risk reduction.
  • Integrate vulnerability scanning into AWS Image Builder pipelines to deliver hardened AMIs for Windows, Linux, Amazon Linux, and middleware workloads.
  • Define and enforce tagging schemas for traceability, compliance, and reporting across images and container workloads.
  • Develop and implement security policies, procedures, and governance frameworks to enhance organizational security posture.
  • Partner with DevOps and development teams to embed security practices into CI/CD pipelines (GitHub Actions, Spacelift, Jenkins, GitLab CI).
  • Automate workflows for image release notifications, deprecations, and vulnerability alerts.
  • Design and maintain dashboards to track vulnerability aging, adoption, risk trends, and remediation progress.
  • Provide knowledge transfer and training to platform and security teams, promoting long-term adoption of best practices.
  • Ensure license compliance for BYOL workloads (Oracle, WebLogic, etc.).
  • Deliver regular metrics, risk reports, and status updates to leadership and :
  • 5-8 years of experience in security engineering, vulnerability management, and cloud security.
  • Bachelors degree in Computer Science, Information Security, or related field.
  • Proven experience in vulnerability assessment and remediation across AWS workloads.
  • Hands-on expertise with security tools : Tenable, SonarQube, Wiz.
  • Strong knowledge of IaC : Terraform, CloudFormation, Ansible.
  • Experience with CI/CD tools : GitHub Actions, Spacelift, Jenkins, GitLab CI.
  • Familiarity with AWS services : VPC, EC2, IAM, CloudWatch.
  • Scripting proficiency in Shell, PowerShell, and Python.
  • Knowledge of OS hardening frameworks (CIS Benchmarks, DISA STIGs).
  • Strong problem-solving, analytical, and collaboration Qualifications :
  • Security or cloud certifications : CISSP, CISM, AWS Certified Security Specialty, or equivalent.
  • Experience with policy-driven enforcement (OPA, AWS Config, SCPs).
  • Familiarity with observability tools : Prometheus, Grafana, ELK stack.
  • Experience securing container workloads (EKS, ECS, Docker).
  • Knowledge of governance and compliance standards : ISO 27001, NIST, SOC2.
(ref:hirist.tech)

Mock Interview

Practice Video Interview with JobPe AI

Start DevOps Interview
cta

Start Your Job Search Today

Browse through a variety of job opportunities tailored to your skills and preferences. Filter by location, experience, salary, and more to find your perfect fit.

Job Application AI Bot

Job Application AI Bot

Apply to 20+ Portals in one click

Download Now

Download the Mobile App

Instantly access job listings, apply easily, and track applications.

coding practice

Enhance Your Skills

Practice coding challenges to boost your skills

Start Practicing Now

RecommendedJobs for You