Senior SecOps Vulnerability Management Engineer

Project - the aim you'll have

Overview

Software Mind is seeking qualified candidates located in Latam to fill the role of Sr. SecOps Vulnerability Management (CTEM) Engineer. 

In addition to a competitive salary rate and a positive work environment, committed to delivering high-quality technology solutions, we also offer:

  • Flexible schedules
  • An authentic work-life balance
  • Payment in US Dollars

 

About the role:

Our client develops digital experiences and platforms that provide consumers with information about financial services and financial products, to help them make the best financial decisions for their unique needs. 

We are looking for a Senior SecOps Vulnerability Management (CTEM) Engineer to support and improve the client’s Continuous Threat Exposure Management (CTEM) program, and cloud and network security practices. The client’s CTEM program is functioning and is in the process of company-wide delivery, with many problems that have already been solved, but many more that are waiting to be discovered.  

The role provides plenty of autonomy, and the client is looking for a highly driven individual with a strong sense of ownership and is willing to take action by identifying, assessing, and tackling problems that are sometimes ambiguous. They are looking for someone with great communication and collaboration skills who is comfortable interfacing directly with a wide range of stakeholders, including both technical and non-technical leaders.  

 

#LI-DNI  

Expectations - the experience you need

Role Responsibilities:

  • Operate, improve, and coordinate the CTEM program with the guidance of Security Leadership. 
  • Work directly in the Seemplicity platform for CTEM aggregation, prioritization, remediation, etc. 
  • Follow up with the appropriate teams and individuals to communicate and resolve vulnerabilities that are found
  • Serve as an authority in the area of security vulnerabilities and vulnerability management. 
  • Be able to speak the language of business risk and explain to stakeholders how security risks and vulnerabilities have a business impact, with the support of Security leadership. 
  • Collaborate with technical teams, including Infrastructure, DevOps, Data, and Engineering to communicate findings, meet stakeholder needs, and promote accountability processes. 
  • Respond to potential security incidents and perform other security team tasks as needed. 

Required Skills & Qualities:

  • Excellent communication, collaboration, and negotiation skills, with demonstrated experience in communicating effectively to technical and non-technical audiences and stakeholders. 
  • A strong track record of cross-team collaboration and process ownership, with extensive experience reaching out to and following up with other teams and stakeholders to communicate and resolve security findings. 
  • Deep experience working in Vulnerability Management (CTEM), including tuning sources, prioritization rules, and reporting /ticketing streams that meet various stakeholder needs. 
  • Have a deep understanding of what a vulnerability means across various domains, including:
    • Endpoint Security (laptop/desktop) experience and working with tools such as SentinelOne, CrowdStrike, Falcon, or similar. 
    • Cloud architecture and security experience, and working with AWS environments, container images, dependencies, etc., and using CNAPP tools like Lacework or Wiz. 
    • Code and OpenSource security experience, using tools like SemGrep, Synk, or similar. 
  • Previous handos-on experience working with CTEM aggregation and re-prirotization tools and platforms like Seemplicicty (preferred), Defect Dojo, or Silk Security. 
  • Experience in data retrieval, data manipulation, and data reporting, including the following skills:
    • Experience working with APIs. 
    • Experience with scripting for automation (Python preferred). 
    • Experience in data management, manipulation, and presentation (using data in Google Sheets, Excel, and databases).    

Control Work Areas:

  • 70% Vulnerability Management Operation and Delivery
  • 25% Tuning and improvement
  • 5% Other

 

    Our offer – professional development, personal growth
    Hover on each benefit to learn more
    Decide on the form and conditions of your employment
    *Applicable in: Poland & Latam & MD/RO
    Flexible employment and remote work
    *Applicable in: Poland & Latam & MD/RO
    Work with the latest technologies for industry leaders
    *Applicable in: Poland & Latam & MD/RO
    International projects with leading global clients
    *Applicable in: Poland & Latam & MD/RO
    Travel to clients’ and work in their environments
    *Applicable in: Poland & MD/RO
    International business trips
    *Applicable in: Poland & MD/RO
    Work comfortably in a relaxed and inspiring atmosphere that does not enforce a dress code
    *Applicable in: Poland & Latam & MD/RO
    Non-corporate atmosphere
    *Applicable in: Poland & Latam & MD/RO
    Develop your skills at work – language classes come to you
    *Applicable in: Poland & MD/RO
    Language classes
    *Applicable in: Poland & MD/RO
    Develop your competences and skills through skill centers and webinars
    *Applicable in: Poland & MD/RO
    Internal & external training
    *Applicable in: Poland & MD/RO
    Take care of the health of you and your loved ones
    *Applicable in: Poland & MD/RO
    Private healthcare and insurance
    *Applicable in: Poland & MD/RO
    Work out, swim and enjoy other fun activities
    *Applicable in: Poland & MD/RO - monthly sport budget
    Multisport card
    *Applicable in: Poland & MD/RO - monthly sport budget
    Take part in activities that support your physical and mental health
    *Applicable in: Poland & Latam & MD/RO
    Well-being initiatives
    *Applicable in: Poland & Latam & MD/RO
    Similar job offers
  • DevOps, Security & Cloud
    Cloud AI Engineer
    Kraków/Remote
  • DevOps, Security & Cloud
    Senior Cloud Security Engineer
    San Jose/Remote
  • DevOps, Security & Cloud
    Compliance Specialist
    San Jose/Remote
  • Senior SecOps Vulnerability Management Engineer
    DevOps, Security & Cloud, Python, Security, REF2053D, San Jose/Remote, B2B/UOP

    Submit application

    Attach resume/CV

    Links

    Message to hiring manager

    Let us know about your interest working in our company