Talent.com
Technology Vulnerability Management Engineer
Technology Vulnerability Management EngineerCooley LLP • New York, NY, United States
Technology Vulnerability Management Engineer

Technology Vulnerability Management Engineer

Cooley LLP • New York, NY, United States
job_description.job_card.variable_days_ago
serp_jobs.job_preview.job_type
  • serp_jobs.job_card.full_time
job_description.job_card.job_description

Technology Vulnerability Management Engineer

Cooley is seeking a Technology Vulnerability Management Engineer to join the Security team.

Position Summary : Cooley Technology embraces a culture of customer service excellence, and all members of the department are expected to move this agenda forward. To that end, the Technology Vulnerability Management Engineer is expected to recognize that the Cooley Technology department is a service organization first and foremost and will be evaluated on this requirement equal in importance to the technical or operational responsibilities outlined later in this document.

The Technology Vulnerability Management Engineer will lead the full vulnerability management lifecycle across endpoints, servers, applications, containers, and cloud environments. This role owns discovery, validation, risk-based prioritization, and remediation outcomes. The engineer will administer and optimize vulnerability management platforms, automate data flows and reporting, and partner with Technology and Innovation teams to meet SLA targets and reduce enterprise risk. The position will be a balance of hands-on technical execution, program leadership, and clear communication, while staying current on emerging threats and supporting audits, compliance efforts, and incident response activities. Specific duties include, but are not limited to, the following :

Position responsibilities

  • Support the development and continuous optimization of vulnerability management services, including scanning cadence, exception handling, SLAs and alignment with security controls
  • Build and maintain standards, playbooks, and repeatable processes to improve the efficiency and maturity of the vulnerability management program
  • Administer and optimize enterprise vulnerability management platforms (e.g., Tenable / Qualys / Rapid7), ensuring accurate coverage across assets
  • Integrate asset context from CMDB, EDR, and cloud inventory to drive effective risk-based prioritization
  • Build automation for data ingestion, deduplication, ticketing, and reporting using APIs, scripting, and other tools to improve data quality and reduce false positives
  • Analyze and interpret vulnerability scan results to assess severity, validate findings, and provide actionable remediation recommendations
  • Publish dashboards and reports tailored for engineers, management, and executive leadership to communication progress and risk
  • Drive remediation efforts, including patching, configuration baselines, and compensating controls, and validate results through rescans or attestations
  • Partner with developers, DevOps, and other stakeholders to implement "shift-left" practices such as pipeline scanning, container / base-image hygiene, and Infrastructure-as-Code (IaC) hardening
  • Collaborate with cross-functional teams to implement security solutions and controls that mitigate identified vulnerabilities
  • Support audits, assessments, and regulatory compliance requirements by providing accurate documentation and evidence
  • Identify opportunities for process improvements, tool optimization, and template standardization to increase efficiency and reduce operational overhead
  • Stay current on emerging threats, vulnerabilities, and industry best practices to ensure the program remains effective and modern
  • Contribute to advanced security testing activities such as penetration testing, application reviews and targeted vulnerability assessments as needed
  • Assist with incident response activities by providing vulnerability context, supporting root cause analysis, and helping to validate containment and remediation actions
  • All other duties as assigned or required

Skills and experience :

Required :

  • After orientation at Cooley LLP, exhibit proficiency in the Microsoft 365, MECM, Intune, iManage and other firm applications
  • Ability to work extended and / or weekend hours, as required
  • 2+ years of experience in cyber security, vulnerability management, or penetration testing. Senior candidates must have 5+ years' directly applicable experience in the field
  • Strong hands-on experience conducting vulnerability scans, including configuration and use of tools such as Tenable, Qualys, Rapid7
  • Knowledge of cybersecurity frameworks, controls and standards, and best practices
  • Solid understanding of Windows / Linux, networks, web / application stacks, and at least one major cloud provider (AWS / Azure)
  • Proficiency in Python or PowerShell and REST APIs; ability to build repeatable pipelines / dashboards
  • Familiarity with CVSS, KEV, EPSS and how they align with risk frameworks
  • Extensive knowledge and experience generating and disseminating easily digestible metrics and report to system owners and leadership
  • Preferred :

  • Bachelor's Degree in Information Technology or Computer Information Systems
  • Knowledge of the Mitre ATT&CK framework and NIST Cyber Security Framework
  • Familiarity with common security controls in the enterprise (Firewall, Proxy, AV, SIEM, etc.)
  • Experience with incident response procedures
  • Extensive knowledge and understanding of security issues, techniques, and implications across multiple computer platforms
  • Demonstrated experience leading and developing others by providing technical guidance and leadership to project teams
  • Solid knowledge and understanding of security regulations and best practices such as the ISO 27000 family of standards
  • Demonstrated experience communicating technical information to business clients and less experienced technologists
  • CISSP, CISM or equivalent
  • Experience with CI / CD pipelines
  • Cloud Architecture and / or Cloud Security Certifications (AWS, Azure, GCP)
  • Cloud Security Alliance (CCSP, CCSK) (ISC)2
  • Additional security certifications
  • Competencies :

  • Exceptional customer service skills
  • Excellent analytical, problem-solving, customer service, project management and communication skills
  • Goal-oriented
  • Proven track record of excellent decision making, integrity and working with IT management, business users and business professionals
  • Excellent oral and written communication skills, including technical and user documentation
  • Strong organizational skills
  • Ability to work independently and under high pressure with tight schedules and deadlines
  • Ability to interact well with all levels of business professionals
  • Excellent active listening skills
  • Flexible and patient with process development / execution and adherence to instruct project management practices
  • Capable of grasping new concepts quickly and without prior experience
  • Detail-oriented
  • Ability to multi-task and work in fast-paced environment
  • Ability to interact and coordinate with several teams to achieve objectives
  • Ability to solve problems independently and simultaneously, effectively managing multiple tasks
  • Professional demeanor at all times
  • Cooley offers a competitive compensation and excellent benefits package and is committed to fair and equitable employment practices. EOE.

    The expected annual pay range for this position is $110,000 - $155,000. Please note that final offer amount will be dependent on geographic location, applicable experience and skillset of the candidate. Senior level candidates may be considered for this position and would be eligible for a higher salary range based on experience.

    We offer a full range of elective benefits including medical, health savings account (with applicable medical plan), dental, vision, health and / or dependent care flexible spending accounts, pre-tax commuter benefits, life insurance, AD&D, long-term care coverage, backup care for children and / or adults and other parental support benefits. In addition to elective benefit options, benefited employees receive firm-paid life insurance, AD&D, LTD, short term medical benefits as well as 21 days of Paid Time Off ("PTO") and 10 paid holidays each year. We provide generous parental leave and fertility benefits. New employees will attend a detailed benefit orientation to learn more about our many benefits and resources.

    serp_jobs.job_alerts.create_a_job

    Vulnerability Management Engineer • New York, NY, United States

    Job_description.internal_linking.related_jobs
    Lead Security Engineer - Cyber Security

    Lead Security Engineer - Cyber Security

    Relativity • New York, NY, United States
    serp_jobs.job_card.full_time
    As a Lead Cyber Security Engineer, you will ensure the security of Relativity's network and infrastructure.In this role, the main responsibilities will be to investigate and analyze emerging threat...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_30 • serp_jobs.job_card.promoted
    Site Reliability Engineer

    Site Reliability Engineer

    Marketaxess • New York, New York, United States
    serp_jobs.job_card.full_time
    MarketAxess is on a journey to digitally transform one of the world’s largest financial markets, enabling the shift from analog, phone-based trading to a fully electronic marketplace.Why does this ...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_variable_days • serp_jobs.job_card.promoted
    Travel CT Tech - $2464 / Week

    Travel CT Tech - $2464 / Week

    SambaTraveler • Neptune, NJ, US
    serp_jobs.job_card.full_time
    SambaTraveler is seeking an experienced CT Tech for an exciting Travel Allied job in Neptune, NJ.Shift : 5x8 hr PMs Start Date : ASAP Duration : 19 weeks Pay : $2464 / Week. Working in healthcare, your ...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_variable_days • serp_jobs.job_card.promoted
    Site Reliability Engineer, Commodities Technology

    Site Reliability Engineer, Commodities Technology

    Point72 • New York, New York, United States
    serp_jobs.job_card.full_time
    Site Reliability Engineer, Commodities Technology.A Career with point72’s technology team.As Point72 reimagines the future of investing, our Technology group is constantly improving our company’s I...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_30 • serp_jobs.job_card.promoted
    Site Reliability Engineer - Cloud

    Site Reliability Engineer - Cloud

    Dataiku • New York, New York, United States
    serp_jobs.job_card.full_time
    At Dataiku, we're not just adapting to the AI revolution, we're leading it.Since our beginning in Paris in 2013, we've been pioneering the future of AI with a platform that makes data actionable an...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_30 • serp_jobs.job_card.promoted
    Site Reliability Engineer 3

    Site Reliability Engineer 3

    Mongodb • New York, New York, United States
    serp_jobs.job_card.full_time
    MongoDB’s mission is to empower innovators to create, transform, and disrupt industries by unleashing the power of software and data. We enable organizations of all sizes to easily build, scale, and...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_30 • serp_jobs.job_card.promoted
    Nuclear Engineer

    Nuclear Engineer

    US Navy • Yonkers, New York, United States
    serp_jobs.job_card.part_time
    It takes hard work and smarts to get you into the reactor room.But if you have a strong interest in math, chemistry, physics and engineering, you might just have what it takes to be a Machinist's M...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_variable_days • serp_jobs.job_card.promoted
    Site Reliability Engineer

    Site Reliability Engineer

    Alchemy • New York, New York, United States
    serp_jobs.job_card.full_time
    Our mission is to bring web3 to a billion people, by providing builders with the tools they need to build exceptional onchain products. Alchemy is the only complete developer platform that offers th...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_30 • serp_jobs.job_card.promoted
    Forward Deployed Engineer, GenAI

    Forward Deployed Engineer, GenAI

    Scale AI, Inc. • New York, NY, United States
    serp_jobs.job_card.full_time
    At Scale AI, our mission is to accelerate the development of AI applications.For 8 years, Scale has been the leading AI data foundry, helping fuel the most exciting advancements in AI, including ge...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_30 • serp_jobs.job_card.promoted
    KMS Support Engineer

    KMS Support Engineer

    Axelon Services Corporation • Jersey City, NJ, US
    serp_jobs.job_card.full_time
    Job Title : KMS Support Engineer.Location : Jersey City, NJ (Hybrid).Pay Range : $600-1000 / day (Depends on Experience). The missions of the Security Support Engineer are : .To operate and maintain the se...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_variable_days • serp_jobs.job_card.promoted
    Site Reliability Engineer, Security

    Site Reliability Engineer, Security

    Radar • New York, NY, United States
    serp_jobs.job_card.full_time
    We're looking for Site Reliability Engineers to work on security across the entire Radar infrastructure.Radar is a high-throughput, data intensive application handling 1 billion+ API calls per day....serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_30 • serp_jobs.job_card.promoted
    Sr. Site Reliability Engineer

    Sr. Site Reliability Engineer

    Vimeo • New York, New York, United States
    serp_jobs.job_card.full_time
    Do you love working with cloud infrastructure at scale? Optimizing the last bit of performance and efficiency out of applications that get hundreds of thousands of requests per second? Digging deep...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_30 • serp_jobs.job_card.promoted
    Site Reliability Engineer

    Site Reliability Engineer

    Hebbia • New York, New York, United States
    serp_jobs.job_card.full_time
    The user interface for AGI – Hebbia is AI that works the way you work.Designed to be generally capable– it can tackle even the most complex tasks, citing answers over any amount of sources.By showi...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_30 • serp_jobs.job_card.promoted
    vulnerability Remediation Engineer

    vulnerability Remediation Engineer

    Inherent Technologies • Jersey, New Jersey, USA
    serp_jobs.job_card.full_time
    Position : Vulnerability Remediation Engineer.Implement capabilities for a global Vulnerability Management program : internal / external exposure imminent threats prioritization remediation facilitatio...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_variable_days • serp_jobs.job_card.promoted
    Travel Rad Tech - $2272 / Week

    Travel Rad Tech - $2272 / Week

    Fusion Medical Staffing • Neptune, NJ, US
    serp_jobs.job_card.full_time
    Fusion Medical Staffing is seeking an experienced Rad Tech for an exciting Travel Allied job in Neptune, NJ.Shift : Inquire Start Date : ASAP Duration : 18 weeks Pay : $2272 / Week.Facility in Neptune,...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_30 • serp_jobs.job_card.promoted
    Senior Infrastructure / Site Reliability Engineer

    Senior Infrastructure / Site Reliability Engineer

    Particle Health • New York, New York, United States
    serp_jobs.job_card.full_time
    Particle Health is revolutionizing healthcare data analytics and interoperability.Our mission is to unlock the power of medical records in an intelligent platform that focuses health back on the pa...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_30 • serp_jobs.job_card.promoted
    Site Reliability Engineer

    Site Reliability Engineer

    Cape • New York, New York, United States
    serp_jobs.job_card.full_time
    Cape was founded in early 2022 by Palantir and Anduril alums with deep expertise in privacy and national security.While running Palantir’s US national security business, our CEO became passionate a...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_30 • serp_jobs.job_card.promoted
    Staff Site Reliability Engineer

    Staff Site Reliability Engineer

    Stash • New York, NY, United States
    serp_jobs.job_card.full_time
    Want to help everyday Americans invest and build wealth? Financial inequality is increasing, and too many people are getting left behind. At Stash, we are passionate about democratizing wealth creat...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_1_day • serp_jobs.job_card.promoted