Talent.com
Security Engineer II - Threat and Vulnerability
Security Engineer II - Threat and VulnerabilityStifel • St Louis, MO, United States
Security Engineer II - Threat and Vulnerability

Security Engineer II - Threat and Vulnerability

Stifel • St Louis, MO, United States
18 days ago
Job type
  • Full-time
Job description

Why Stifel

Stifel strives for a culture that puts its clients and associates first : a culture where everyone belongs, everyone is welcome, and everyone contributes to the success of our clients, their careers, and the firm as a whole.

Let's talk about how you can find your place here at Stifel, where success meets success .

What You'll Be Doing

The Security Engineer II - Threat and Vulnerability is responsible for identifying, assessing, and mitigating security risks across Stifel's environments. This role emphasizes detecting vulnerabilities, ensuring secure configurations, and driving remediation efforts to strengthen the firm's overall security posture. The Security Engineer II leverages technical expertise, automation, and programming skills to improve the efficiency and accuracy of vulnerability detection, reporting, and response processes.

What We're Looking For

  • Research, analyze, and evaluate emerging threats, vulnerabilities, and exploits across on-premises and cloud environments.
  • Monitor and correlate threat intelligence feeds to identify relevant tactics, techniques, and procedures (TTPs).
  • Apply frameworks such as MITRE ATT&CK, OWASP, and CVSS to assess severity, exploitability, and business impact.
  • Identify, assess, and manage vulnerabilities across cloud platforms such as AWS, Azure, or GCP, including misconfigurations and exposed services.
  • Utilize CSPM and CWPP tools like Prisma Cloud, Defender for Cloud, and Wiz to detect, track, and report vulnerabilities.
  • Collaborate with cloud, DevOps, and IT teams to remediate vulnerabilities and integrate security controls into infrastructure and pipelines.
  • Implement and maintain secure configuration standards across servers, endpoints, databases, network devices, and cloud resources.
  • Perform regular configuration audits and compliance checks using frameworks such as CIS Benchmarks, NIST 800-53, and DISA STIGs.
  • Develop and maintain automation scripts or integrations with Python, PowerShell, Bash, JavaScript to streamline scanning, reporting, and data correlation.
  • Integrate vulnerability management tools with SIEM, SOAR, and ticketing systems via APIs to improve workflow efficiency.
  • Create dashboards and data visualizations to enhance threat visibility and remediation tracking.
  • Track and verify remediation progress, ensuring alignment with defined SLAs, risk priorities, and compliance requirements.
  • Communicate technical findings, risks, and remediation guidance clearly to both technical and non-technical stakeholders.

What You'll Bring

  • Advanced understanding of security control environment such as access control, logging, authentication, encryption, integrity, etc.
  • Demonstrated experience managing vulnerabilities in both on-premises and cloud environments.
  • Experience coordinating corporate-wide initiatives for obtaining security-related assurances.
  • Familiarity with federal and state legal and regulatory requirements related to information security.
  • Understand the advanced tenets of security risk management and defense-in-depth practices.
  • The ability to combine pieces of information to form general rules or conclusions.
  • Education & Experience

  • Preferred : Bachelor's degree in Cybersecurity, Information Security, Computer Science, Management Information Systems, or equivalent work experience.
  • Minimum Required : 2+ years' of experience in cybersecurity or IT with exposure to vulnerability management, configuration management, or cloud security.
  • Preferred : Experience developing automation or integrations via APIs or scripting.
  • Strong understanding of analyzing and incorporating threat intelligence.
  • Experience with ticketing systems, office productivity, reporting, and technical documentation software.
  • Exposure to systems monitoring tools and logging tools
  • Licenses & Credentials

  • Preferred credentials : CompTIA Security+, CompTIA PenTest+, AWS, Azure, GCP, or equivalent cloud certification.
  • Systems & Technology

  • Proficient in Microsoft Excel, Word, PowerPoint, and Outlook.
  • Proficient with programming or scripting languages like Python, PowerShell, Bash, etc., for automation and tool integration.
  • Proficient with numerous versions of Microsoft Windows, Linux, Mac, and Web Browsers.
  • Hands-on experience with vulnerability management tools such as Tenable, Qualys, Rapid7.
  • Familiar with cloud security frameworks and CSPM solutions like Prisma Cloud, Microsoft Defender for Cloud, and Wiz.
  • #LI-DL1

    About Stifel

    Stifel is more than 130 years old and still thinking like a start-up. We are a global wealth management and investment banking firm serious about innovation and fresh ideas. Built on a simple premise of safeguarding our clients' money as if it were our own, coined by our namesake, Herman Stifel, our success is intimately tied to our commitment to helping families, companies, and municipalities find their own success.

    While our headquarters is in St. Louis, we have offices in New York, San Francisco, Baltimore, London, Frankfurt, Toronto, and more than 400 other locations. Stifel is home to approximately 9,000 individuals who are currently building their careers as financial advisors, research analysts, project managers, marketing specialists, developers, bankers, operations associates, among hundreds more. Let's talk about how you can find your place here at Stifel, where success meets success.

    At Stifel we offer an entrepreneurial environment, comprehensive benefits package to include health, dental and vision care, 401k, wellness initiatives, life insurance, and paid time off.

    Stifel is an Equal Opportunity Employer.

    Create a job alert for this search

    Security Engineer Ii • St Louis, MO, United States

    Related jobs
    Security Specialist III

    Security Specialist III

    ServiceSource, Inc. • Arnold, MO, United States
    Full-time
    Make an impact by joining ServiceSource, a champion for people with disabilities.Explore new opportunities! ServiceSource is an organization of talented people who drive innovation, embrace change,...Show more
    Last updated: 30+ days ago • Promoted
    Security Engineer

    Security Engineer

    Stellar IT Solutions LLC • St. Louis, Missouri, USA
    Full-time
    Job Summary : Security Engineer - Zscaler / DLP / Endpoint & Email Security.We are seeking a skilled Security Engineer to lead the administration and optimization of our Zscaler cloud-security platf...Show more
    Last updated: 22 days ago • Promoted
    Security Engineer IV - Exposure Management

    Security Engineer IV - Exposure Management

    Edward Jones • St Louis, MO, United States
    Full-time
    And see your ideas come to life.It's an exciting time to work in tech at Edward Jones.We are making massive investments in emerging technologies to improve how we work with our clients and with eac...Show more
    Last updated: 6 days ago • Promoted
    Operations Technician

    Operations Technician

    American Waterworks • Fieldon, IL, United States
    Full-time
    Job Title : Operations Technician.This position is a union position with Illinois American Water and the starting pay rate is $31. This position may be eligible for annual incentive pay and contracte...Show more
    Last updated: 8 days ago • Promoted
    Sr. Security Engineer

    Sr. Security Engineer

    World Wide Technology • Maryland Heights, MO, United States
    Full-time +1
    This is a full-time direct hire position and you must currently have an active Secret Security Clearance or above.We are not able to offer visa sponsorship, 1099 status, or work with C2C for this r...Show more
    Last updated: 18 days ago • Promoted
    Security Engineer (On-Site / St. Louis, MO)

    Security Engineer (On-Site / St. Louis, MO)

    Oakwood Systems Group • St Louis, MO, United States
    Full-time
    Design, implement, manage, maintain, improve, and troubleshoot various security systems, including but not limited to Data Loss Prevention (DLP), SIEM and UEBA, endpoint protection, and data securi...Show more
    Last updated: 14 days ago • Promoted
    Associate Product Security Engineer

    Associate Product Security Engineer

    Boeing • Hazelwood, Missouri, USA
    Full-time +2
    Associate Product Security Engineer.Boeing is seeking an innovative.Product Security Engineer - Avionics Development.Product Security Organization located in. Berkeley MO Hazelwood MO Saint Louis MO...Show more
    Last updated: 23 hours ago • Promoted
    Security Engineer III

    Security Engineer III

    Safety National • St. Louis, MO, United States
    Full-time
    At Safety National, we don't just offer jobs - we build careers with purpose! Since 1942, we've been an industry leader, valuing integrity, teamwork, and stability while providing competitive rewar...Show more
    Last updated: 30+ days ago • Promoted
    API Security Engineer

    API Security Engineer

    eTeam • St Louis, MO, United States
    Full-time
    The API Security Engineer is responsible for securing APIs across the organization's systems and services.This role involves identifying and mitigating vulnerabilities, monitoring API activity, and...Show more
    Last updated: 30+ days ago • Promoted
    Security Engineer

    Security Engineer

    Nava Software Solutions • St Louis, MO, United States
    Full-time
    NAVA Software solutions is looking for a Product Security Engineer.Location : Saint Louis, MO - Onsite.Lead the Cybersecurity aspects of the full-lifecycle development and manufacturing & production...Show more
    Last updated: 15 days ago • Promoted
    Security Engineer II with Security Clearance

    Security Engineer II with Security Clearance

    Beacon Hill • St Charles, MO, United States
    Full-time
    Job Summary : We are seeking a Cybersecurity Engineer with a strong foundation in cybersecurity principles and hands-on experience supporting classified government programs.The ideal candidate will ...Show more
    Last updated: 18 days ago • Promoted
    Security Remediation Engineer

    Security Remediation Engineer

    Insight Global • Maryland Heights, MO, United States
    Full-time
    Insight Global is looking to add a Security Remediation Engineer to our client's team in the St.This individual will be responsible for supporting the security needs of our client's infrastructure ...Show more
    Last updated: 30+ days ago • Promoted
    Security Engineer IV

    Security Engineer IV

    Spectrum • Maryland Heights, MO, United States
    Full-time
    This role requires the ability to work lawfully in the U.This position is not eligible for immigration sponsorship.Spectrum's Product and Technology team creates, develops, and operates the nation'...Show more
    Last updated: 18 days ago • Promoted
    Cyber Security Engineer

    Cyber Security Engineer

    Stellar IT Solutions LLC • St. Louis, Missouri, USA
    Full-time +1
    Required hands-on experience with FedRAMP compliance frameworks and controls.Deep expertise in Azure Security Center for threat protection posture management and remediation.Strong background in Id...Show more
    Last updated: 14 days ago • Promoted
    Mid-Level Product Security Engineer

    Mid-Level Product Security Engineer

    Boeing • Hazelwood, Missouri, USA
    Full-time +1
    Mid-Level Product Security Engineer.Boeing is seeking an innovative and experienced.Product Security Engineer - Avionics Development. Product Security Organization located in.Berkeley MO Hazelwood M...Show more
    Last updated: 23 hours ago • Promoted
    Security Engineer

    Security Engineer

    World Wide Technology • Maryland Heights, MO, United States
    Full-time +1
    This is a full-time direct hire position and you must currently have an active Secret Security Clearance or above.We are not able to offer visa sponsorship, 1099 status, or work with C2C for this r...Show more
    Last updated: 18 days ago • Promoted
    Security Engineer IV

    Security Engineer IV

    Charter Communications • Maryland Heights, MO, United States
    Full-time
    This role requires the ability to work lawfully in the U.This position is not eligible for immigration sponsorship.Spectrum's Product and Technology team creates, develops, and operates the nation'...Show more
    Last updated: 18 days ago • Promoted
    Air Interdiction Agent

    Air Interdiction Agent

    U.S. Customs and Border Protection • Festus, MO, US
    Full-time
    Pilot CBP Air Interdiction Agent.Air and Marine Operations (AMO), a component of U.Customs and Border Protection (CBP), offers skilled Pilots interested in law enforcement an opportunity to work wi...Show more
    Last updated: 30+ days ago • Promoted