Talent.com
Senior Security Engineer - Vulnerability Management
Senior Security Engineer - Vulnerability ManagementCARFAX • Columbia, MO, United States
Senior Security Engineer - Vulnerability Management

Senior Security Engineer - Vulnerability Management

CARFAX • Columbia, MO, United States
Hace 21 horas
Tipo de contrato
  • A tiempo completo
Descripción del trabajo

Description

Join Team CARFAX as a Senior Security Engineer - Vulnerability Management

Isn't it time you bragged about where you work? At CARFAX, we do, every day. We pride ourselves on being mission-focused on helping to grow a brand built on accuracy and integrity. We care deeply about our products and our customers. We're more than just a company : We help millions of consumers make more informed decisions every day. We know that our teammates are our most valuable asset, and we value a balanced life while tackling challenging projects in a fast-paced environment.

We are seeking a highly skilled and motivated Senior Cyber Security Engineer - Vulnerability Management plays a vital role in safeguarding the organization's information assets by designing, implementing, and maintaining robust security measures. This role involves identifying and mitigating security vulnerabilities, responding to security incidents, and ensuring compliance with security policies and standards. The Senior Cyber Security Engineer - Vulnerability Management collaborates with various IT and business teams to integrate security best practices into every aspect of the organization's operations.

At CARFAX, we believe in the power of teamwork and value in-person interactions so that we can collaborate and thrive together. This position will require 3 days per week in our Columbia, MO office subject to change with future business needs.

What you'll be doing :

  • Oversee the end-to-end vulnerability management lifecycle, including scanning, assessment, prioritization, remediation tracking, and reporting.
  • Perform regular vulnerability scans across infrastructure, endpoints, and applications, ensuring accurate detection, proper asset coverage, and alignment with security and compliance requirements.
  • Perform risk-based analysis and triage vulnerability findings based on business impact, asset criticality, threat intelligence, and exploitability. Guide stakeholders on remediation priorities.
  • Collaborate with system owners to drive timely remediation. Develop actionable plans for patching or mitigating vulnerabilities.
  • Ensure system hardening and configuration compliance using industry benchmarks such as CIS and DISA STIGs.
  • Deploy, manage, and optimize vulnerability and compliance scanning tools. Automate scanning, reporting, and alerting to improve coverage and reduce manual effort.
  • Incorporate threat intelligence and exploit data to contextualize vulnerabilities and adjust risk ratings accordingly.
  • Develop clear, concise reports and dashboards that communicate vulnerability status, trends, KPIs, and risk posture to technical and non-technical stakeholders.
  • Continuously evaluate and improve vulnerability management processes, scanning schedules, and remediation workflows to align with evolving threats and organizational needs.
  • Ensure vulnerability management activities align with compliance requirements (e.g., PCI-DSS, SOC II, ISO 27001) and support audit documentation and responses.
  • Act as a liaison between security, infrastructure, application, and business teams. Serve as a subject matter expert on vulnerability-related issues.
  • Provide guidance to junior team members and support knowledge sharing within the cybersecurity team.

What we're looking for :

  • Bachelor's degree in computer science, Information Security, or a related field.
  • Minimum of 5+ years of experience in cybersecurity, with at least 3-4 years focused on vulnerability management.
  • Industry certifications such as CISSP, CEH, CompTIA Security+, or relevant vulnerability management credentials.
  • Strong experience with vulnerability scanning tools (e.g., Qualys, Tenable Nessus, Rapid7 InsightVM).
  • Solid understanding of vulnerability classification standards (e.g., CVSS, CWE, CAPEC) and security frameworks.
  • Familiarity with patch management, system hardening, and configuration management tools and processes.
  • Working knowledge of Linux, Windows, and macOS environments, including OS-level security controls.
  • Understanding of networking protocols, firewalls, and network security best practices.
  • Experience with compliance frameworks such as PCI-DSS, SOC II, or ISO 27001.
  • Strong analytical and problem-solving skills, with the ability to assess complex environments and identify potential exposures.
  • Excellent communication skills, with the ability to convey technical risk to both technical and non-technical stakeholders.
  • Ability to manage multiple projects and tasks in a dynamic, fast-paced environment.
  • What's in it for you :

  • Competitive compensation, benefits and generous time-off policies
  • 4-Day summer work weeks and a winter holiday break
  • 401(k) / DCPP matching
  • Annual bonus program
  • Casual, dog-friendly, and innovative office spaces
  • For a comprehensive list of benefits, please visit our website :
  • Don't just take our word for it :

  • 10X Virginia Business Best Places to Work
  • 10X Washingtonian Great Places to Work
  • 9X Washington Post Top Workplace
  • St.Louis Post-Dispatch Best Places to Work
  • About CARFAX and S&P Global Mobility

    S&P Global has recently announced the intent to separate our Mobility Segment into a standalone public company.

    CARFAX, part of S&P Global Mobility, helps millions of people every day confidently shop, buy, service and sell used cars with innovative solutions powered by CARFAX vehicle history information. The expert in vehicle history since 1984, CARFAX provides exclusive services like CARFAX Used Car Listings, CARFAX Car Care, CARFAX History-Based Value and the flagship CARFAX® Vehicle History Report™ to consumers and the automotive industry. CARFAX owns the world's largest vehicle history database and is nationally recognized as a top workplace by The Washington Post and Glassdoor.com. Shop, Buy, Service, Sell - Show me the CARFAX™. S&P Global Mobility is a division of S&P Global (NYSE : SPGI). S&P Global is the world's foremost provider of credit ratings, benchmarks, analytics and workflow solutions in the global capital, commodity and automotive markets.

    US Equal Opportunity Employer Statement : CARFAX is an Affirmative Action / Equal Opportunity Employer. It is the policy of CARFAX to provide equal employment opportunity to all persons regardless of race, color, sex, pregnancy, religion, national origin, age, ancestry, citizenship status, veteran status, military status, disability or handicap, sexual orientation, genetic information or any other status protected by federal, state or local law. In addition, CARFAX will provide reasonable accommodations for qualified individuals with disabilities. We maintain a drug-free workplace. We are a participant in E-Verify.

    Canadian Equal Opportunity Employer Statement : CARFAX Canada is an equal opportunity employer, and all qualified candidates will receive consideration for employment without regard to race / ethnicity, color, religion, sex, sexual orientation, gender identity, national origin, age, disability, marital status, military veteran status, unemployment status, or any other status protected by law.

    We're committed to providing accommodations by request for candidates taking part in all aspects of the recruitment and selection process. For a confidential inquiry or to request an accommodation, please contact your recruiter or email [email protected].

    Crear una alerta de empleo para esta búsqueda

    Senior Security Engineer • Columbia, MO, United States

    Ofertas relacionadas
    Senior Cyber Security Engineer - Security Operations Center

    Senior Cyber Security Engineer - Security Operations Center

    CARFAX • Columbia, MO, United States
    A tiempo completo
    Senior Cyber Security Engineer - Security Operations Center.Isn't it time you bragged about where you work? At CARFAX, we do, every day. We pride ourselves on being mission-focused on helping to gro...Mostrar más
    Última actualización: hace 21 horas • Oferta promocionada • Nueva oferta
    Regional Director of Safety and Risk

    Regional Director of Safety and Risk

    Global Medical Response • Jefferson City, MO, United States
    A tiempo completo
    Regional Director of Safety & Risk-South Region.GMR) and its family of solutions are dedicated to delivering compassionate, quality medical care, primarily in the areas of emergency and patient rel...Mostrar más
    Última actualización: hace 4 días • Oferta promocionada
    Glove Lab Test Technician - Centralia, MO

    Glove Lab Test Technician - Centralia, MO

    Hubbell Incorporated • Centralia, MO, United States
    A tiempo completo
    The Glove Lab Test Technician is responsible for performing all processes related to retesting new, in-stock CHANCE Rubber Insulating Gloves to help ensure customers receive tested and ready-to-use...Mostrar más
    Última actualización: hace 14 días • Oferta promocionada
    Security Officer - Campus Patrol Driver - Overnights

    Security Officer - Campus Patrol Driver - Overnights

    Allied Universal • Fulton, MO, US
    A tiempo completo
    Security Officer - Campus Patrol Driver - Overnights.Allied Universal, North America's leading security and facility services company, offers rewarding careers that provide you a sense of purpose.W...Mostrar más
    Última actualización: hace 1 día • Oferta promocionada
    Ultrasound Technologist III (Non-Exempt)

    Ultrasound Technologist III (Non-Exempt)

    Mercy • Bonnots Mill, Missouri, US
    A tiempo completo
    Find your calling at Mercy! Perform ultrasound procedures at a technical level not requiring constant supervision of technical detail. Do not pass up this chance, apply quickly if your experience an...Mostrar más
    Última actualización: hace 3 días • Oferta promocionada
    Senior Security Engineer - Cloud Specialist

    Senior Security Engineer - Cloud Specialist

    CARFAX • Columbia, MO, United States
    A tiempo completo
    Senior Security Engineer - Cloud Specialist.Isn't it time you bragged about where you work? At CARFAX, we do, every day.We pride ourselves on being mission-focused on helping to grow a brand built ...Mostrar más
    Última actualización: hace 21 horas • Oferta promocionada • Nueva oferta
    Quality Safety Manager

    Quality Safety Manager

    Jobot • Mexico, MO, US
    A tiempo completo
    Quality Safety Manager opportunity available with rapidly growing flexible packaging / plastics company! Base + Bonus (Mexico, MO). This Jobot Job is hosted by : Marcus Curiel.Are you a fit? Easy Apply...Mostrar más
    Última actualización: hace más de 30 días • Oferta promocionada
    Earn up to $25 per survey Online Survey Taker - flexible schedule and high earning potential (Hiring Immediately)

    Earn up to $25 per survey Online Survey Taker - flexible schedule and high earning potential (Hiring Immediately)

    Earn Haus • Moberly, Missouri, US
    A tiempo completo +1
    We are urgently looking for people interested in taking online surveys for Fortune 500 brands.If you are a self-starter, looking for flexible hours throughout the week, this may be for you! Earn up...Mostrar más
    Última actualización: hace más de 30 días • Oferta promocionada
    VP, Strategic Pursuit Team (SPT)

    VP, Strategic Pursuit Team (SPT)

    EDB • Jefferson City, MO, United States
    A tiempo completo
    EDB provides a data and AI platform that enables organizations to harness the full power of Postgres for transactional, analytical, and AI workloads across any cloud, anywhere.EDB empowers enterpri...Mostrar más
    Última actualización: hace 21 horas • Oferta promocionada • Nueva oferta
    Senior Director, Pricing

    Senior Director, Pricing

    Dodge Construction Network • Jefferson City, MO, United States
    A tiempo completo
    Location : Remote, United States.We are seeking a strategic and analytical Senior Director,Pricing to lead pricing strategy, governance, and execution in partnership with finance, sales, and product...Mostrar más
    Última actualización: hace 21 horas • Oferta promocionada • Nueva oferta
    Academic Advisor I / II (Columbia)

    Academic Advisor I / II (Columbia)

    Moberly Area Community College • Moberly, MO, United States
    A tiempo completo
    The Academic Advisor provides fundamental academic advising to students in understanding degree requirements, course selection, and college policies. This position proactively orients students regar...Mostrar más
    Última actualización: hace 21 horas • Oferta promocionada • Nueva oferta
    Managed Services Security Engineer

    Managed Services Security Engineer

    GFI Digital • Columbia, MO, United States
    A tiempo completo
    The Managed Service Security Engineer is responsible for monitoring, detecting, and responding to security incidents to protect client environments. This role involves the identification of vulnerab...Mostrar más
    Última actualización: hace 1 hora • Oferta promocionada • Nueva oferta
    Senior Cloud Security Engineer

    Senior Cloud Security Engineer

    Paytient • Columbia, MO, United States
    A tiempo completo
    We're on a mission to help people better access and afford care.Every day, millions of people, and their loved ones, need to see a doctor. For most of us, that moment is an uncertain one - we're uns...Mostrar más
    Última actualización: hace más de 30 días • Oferta promocionada
    Quality Supervisor - Centralia, MO

    Quality Supervisor - Centralia, MO

    Hubbell Incorporated • Centralia, MO, United States
    A tiempo completo
    This position will oversee the hourly Quality Inspectors for the Civil and Construction Products business.Investigate manufacturing and supplier issues to develop solutions, which prevent re-occurr...Mostrar más
    Última actualización: hace más de 30 días • Oferta promocionada
    Company Leadership Advisor

    Company Leadership Advisor

    Missouri Military Academy • Mexico, MO, US
    A tiempo completo
    Missouri Military Academy seeks a full time Company Leadership Advisor (CLA).This position supervises cadets in the residence life setting and ensures a safe and secure living environment.This posi...Mostrar más
    Última actualización: hace 1 hora • Oferta promocionada • Nueva oferta
    Sales Associate (Store 003- Fulton, MO)

    Sales Associate (Store 003- Fulton, MO)

    Westlake Ace Hardware • Fulton, MO, US
    A tiempo completo
    Ace Retail Holdings (ARH), the division of Ace Hardware Corporation that owns and operates the Great Lakes and Westlake Ace Hardware chains, is one of the largest hardware retailers in the United S...Mostrar más
    Última actualización: hace más de 30 días • Oferta promocionada
    Field Service Engineer

    Field Service Engineer

    Trumpf, Inc. • Jefferson City, MO, United States
    A tiempo completo
    As a family-run, high-tech company with nearly 19,000 employees at 71 locations worldwide, we are looking for forward thinkers with unconventional ideas and drive to join our team.Our company cultu...Mostrar más
    Última actualización: hace 14 días • Oferta promocionada
    U.S. Border Patrol Agent

    U.S. Border Patrol Agent

    U.S. Customs and Border Protection • Centralia, Missouri, United States
    A tiempo completo
    Customs and Border Protection (CBP) offers those interested in a career in law enforcement an exceptional opportunity to work with an elite team of highly trained professionals whose camaraderie, p...Mostrar más
    Última actualización: hace más de 30 días • Oferta promocionada