Talent.com
Security Engineer II - Threat and Vulnerability
Security Engineer II - Threat and VulnerabilityStifel • St Louis, MO, United States
Security Engineer II - Threat and Vulnerability

Security Engineer II - Threat and Vulnerability

Stifel • St Louis, MO, United States
19 days ago
Job type
  • Full-time
Job description

Why Stifel

Stifel strives for a culture that puts its clients and associates first : a culture where everyone belongs, everyone is welcome, and everyone contributes to the success of our clients, their careers, and the firm as a whole.

Let's talk about how you can find your place here at Stifel, where success meets success .

What You'll Be Doing

The Security Engineer II - Threat and Vulnerability is responsible for identifying, assessing, and mitigating security risks across Stifel's environments. This role emphasizes detecting vulnerabilities, ensuring secure configurations, and driving remediation efforts to strengthen the firm's overall security posture. The Security Engineer II leverages technical expertise, automation, and programming skills to improve the efficiency and accuracy of vulnerability detection, reporting, and response processes.

What We're Looking For

  • Research, analyze, and evaluate emerging threats, vulnerabilities, and exploits across on-premises and cloud environments.
  • Monitor and correlate threat intelligence feeds to identify relevant tactics, techniques, and procedures (TTPs).
  • Apply frameworks such as MITRE ATT&CK, OWASP, and CVSS to assess severity, exploitability, and business impact.
  • Identify, assess, and manage vulnerabilities across cloud platforms such as AWS, Azure, or GCP, including misconfigurations and exposed services.
  • Utilize CSPM and CWPP tools like Prisma Cloud, Defender for Cloud, and Wiz to detect, track, and report vulnerabilities.
  • Collaborate with cloud, DevOps, and IT teams to remediate vulnerabilities and integrate security controls into infrastructure and pipelines.
  • Implement and maintain secure configuration standards across servers, endpoints, databases, network devices, and cloud resources.
  • Perform regular configuration audits and compliance checks using frameworks such as CIS Benchmarks, NIST 800-53, and DISA STIGs.
  • Develop and maintain automation scripts or integrations with Python, PowerShell, Bash, JavaScript to streamline scanning, reporting, and data correlation.
  • Integrate vulnerability management tools with SIEM, SOAR, and ticketing systems via APIs to improve workflow efficiency.
  • Create dashboards and data visualizations to enhance threat visibility and remediation tracking.
  • Track and verify remediation progress, ensuring alignment with defined SLAs, risk priorities, and compliance requirements.
  • Communicate technical findings, risks, and remediation guidance clearly to both technical and non-technical stakeholders.

What You'll Bring

  • Advanced understanding of security control environment such as access control, logging, authentication, encryption, integrity, etc.
  • Demonstrated experience managing vulnerabilities in both on-premises and cloud environments.
  • Experience coordinating corporate-wide initiatives for obtaining security-related assurances.
  • Familiarity with federal and state legal and regulatory requirements related to information security.
  • Understand the advanced tenets of security risk management and defense-in-depth practices.
  • The ability to combine pieces of information to form general rules or conclusions.
  • Education & Experience

  • Preferred : Bachelor's degree in Cybersecurity, Information Security, Computer Science, Management Information Systems, or equivalent work experience.
  • Minimum Required : 2+ years' of experience in cybersecurity or IT with exposure to vulnerability management, configuration management, or cloud security.
  • Preferred : Experience developing automation or integrations via APIs or scripting.
  • Strong understanding of analyzing and incorporating threat intelligence.
  • Experience with ticketing systems, office productivity, reporting, and technical documentation software.
  • Exposure to systems monitoring tools and logging tools
  • Licenses & Credentials

  • Preferred credentials : CompTIA Security+, CompTIA PenTest+, AWS, Azure, GCP, or equivalent cloud certification.
  • Systems & Technology

  • Proficient in Microsoft Excel, Word, PowerPoint, and Outlook.
  • Proficient with programming or scripting languages like Python, PowerShell, Bash, etc., for automation and tool integration.
  • Proficient with numerous versions of Microsoft Windows, Linux, Mac, and Web Browsers.
  • Hands-on experience with vulnerability management tools such as Tenable, Qualys, Rapid7.
  • Familiar with cloud security frameworks and CSPM solutions like Prisma Cloud, Microsoft Defender for Cloud, and Wiz.
  • #LI-DL1

    About Stifel

    Stifel is more than 130 years old and still thinking like a start-up. We are a global wealth management and investment banking firm serious about innovation and fresh ideas. Built on a simple premise of safeguarding our clients' money as if it were our own, coined by our namesake, Herman Stifel, our success is intimately tied to our commitment to helping families, companies, and municipalities find their own success.

    While our headquarters is in St. Louis, we have offices in New York, San Francisco, Baltimore, London, Frankfurt, Toronto, and more than 400 other locations. Stifel is home to approximately 9,000 individuals who are currently building their careers as financial advisors, research analysts, project managers, marketing specialists, developers, bankers, operations associates, among hundreds more. Let's talk about how you can find your place here at Stifel, where success meets success.

    At Stifel we offer an entrepreneurial environment, comprehensive benefits package to include health, dental and vision care, 401k, wellness initiatives, life insurance, and paid time off.

    Stifel is an Equal Opportunity Employer.

    Create a job alert for this search

    Security Engineer Ii • St Louis, MO, United States

    Related jobs
    Security Specialist III

    Security Specialist III

    ServiceSource, Inc. • Arnold, MO, United States
    Full-time
    Make an impact by joining ServiceSource, a champion for people with disabilities.Explore new opportunities! ServiceSource is an organization of talented people who drive innovation, embrace change,...Show more
    Last updated: 30+ days ago • Promoted
    Security Engineer IV - Exposure Management

    Security Engineer IV - Exposure Management

    Edward Jones • St Louis, MO, United States
    Full-time
    And see your ideas come to life.It's an exciting time to work in tech at Edward Jones.We are making massive investments in emerging technologies to improve how we work with our clients and with eac...Show more
    Last updated: 7 days ago • Promoted
    Cyber Security Engineer, Senior level

    Cyber Security Engineer, Senior level

    SITEC Consulting LLC • St Louis, MO, United States
    Full-time
    SITEC is an employee and customer focused Information Technology and Professional Services Firm specializing in design, development, and delivery of state-of-the-art technology solutions, as well a...Show more
    Last updated: 19 days ago • Promoted
    Operations Technician

    Operations Technician

    American Waterworks • Fieldon, IL, United States
    Full-time
    Job Title : Operations Technician.This position is a union position with Illinois American Water and the starting pay rate is $31. This position may be eligible for annual incentive pay and contracte...Show more
    Last updated: 9 days ago • Promoted
    Sr. Security Engineer

    Sr. Security Engineer

    World Wide Technology • Maryland Heights, MO, United States
    Full-time +1
    This is a full-time direct hire position and you must currently have an active Secret Security Clearance or above.We are not able to offer visa sponsorship, 1099 status, or work with C2C for this r...Show more
    Last updated: 19 days ago • Promoted
    Security Tools Engineer (TS / SCI) - St Louis, MO

    Security Tools Engineer (TS / SCI) - St Louis, MO

    GuidePoint Security • St Louis, MO, United States
    Full-time
    GuidePoint Security provides trusted cybersecurity expertise, solutions and services that help organizations make better decisions and minimize risk. By taking a three-tiered, holistic approach for ...Show more
    Last updated: 19 days ago • Promoted
    Security Engineer (On-Site / St. Louis, MO)

    Security Engineer (On-Site / St. Louis, MO)

    Oakwood Systems Group • St Louis, MO, United States
    Full-time
    Design, implement, manage, maintain, improve, and troubleshoot various security systems, including but not limited to Data Loss Prevention (DLP), SIEM and UEBA, endpoint protection, and data securi...Show more
    Last updated: 15 days ago • Promoted
    Security Engineer III

    Security Engineer III

    Safety National • St. Louis, MO, United States
    Full-time
    At Safety National, we don't just offer jobs - we build careers with purpose! Since 1942, we've been an industry leader, valuing integrity, teamwork, and stability while providing competitive rewar...Show more
    Last updated: 30+ days ago • Promoted
    API Security Engineer

    API Security Engineer

    eTeam • St Louis, MO, United States
    Full-time
    The API Security Engineer is responsible for securing APIs across the organization's systems and services.This role involves identifying and mitigating vulnerabilities, monitoring API activity, and...Show more
    Last updated: 30+ days ago • Promoted
    Security Engineer

    Security Engineer

    Nava Software Solutions • St Louis, MO, United States
    Full-time
    NAVA Software solutions is looking for a Product Security Engineer.Location : Saint Louis, MO - Onsite.Lead the Cybersecurity aspects of the full-lifecycle development and manufacturing & production...Show more
    Last updated: 16 days ago • Promoted
    Security Engineer II with Security Clearance

    Security Engineer II with Security Clearance

    Beacon Hill • St Charles, MO, United States
    Full-time
    Job Summary : We are seeking a Cybersecurity Engineer with a strong foundation in cybersecurity principles and hands-on experience supporting classified government programs.The ideal candidate will ...Show more
    Last updated: 19 days ago • Promoted
    Security Remediation Engineer

    Security Remediation Engineer

    Insight Global • Maryland Heights, MO, United States
    Full-time
    Insight Global is looking to add a Security Remediation Engineer to our client's team in the St.This individual will be responsible for supporting the security needs of our client's infrastructure ...Show more
    Last updated: 30+ days ago • Promoted
    Security Engineer IV

    Security Engineer IV

    Spectrum • Maryland Heights, MO, United States
    Full-time
    This role requires the ability to work lawfully in the U.This position is not eligible for immigration sponsorship.Spectrum's Product and Technology team creates, develops, and operates the nation'...Show more
    Last updated: 19 days ago • Promoted
    Security Engineer

    Security Engineer

    World Wide Technology • Maryland Heights, MO, United States
    Full-time +1
    This is a full-time direct hire position and you must currently have an active Secret Security Clearance or above.We are not able to offer visa sponsorship, 1099 status, or work with C2C for this r...Show more
    Last updated: 19 days ago • Promoted
    Cyber Security Implementation Engineer

    Cyber Security Implementation Engineer

    CACI International • St Louis, MO, United States
    Full-time +1
    Cyber Security Implementation Engineer.Minimum Clearance Required to Start : TS / SCI.Percentage of Travel Required : Up to 10%. TCS offers a long-term contract opportunity supporting the National Geosp...Show more
    Last updated: 15 days ago • Promoted
    Security Engineer IV

    Security Engineer IV

    Charter Communications • Maryland Heights, MO, United States
    Full-time
    This role requires the ability to work lawfully in the U.This position is not eligible for immigration sponsorship.Spectrum's Product and Technology team creates, develops, and operates the nation'...Show more
    Last updated: 19 days ago • Promoted
    Security Engineer

    Security Engineer

    Duvari Group • St Louis, MO, United States
    Full-time
    Security Engineer | Network & Cloud Security | St.We are seeking a Network Security Engineer to manage, plan, and monitor the security of the firm’s network and cloud environments.This role is a te...Show more
    Last updated: 19 days ago • Promoted
    Sr. Security Research Engineer

    Sr. Security Research Engineer

    Proofpoint • St Louis, MO, United States
    Full-time
    We are the leader in human-centric cybersecurity.Half a million customers, including 87 of the Fortune 100, rely on Proofpoint to protect their organizations. We’re driven by a mission to stay ahead...Show more
    Last updated: 19 days ago • Promoted