Samsara12 дней назад

Security Engineer II - Vulnerability Management

Зарплата не указана
РЫНОК
15 421медиана по профессии
CISO · 26 вакансий с указанной зарплатой
6 067половина предложений: 11 227–25 344785 375
Работодатель не указал зарплату — сравните с рынком сами.
Bengaluru - BLR1

Обязанности

  • 01Support the ongoing operation and maintenance of Samsara’s vulnerability management program, ensuring consistent execution of processes
  • 02Assist in managing vulnerability scanning tools and help refine detection capabilities to improve accuracy and reduce false positives
  • 03Work closely with the Vulnerability Technical Program Manager to generate and distribute monthly and quarterly compliance reports
  • 04Collaborate with engineering teams to track and support the remediation of identified vulnerabilities, providing guidance on best practices
  • 05Assist in analyzing and triaging vulnerabilities, escalating critical issues to senior security engineers or Security Operations as needed
  • 06Participate in security incident investigations related to high-profile vulnerabilities, helping gather data and assess potential impact on Samsara infrastructure
  • 07Contribute to documentation and process improvements to streamline vulnerability management workflows
  • 08Champion Samsara’s cultural principles (Focus on Customer Success, Build for the Long Term, Adopt a Growth Mindset, Be Inclusive, Win as a Team) in daily work

Требования

  • 01Familiarity with security engineering best practices and common security vulnerabilities, with the ability to assess their severity and impact
  • 02Scripting experience, preferably in Python and Pandas data analysis package, to assist with automation tasks
  • 03Understanding of cloud environments (AWS preferred) and infrastructure-as-code concepts (Terraform experience is a plus)
  • 04Experience working in Linux-based environments and troubleshooting security-related issues
  • 05Exposure to security automation tools (e.g., Tines, AWS Lambda) is beneficial but not required
  • 06Hands-on experience with vulnerability management tools such as Wiz or Semgrep is a plus
  • 072-4 years of relevant experience in security engineering, vulnerability management, or a related technical field
  • 08Practical experience managing vulnerabilities within a FedRAMP-certified environment
  • 09Experience integrating vulnerability management into modern CI/CD pipelines with a “shift-left” mentality
  • 10Growth mindset around learning the state of the vulnerability management in the industry

Условия

  • 01Flexible, employee-led remote model
  • 02Professional development stipend
  • 03Comprehensive health and parental leave plans
  • 04Above-market total compensation through base salary, performance-based bonus/variable pay, and equity