We are seeking a Security Operations Engineer to lead our vulnerability management program, oversee security assessments, and provide technical security expertise. This role will be crucial in maintaining our security posture through proactive security measures and third-party security programs.
Develop and manage comprehensive vulnerability management program
Create and maintain threat models for GCP, cloud, and onprem linux systems
Coordinate and oversee penetration testing engagements with external vendors
Establish and manage bug bounty program, including triage of submissions
Support security compliance efforts with technical knowledge and documentation
Track and report on security metrics and KPIs
Collaborate with engineering teams to remediate security findings
3+ years of experience in security operations or vulnerability management
Experience managing vulnerability scanning tools and processes
Strong understanding of threat modeling methodologies
Experience coordinating penetration testing engagements
Technical knowledge to address complex security inquiries
Understanding of common security frameworks (SOC 2, ISO 27001, etc.)
US person
Natural Citizenship or Green Card
Position requires in office 5 days a week
Experience managing bug bounty programs
Familiarity with cloud security (AWS, GCP, Azure)
CISSP Certification
Experience with security tooling and automation (Snyk, SentinelOne)
Background in software development or infrastructure
If an employer mentions a salary or salary range on their job, we display it as an "Employer Estimate". If a job has no salary data, Rise displays an estimate if available.
Are you a security-minded professional looking to make a significant impact? Join us as a Security Operations Engineer in our vibrant Mountain View office! In this dynamic role, you’ll be at the forefront of our security initiatives, leading our vulnerability management program and ensuring that our systems remain safe and secure. You'll get to roll up your sleeves and dive deep into creating and managing threat models across various environments, including GCP and on-premise Linux systems. Collaborating with external vendors, you will coordinate penetration testing efforts while also establishing and managing a bug bounty program that helps us identify and rectify vulnerabilities. You’ll have the chance to partner with our engineering teams, leveraging your technical expertise to remediate security findings and support compliance efforts in line with key frameworks like SOC 2 and ISO 27001. With a strong foundation of at least 3 years in security operations or vulnerability management, you’ll bring experience in using vulnerability scanning tools, as well as a keen understanding of threat modeling. We’re looking for someone who thrives in a collaborative atmosphere, can manage security compliance documentation, and is passionate about maintaining an uncompromised security posture for our company. If you have familiarity with cloud security and hold relevant certifications such as CISSP, you’ll fit right in. Get ready for an opportunity where your skills will shine and your contributions will be vital in keeping our company secure!
Subscribe to Rise newsletter