170 vulnerability engineer jobs at 120 companies in California
4d
Save
Mark Applied
Hide
4d
Staff Vulnerability Management Engineer
Seattle or San Francisco
$144k-$248k/yrOnsiteFull Time
SoFiNasdaq: SOFI: Mobile-first platform for banking, lending, and investment services.
Deep vulnerability management and security engineering expertise; strong software engineering skills in Python/Go/JavaScript/TypeScript; experience with cloud, containers, SBOMs, and vulnerability tooling; ability to lead technical initiatives and incident response.
Sutter Health: Operates an integrated network of hospitals and medical clinics.
9+ YOEDevelop and operate enterprise vulnerability management platform; design data pipelines; integrate with ITSM; build risk-based prioritization and executive reporting. Requires ~9 years relevant experience and bachelor\u0002s or equivalent.
Minnesota or Oklahoma or Maine or Massachusetts or Wisconsin or South Dakota or Iowa or Utah or Oregon or Montana or Hawaii or New Jersey or Delaware or New York or Nevada or Ohio or Washington or North Carolina or Missouri or New Hampshire or California or Alaska or Alabama or Rhode Island or Indiana or Georgia or South Carolina or Texas or Kentucky or Virginia or Kansas or Arizona or North Dakota or Michigan or Vermont or Nebraska or Wyoming or Connecticut or Colorado or Mississippi or Idaho or New Mexico or Tennessee or Pennsylvania or West Virginia or Arkansas or Florida or Maryland or Louisiana or Illinois or District of Columbia or New York City
$143k-$197k/yrRemoteFull Time
SolventumNYSE: SOLV: Provides medical technology and health information software solutions.
7+ YOEBachelor's degree and 7+ years vulnerability management experience; administer Qualys/Tenable or similar; AWS/Azure knowledge; experience leading cross‑team remediation; familiarity with NIST/FedRAMP/HITRUST; ability to obtain Public Trust clearance.
Seattle or Palo Alto or Dallas or Bethesda or Washington
$110k-$230k/yrHybridFull Time
GEICO: Provides vehicle and property insurance services to consumers.
8+ YOE8+ years in cybersecurity/security engineering; deep vulnerability management, cloud/containers experience; strong Python/Go/Java scripting, SQL, automation, offensive security, and ability to influence technical stakeholders.
Lumbee Holdings: Provides government contracting, IT, and construction services.
5+ YOEAdvanced vulnerability research and exploit development skills for embedded and system software; proficiency in low-level languages and debuggers; experience with fuzzing, reverse engineering, and producing technical reports.
Ghidra, IDA Pro, WinDbg, OllyDbg, gdb, Python, Perl, Ruby, C, C++
RobinhoodNASDAQ: HOOD: Provides a commission-free platform for investing and financial services.
3+ YOE3+ years in security engineering or security automation; Python or Go proficiency; cloud-native infra experience; vulnerability management knowledge; experience with security tooling.
RobloxNYSE: RBLX: Platform for creating and playing user-generated 3D digital experiences.
4+ YOE4+ years in software engineering with a security focus; proficient in Python, Go, Java, or C#; strong problem-solving; track record delivering features and solving operational problems.
NVIDIANASDAQ: NVDA: Designs GPU-accelerated computing and artificial intelligence hardware.
12+ YOE12+ years in vulnerability management/security engineering, bachelor’s degree or equivalent, strong vulnerability lifecycle knowledge, experience with Tenable/Qualys/Tanium/CrowdStrike, cloud (AWS/Azure), APIs and automation.
Principal, Security Engineering & Vulnerability Management for WB Games
Burbank or New York City
$177k-$329k/yrHybridFull Time
Warner Bros. DiscoveryNasdaq: WBD: Produces and distributes multimedia entertainment content and news worldwide.
10+ YOE10+ Mgmt10+ years technical security experience and 10+ years supervisory experience; expertise in vulnerability management, secure software development (GitHub/Perforce, SAST/DAST, CI/CD, secrets management), cloud security, SIEM, EDR/XDR, IAM, and familiarity with ISO/NIST/PCI/GDPR/CCPA/SOX.
California or Colorado or Connecticut or Florida or Georgia or Illinois or Kansas or Massachusetts or Maine or North Carolina or New Jersey or New York or Oregon or Tennessee or Texas or Virginia or Washington or Austin or Tampa
$140k-$200k/yrHybridFull Time
NinjaOne: Unified IT platform for automated endpoint management and security.
10+ YOE10+ years Java development, Kotlin experience preferred, 4+ years building highly scalable systems, Bachelor’s degree or equivalent, API/REST and relational DB experience, Redis and quality testing expertise.
5+ YOE5+ years as a software engineer, proficiency in Python, backend development best practices, CI/CD, working knowledge of GCP/AWS/Azure (preferably GCP), strong problem-solving and TDD experience.
SalesforceNYSE: CRM: Sells cloud-based customer relationship management and business software solutions.
6+ YOE6+ years software engineering with security focus; proficient in Python; experience with security tooling and CI/CD; strong cross-team collaboration and communication.
Boston or Chicago or Los Angeles or New York or San Francisco or Toronto or Vancouver or Vancouver
$145k-$175k/yrRemoteFull Time
Later: Provides software for social media scheduling and influencer marketing.
5+ YOE5+ years security engineering experience; strong application, cloud, and infrastructure security; SOC 2 and compliance experience; vulnerability management, IaC and CI/CD security; strong communication and software engineering skills.
OWASP, NIST, CIS Controls, SOC 2, ISO 27001, AWS Security Hub, Azure Security Center, GCP Security Command Center, SIEM, SOAR, Terraform, CloudFormation, C#, CI/CD
IonQNYSE: IONQ: Develops and sells trapped-ion quantum computers and cloud services.
12+ YOE12+ years production engineering experience; hands-on CI/CD platform, IaC, pipeline security, release and dependency management, scripting/automation, and vulnerability remediation.
Serval: AI platform for automating IT and enterprise service workflows.
10+ YOE10+ years in cybersecurity with deep expertise in application security, secure SDLC, vulnerability management, secure cloud-native architecture, leadership experience, and strong software engineering skills.