49 vulnerability engineer jobs at 42 companies in Massachusetts
1mo
Save
Mark Applied
Hide
1mo
Sr Vulnerability Management Engineer
Minnesota or Oklahoma or Maine or Massachusetts or Wisconsin or South Dakota or Iowa or Utah or Oregon or Montana or Hawaii or New Jersey or Delaware or New York or Nevada or Ohio or Washington or North Carolina or Missouri or New Hampshire or California or Alaska or Alabama or Rhode Island or Indiana or Georgia or South Carolina or Texas or Kentucky or Virginia or Kansas or Arizona or North Dakota or Michigan or Vermont or Nebraska or Wyoming or Connecticut or Colorado or Mississippi or Idaho or New Mexico or Tennessee or Pennsylvania or West Virginia or Arkansas or Florida or Maryland or Louisiana or Illinois or District of Columbia or New York City
$143k-$197k/yrRemoteFull Time
SolventumNYSE: SOLV: Provides medical technology and health information software solutions.
7+ YOEBachelor's degree and 7+ years vulnerability management experience; administer Qualys/Tenable or similar; AWS/Azure knowledge; experience leading cross‑team remediation; familiarity with NIST/FedRAMP/HITRUST; ability to obtain Public Trust clearance.
California or Colorado or Connecticut or Florida or Georgia or Illinois or Kansas or Massachusetts or Maine or North Carolina or New Jersey or New York or Oregon or Tennessee or Texas or Virginia or Washington or Austin or Tampa
$140k-$200k/yrHybridFull Time
NinjaOne: Unified IT platform for automated endpoint management and security.
10+ YOE10+ years Java development, Kotlin experience preferred, 4+ years building highly scalable systems, Bachelor’s degree or equivalent, API/REST and relational DB experience, Redis and quality testing expertise.
Boston or Chicago or Los Angeles or New York or San Francisco or Toronto or Vancouver or Vancouver
$145k-$175k/yrRemoteFull Time
Later: Provides software for social media scheduling and influencer marketing.
5+ YOE5+ years security engineering experience; strong application, cloud, and infrastructure security; SOC 2 and compliance experience; vulnerability management, IaC and CI/CD security; strong communication and software engineering skills.
OWASP, NIST, CIS Controls, SOC 2, ISO 27001, AWS Security Hub, Azure Security Center, GCP Security Command Center, SIEM, SOAR, Terraform, CloudFormation, C#, CI/CD
Wells FargoNYSE: WFC: Global provider of banking, investment, and mortgage financial services.
5+ YOE5+ years systems engineering/architecture experience, 2+ years vulnerability/OS patch management, 2+ years vulnerability governance in regulated environments, 3+ years production support, strong SRE and stakeholder skills.
Boston ImagingKorea Exchange: 005930: Sells and supports Samsung medical imaging and ultrasound equipment.
5+ YOEBachelor's degree and 5+ years security engineering experience; medical device cybersecurity, RMF, vulnerability management, standards knowledge, networking and Windows/Linux proficiency.
Microsoft Excel, Microsoft Word, Microsoft PowerPoint, Microsoft Outlook, Windows, Linux, DoD Risk Management Framework (RMF), NIST cybersecurity frameworks, FIPS, SBOM, SAST, DAST, ANSI/AAMI TIR57, UL 2900, ISO 14971, IEC 62304, IEC 81001-5-1, IEC/TR 80001-2-2
General Dynamics Mission SystemsNYSE: GD: Designs and manufactures defense and mission-critical technology solutions.
5+ YOEBachelor's in engineering/science/mathematics plus 5+ years (or Master's plus 3+ years), ability to obtain DoD Secret clearance, CISSP or equivalent, experience with RMF, STIGs, DevSecOps, vulnerability scanning and security documentation.
Astrion: Provides engineering, cybersecurity, and mission support services.
10+ YOEUS citizen with active TS/SCI, CISSP and SAP/SAR, MA/MS, 10+ years IA/cyber engineering experience, DoDD 8140 IAT II, IA A&A and vulnerability assessment experience.
KlaviyoNYSE: KVYO: Software platform for automated e-commerce marketing and customer data.
10+ YOE10+ years infrastructure/platform security experience; deep cloud security (AWS/GCP IAM, mTLS), secrets management, IaC and CI/CD controls, vulnerability and SLO-driven remediation, threat modeling, and experience with compliance frameworks.
AWS, GCP, mTLS, IaC, CI/CD, SOC 2, ISO 27001, GDPR, AI
Analog DevicesNASDAQ: ADI: Designs and manufactures semiconductors for signal processing and power management.
7+ YOE7+ years cybersecurity/product security experience supporting FDA-regulated medical devices or SaMD, Master's degree (Ph.D preferred), threat modeling, vulnerability management, and familiarity with FDA guidance and cybersecurity frameworks.
McBride Consulting: Provides professional management and IT consulting for government agencies.
US citizen with active Secret clearance; experience with RMF, STIG, eMASS, DoD cybersecurity policies, PKI, risk/vulnerability assessments; Security+ preferred; Bachelor's in engineering and DoD experience preferred.
Florida or Texas or Illinois or New York or New Jersey or Colorado or Idaho or Massachusetts or Michigan or Minnesota or Missouri or North Carolina or South Carolina or Utah or Virginia
$127k-$150k/yrRemoteFull Time
TradeStation: Provider of online brokerage services and trading technology.
5+ YOEBachelor's or equivalent, 5+ years in information security with 3+ years as a security engineer; experience with cloud security, vulnerability management, incident response, PAM, and SOC support; security certifications preferred.
HealthDrive: Provides on-site healthcare services for long-term care facilities.
10+ YOEInfrastructure-focused security engineering for on-prem and Azure: firewalls, endpoint/email protection, cloud security, vulnerability management, incident detection/response, third-party risk and HIPAA compliance.
Fortinet, Microsoft Active Directory, Microsoft 365, Azure, Palo Alto, Proofpoint, SecureWorks, Qualys, PowerShell, Python, Bash, Microsoft Intune, Microsoft Sentinel, Okta
Cynet: Autonomous AI-powered cybersecurity threat detection and response platform.
3+ YOE3+ years in technical sales or sales engineering (cybersecurity preferred), MSP/MSSP experience, knowledge of SIEM/EDR/endpoint protection/vulnerability management, experience with demos/PoCs, cloud and network security familiarity, strong communication, willing to travel.
HealthDrive: Provider of on-site medical and clinical services to long-term care residents.
10+ YOEInfrastructure-focused security engineer with deep network and cloud security experience (Azure), enterprise firewalls, endpoint/email protection, vulnerability management, incident response, and third‑party risk management (HIPAA-aware).
Fortinet, Palo Alto, Microsoft Active Directory, Microsoft 365, Azure, Proofpoint, Data Security Posture Management (DSPM), SecureWorks, Qualys, PowerShell, Python, Bash, Microsoft Intune, Microsoft Sentinel, Okta
The CCS Companies: Provides debt collection and business process outsourcing services.
7+ YOE7+ years Windows/Active Directory systems engineering experience; VMware, Azure and AWS cloud experience; Office 365 administration; patching, vulnerability scanning/remediation, backup/DR, on-call availability, and Bachelor's degree required.
VMware ESX, vSphere, Virtual Center, Microsoft Windows Server, Microsoft Active Directory, Microsoft Office 365, Microsoft Exchange Online, Microsoft Teams, Microsoft Azure, Microsoft Azure Active Directory, AWS, AWS Directory Service, HP Nimble
8+ YOE8+ years software engineering with BS (or 5+ years with MS); programming in Python or Go; familiarity with Zero Trust, secure/confidential computing, networking (TCP/IP, HTTP, DNS, TLS/SSL), IaC (Terraform, Salt), and vulnerability management tools.