3 vulnerability engineer jobs at 2 companies in Richmond, VA

1mo
Save
Mark Applied
Hide
Application Security Engineer
Richmond or Lynchburg
OnsiteFull Time
Genworth Financial
Genworth FinancialNYSE: GNW: Provides insurance products for aging care and mortgage protection.
5+ YOE5+ years in security engineering with application security/DevSecOps, cloud experience (AWS/Azure/GCP), vulnerability scanning/AST, threat modeling, scripting/programming, and a Computer Science or similar degree.
AST, vulnerability scanning technologies, cloud security tooling, AWS, Azure, GCP, Infrastructure as Code (IaaC), Policy as Code (PaC), CI/CD, SOC2, ISO 27001, NIST 800-53, Java, .NET, HTML, Ruby, PHP, Perl, C#, Python, JavaScript, PowerShell, Bash
1mo
Save
Mark Applied
Hide
Cybersecurity Engineer
Richmond, Virginia, United States
$99k-$165k/yr OnsiteFull Time
McKesson
McKessonNew York Stock Exchange: MCK: Distributes pharmaceuticals and provides healthcare information technology solutions.
4+ YOEBachelor's degree or equivalent and 4+ years in cybersecurity/IT security operations. Experience with security controls (SIEM, EDR, IAM, vulnerability management), cloud platforms, scripting, Windows/Linux admin, incident support, and compliance frameworks.
SIEM, IDS/IPS, firewalls, antivirus/EDR, IAM, vulnerability management tools, AWS, Microsoft Azure, GCP, Python, Microsoft PowerShell, Bash, Windows, Linux, NIST, CIS Benchmarks, ISO 27001
1mo
Save
Mark Applied
Hide
Sr. Director, Cyber Engineering
Richmond, Virginia, United States
$172k-$287k/yr OnsiteFull Time
McKesson
McKessonNew York Stock Exchange: MCK: Distributes pharmaceuticals and provides healthcare information technology solutions.
15+ YOE10+ Mgmt15+ years cybersecurity experience with deep security engineering expertise; 10+ years leading engineering teams; experience with IAM/PAM, endpoint, network, cloud, vulnerability and secrets management; executive communication and program governance skills.
IAM, PAM, PKI, EDR, CSPM, vulnerability management, secrets management, WAF, DLP, SIEM, SOAR, DevSecOps, infrastructure-as-code, CI/CD, policy-as-code