23 vulnerability engineer jobs at 19 companies in Thornton, CO
2w
Save
Mark Applied
Hide
2w
Cybersecurity Assessment Engineer
Washington or Maryland or Virginia or Raleigh or Durham or Chapel Hill or Denver or Colorado Springs or Dallas or Fort Worth
$125k-$140k/yrRemoteFull Time
Second Front Systems: Secure cloud hosting and automated compliance for government software.
3+ YOE3+ years cybersecurity experience; hands-on cloud and DevSecOps knowledge; familiarity with NIST RMF/SP 800-53, FedRAMP, vulnerability analysis, and authorization artifacts; ability to attain DoD 8570 IAT II (CYSA+ preferred).
Lockheed MartinNYSE: LMT: Designs and manufactures global security and aerospace systems.
TS/SCI clearance and US citizenship required; DoD 8570 IAM/IAT II certifications; experience in satellite and ground operations, RMF/ATO processes, SOC operations, vulnerability scanning/EVSS, DoD cybersecurity standards, SIEM, RHEL/Windows, and incident response.
Frontier AirlinesNasdaq: ULCC: Provides low-fare passenger air transportation services across the Americas.
6+ YOEBachelor's in CS/technology or equivalent, 6+ years cybersecurity engineering experience, 4+ years with EDR, SEGs, vulnerability management and SIEM, cloud (Azure/AWS) security, industry cert (CISSP, Security+, etc.) required or to be attained within 3 months.
SciTec: Provides advanced remote sensing and missile defense technology solutions.
6+ YOEBachelor's in a related field, CySa+ (or similar), 6+ years cybersecurity engineering, 2+ years CrowdStrike EDR/NG-SIEM experience, NIST 800-171/CMMC, vulnerability scanning, Linux/Windows/AD/IAM, scripting (Python, PowerShell, Bash), DoD clearance eligible.
TransamericaNYSE: AEG: Provides insurance, retirement solutions, and investment products to customers.
1+ YOE1+ years cyber security engineering experience; knowledge of application security, vulnerability management, SDLC, and security frameworks; bachelor’s in related field or equivalent; certifications desirable (OSCP,CISSP,CEH,Security+/CySA/CASP).
Deloitte: Provides professional audit, consulting, advisory, and tax services.
3+ YOEBachelor's degree and 3+ years experience, active TS/SCI or SCI eligibility, onsite Aurora CO 5 days/week, experience with identity and access management, network management, NIST RMF, and vulnerability management.
8+ YOE8+ years in information security focused on penetration testing, vulnerability management and application/cloud security; offensive security certification required; strong scripting skills and ability to communicate findings.
Pittsburgh or Strongsville or Denver or Phoenix or Birmingham or Dallas or Cleveland or Lakewood
$86k-$158k/yrOnsiteFull Time
PNC Financial ServicesNYSE: PNC: Provides banking, lending, and investment services to customers.
3+ YOE3+ years of software development experience, proficiency in Java and/or .NET, application security knowledge (OWASP Top 10), vulnerability triage/remediation, SDLC security, strong communication skills.
Java, .NET, OWASP Top 10, Interactive Application Security Testing (IAST)
VertaforeNYSE: ROP: Provides cloud-based software solutions for the insurance industry.
7+ YOE7+ years in application/product/cloud security; Bachelor's in relevant field or equivalent experience; hands-on experience with threat modeling, secure SDLC, vulnerability management, CI/CD security, cloud (AWS/Azure), API and AI security; strong communication skills.
Check Point Software TechnologiesNASDAQ: CHKP: Provides network, cloud, and mobile cybersecurity solutions.
Offensive security and red teaming experience against AI systems, knowledge of LLM vulnerabilities and threat modeling, ability to develop automated tooling, client-facing delivery and strong technical writing.
OWASP Top 10 for LLM Applications, OWASP Top 10 for Agentic Applications, MITRE ATLAS, Model Context Protocol (MCP)
ParsonsNYSE: PSN: Provides engineering and technology services for infrastructure and defense.
5+ YOEActive Top Secret clearance,5+ years relevant experience,Bachelor's or equivalent experience,Security+ required,RMF/ATO experience,Windows and Red Hat administration,security toolset operation,and vulnerability scanning.
Windows, Red Hat Enterprise Linux, Symantec, Logrhythm, Chef, Puppet, Ansible, Docker, Kubernetes, Nessus, OpenVAS, SCC
Northrop GrummanNYSE: NOC: Designs and manufactures advanced aerospace and defense systems.
5+ YOEDoD 8570 IAT Level II or higher, active U.S. Secret security clearance, 5+ years related experience (Level 3) or 8+ years (Level 4), experience with cyber certification, DevSecOps, NIST/RMF, and vulnerability management.
Tenable Security Center, Nessus, Splunk, LogRhythm, Python, C++, NIST SP 800-53, RMF, DISA STIGS, SCAP, HBSS, ACAS, SIEM, Linux, Windows
Systems Infrastructure & Network Security Operations Engineer
Spring or Fort Collins
$93k-$144k/yrOnsiteFull Time
HPNYSE: HPQ: Manufacturer of personal computers, printers, and imaging devices.
6+ YOE6+ years networking and systems experience with zero-trust design, IaC and automation (Ansible, Terraform, Python), CI/CD for network assets, vulnerability management, cloud networking, and architecture governance; technical degree or equivalent experience.
Keysight TechnologiesNew York Stock Exchange: KEYS: Manufactures hardware and software for electronic test and measurement.
8+ YOE8+ years in product/application security or security engineering; experience with threat modeling, secure architecture reviews, SAST/DAST/SCA, and vulnerability management; strong software engineering background and cloud security knowledge.
SAST, DAST, SCA, secrets detection, CI/CD, Java, C#, C, C++