Job Closed

This listing is no longer active.

GuidePoint Security logo
GuidePoint Security

Founded in 2011 and headquartered in Herndon, Virginia, GuidePoint Security furnishes commercial and federal organizations with customized information security

Vulnerability Management Engineer – Qualys

Location

North America

Posted

64 days ago

Salary

0

Seniority

Senior

Job Description

Vulnerability Management Engineer – Qualys

GuidePoint Security

• Execute and manage vulnerability scanning of internal, external, and cloud assets • Plan, design, and implement enterprise vulnerability scanning infrastructure in a hybrid or multi-cloud architecture • Deploy vulnerability management infrastructure such as scanners, sensors, and agent configurations • Perform vulnerability scanning with the Qualys VMDR • Analyze vulnerabilities and clearly communicate impact and risk to the organization • Advise customers on Vulnerability Management best practices • Development of custom compliance and audit files for Qualys compliance scanning • Provide guidance and collaborate with peers on the Vulnerability Management practice team • Establish credibility as a trusted advisor to our customers

Job Requirements

  • 5+ years of information security experience
  • 3+ years of vulnerability engineering experience with Qualys REQUIRED
  • 3+ years of performing compliance scanning with Qualys (CIS, NIST, DISA)
  • Experience developing custom compliance and audit checks with Qualys VMDR REQUIRED
  • Must have experience with Qualys.io or Qualys Security Center
  • Experience with scripting tasks using native tools such as BASH, PowerShell, Python, or other native scripting languages
  • Experience with Regex for data parsing
  • Experience with cloud service providers such as Amazon AWS, Microsoft Azure, or Google Cloud Platform.
  • Experience with compliance frameworks such as Cis, NIST, DISA Required
  • Experience developing Infrastructure as Code, such as Terraform, or Cloud Formation is a plus
  • Experience with Kubernetes, containers, Ci/CD or serverless is a plus
  • An understanding of operating systems such as Windows Server, Windows 10/7, Mac OSX, RHEL, and Ubuntu Linux and the ability to perform advanced functions at the CLI
  • Ability to manage time independently while handling multiple projects concurrently
  • Strong written and verbal communication skills
  • A strong desire to learn new technologies and contribute to a fast-growing company

Benefits

  • Remote workforce primarily (U.S. based only, some travel may be required for certain positions, working on-site may be required for Federal positions)
  • Group Medical Insurance options: Zero Deductible PPO Plan (GuidePoint pays 90% of the premium for employees and 70% for family plans (spouse/children/family) or High Deductible Health Plan with HSA (GuidePoint pays 100% of the employees premiums and 75% for family plans (spouse/children/family). If you choose the High Deductible / HSA plan, GPS will contribute in 4 equal quarterly installments: ($850 per EE annually / $1750 per family annually (includes spouse/children/family options)
  • Group Dental Insurance: GuidePoint pays 100% of the premium for employees and 75% of family plans
  • 12 corporate holidays and a Flexible Time Off (FTO) program
  • Healthy mobile phone and home internet allowance
  • Eligibility for retirement plan after 2 months at open enrollment
  • Pet Benefit Option

Related Categories

Related Job Pages

More Engineer Jobs

GuidePoint Security logo

Recovery and Restoration Engineer

GuidePoint Security

Founded in 2011 and headquartered in Herndon, Virginia, GuidePoint Security furnishes commercial and federal organizations with customized information security

Engineer64 days ago

• Manage IT recovery projects involving on-premises endpoint and network infrastructure, Azure AD, and Microsoft 365 • Develop technical remediation and restoration plans tailored to the impact of a client's environment with oversight from senior engineers • Implement network containment on common firewall platforms in preparation for recovery efforts • Rebuild Active Directory domains, DNS/DHCP, and GPO structures to a clean baseline • Restore and validate virtualized workloads (VMware, Hyper-V) and critical file/application servers • Recover and secure Azure AD identities, Conditional Access, and synchronization with on-prem AD • Rebuild Exchange Online, SharePoint, OneDrive, and Teams configurations • Validate and restore data from backups (Veeam, Rubrik, Datto, etc.) ensuring integrity and cleanliness • Utilize common remote management tools to assist impacted clients remotely • Apply industry standard Microsoft hardening guidelines throughout recovery processes • Implement common compliance controls, such as MFA, Defender for Office 365, and Purview • Develop automation scripts (PowerShell/Python) for recurring recovery workflows • Document rebuilt configurations and provide client recommendations for hardening and post-incident validation • Mentor and provide technical guidance to junior engineers during recovery engagements • Participate in after-hours response rotations • Travel to client sites as required to perform critical recovery activities and on-site validation (up to 50%)

United States
AECOM logo

Senior Project Geotechnical Engineer – Tailings and Mine Waste Storage

AECOM

We are the world’s trusted infrastructure consulting firm.

Engineer64 days ago
Full TimeRemoteTeam 10,001+Since 1990H1B Sponsor

• Provides project leadership in the areas of design, investigation, analysis, construction and operation of tailings and mine waste storage facilities • Plans, directs, and supervises all operations included in a mid- to large, complex projects or several moderately sized projects with greater risk and complexity, and significant financial impact • Work with existing and potential clients to provide long-term solutions for mine tailings facilities • Develop project proposals and work with mining business leader to support and grow Mining practice • Provide direction to and mentoring to other technical staff in completing project tasks • Performs independent technical reviews of engineering reports and design and signs off on work • May be responsible for Project teams that include 5 or more members often representing multiple disciplines including subcontractor(s) • Plan, schedule, conduct or coordinate detailed phases of the engineering project, focusing on the design and operations of mine tailings projects • Provide advice and consultation to client on engineering matters, including compliance with government laws and regulations • Author reports and prepare/or direct preparation of detailed calculation packages including proper documentation and references.

Colorado
$140K - $165K / year
Job Closed
Olaplex Inc. (Nasdaq: OLPX) logo

NetSuite Engineer

Olaplex Inc. (Nasdaq: OLPX)

The original bond builder that dramatically strengthens, protects and repairs all hair types.

Engineer64 days ago
Full TimeRemoteTeam 51-200H1B No Sponsor

• In partnership with internal NetSuite team members and key leadership stakeholders, develop, maintain, enhance, and maximize NetSuite capabilities in support of the business • Troubleshoot issues with our eCommerce/ERP/EDI/3PL environments and work collaboratively to prepare our system for customer launches, financial tracking, and automation • Work cross-functionally on roadmap projects involving Finance, Accounting and Supply Chain applications • Develop, test, and deploy customizations, custom objects, and new functionality based on evolving business needs • Ensure proper change management processes that meet SOX and SoD requirements and maintain data integrity • Configure NetSuite to align to company use of forms, field, and customer records to manage unique business process requirements • Ensure business and functional requirements are properly configured in NetSuite and other IT enterprise applications • Create and execute a test plan and tests in Sandbox to be utilized prior to upgrades, ensuring all functionality works as expected and without interruption • Assist with data analysis, reporting needs, continuous improvement initiatives, change management and support for optimal usage within NetSuite • Maintain up-to-date knowledge and documentation of NetSuite functionality, customizations and integrations, and proactively identify opportunities for process and workflow improvements

United States
$120K - $140K / year
Job Closed
watchTowr logo

InfoSec Engineer

watchTowr

Attackers move fast. We move faster.

Engineer65 days ago
Full TimeRemoteTeam 51-200Since 2021H1B No Sponsor

• The role will focus on three main areas: Information Security Cloud Security Architecture (AWS): Design, implement, and maintain secure architectures within our AWS environment to protect against evolving threats. Vulnerability Assessment and Management: Conduct regular internal vulnerability scans, analyze results, and coordinate remediation to improve overall security posture. Implementation of Security Controls: Deploy and manage security controls across infrastructure, servers, and endpoints (laptops), ensuring both compliance and proactive defense. Security Architecture in the Cloud: Continuously evaluate and strengthen cloud security, ensuring scalability, resilience, and compliance with best practices. Automation and Scripting: Develop scripts and tools (Python, PowerShell, etc.) to automate repetitive security tasks and improve operational efficiency. Compliance and governance Compliance Programmes: Support and maintain alignment with ISO 27001 and SOC 2 Type 2 frameworks, contributing to audits, documentation, and evidence collection. Security Awareness: Develop, deliver, and assess security awareness training to ensure staff understand and follow security best practices. Policy and Process Maintenance: Assist in reviewing and updating security policies, standards, and processes to ensure ongoing compliance. Internal IT management Endpoint Management: Oversee deployment, configuration, patching, and security of all endpoints, including servers and laptops. Identity and Access Management: Administer and secure user identities through Azure Active Directory, including role-based access control, MFA, and SSO. MDM Administration: Manage InTune and mobile device management solutions to enforce secure configurations and compliance across devices.

United Kingdom
Job Closed