Founded in 2003, Docusign is an electronic signature and transaction management firm with over 1 million customers and billions of users across the globe. Docus
Security Engineer - Vulnerability Management
Location
Washington + 1 moreAll locations: Washington | Illinois
Posted
51 days ago
Salary
$137.1K - $200.1K / year
Seniority
Senior
Job Description
Security Engineer - Vulnerability Management
Docusign
Title: Security Engineer - Vulnerability Management Location: - Seattle, Washington; Chicago, Illinois Hybrid Job Description: Company Overview Docusign brings agreements to life. Over 1.5 million customers and more than a billion people in over 180 countries use Docusign solutions to accelerate the process of doing business and simplify people's lives. With intelligent agreement management, Docusign unleashes business-critical data that is trapped inside of documents. Until now, these were disconnected from business systems of record, costing businesses time, money, and opportunity. Using Docusign's Intelligent Agreement Management platform, companies can create, commit, and manage agreements with solutions created by the #1 company in e-signature and contract lifecycle management (CLM). What you'll do As a Security Engineer - Vulnerability Management, you will enable new business opportunities by establishing and enforcing cloud security controls, managing vulnerabilities, ensuring secure configuration, and leading initiatives to continuously strengthen the security posture of Docusign deployments to new environments. You'll design and implement solutions that proactively protect our cloud infrastructure, enabling the business to innovate with confidence. Your expertise will drive secure-by-default practices and deliver impactful security outcomes that support our platform's ongoing growth This position is an individual contributor reporting to the Sr. Manager, Cloud & Infrastructure Vulnerability Management. Responsibility - Design and implement scalable security controls and systems to protect cloud infrastructure across a global environment - Design and implement the optimization of enterprise endpoint security tools (e.g., EDR, antivirus, device control) - Discover and manage security vulnerabilities and work with teams for remediation - Lead initiatives to establish, enforce, and continuously improve cloud security baselines and guardrails - Collaborate with engineering, product, and operations teams to embed security into infrastructure, platforms, and development workflows - Develop and maintain automation, policy-as-code, and infrastructure-as-code solutions to streamline security operations and compliance - Integrate security checks and guardrails into CI/CD pipelines, enabling secure development practices and early detection of risks - Respond to cloud security incidents, conduct post-mortems, and drive remediation and platform hardening based on lessons learned - Harden cloud resources, images, and registries, and deliver reusable modules and templates for secure-by-default deployments - Monitor and reduce configuration drift, verify remediation effectiveness, and manage exceptions with clear criteria and review processes - Operate and optimize third-party cloud security platforms, ensuring reliability and alignment with service level objectives - Author clear documentation, runbooks, and self-service resources to empower product and platform teams in secure cloud adoption - Report on key security metrics, such as coverage, drift, and incident response effectiveness, to drive transparency and continuous improvement Job Designation Hybrid: Employee divides their time between in-office and remote work. Access to an office location is required. (Frequency: Minimum 2 days per week; may vary by team but will be weekly in-office expectation) Positions at Docusign are assigned a job designation of either In Office, Hybrid or Remote and are specific to the role/job. Preferred job designations are not guaranteed when changing positions within Docusign. Docusign reserves the right to change a position's job designation depending on business needs and as permitted by local law. What you bring Basic - 5+ years of experience in cloud security engineering or related field - The individual must be a U.S. Citizen, U.S. National or U.S. Person. Individuals outside of these categories are generally barred from having logical access to IL5 data or infrastructure - Bachelor's degree in Computer Science, Engineering, or related discipline - Expereince in one or more security domains, such as endpoint security, configuration compliance, SIEM/SOAR, or ITSM integrations - Experience deploying, configuring, and using cloud and endpoint security tools like Microsoft Defender - Experience with service desk tools like ServiceNow - Experience in at least one programming language (Python, Go, or TypeScript) - Experience with policy-as-code and infrastructure-as-code tools (OPA, Sentinel, Conftest, Terraform, CloudFormation, or CDK) - Experience integrating security controls into CI/CD pipelines - Experience with multi-cloud environments - Experience with Kubernetes and container security - Experience with incident response and root cause analysis in cloud environments - Experience with monitoring, alerting, and defining service level objectives - Experience authoring technical documentation, modules, and runbooks - Experience with cloud security posture management (CSPM/KSPM) tools - Experience hardening images, registries, and implementing workload/runtime controls - Experience collaborating with engineering, IT, and security teams Preferred - Master's degree in Computer Science, Engineering, or related discipline - Deep experience with Azure security services, architecture, and best practices - Knowledge of Wiz, Microsoft Defender, or similar CWPP/CNAPP solutions - Experience with AWS and/or GCP security controls - Experience with serverless security and securing cloud-native applications - Experience with regulatory compliance frameworks (e.g., SOC 2, ISO 27001, PCI DSS) - Experience with automated remediation and security orchestration in cloud environments - Experience with secrets management and PKI in cloud platforms Wage Transparency Pay for this position is based on a number of factors including geographic location and may vary depending on job-related knowledge, skills, and experience. Based on applicable legislation, the below details pay ranges in the following locations: Illinois, Colorado, Massachusetts and Minnesota: $137,100.00 - $193,725.00 base salary Washington, Maryland, New Jersey and New York (including NYC metro area): $137,100.00 - $200,125.00 base salary This role is also eligible for the following: - Bonus: Sales personnel are eligible for variable incentive pay dependent on their achievement of pre-established sales goals. Non-Sales roles are eligible for a company bonus plan, which is calculated as a percentage of eligible wages and dependent on company performance. Global benefits provide options for the following: - Paid Time Off: earned time off, as well as paid company holidays based on region - Paid Parental Leave: take up to six months off with your child after birth, adoption or foster care placement - Full Health Benefits Plans: options for 100% employer paid and minimum employee contribution health plans from day one of employment - Retirement Plans: select retirement and pension programs with potential for employer contributions - Learning and Development: options for coaching, online courses and education reimbursements - Compassionate Care Leave: paid time off following the loss of a loved one and other life-changing events Life at Docusign Working here Docusign is committed to building trust and making the world more agreeable for our employees, customers and the communities in which we live and work. You can count on us to listen, be honest, and try our best to do what's right, every day. At Docusign, everything is equal. We each have a responsibility to ensure every team member has an equal opportunity to succeed, to be heard, to exchange ideas openly, to build lasting relationships, and to do the work of their life. Best of all, you will be able to feel deep pride in the work you do, because your contribution helps us make the world better than we found it. And for that, you'll be loved by us, our customers, and the world in which we live. Accommodation Docusign is committed to providing reasonable accommodations for qualified individuals with disabilities in our job application procedures. If you need such an accommodation, or a religious accommodation, during the application process, please contact us at accommodations@docusign.com. If you experience any issues, concerns, or technical difficulties during the application process please get in touch with our Talent organization at taops@docusign.com for assistance. Applicant and Candidate Privacy Notice States Not Eligible for Employment This position is not eligible for employment in the following states: Alaska, Hawaii, Maine, Mississippi, North Dakota, South Dakota, Vermont, West Virginia and Wyoming. Equal Opportunity Employer It's important to us that we build a talented team that is as diverse as our customers and where all employees feel a deep sense of belonging and thrive. We encourage great talent who bring a range of perspectives to apply for our open positions. Docusign is an Equal Opportunity Employer and makes hiring decisions based on experience, skill, aptitude and a can-do approach. We will not discriminate based on race, ethnicity, color, age, sex, religion, national origin, ancestry, pregnancy, sexual orientation, gender identity, gender expression, genetic information, physical or mental disability, registered domestic partner status, caregiver status, marital status, veteran or military status, or any other legally protected category. #LI-Hybrid
Related Guides
Related Categories
Related Job Pages
More Security Engineer Jobs
Information Security Manager, Cyber
QohashTrack and secure high-risk files to reduce oversharing and accelerate GenAI adoption
• You’ll support the execution and continuous improvement of Qohash’s security program, ensuring operational excellence and regulatory alignment. • You’ll be part of the Operations team, collaborating closely with Engineering, Product and Customer Success teams to help implement and maintain security and compliance requirements. • You’ll support risk assessments, track identified risks, and help coordinate remediation efforts. • You’ll support and coordinate security audits and compliance efforts, including SOC 2, ISO 27001, ITSG-33, and third-party risk assessments. • You’ll help document and improve security and compliance procedures to support organizational preparedness and resilience. • You’ll maintain security policies, standards, awareness materials, and support internal security training initiatives. • You’ll leverage AI wherever possible to accelerate delivery and standardize processes. • You’ll work remotely full-time, within the province of Quebec or Ontario, with a small number of team get-togethers in either Montreal or Quebec City.
SIU Investigator - Multi-Line (Desk)
USAASince 1922, USAA has offered a fully integrated array of financial services to active and former U.S. military members and their families. USAA's services inclu
Why USAA? At USAA, our mission is to empower our members to achieve financial security through highly competitive products, exceptional service and trusted advice. We seek to be the #1 choice for the military community and their families. Embrace a fulfilling career at USAA, where our core values – honesty, integrity, loyalty and service – define how we treat each other and our members. Be part of what truly makes us special and impactful. The Opportunity We are looking for a SIU Investigator (mid-level). This is a desk position. Within defined guidelines and framework, protects USAA and our members from potential fraudulent claims by investigating questionable, suspect claims activity in compliance with state insurance fraud-related laws and regulations and policies and procedures. The candidate selected will have strong multi-line SIU Investigation experience. This role is remote eligible. However, you must live in the assigned territory which is ME, VT, NH, MA, CT, RI, DE, MD or Washington DC. There may be occasional business travel. What you'll do: - Applies knowledge and understanding of fraud schemes and investigation strategies on any questionable or suspect first or third part claims. - Participates in the development of fraud prevention strategies. - Applies knowledge of P&C insurance industry products, services, and processes in investigating claims to include P&C insurance policy contracts, coverages and internal claims handling process and procedures. - Applies knowledge of state laws and regulations pertaining to insurance fraud in investigating claims. - Collects evidence of potential fraud through field or remote interviews and thorough searches of investigative databases, internal resources, Internet resources, public records, and forensic tools. - Makes recommendations within defined authority guidelines. - Prepares and presents detailed and comprehensive verbal and written investigative reports summarizing the results of the investigation and recommended outcome. - Develops and maintains external relationships with industry, law enforcement and other contacts involved in fraud investigation, detection, and prevention. - May serve as a resource team member on specific matters through demonstrated skill or training. - Assists with the delivery of fraud awareness training initiatives in a defined environment. - Handles CAT duty responsibilities as business requires. - Ensures risks associated with business activities are effectively identified, measured, monitored, and controlled in accordance with risk and compliance policies and procedures. What you have: - High School Diploma or General Equivalency Diploma (GED). - 2+ years claims adjusting experience, or P&C SIU/Fraud Investigation experience OR 4+ years prior investigative law enforcement (to include military) or relevant fraud industry investigation experience. - Proven investigatory skills. - Experience obtaining statements from various parties to incidents, witnesses, and suspects. - Ability to gather broad range of evidence and draw conclusions based on the objective details related to the applicability of fraud. - Demonstrated ability to organize and prioritize workload, performing multiple tasks and devising solutions to problems. - Familiarity with using computers and various software packages to enter and extract data for analysis from relevant data sources and systems. - Knowledge of city, state and local regulations, legal concepts, understanding of contracts, case law, medical treatment, and medical terminology. What sets you apart: - SIU experience conducting low to complex P&C fraud investigations OR a combination of Insurance Claims and (Law Enforcement Investigations OR Military Investigations) experience. - Strong background with multi-line SIU investigations - Designations such as CFE, CIFI, SCLA, ACLS, FCLS, LPCS, AIC, CPCU, CCLS, or other. - US military experience through military service or a military spouse/domestic partner Compensation range: The annualized range for this position is: $77,120 - $147,390. This is an hourly position. USAA does not provide visa sponsorship for this role. Please do not apply for this role if at any time (now or in the future) you will need immigration support (i.e., H-1B, TN, F-1, STEM OPT Training Plans, etc.). Compensation: USAA has an effective process for assessing market data and establishing ranges to ensure we remain competitive. You are paid within the salary range based on your experience and market data of the position. The actual salary for this role may vary by location. Employees may be eligible for pay incentives based on overall corporate and individual performance and at the discretion of the USAA Board of Directors. The above description reflects the details considered necessary to describe the principal functions of the job and should not be construed as a detailed description of all the work requirements that may be performed in the job. Benefits: At USAA our employees enjoy best-in-class benefits to support their physical, financial, and emotional wellness. These benefits include comprehensive medical, dental and vision plans, 401(k), pension, life insurance, parental benefits, adoption assistance, paid time off program with paid holidays plus 16 paid volunteer hours, and various wellness programs. Additionally, our career path planning and continuing education assists employees with their professional goals. For more details on our outstanding benefits, visit our benefits page on USAAjobs.com Applications for this position are accepted on an ongoing basis, this posting will remain open until the position is filled. Thus, interested candidates are encouraged to apply the same day they view this posting. USAA is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or status as a protected veteran.
Universal Music Group 2026 Summer Internship Program: Corporate Opportunities: Global Security
Universal Music GroupUniversal Music Group (UMG) is a global music entertainment company and an industry leader in the areas of artist management, recording, publishing, and merchandising. As an employ
We are UMG, the Universal Music Group. We are the world’s leading music company. In everything we do, we are committed to artistry, innovation and entrepreneurship. We own and operate a broad array of businesses engaged in recorded music, music publishing, merchandising, and audiovisual content in more than 60 countries. We identify and develop recording artists and songwriters, and we produce, distribute and promote the most critically acclaimed and commercially successful music to delight and entertain fans around the world. Program Eligibility: - Currently enrolled at an accredited two or four-year college/university in the United States, pursuing an undergraduate, graduate and/or law degree - Graduating between Spring 2026 - Fall 2028 - Have access to housing and transportation within the designated city (We do not offer housing or transportation accommodations) - Legally authorized to work in the United States and will not require sponsorship for employment visa status, now or in the future (e.g., H1-B, OPT, etc.) - Commit to 20 - 40 hours per week (based on individual business area) 2026 Summer Internship Program Dates: June 8th, 2026- August 14th, 2026 Global Security - Physical Security (Remote): How You’ll CREATE: This department oversees all physical security for UMG - to include all labels globally. This includes facility security standards, employee protection, travel security, investigations, management of people of interest (POIs) as well as running a 24/7 global security operations center. All this comes together under GSO Phy Sec. This information is used to dictate the security level needed to keep our executives, employees and facilities safe. This position would assist with case management, online scam investigations, people of interest investigations, an overall understanding of the Global Security Operations Center (GSOC) and logistics around protective operations. Bring Your Vibe: - Comfortable working with power point - Willingness to think outside the box - Strong attention to detail - Strong organizational skills and efficiency - Ability to multitask and meet tight deadlines in fast- paced, high-pressure environments - High level of integrity - Discretion in handling confidential information - Professionalism in dealing with senior professionals inside and outside the company - A “can-do” attitude - Knowledge of Microsoft Office (Word, Excel, PowerPoint) - Self-starter - Excellent communication skills - Eager to learn Disclaimer: This job description only provides an overview of job responsibilities that are subject to change. Universal Music Group is an Equal Opportunity Employer We are an E-Verify employer in Alabama, Arizona, Georgia, Mississippi, North Carolina, South Carolina, Tennessee, and Utah. For more information, please click on the following links. E-Verify Participation Poster: English / Spanish E-Verify Right to Work Poster: English | Spanish Job Category: Internships Salary Range: $15-$20 per hour The actual base salary offered depends on a variety of factors, which may include, as applicable, the qualifications of the individual applicant for the position, years of relevant experience, specific and unique skills, level of education attained, certifications or other professional licenses held, and the location in which the applicant lives and/or from which they will be performing the job. All candidates are encouraged to apply.
Program Manager, Cybersecurity – APAC
Kobalt Music GroupKobalt is a music company that is on a mission to allow artists more creative freedom, power, and ownership. The company has a team of more than 700 professiona
• Lead and manage a diverse portfolio of information security programs, ensuring all clients have clear, regularly reviewed plans. • Own the full onboarding lifecycle, ensuring clients start their journey with a completed risk register and a strategic 1-year roadmap. • Maintain a client NPS score of 8.67 or above by delivering exceptional service and partnering with customer success managers. • Act as the primary point of contact, providing transparent, insightful reports on progress and milestones to foster trust. • Ensure all program processes, decisions, and changes are clearly documented for consistency. • Own and enhance delivery team processes to continuously increase service value and quality. • Manage program budgets and resource allocation to optimize efficiency and profitability. • Lead subject matter experts (SMEs) to drive successful outcomes, providing supportive and constructive feedback as a team player. • Proactively identify and manage roadblocks to keep all programs aligned with their defined objectives. • Identify upselling opportunities based on evolving client needs and collaborate with internal teams to drive growth.



