- Company Name
- SyllogisTeks
- Job Title
- Threat and Vulnerability Engineer
- Job Description
-
Job title: Threat and Vulnerability Engineer
Role Summary:
Engineer who identifies, assesses, and remediates security risks in on‑premises and cloud environments. Combines threat intelligence, vulnerability management, secure configuration, and automation to strengthen overall security posture.
Expectations:
- Deliver accurate threat and vulnerability assessments within defined SLAs.
- Automate detection, reporting, and remediation workflows.
- Maintain compliance with industry standards and regulatory requirements.
- Communicate findings clearly to technical and non‑technical stakeholders.
Key Responsibilities:
- Research, analyze, and evaluate emerging threats, vulnerabilities, and exploits.
- Monitor and correlate threat intelligence feeds (MITRE ATT&CK, OWASP, CVSS).
- Identify and manage vulnerabilities in AWS, Azure, GCP using CSPM/CWPP tools (Prisma Cloud, Defender for Cloud, Wiz).
- Collaborate with cloud, DevOps, and IT teams to remediate vulnerabilities and embed security controls.
- Implement and maintain secure configuration standards across servers, endpoints, databases, network devices, and cloud resources.
- Conduct configuration audits and compliance checks (CIS Benchmarks, NIST 800‑53, DISA STIGs).
- Develop automation scripts (Python, PowerShell, Bash, JavaScript) for scanning, reporting, and data correlation.
- Integrate vulnerability management with SIEM, SOAR, and ticketing systems via APIs.
- Create dashboards and visualizations to track threat visibility and remediation progress.
- Verify remediation outcomes against risk priorities and compliance requirements.
- Produce clear technical reports and remediation guidance.
Required Skills:
- Advanced knowledge of security controls (access control, logging, authentication, encryption, integrity).
- Experience managing vulnerabilities in on‑premises and cloud environments.
- Familiarity with threat intelligence frameworks (MITRE ATT&CK, OWASP, CVSS).
- Proficiency with CSPM/CWPP tools and configuration audit frameworks (CIS, NIST, DISA).
- Strong scripting and automation skills (Python, PowerShell, Bash, JavaScript).
- Ability to integrate security tools with SIEM, SOAR, and ticketing systems via APIs.
- Excellent communication skills for presenting technical findings to diverse audiences.
- Understanding of federal and state information security regulations and defense‑in‑depth practices.
Required Education & Certifications:
- Bachelor’s degree in Computer Science, Information Security, or related field.
- • Certification(s) preferred: CISSP, CCSP, CEH, OSCP, or equivalent.
- • Cloud‑specific credentials: AWS Certified Security – Specialty, Azure Security Engineer Associate, or Google Professional Cloud Security Engineer.