
P28961 Cybersecurity Engineer III
Sierra Space1 day ago
Louisville, CO, USASenior
Base Salary
$122k - $168k/yr
Responsibilities
- Support vulnerability management across infrastructure, endpoints, applications, cloud environments, and network devices.
- Develop and maintain vulnerability scanning strategies, schedules, configurations, coverage metrics, and operating procedures.
- Analyze scan results and threat intelligence to validate findings, assess exploitability and business impact, and prioritize remediation using a risk-based approach.
- Coordinate, track, and verify remediation activities with infrastructure, application, cloud, network, business, and third-party teams.
- Provide guidance on remediation options, compensating controls, exception requests, and risk acceptance decisions.
- Monitor vulnerability dashboards, trends, and key performance indicators and prepare executive and technical reports.
- Investigate scan coverage, vulnerability-data, and remediation-status discrepancies to improve reporting accuracy.
- Integrate vulnerability management processes and data with asset management, configuration management, ticketing, SIEM, GRC, and other security platforms.
- Support vulnerability assessments, penetration testing, compliance assessments, and audits with evidence, analysis, and remediation status.
- Develop scripts, workflows, and automation for scanning, data analysis, ticket creation, reporting, and remediation verification.
- Track emerging vulnerabilities, exploitation trends, security advisories, and defensive technologies and communicate recommended actions.
Requirements
- Bachelor’s degree in a related field, equivalent work experience in lieu of a degree, or a master’s degree plus 3 years of experience.
- Typically 5+ years of related experience.
- At least one required certification or credential from GIAC, a network technology certification such as CCNP, or SANS level 300 courses.
- Knowledge of emerging technologies, emerging threats, or emerging regulatory requirements.
- Knowledge of secure systems architecture.
- Preferred experience operating or engineering enterprise vulnerability management programs across diverse technology environments.
- Preferred hands-on experience with Tenable, Qualys, Rapid7, or equivalent vulnerability assessment and management platforms.
- Preferred experience with risk-based prioritization, vulnerability remediation coordination, exception management, compensating controls, risk management, remediation validation, and service-level reporting.
- Preferred proficiency with asset discovery, inventory reconciliation, scan configuration, credentialed scanning, authenticated assessment, and vulnerability data quality management.
- Preferred experience integrating vulnerability platforms with ticketing, CMDB, SIEM, GRC, orchestration, or reporting systems.
- Preferred knowledge of CVE, CVSS, CWE, CISA KEV, and related threat-intelligence sources.
- Preferred certifications include CISSP, CISM, CISA, CCSP, GIAC, or a vulnerability-management-related certification.
- Strong technical leadership, communication, analytical, project management, and mentoring skills are preferred.
- Ability to obtain and maintain a U.S. security clearance is preferred.
Benefits
- Medical, dental, and vision plans.
- 401(k) with a 150% match up to 6%.
- Life insurance.
- Three weeks of paid time off.
- Professional and personal development opportunities.
- The role remains posted until a qualified candidate pool is identified.
Categories
About Sierra Space
Sierra Space is a privately held aerospace company founded in 2021 and headquartered in Louisville, Colorado. It develops spacecraft, satellite platforms and subsystems, propulsion, and space infrastructure, including the reusable Dream Chaser spaceplane and the inflatable LIFE habitat. The company serves U.S. national security and civil customers and global allies; Dream Chaser is contracted to deliver cargo to the International Space Station for NASA.