Cloud Security and Vulnerability Management Consultant
$67.7k - $90.27kLumen
Lumen is the trusted network for the AI‑powered world, connecting people, data, and applications through our expansive fiber network and connected ecosystem. We enable secure, high‑performance connectivity across cloud, edge, and AI workloads for enterprises, governments, and communities.
At Lumen, you’ll work on infrastructure customers rely on today and build for what’s next, where performance, security, and resilience matter.
This is a high accountability environment where bold ideas drive real innovation for our customers, partners, and industry. The work is challenging, expectations are clear, and trust is built into how we operate. If you’re ready to take ownership, deliver meaningful impact, and help shape the future of AI‑ready connectivity, join us today.
The Role
Lumen Security Advisory Services is hiring a Cloud Security & Vulnerability Management consultant to join a team that delivers customer-facing security assessments and vulnerability management engagements across cloud environments and customer premises. The primary focus is cloud security posture assessment, where the team evaluates customer environments against industry compliance frameworks, identify vulnerabilities and misconfigurations, and help customers understand their security posture and build practical remediation strategies. A secondary focus is vulnerability management, where the team deploys and manages scanning platforms in customer environments, configure and tune the platform alongside customers, develop patching strategies aligned to customer needs, and guide remediation prioritization and planning.
This is a hands-on consulting role on a small, fast-moving team. You'll work directly with customers, run assessments using commercial and custom-built tooling, and contribute improvements to shared platforms and codebases.
The Main Responsibilities
Cloud Security (Primary Focus)
- Deliver cloud security posture assessments across AWS, Azure, and Microsoft 365 environments
- Evaluate customer environments against CIS Benchmarks, cloud provider security frameworks and best practices, and customer-specific compliance standards
- Use custom-developed assessment frameworks and cloud-native security tooling to identify misconfigurations and security gaps
- Perform cloud resource inventory and exposure analysis
- Prioritize findings by risk and develop clear remediation guidance
Vulnerability Management
- Deploy and manage vulnerability scanning platforms in customer environments
- Configure and tune scanning platforms alongside customers, including patching strategy development
- Analyze scan results, prioritize findings by severity and business impact, and guide remediation planning
- Understand vulnerability types, severity frameworks (e.g., CVSS, vendor-specific), and how to communicate risk to customers
Consulting & Delivery
- Participate in customer-facing activities: kickoff calls, technical interviews, working sessions, and findings presentations
- Contribute to assessment reports and remediation roadmaps for technical and executive audiences
- Communicate technical risk clearly to non-technical stakeholders
Tooling & Platform Development
- Contribute to a custom-built cloud security assessment platform (AWS native services)
- Develop and maintain custom security checks and automated compliance scanning tools
- Work with AWS and Azure cloud infrastructure components
- Write and maintain scripts for assessment automation and reporting
What We Look For in a Candidate
Required Experience
- Hands-on experience with at least one major cloud platform (AWS preferred; Azure, M365 also valued)
- Understanding of cloud security posture management (CSPM) concepts and the differences between platform-level tools (e.g., Wiz) and assessment-focused tooling
- Familiarity with compliance frameworks such as CIS Benchmarks, SOC2, PCI-DSS, or NIST
- Understanding of vulnerability management concepts: vulnerability types, severity scoring, remediation prioritization
- Strong communicator able to explain technical findings to both engineers and executives
- Comfortable writing Python and working in Git
- Experience with AI-assisted development and automation tools such as GitHub Copilot, Microsoft Copilot Studio and agent building,
- Power Automate, and Claude
- Willingness to learn new tools and platforms quickly
Preferred Experience
- Microsoft 365 security experience (Entra ID, Defender, Exchange, Teams, SharePoint, Intune)
- Experience with cloud security scanning tools or CSPM platforms
- Experience with vulnerability management platforms, particularly Qualys (preferred) or Tenable
- Experience Level
3–5 years’ experience in cloud security, vulnerability management, security consulting, or a related technical security role
CertificationsRelevant certifications (AWS, Azure, CISSP, or similar), however, demonstrated experience matters more
What We're Looking For:
- Curious, hands-on, and forward thinking. You learn by building, testing, and breaking things
- Comfortable balancing technical depth with customer-facing delivery
- Effective in a small team where you own outcomes, not just tasks
- Able to point to relevant work: assessments delivered, tools built, security problems solved
Compensation
This information reflects the anticipated base salary range for this position based on current national data. Minimums and maximums may vary based on location. Individual pay is based on skills, experience and other relevant factors.
Location Based Pay Ranges
$67,703 - $90,270 in these states: AL AR AZ FL GA IA ID IN KS KY LA ME MO MS MT ND NE NM OH OK PA SC SD TN UT VT WI WV WY
$71,088 - $94,784 in these states: CO HI MI MN NC NH NV OR RI
$74,474 - $99,297 in these states: AK CA CT DC DE IL MA MD NJ NY TX VA WA
Lumen offers a comprehensive package featuring a broad range of Health, Life, Voluntary Lifestyle benefits and other perks that enhance your physical, mental, emotional and financial wellbeing. We're able to answer any additional questions you may have about our bonus structure (short-term incentives, long-term incentives and/or sales compensation) as you move through the selection process.
Learn more about Lumen's:
Benefits
#LI-Remote
Requisition #: 342369
Life at Lumen
Life at Lumen is human and connected, even in a fast moving, AI‑focused organization. We set clear expectations and trust people to meet them. With real support and shared accountability, teams collaborate better, move faster, and deliver meaningful outcomes.
Our Lumen 8 behaviors guide how we interact, make decisions, and work together, shaping a culture built to perform and win.
To learn more about Life at Lumen and how we live the Lumen 8, please visit:
Background Screening
If you are selected for a position, there will be a background screen, which may include checks for criminal records and/or motor vehicle reports and/or drug screening, depending on the position requirements. For more information on these checks, please refer to the Post Offer section of our FAQ page . Job-related concerns identified during the background screening may disqualify you from the new position or your current role. Background results will be evaluated on a case-by-case basis.
Pursuant to the San Francisco Fair Chance Ordinance, we will consider for employment qualified applicants with arrest and conviction records.
Equal Employment Opportunities
We are committed to providing equal employment opportunities to all persons regardless of race, color, ancestry, citizenship, national origin, religion, veteran status, disability, genetic characteristic or information, age, gender, sexual orientation, gender identity, gender expression, marital status, family status, pregnancy, or other legally protected status (collectively, “protected statuses”). We do not tolerate unlawful discrimination in any employment decisions, including recruiting, hiring, compensation, promotion, benefits, discipline, termination, job assignments or training.
Privacy Notice
Lumen is committed to protecting the privacy and security of personal information collected during the recruitment and hiring process. Our Privacy Notice explains how we collect, use, disclose, and protect applicant information, as well as how individuals may request access to or deletion of their personal data.
To review Lumen’s Privacy Notice, please visit:
Disclaimer
The job responsibilities described above indicate the general nature and level of work performed by employees within this classification. It is not intended to include a comprehensive inventory of all duties and responsibilities for this job. Job duties and responsibilities are subject to change based on evolving business needs and conditions.
In any materials you submit, you may redact or remove age-identifying information such as age, date of birth, or dates of school attendance or graduation. You will not be penalized for redacting or removing this information.
Please be advised that Lumen does not require any form of payment from job applicants during the recruitment process. All legitimate job openings will be posted on our official website or communicated through official company email addresses. If you encounter any job offers that request payment in exchange for employment at Lumen, they are not for employment with us, but may relate to another company with a similar name.
- ...a full-time Senior Technical Program Manager, Security at Garmin's U.S. headquarters in the Greater... ..., planning, and execution of the vulnerability management program, ensuring our company... ...experience in shipping software or cloud services Experience and/or knowledge...CloudFull timeFlexible hours
- ...homeopportunities after an introductory period About the Role We are seeking a Senior Security Engineer to simulate real‑world adversaries and identify high‑impact vulnerabilities across enterprise and cloud environments. This role focuses on executing realistic adversary...Cloud
- ...Information Security Governance, Risk, and Compliance (GRC) Analyst... ...Information Security GRC Analyst manages and executes security... ...infrastructure, applications, and cloud-based environments. Working... ...security management tools (e.g., vulnerability scanners, file integrity...CloudWork at officeMonday to Friday
- ...Trofi Security is a nationally recognized firm of... ...edge of IT security consulting. This entrepreneurial... ...or application-level vulnerability testing and auditing... ...interact with senior management in a consultative manner... ...reporting Virtualization and cloud technology knowledge...Cloud
- ...training, documentation, SOPs, and change management materials Contribute reusable assets,... ...expenses Experience with SAP S/4HANA, Oracle Cloud, NetSuite, or Workday Financials... ...technology Opportunity to learn from top consultants in the industry Why Join DataMap Accelerate...CloudContract work
- ...seeking a full-time Senior Cyber Security Engineer for Identity... ...Garmin's Identity & Access Management (IAM) systems and support an... ...the latest security trends, vulnerabilities, attack vectors, and emerging... ...Experience with Azure or AWS public cloud services Experience with...CloudFull time
- Overview We are seeking a full-time Cyber Security Engineer 2 at Garmin's U.S.... ...responsible for ensuring adherence to Garmin's cloud information security strategy,... ...controls (CNAPP, CSPM, CWPP), threat management, vulnerability management, cloud platform protection...CloudFull time
- ...a Forward Deployed Engineer to work closely with clients for implementing and optimizing security solutions. The ideal candidate will have at least 3 years in cybersecurity, cloud engineering, or DevOps, with a strong technical skill set in automation and security technologies...Cloud
- Shamrock Trading Corp. in Overland Park, Kansas is seeking a Senior Security Engineer to enhance the security posture across enterprise and cloud environments. This role emphasizes advanced red teaming and penetration testing, requiring hands-on expertise in exploitation...Cloud
- ...Job Opening Genesis Consulting is a leading ERP and Enterprise Agility firm combining innovative... ...is leading an advanced financial management transformation at one of the largest... ...application operating in a FedRamp Certified cloud, while reengineering business process,...CloudRemote work
$272k - $320k
...Responsibilities Build and lead a high-impact security organization, including future GRC, SecOps,... ...privilege and thoughtful segmentation Oversee cloud security (AWS), infrastructure hardening, and corporate device management strategy, including logging, monitoring, and...CloudShift work- Optiv Security Inc. in Overland Park is looking for a Google Partner Architect who will be responsible for developing and demonstrating... ...will have significant experience in technical sales and Google Cloud Security, along with the ability to travel for client engagement...CloudRemote job
$100k - $120k
...The Cybersecurity Analyst (Security & AI Governance) is responsible... ..., applications, cloud environments, data, and artificial... ..., Shadow AI oversight, risk management, and continuous improvement... ...-incident analysis. Conduct vulnerability assessments and coordinate remediation...CloudTemporary work- ...critical programs across national security, defense, and public... ...assisting with containment, vulnerability management, and compliance activities.... ...operations processes, cloud and infrastructure fundamentals... ...Maximus TCS (Technology and Consulting Services) Internal Job...CloudMinimum wageFull timeContract workTemporary workWork experience placementRemote work
- ...to lead the design and implementation of security solutions using Google SecOps. The ideal... ...over 3 years of experience in security consulting or architecture. Responsibilities include... ...teams, and collaborating with Google Cloud to ensure exceptional project delivery....Cloud
- An established industry player is seeking a Senior Database Engineer to lead cloud migration efforts and ensure robust database security. In this role, you will oversee the migration of databases to cloud platforms, implement security measures, and develop disaster recovery...Cloud
- Garmin Ltd. is looking for a full-time Cyber Security Engineer 2 based at its U.S. headquarters in Kansas. The role involves implementing and operating cloud security controls, collaborating with cybersecurity teams, and enhancing security software tools. Applicants should...CloudFull time
- Optiv Security seeks a Senior Swimlane SOAR Engineer for a fully remote role based in Overland... ...The candidate will lead client projects, manage security systems, and enhance clients'... ..., and knowledge in SIEM, networking, and cloud services. This role offers a chance to work...CloudRemote job
- ...aspects of Scroll are zkRollup technology, Scalability, Efficiency, Security, and Developer-friendly. Overall, Scroll plays a crucial role... ...experience working in an L2 ecosystem Proven track record of managing complex partner relationships end-to-end Familiarity with...For contractorsRemote work
$100k - $172.5k
...Technology Enterprise Strategy & Security Job Sub Function:... ...Partner with engineering teams (cloud, console, pump, etc.) to drive... ...for Security, SBOM, and risk management documentation. Drive and monitor and post-market vulnerability management activities, with adherence...CloudFull timeTemporary workWork at officeLocal areaImmediate startRemote work3 days per week$110k - $140k
...analysis, and development of secure enterprise IT systems and architecture... .... Develop, maintain, and manage security authorization... ...configuration diagrams. Perform vulnerability analysis, compliance reviews,... ...system solutions align with cloud strategies including SaaS, PaaS...CloudTemporary work- ...Required Qualifications ~3+ years of business development, capture management, or proposal experience within the defense or federal... ...supporting proposal development (technical or pricing). Active security clearance or ability to obtain one. Familiarity with...Remote work
- ...Foresite is seeking a Security Analyst II who has a passion for security, a keen eye for detail... ..., leading complex investigations for our managed customers across Google Security... ...advanced certifications: GCIA, GCIH, Google Cloud Security Engineer, or similar. Why Join Foresite...CloudTemporary workShift work
- We are seeking a Senior Security AI Engineer to strengthen our cybersecurity posture across cloud, on-premises, and AI-enabled systems. This role is ideal... ...reviews, and evidence collection. Vulnerability & Attack Surface Management Lead vulnerability management,...Cloud
- ...mastermind behind our clients' security implementations, crafting... ...partner closely with Google Cloud teams, internal engineers, and... ...Engagement: Interact with Project Managers, Customer Success, and... ...years of experience in security consulting, solutions architecture, or systems...CloudTemporary work
$94.4k - $293.8k
...Accenture's business. CLPs identify and help manage and mitigate risk and ensure ethical... ...proposals and agreements involving cloud, blockchain security, automation, systems integration and... ...transactional experience in digital, consulting, systems integration, and/or...CloudContract workLive inWork at officeLocal area- ...native, automation-first, built-for-scale Managed Detection and Response (MDR) provider. We... ...our customers. About the Role As a FDE Security Solution Architect at TENEX, you design security... ...of a Security Solution Engineer — Cloud, AI, Network, Endpoint & Identity, with ownership...Cloud
- ...future-proof Smart Telematics solutions for optimal fleet performance management in multiple domains such as: track & trace, operational efficiency, security safety and service & maintenance. We offer cloud-based solutions and the necessary hardware components...CloudFull timeWork at officeFlexible hours
$45k
...Corporate Technologies is a leading provider of managed IT solutions to businesses and institutions... ...solutions, including managed IT services, cloud services, staffing, voice and data systems, storage and virtualization, consulting, and networking solutions. If you are...Cloud- ...Cloud Architect Employment Type :- W2 Duration :- Long Term Visa Type :- All Visa applicable... ...Onsite Job Description CloudEnvironment Management: Manage and maintain the cloud... ...optimize the performance of cloud resources. Security Management: Implement and maintain...CloudH1b
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Cloud Security and Vulnerability Management Consultant. Be the first to apply!
- senior information security analyst Overland Park, KS
- security specialist Overland Park, KS
- security advisor Overland Park, KS
- security consultant Overland Park, KS
- security coordinator Overland Park, KS
- network security consultant Overland Park, KS
- business process consultant Overland Park, KS
- business consultant Overland Park, KS
- management consultant Overland Park, KS
- business advisor Overland Park, KS


