Mid-level Vulnerability Assessments & Infrastructure Specialist - Vulnerability & Attack Surface Management (VASM)
$115.6k - $167.9kBoeing
Mid-level Vulnerability Assessments & Infrastructure Specialist - Vulnerability & Attack Surface Management (VASM) Company: The Boeing Company The Boeing Company is currently seeking a Mid-level Vulnerability Assessments & Infrastructure Specialist - Vulnerability & Attack Surface Management (VASM) to join the team in Kent, WA; North Charleston, SC; Hazelwood, MO; Mesa, AZ; El Segundo, CA; or Plano, TX. The Boeing Company is seeking a Mid-level Vulnerability Assessments & Infrastructure Specialist to join the Vulnerability & Attack Surface Management (VASM) team. This hands-on role supports vulnerability management across the Boeing estate and subsidiaries, providing vulnerability risk analysis, application security support, and remediation orchestration for both infrastructure and applications. The ideal candidate combines practical experience operating enterprise vulnerability assessment platforms, applied application security knowledge, foundational infrastructure and networking skills, and business-context awareness of Boeing’s lines of business and subsidiaries. VASM protects Boeing’s global mission by identifying, validating, and driving remediation of vulnerabilities across cloud, datacenter, operational technology (OT), and application environments, including systems managed by Boeing Commercial Airplanes, Boeing Defense, Space & Security, Boeing Global Services, and key subsidiaries and supplier integrations. You will help close security gaps that could impact safety, supply chain continuity, regulatory compliance, or operational availability. Position Responsibilities: Operate and optimize enterprise vulnerability assessment platforms and AppSec integrations to identify, validate, and prioritize security findings across infrastructure and applications Perform technical exploitability analysis and business-impact assessments Translate findings into prioritized, operationally feasible remediation actions for engineering, Information Technology (IT), and operations teams Contribute to development and operationalization of assessment playbooks, scanning standards, AppSec scanning pipelines (Static Application Security Testing/Software Composition Analysis/Dynamic Application Security Testing (SAST/SCA/DAST), reporting, and automation to improve detection fidelity and remediation velocity Execute enterprise processes for scheduled and emergent vulnerability assessments, including infrastructure and application discovery, authenticated scanning, and targeted assessments Configure, tune, and maintain vulnerability scanning platforms and AppSec integrations (e.g., Rapid7, Tenable, Qualys, Snyk, Veracode), manage credentials, scopes, schedules, and scan policies Investigate findings to distinguish true positives from false positives and to identify environmental/configuration constraints, including container, cloud, and legacy systems Correlate vulnerability scanner output with threat intelligence, application findings (SAST/DAST/SCA), and asset criticality to produce contextualized risk ratings and remediation priorities Assess exploitability, potential for lateral movement, and operational impact for infrastructure, middleware, and application vulnerabilities Create remediation plans and work with system owners, application teams, and subsidiary stakeholders to coordinate fixes, compensating controls, and risk-accepted outcomes Track remediation burndown, Service Level Agreements (SLAs), and closure Escalate high-risk items and produce executive and technical reports tailored to stakeholder audiences Collaborate with VASM, AppSec, DevSecOps, engineering, and IT teams to operationalize new scanning capabilities, integrate AppSec pipelines, and reduce noise through tuning and automation Contribute to continuous improvement Drive automation of ingestion/correlation pipelines, standardize playbooks and runbooks, and deliver training to remediation owners and subsidiary teams Basic Qualifications (Required Skills/Experience): 5+ years of experience with vulnerability scanning concepts and best practices, and operating enterprise vulnerability assessment platforms such as Rapid7, Tenable, or Qualys 5+ years of experience with Linux and/or Windows Security 5+ years of experience troubleshooting foundational networking issues (TCP/IP, DNS, routing, firewalls) and performing network scanning and assessments 5+ years of experience analyzing vulnerability findings, triaging true vs false positives, and identifying environmental limitations or compensating controls 5+ years of experience managing scan configurations, credentials, schedules, and assessment scope within large or distributed environments Preferred Qualifications (Desired Skills/Experience): Active Security+, Certified Information Systems Security Professional (CISSP), Certified in Risk and Information Systems Control (CRISC), or vendor/tool-specific certifications Experience with application security exposure (SAST/DAST/SCA) and ability to ingest or correlate AppSec findings with infrastructure vulnerabilities Experience integrating vulnerability management with AppSec pipelines and DevSecOps toolchains (Continuous Integration/Continuous Deployment (CI/CD) integration, SCA, container scanning) Experience with Boeing subsidiaries, mission domains, and supply chain considerations (e.g., Boeing Commercial Airplanes, Boeing Defense & Space, Boeing Global Services, and common subsidiary/supplier systems) Experience with vulnerability risk rating methodologies (Common Vulnerability Scoring System (CVSS), Cybersecurity and Infrastructure Security Agency (CISA) Stakeholder-Specific Vulnerability Categorization (SSVC), or organization-specific risk models) and threat intelligence correlation Experience scaling or architecting vulnerability management programs in large enterprises and integrating with ticketing/ Configuration Management Database (CMDB) systems (e.g., ServiceNow) Experience with cloud environments and cloud-native scanning challenges (Amazon Web Services (AWS)/Azure/Google Cloud Platform (GCP)) and containerized workloads Experience enabling self-service vulnerability dashboards and automated exports for business and subsidiary teams Experience with regulated or compliance-driven environments and supporting audit or risk frameworks (e.g., National Institute of Standard Technology (NIST), International Organization for Standardization (ISO)) Conflict of Interest: Successful candidates for this job must satisfy the Company’s Conflict of Interest (COI) assessment process. Drug Free Workplace: Boeing is a Drug Free Workplace where post offer applicants and employees are subject to testing for marijuana, cocaine, opioids, amphetamines, PCP, and alcohol when criteria is met as outlined in our policies. Pay & Benefits: At Boeing, we strive to deliver a Total Rewards package that will attract, engage and retain the top talent. Elements of the Total Rewards package include competitive base pay and variable compensation opportunities. The Boeing Company also provides eligible employees with an opportunity to enroll in a variety of benefit programs, generally including health insurance, flexible spending accounts, health savings accounts, retirement savings plans, life and disability insurance programs, and a number of programs that provide for both paid and unpaid time away from work. The specific programs and options available to any given employee may vary depending on eligibility factors such as geographic location, date of hire, and the applicability of collective bargaining agreements. Pay is based upon candidate experience and qualifications, as well as market and business considerations. Summary pay range: $115,600 – $167,900 Language Requirements: Not Applicable Education: Not Applicable Relocation: This position offers relocation based on candidate eligibility. Export Control Requirement: This position must meet U.S. export control compliance requirements. To meet U.S. export control compliance requirements, a “U.S. Person” as defined by 22 C.F.R. §120.62 is required. “U.S. Person” includes U.S. Citizen, U.S. National, lawful permanent resident, refugee, or asylee. Safety Sensitive: This is not a Safety Sensitive Position. Security Clearance: This position does not require a Security Clearance. Visa Sponsorship: Employer will not sponsor applicants for employment visa status. Contingent Upon Award Program This position is not contingent upon program award Shift: Shift 1 (United States of America) Stay safe from recruitment fraud! The only way to apply for a position at Boeing is via our Careers website. Learn how to protect yourself from recruitment fraud - Recruitment Fraud Warning Boeing is an Equal Opportunity Employer. Employment decisions are made without regard to race, color, religion, national origin, gender, sexual orientation, gender identity, age, physical or mental disability, genetic factors, military/veteran status or other characteristics protected by law. EEO is the law Boeing EEO Policy Request an Accommodation Applicant Privacy Boeing Participates in E – Verify E-Verify (English) E-Verify (Spanish) Right to Work Statement Right to Work (English) Right to Work (Spanish) This site is for current Boeing Subsidiary Employees. If you are not a current Boeing Subsidiary Employee, you should not apply at this site. Please navigate to jobs.Boeing.com to apply to open positions for external applicants. If you are a direct Boeing employee please navigate to "Find Jobs" in Workday. Boeing is committed to protecting, connecting and exploring our world and beyond, safely and sustainably. From the seabed to outer space, you can contribute to work that matters with a company where diversity, equity and inclusion are shared values. We’re committed to fostering an environment that’s welcoming, respectful and inclusive of every teammate, with great opportunity for professional growth. Find your future with us.
- ...Artificial Intelligence (AI) Platform Developer (Mid-Level or Senior) The Boeing Company is currently seeking an Artificial Intelligence... ...help establish best practices for provisioning, configuration management, monitoring, and troubleshooting. This role also contributes...SuggestedWork experience placement
$112.2k - $162.15k
...Company is currently seeking a Mid-Level Cloud DevOps Developer to... ..., and maintenance of infrastructure, software, and components in... ...requirements in support of Risk Management Framework Assist in the... ...Conflict of Interest (COI) assessment process. Drug Free Workplace...SuggestedPermanent employmentInterim roleRelocationVisa sponsorshipWork visaRelocation packageFlexible hoursShift workDay shift$119k - $161k
...Advanced Information Technologist – Mid Level Cloud Engineer for the Digital Infrastructure Segment of a Proprietary Program... ...tools, Product Lifecycle Management, Manufacturing Operations Management... ...’s Conflict of Interest (COI) assessment process. Drug Free Workplace Boeing...SuggestedPermanent employmentContract workWork experience placementImmediate startRelocationVisa sponsorshipWork visaFlexible hoursShift workDay shift- ...Information Technologist – Mid Level Cloud Engineer Company: The... ...Cloud Engineer for its Digital Infrastructure Segment in Saint Louis, MO.... ...tools, Product Lifecycle Management, Manufacturing Operations... ...Company’s Conflict of Interest assessment process. Boeing is a Drug‑...SuggestedContract workWork experience placement
$119k - $161k
...aerospace company is seeking an Advanced Information Technologist - Mid Level Cloud Engineer in Hazelwood, MO. The role involves orchestrating cloud integration for complex applications and managing infrastructure as code. Ideal candidates will have strong experience in...Suggested$148.75k - $215.05k
...network solutions Define high‑level and detailed designs (logical... ...technical guidance to junior and mid‑level network engineers and... ...functional technical discussions Manage multiple high‑priority... ...’s Conflict of Interest (COI) assessment process. Drug Free Workplace:...Permanent employmentLocal areaRelocationVisa sponsorshipWork visaRelocation packageFlexible hoursShift workDay shift$72.4k - $108.6k
...and growth. Our world-class management consulting, delivery excellence... ...governance, and reporting infrastructure across SD-WAN, Route/Switch,... ...enterprise data sources) to surface real-time risk, lifecycle... ...Gainsight Certified Administrator (Level I and Level II)...Full timeRemote workShift work- ...work from home. This position assists with the configuration, testing, deployment, and support of scalable, secure and resilient infrastructure components in one technology area (Virtual Servers, Storage and backups, Databases, Operating System, Network and Telephony),...Remote workWork from home
- ...A leading aerospace company is seeking an Entry Level Software Engineer for a contract position in Hazelwood, Missouri. The role involves designing and integrating AI capabilities within internal platforms. Candidates should have a Bachelor's degree in a relevant field...Contract work
$140k - $175k
...success is enabled by our world-class management consulting, delivery excellence and engineering... ...technical expert in Hybrid Cloud and infrastructure modernization technologies. You will... ...Lead the creation of High-Level and Low-Level Designs for areas of expertis...Full timeLocal areaRemote workFlexible hoursShift work- ...engineering and executive-level business consulting... ...recommendations. Assess and document vendor vs... ...responsibilities for vulnerability scanning, remediation... ...systems authorization, and management in a commercial Cloud... ...and information infrastructure, including firewalls...Work experience placement
- ...The Boeing Company in Hazelwood, MO is seeking a qualified Advanced Information Technologist – Mid Level Cloud Engineer for its Digital Infrastructure Segment. The ideal candidate will have a Bachelor's degree and at least 5 years of experience in a related field, with...
- ...Position Support Curium's server infrastructure services to ensure secure, reliable, and... ...the appropriate OU prior to domain join; manage lifecycle actions (move/rename/disable)... ...minimize potential and/or actual exposure levels. Responsibilities include the ability...Shift work
$95.7k - $159.7k
...and trends. We deliver the infrastructure, data, and analytics that market... ...* Design, implement and manage infrastructure as code using... ...with security teams to address vulnerabilities. Qualifications *... ...will be commensurate with role level and posted career stage....Part timeInternship- A technology consulting firm in Maryland Heights, MO, seeks a skilled Senior Cloud Solution Architect with strong Java expertise and cloud architecture experience. This role involves leading design for wireless provisioning systems, translating business needs into efficient...
- ...A leading aerospace firm is seeking a Mid-Level Cloud DevOps Developer for its team in Hazelwood, MO, or Tukwila, WA. The ideal candidate... ...of experience with Azure or AWS, as well as strong skills in Infrastructure as Code and containerization technologies. This role involves...
$45 - $55 per hour
...Operations team supporting enterprise network infrastructure in St. Louis, MO. In this hybrid role,... ...candidate brings hands-on experience managing enterprise networks and thrives in a... ...DISCLAIMER The pay range for this job level is a general guideline only and not a...Contract workLocal areaFlexible hours- ...providers/MSPs and carriers for circuits and managed services; track service quality and... ...Engineer Associate. Network automation and infrastructure-as-code (Ansible, Terraform), CI/CD for... ...potential and/or actual exposure levels. Responsibilities include the ability...Remote workShift workRotating shift
$126.65k - $171.35k
...aerospace company in Hazelwood, MO, seeks an experienced Facilities Engineering Manager. The role involves leading engineering teams to sustain manufacturing operations and overseeing infrastructure projects. Ideal candidates will have a Bachelor's in engineering and at...- ...type: Full-time, regular Responsibilities Assess malfunctions of hardware, software, and... ...technologies Firewall configuration and management is a plus HPE/Aruba switchgear... ...S. Security Clearance at the appropriate level. Requires U.S. Citizenship. Must also be...Full time
$101.7k - $120k
...Boeing is seeking a Mid-Level Network Designer in the St. Louis, MO area. This role focuses on supporting the Boeing Defense, Space and Security (BDS) organization. The ideal candidate will have experience with Cisco networking technologies and a passion for problem solving...$101.7k - $130.1k
.... Find your future with us. Boeing has an immediate need for a Mid-Level or Senior Network Designer with an active DOD Secret security clearance... ...(MAN)/Wide Area Network (WAN), Structured Cabling, Project Manager, etc.) in focused, agile-inspired sprint teams Provides...Permanent employmentLocal areaImmediate startRelocationVisa sponsorshipWork visaRelocation packageFlexible hoursShift workDay shift$101.7k - $130.1k
...The Boeing Company is seeking a Mid-Level or Senior Network Designer in Berkeley, Missouri. The role requires an active DOD Secret security clearance and involves collaborating with IT stakeholders to design and implement network systems that meet organizational goals....Relocation package$101.7k - $120k
...Boeing Company Location: St. Louis, MO area Immediate need for a Mid-Level Network Designer focusing on supporting the Boeing Defense,... ...Network (MAN)/Wide Area Network (WAN), Structured Cabling, Project Manager, etc.) in focused, agile-inspired sprint teams. Provide...Work experience placementLocal areaImmediate startShift work$141.1k - $204.7k
...-Platform Support Equipment Engineering team is looking for a manager for the C-17 Support Equipment team. Manages employees performing... ...ensure alignment and collaboration. Boeing First-Line Leader Assessment To be considered for this position you will be required to...Permanent employmentTemporary workInterim roleRelocationVisa sponsorshipWork visaFlexible hoursShift workDay shift$73.5 - $105 per hour
...development methodologies across projects. Manage containerized deployments using Docker... ...clusters. Build and support cloud infrastructure on Google Cloud Platform, ensuring scalability... ...at the city, state and federal level. Pay ranges are influenced by candidate...Hourly payWork at officeLocal area3 days per week$160.65k - $217.35k
...architecture, DevOps, software development, and infrastructure as code. This position will place you... ...skills in at least one high-level language such as Java, Python, Go, or C++... ...the Company's Conflict of Interest (COI) assessment process. Drug Free Workplace: Boeing...Permanent employmentWork experience placementInterim roleRelocationVisa sponsorshipWork visaFlexible hoursShift workDay shift$58.1 - $83 per hour
...Technology Partners is currently seeking a talented Infrastructure Engineer. Do you have 10+ years of experience managing secure and highly available computing platforms?... ...and regulations at the city, state and federal level. Pay ranges are influenced by candidate...- ...have a proven track record of managing large-scale, complex F5 load balancing infrastructures, with the ability to design, implement... ...as F5 Certified Technology Specialist (CTS) or F5 Certified... ...’s Conflict Of Interest (COI) assessment process. Drug Free Workplace:...Permanent employmentFull timeLocal areaRelocationVisa sponsorshipWork visaRelocation packageFlexible hoursShift work
- ...maintain network protocols, systems, and infrastructure to support satellite communications and data transmission Conduct system-level analysis and simulation to validate network... ...systems engineering and requirements management Active DoD Secret clearance Preferred Additional...Local areaImmediate startRemote work
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Mid-level Vulnerability Assessments & Infrastructure Specialist - Vulnerability & Attack Surface Management (VASM). Be the first to apply!
- asset management intern Hazelwood, MO
- management team Hazelwood, MO
- management development program Hazelwood, MO
- test data management Hazelwood, MO
- talent management leader Hazelwood, MO
- head of program management Hazelwood, MO
- care management associate Hazelwood, MO
- quality management nurse Hazelwood, MO
- provider data management Hazelwood, MO
- asset management Hazelwood, MO

