Staff Security Engineer, Vulnerability Management
$188k - $275kCoreWeave
Staff Security Engineer, Vulnerability Management Livingston, NJ / New York, NY / Sunnyvale, CA / Bellevue, WA CoreWeave is The Essential Cloud for AI™. Built for pioneers by pioneers, CoreWeave delivers a platform of technology, tools, and teams that enables innovators to build and scale AI with confidence. Trusted by leading AI labs, startups, and global enterprises, CoreWeave combines superior infrastructure performance with deep technical expertise to accelerate breakthroughs and turn compute into capability. Founded in 2017, CoreWeave became a publicly traded company (Nasdaq: CRWV) in March 2025. Learn more at What You'll Do: We are seeking a Staff Security Engineer to lead the most complex technical work in CoreWeave's Vulnerability Management program. You will design and implement scalable triage, prioritization, and remediation-tracking systems across application, infrastructure, and hardware domains. You will set technical standards, drive high-impact initiatives, and mentor engineers through technical leadership, while partnering with leadership on priorities and execution risks. About the Role: Lead high-complexity VM technical initiatives and deliver architecture decisions for assigned program areas Design and build scalable triage automation, including integrations, decision logic, and production hardening Implement end-to-end workflow components from assessment and detection to ticket routing and remediation tracking Provide deep technical leadership on hardware-adjacent vulnerabilities (GPU firmware, DPU firmware/BlueField, and BMC surfaces) Act as senior technical responder for embargoed disclosures and zero-day events, coordinating with owner teams that deploy fixes Improve prioritization logic, severity models, and exception workflows through code, design reviews, and technical proposals Produce actionable technical metrics and risk insights for leadership consumption Lead root-cause analysis for high-impact vulnerability incidents and implement durable technical improvements Mentor IC3/IC4/IC5 engineers through design guidance, code review, and incident coaching Partner with security, engineering, and operational stakeholders to improve workflow reliability and accelerate remediation outcomes Who You Are: 9+ years of relevant experience with demonstrated strategic impact in vulnerability management, application security, platform security, or cloud security engineering Proven track record building and scaling security automation (SOAR workflows, AI/ML systems, detection pipelines) in production environments Deep subject matter expertise with vulnerability management best practices: CVSS, EPSS, CISA KEV, threat intelligence integration, and risk-based prioritization frameworks Excellent development background with strong coding skills in Python, Go, or similar languages for building scalable, production-grade security systems Significant experience with modern vulnerability management tooling (for example Wiz, Semgrep, Rapid7, Tenable, or equivalent) Experience with specialized infrastructure: GPU/DPU environments, firmware security, hardware vulnerabilities, or high-performance computing Demonstrated track record mentoring engineers across levels and driving cross-functional technical initiatives at organizational scale Strong business acumen and understanding of how security decisions impact engineering velocity, customer trust, and business outcomes Preferred: Practical experience building AI/ML-powered security systems (LLM integration, automated decision-making, human-in-the-loop validation) in production Experience managing hardware vendor security partnerships (embargoed disclosures and pre-release collaboration) Production experience with security automation platforms such as TINES and serverless frameworks (AWS Lambda, GCP Cloud Functions) Strong DevOps, DevSecOps, or SRE background with deep experience in AWS/GCP/Azure cloud services and Infrastructure as Code (Terraform, CloudFormation) Deep understanding of Kubernetes security (container scanning, admission controllers, supply chain security, runtime protection) Experience leading security programs through rapid hypergrowth (10x+ infrastructure scaling) in startup or cloud-native environments Practical experience managing vulnerabilities within a FedRAMP-certified environment or similar regulatory frameworks Why CoreWeave? At CoreWeave, we work hard, have fun, and move fast! We're in an exciting stage of hyper-growth that you will not want to miss out on. We're not afraid of a little chaos, and we're constantly learning. Our team cares deeply about how we build our product and how we work together, which is represented through our core values: Be Curious at Your Core Act Like an Owner Empower Employees Deliver Best-in-Class Client Experiences Achieve More Together We support and encourage an entrepreneurial outlook and independent thinking. We foster an environment that encourages collaboration and enables the development of innovative solutions to complex problems. As we get set for takeoff, the organization's growth opportunities are constantly expanding. You will be surrounded by some of the best talent in the industry, who will want to learn from you, too. Come join us! The base salary range for this role is $188,000 to $275,000. The starting salary will be determined based on job-related knowledge, skills, experience, and market location. We strive for both market alignment and internal equity when determining compensation. In addition to base salary, our total rewards package includes a discretionary bonus, equity awards, and a comprehensive benefits program (all based on eligibility). What We Offer The range we've posted represents the typical compensation range for this role. To determine actual compensation, we review the market rate for each candidate which can include a variety of factors. These include qualifications, experience, interview performance, and location. In addition to a competitive salary, we offer a variety of benefits to support your needs. The benefits below reflect our US-based offerings for full-time employees; for roles in other locations, benefits vary and are shared during the hiring process. These include: Medical, dental, and vision insurance - 100% paid for by CoreWeave Company-paid Life Insurance Voluntary supplemental life insurance Short and long-term disability insurance Flexible Spending Account Health Savings Account Tuition Reimbursement Ability to Participate in Employee Stock Purchase Program (ESPP) Mental Wellness Benefits through Spring Health Family-Forming support provided by Carrot Paid Parental Leave Flexible, full-service childcare support with Kinside 401(k) with a generous employer match Flexible PTO Catered lunch each day in our office and data center locations A casual work environment A work culture focused on innovative disruption California Applicants California Consumer Privacy Act Equal Opportunity & Accommodations CoreWeave is an equal opportunity employer, committed to fostering an inclusive and supportive workplace. All qualified applicants and candidates will receive consideration for employment without regard to race, color, religion, sex, disability, age, sexual orientation, gender identity, national origin, veteran status, or genetic information. As part of this commitment and consistent with the Americans with Disabilities Act (ADA), CoreWeave will ensure that qualified applicants and candidates with disabilities are provided reasonable accommodations for the hiring process, unless such accommodation would cause an undue hardship. If reasonable accommodation is needed, please contact: View email address on click.appcast.io. Export Control Compliance This position requires access to export controlled information. To conform to U.S. Government export regulations applicable to that information, applicant must either be (A) a U.S. person, defined as a (i) U.S. citizen or national, (ii) U.S. lawful permanent resident (green card holder), (iii) refugee under 8 U.S.C. § 1157, or (iv) asylee under 8 U.S.C. § CoreWeave
$230k - $290k
...Affirm’s systems and data from evolving threats. We manage security risk, monitor vulnerabilities, and enforce protective controls across the company.... ...across Security, Legal, Privacy, Compliance, IT, and Engineering to make it scalable and repeatable. What you’ll do You...SuggestedWork at officeRemote workFlexible hours- Driving the technical direction for application security and vulnerability management programs, the full-time Staff Application Security Engineer will work remotely within the US (excluding specific metro areas) to lead strategy, improve processes, and mentor engineers...SuggestedFull timeRemote work
$85k - $100k
...: Paramount is hiring a Vulnerability Analyst to join its Vulnerability Management Team. The position is responsible for supporting the Information Security organization's efforts to manage vulnerabilities in all global Paramount systems, including those supporting streaming...SuggestedFull timeInternshipWorldwide- ...We are seeking an experienced Mobile Security Vulnerability Management Engineer to lead Proof of Technology (PoT) evaluations, implement enterprise mobile vulnerability management solutions, and manage security compliance across iOS, iPadOS, and Android devices. The ideal...SuggestedTemporary work
$70.18k - $170.04k
...remote role based in the US. About The Job You're Considering We are looking for a Security Engineer with hands-on experience in Proofpoint Email Security, Vulnerability Management, and Incident Response skills. The candidate will support day-to-day security...SuggestedPermanent employmentFull timeLocal areaRemote work$192k - $240k
Senior Security Engineer, Vulnerability ManagementHere at Datadog, we think about vulnerability management a little differently. We embrace open source software, recognize our role in the software supply chain, and see attackers weaponizing vulnerabilities faster than ever...Work at office$145k - $207k
...arrangements to help our people manage their personal and professional... ...contributor on the Application Security team, the Staff Application Security Engineer will help to define and drive Reltio... ...automated security testing and vulnerability detection at scale....Flexible hoursShift work$224k - $300k
...world value. THE WORK: As a Senior Staff Security Engineer focused on AI Security, you will be... ...poisoning, excessive agency, and MCP server vulnerabilities. Experience securing agentic AI... ...to our culture, and we give managers and teams the flexibility to decide...Full timeWork at officeLocal area$170k - $205k
Staff Security Engineer Snyk is the leader in secure AI software development, helping millions of... ...it easy to find, fix, and prevent vulnerabilities — from code and dependencies to containers... ..., network and VPC design, key management and encryption, and logging architecture...Work at officeRemote workWork from homeFlexible hours- Staff Security Engineer Assured is on a mission to modernize insurance. Claims processing, while often... ...claimants at their most stressed and vulnerable to orchestrating large-scale ML-... ...processes, and improvements to vulnerability management workflows. Develop security standards...Temporary workRemote workWork from homeHome office
- Vulnerability Management Analyst Apex Systems is a world class technology services business that incorporates industry insights and experience... ...management process. You would play a key role in assisting the Security teams in vulnerability management initiatives....Remote work
$161k - $221k
...Secure Every Identity, from AI to Human Identity... ...Okta from threats and vulnerabilities that could disrupt our... .... The Defensive Cyber Engineering organization is responsible... .... The team also manages enterprise security tools... ...roadmap by hiring a Staff Software Engineer in the...Local areaWorldwideFlexible hours- ...Job Description Job Description Senior Cybersecurity Engineer – Vulnerability Management & Incident Response Position Overview Our client... ...incident response operations. This role is ideal for a security professional who enjoys balancing strategic program ownership...Weekend work
$35 - $60 per hour
Vulnerability Management Analyst $35-60/hr Remote Freelance STEM About the Role We're looking for experienced security practitioners to help evaluate and improve AI systems that reason about real-world cybersecurity challenges. Your hands-on knowledge of vulnerability...Ongoing contractFreelanceRemote workFlexible hours- Vulnerability Management Analyst (AI Training) About the Role We're partnering with the world's leading... ...AI systems - and we need experienced security practitioners to make it happen. As a... ..., red teaming, or security engineering Prior experience contributing to AI training...Hourly payOngoing contractContract workFreelanceRemote workFlexible hours
- Vulnerability Management Analyst Remote 12-Month Contract 8-10 years Our client is seeking a Vulnerability Management Analyst to validate and triage... ...Qualys, Tenable, and Nessus Strong background in cloud security and container security Experience with risk assessment and...Contract workRemote work
$35 - $60 per hour
Vulnerability Management Analyst $35-60/hr Remote Freelance CODING About the Role We're looking for experienced security practitioners to help evaluate and improve AI systems that reason about real-world vulnerability management. Your expertise in CVEs, exposure analysis...Ongoing contractFreelanceRemote workFlexible hours$210k - $247k
...Role: We're looking for an experienced Staff Security Engineer to own and scale application security... ...SDLC, threat modeling, code-level vulnerability discovery, fuzzing the core engine, and... ...a PSIRT, operating as a CNA, or managing a bug bounty / coordinated disclosure...- Requirements: • 8-10 years of experience in vulnerability management • Proficiency with Qualys, Tenable, and Nessus • Strong background in cloud security and container security • Experience with risk assessment and vulnerability triage in enterprise technology environments...
- Vulnerability Management Analyst Location: Crownsville, MD (Remote) Duration: 6+ Months Job Description... ...of hands-on experience with Tenable Security Center/ Nessus Scanners i.e.,... ...Computer Science, Information Systems, Engineering or related scientific or technical discipline...Remote workWeekend work
$220k - $330k
...re just getting started. Role Overview As a Staff Software Engineer on the Product Security team at Harvey, you'll play a critical role in... ...track record of identifying and remediating software vulnerabilities, demonstrated through CVEs, bug bounty awards, published...Work experience placement$168.2k - $310.1k
...Opportunity At Adobe, securing the future of creativity... ...depend on. We seek a Staff Product Security Engineer to act as a Security Partner... ...Security Portfolio Manager (TSPM) to track assets, ownership... ...including threat models, vulnerability findings, and customer-...Temporary workLocal areaWorldwide$180k - $247.5k
Secure Every Identity, from AI to Human Identity is the key to unlocking the... ...mission. If you are too, let's talk. The Staff Product Security Engineer Opportunity As a Staff Product... ..., and handling externally reported vulnerabilities. You will engage in code reviews,...Local areaWorldwideFlexible hours- Product Security Engineer This is UpGuard's first dedicated product security hire. You'll... ...environments: performing security reviews, managing vulnerabilities, and running detection and response... ...posture as we grow. This is a Staff-level individual contributor role. What...Work at officeRemote workWork from homeRelocationShift work
$234k - $290k
...About the Role We’re looking for a Staff Product Security Engineer to lead the design and implementation... ...container networking, and secrets management. Drive software supply chain... ...integrity, dependency management, and vulnerability reduction. Build internal frameworks...Local areaRemote work- ...Profound is seeking a Security Engineer to own the security posture across our platform, infrastructure, and corporate environment. You will shape access control, vulnerability management, and incident response from the ground up, partnering with Engineering and Infrastructure...
$192k - $240k
...Senior Security Engineer, Vulnerability Management Here at Datadog, we think about vulnerability management a little differently. We embrace open source software, recognize our role in the software supply chain, and see attackers weaponizing vulnerabilities faster than...Work at office$168k - $240k
...wide range of simple, reliable, and secure crypto products and services to... ...builds the tools to make AI-first engineering secure. The Role: Staff Application Security Engineer As... ...practices and familiarity with common vulnerabilities (e.g. SSRF, race conditions,...Work at officeRemote workFlexible hours- Security Engineer We are hiring a Security Engineer to support a high-impact enterprise initiative focused on secrets management and remediation, with an initial emphasis on exposed secrets found... ...visible role in helping reduce vulnerabilities and improve enterprise secrets...Remote work
$224k - $356.5k
Senior Offensive Security Engineer NVIDIA's Product Security organization is looking for a Senior Offensive Security Engineer to push the... ...penetration testing, red teaming, exploit development, or vulnerability research Deep, hands-on exploitation skill in at least one...
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Staff Security Engineer, Vulnerability Management. Be the first to apply!
- engineering aide New York, NY
- technology administrator New York, NY
- staff security engineer New York, NY
- assistant engineering manager New York, NY
- project engineer assistant project manager New York, NY
- assistant chief engineer New York, NY
- staff data engineer New York, NY
- senior staff systems engineer New York, NY
- senior staff engineer New York, NY
- staff engineer New York, NY


