Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Staff Security Engineer, Vulnerability Management

$188k - $275k

CoreWeave

Staff Security Engineer, Vulnerability Management Livingston, NJ / New York, NY / Sunnyvale, CA / Bellevue, WA CoreWeave is The Essential Cloud for AI™. Built for pioneers by pioneers, CoreWeave delivers a platform of technology, tools, and teams that enables innovators to build and scale AI with confidence. Trusted by leading AI labs, startups, and global enterprises, CoreWeave combines superior infrastructure performance with deep technical expertise to accelerate breakthroughs and turn compute into capability. Founded in 2017, CoreWeave became a publicly traded company (Nasdaq: CRWV) in March 2025. Learn more at What You'll Do: We are seeking a Staff Security Engineer to lead the most complex technical work in CoreWeave's Vulnerability Management program. You will design and implement scalable triage, prioritization, and remediation-tracking systems across application, infrastructure, and hardware domains. You will set technical standards, drive high-impact initiatives, and mentor engineers through technical leadership, while partnering with leadership on priorities and execution risks. About the Role: Lead high-complexity VM technical initiatives and deliver architecture decisions for assigned program areas Design and build scalable triage automation, including integrations, decision logic, and production hardening Implement end-to-end workflow components from assessment and detection to ticket routing and remediation tracking Provide deep technical leadership on hardware-adjacent vulnerabilities (GPU firmware, DPU firmware/BlueField, and BMC surfaces) Act as senior technical responder for embargoed disclosures and zero-day events, coordinating with owner teams that deploy fixes Improve prioritization logic, severity models, and exception workflows through code, design reviews, and technical proposals Produce actionable technical metrics and risk insights for leadership consumption Lead root-cause analysis for high-impact vulnerability incidents and implement durable technical improvements Mentor IC3/IC4/IC5 engineers through design guidance, code review, and incident coaching Partner with security, engineering, and operational stakeholders to improve workflow reliability and accelerate remediation outcomes Who You Are: 9+ years of relevant experience with demonstrated strategic impact in vulnerability management, application security, platform security, or cloud security engineering Proven track record building and scaling security automation (SOAR workflows, AI/ML systems, detection pipelines) in production environments Deep subject matter expertise with vulnerability management best practices: CVSS, EPSS, CISA KEV, threat intelligence integration, and risk-based prioritization frameworks Excellent development background with strong coding skills in Python, Go, or similar languages for building scalable, production-grade security systems Significant experience with modern vulnerability management tooling (for example Wiz, Semgrep, Rapid7, Tenable, or equivalent) Experience with specialized infrastructure: GPU/DPU environments, firmware security, hardware vulnerabilities, or high-performance computing Demonstrated track record mentoring engineers across levels and driving cross-functional technical initiatives at organizational scale Strong business acumen and understanding of how security decisions impact engineering velocity, customer trust, and business outcomes Preferred: Practical experience building AI/ML-powered security systems (LLM integration, automated decision-making, human-in-the-loop validation) in production Experience managing hardware vendor security partnerships (embargoed disclosures and pre-release collaboration) Production experience with security automation platforms such as TINES and serverless frameworks (AWS Lambda, GCP Cloud Functions) Strong DevOps, DevSecOps, or SRE background with deep experience in AWS/GCP/Azure cloud services and Infrastructure as Code (Terraform, CloudFormation) Deep understanding of Kubernetes security (container scanning, admission controllers, supply chain security, runtime protection) Experience leading security programs through rapid hypergrowth (10x+ infrastructure scaling) in startup or cloud-native environments Practical experience managing vulnerabilities within a FedRAMP-certified environment or similar regulatory frameworks Why CoreWeave? At CoreWeave, we work hard, have fun, and move fast! We're in an exciting stage of hyper-growth that you will not want to miss out on. We're not afraid of a little chaos, and we're constantly learning. Our team cares deeply about how we build our product and how we work together, which is represented through our core values: Be Curious at Your Core Act Like an Owner Empower Employees Deliver Best-in-Class Client Experiences Achieve More Together We support and encourage an entrepreneurial outlook and independent thinking. We foster an environment that encourages collaboration and enables the development of innovative solutions to complex problems. As we get set for takeoff, the organization's growth opportunities are constantly expanding. You will be surrounded by some of the best talent in the industry, who will want to learn from you, too. Come join us! The base salary range for this role is $188,000 to $275,000. The starting salary will be determined based on job-related knowledge, skills, experience, and market location. We strive for both market alignment and internal equity when determining compensation. In addition to base salary, our total rewards package includes a discretionary bonus, equity awards, and a comprehensive benefits program (all based on eligibility). What We Offer The range we've posted represents the typical compensation range for this role. To determine actual compensation, we review the market rate for each candidate which can include a variety of factors. These include qualifications, experience, interview performance, and location. In addition to a competitive salary, we offer a variety of benefits to support your needs. The benefits below reflect our US-based offerings for full-time employees; for roles in other locations, benefits vary and are shared during the hiring process. These include: Medical, dental, and vision insurance - 100% paid for by CoreWeave Company-paid Life Insurance Voluntary supplemental life insurance Short and long-term disability insurance Flexible Spending Account Health Savings Account Tuition Reimbursement Ability to Participate in Employee Stock Purchase Program (ESPP) Mental Wellness Benefits through Spring Health Family-Forming support provided by Carrot Paid Parental Leave Flexible, full-service childcare support with Kinside 401(k) with a generous employer match Flexible PTO Catered lunch each day in our office and data center locations A casual work environment A work culture focused on innovative disruption California Applicants California Consumer Privacy Act Equal Opportunity & Accommodations CoreWeave is an equal opportunity employer, committed to fostering an inclusive and supportive workplace. All qualified applicants and candidates will receive consideration for employment without regard to race, color, religion, sex, disability, age, sexual orientation, gender identity, national origin, veteran status, or genetic information. As part of this commitment and consistent with the Americans with Disabilities Act (ADA), CoreWeave will ensure that qualified applicants and candidates with disabilities are provided reasonable accommodations for the hiring process, unless such accommodation would cause an undue hardship. If reasonable accommodation is needed, please contact: View email address on click.appcast.io. Export Control Compliance This position requires access to export controlled information. To conform to U.S. Government export regulations applicable to that information, applicant must either be (A) a U.S. person, defined as a (i) U.S. citizen or national, (ii) U.S. lawful permanent resident (green card holder), (iii) refugee under 8 U.S.C. § 1157, or (iv) asylee under 8 U.S.C. § CoreWeave

Vacancy posted 3 days ago
Similar jobs that could be interesting for youBased on the Staff Security Engineer, Vulnerability Management in New York, NY vacancy
  • $230k - $290k

     ...Affirm’s systems and data from evolving threats. We manage security risk, monitor vulnerabilities, and enforce protective controls across the company....  ...across Security, Legal, Privacy, Compliance, IT, and Engineering to make it scalable and repeatable. What you’ll do You... 
    Suggested
    Work at office
    Remote work
    Flexible hours

    Affirm

    New York, NY
    1 day ago
  • Driving the technical direction for application security and vulnerability management programs, the full-time Staff Application Security Engineer will work remotely within the US (excluding specific metro areas) to lead strategy, improve processes, and mentor engineers... 
    Suggested
    Full time
    Remote work

    Virtual Vocations Inc

    New York, NY
    2 days ago
  • $85k - $100k

     ...: Paramount is hiring a Vulnerability Analyst to join its Vulnerability Management Team. The position is responsible for supporting the Information Security organization's efforts to manage vulnerabilities in all global Paramount systems, including those supporting streaming... 
    Suggested
    Full time
    Internship
    Worldwide

    Paramount

    New York, NY
    10 days ago
  •  ...We are seeking an experienced Mobile Security Vulnerability Management Engineer to lead Proof of Technology (PoT) evaluations, implement enterprise mobile vulnerability management solutions, and manage security compliance across iOS, iPadOS, and Android devices. The ideal... 
    Suggested
    Temporary work

    Techvilla Solutions

    New York, NY
    a month ago
  • $70.18k - $170.04k

     ...remote role based in the US. About The Job You're Considering We are looking for a Security Engineer with hands-on experience in Proofpoint Email Security, Vulnerability Management, and Incident Response skills. The candidate will support day-to-day security... 
    Suggested
    Permanent employment
    Full time
    Local area
    Remote work

    Capgemini

    New York, NY
    13 days ago
  • $192k - $240k

    Senior Security Engineer, Vulnerability ManagementHere at Datadog, we think about vulnerability management a little differently. We embrace open source software, recognize our role in the software supply chain, and see attackers weaponizing vulnerabilities faster than ever... 
    Work at office

    Datadog

    New York, NY
    10 hours ago
  • $145k - $207k

     ...arrangements to help our people manage their personal and professional...  ...contributor on the Application Security team, the Staff Application Security Engineer will help to define and drive Reltio...  ...automated security testing and vulnerability detection at scale.... 
    Flexible hours
    Shift work

    Reltio

    New York, NY
    2 days ago
  • $224k - $300k

     ...world value. THE WORK: As a Senior Staff Security Engineer focused on AI Security, you will be...  ...poisoning, excessive agency, and MCP server vulnerabilities. Experience securing agentic AI...  ...to our culture, and we give managers and teams the flexibility to decide... 
    Full time
    Work at office
    Local area

    Ripple

    New York, NY
    3 days ago
  • $170k - $205k

    Staff Security Engineer Snyk is the leader in secure AI software development, helping millions of...  ...it easy to find, fix, and prevent vulnerabilities — from code and dependencies to containers...  ..., network and VPC design, key management and encryption, and logging architecture... 
    Work at office
    Remote work
    Work from home
    Flexible hours

    Venturefizz Product Management Community

    New York, NY
    3 days ago
  • Staff Security Engineer Assured is on a mission to modernize insurance. Claims processing, while often...  ...claimants at their most stressed and vulnerable to orchestrating large-scale ML-...  ...processes, and improvements to vulnerability management workflows. Develop security standards... 
    Temporary work
    Remote work
    Work from home
    Home office

    ASSURED

    New York, NY
    2 days ago
  • Vulnerability Management Analyst Apex Systems is a world class technology services business that incorporates industry insights and experience...  ...management process. You would play a key role in assisting the Security teams in vulnerability management initiatives.... 
    Remote work

    Software Technology Inc

    New York, NY
    3 days ago
  • $161k - $221k

     ...Secure Every Identity, from AI to Human Identity...  ...Okta from threats and vulnerabilities that could disrupt our...  .... The Defensive Cyber Engineering organization is responsible...  .... The team also manages enterprise security tools...  ...roadmap by hiring a Staff Software Engineer in the... 
    Local area
    Worldwide
    Flexible hours

    Okta

    New York, NY
    7 days ago
  •  ...Job Description Job Description Senior Cybersecurity Engineer – Vulnerability Management & Incident Response Position Overview Our client...  ...incident response operations. This role is ideal for a security professional who enjoys balancing strategic program ownership... 
    Weekend work

    RennerBrown Staffing

    New York, NY
    27 days ago
  • $35 - $60 per hour

    Vulnerability Management Analyst $35-60/hr Remote Freelance STEM About the Role We're looking for experienced security practitioners to help evaluate and improve AI systems that reason about real-world cybersecurity challenges. Your hands-on knowledge of vulnerability... 
    Ongoing contract
    Freelance
    Remote work
    Flexible hours

    Alignerr

    New York, NY
    3 days ago
  • Vulnerability Management Analyst (AI Training) About the Role We're partnering with the world's leading...  ...AI systems - and we need experienced security practitioners to make it happen. As a...  ..., red teaming, or security engineering Prior experience contributing to AI training... 
    Hourly pay
    Ongoing contract
    Contract work
    Freelance
    Remote work
    Flexible hours

    Alignerr

    New York, NY
    3 days ago
  • Vulnerability Management Analyst Remote 12-Month Contract 8-10 years Our client is seeking a Vulnerability Management Analyst to validate and triage...  ...Qualys, Tenable, and Nessus Strong background in cloud security and container security Experience with risk assessment and... 
    Contract work
    Remote work

    RIT Solutions

    New York, NY
    3 days ago
  • $35 - $60 per hour

    Vulnerability Management Analyst $35-60/hr Remote Freelance CODING About the Role We're looking for experienced security practitioners to help evaluate and improve AI systems that reason about real-world vulnerability management. Your expertise in CVEs, exposure analysis... 
    Ongoing contract
    Freelance
    Remote work
    Flexible hours

    Alignerr

    New York, NY
    3 days ago
  • $210k - $247k

     ...Role: We're looking for an experienced Staff Security Engineer to own and scale application security...  ...SDLC, threat modeling, code-level vulnerability discovery, fuzzing the core engine, and...  ...a PSIRT, operating as a CNA, or managing a bug bounty / coordinated disclosure... 

    Redpanda Data

    New York, NY
    2 days ago
  • Requirements: • 8-10 years of experience in vulnerability management • Proficiency with Qualys, Tenable, and Nessus • Strong background in cloud security and container security • Experience with risk assessment and vulnerability triage in enterprise technology environments... 

    Saxon Global

    New York, NY
    3 days ago
  • Vulnerability Management Analyst Location: Crownsville, MD (Remote) Duration: 6+ Months Job Description...  ...of hands-on experience with Tenable Security Center/ Nessus Scanners i.e.,...  ...Computer Science, Information Systems, Engineering or related scientific or technical discipline... 
    Remote work
    Weekend work

    Anveta

    New York, NY
    3 days ago
  • $220k - $330k

     ...re just getting started. Role Overview As a Staff Software Engineer on the Product Security team at Harvey, you'll play a critical role in...  ...track record of identifying and remediating software vulnerabilities, demonstrated through CVEs, bug bounty awards, published... 
    Work experience placement

    Harvey

    New York, NY
    18 hours ago
  • $168.2k - $310.1k

     ...Opportunity At Adobe, securing the future of creativity...  ...depend on. We seek a Staff Product Security Engineer to act as a Security Partner...  ...Security Portfolio Manager (TSPM) to track assets, ownership...  ...including threat models, vulnerability findings, and customer-... 
    Temporary work
    Local area
    Worldwide

    Adobe

    New York, NY
    1 day ago
  • $180k - $247.5k

    Secure Every Identity, from AI to Human Identity is the key to unlocking the...  ...mission. If you are too, let's talk. The Staff Product Security Engineer Opportunity As a Staff Product...  ..., and handling externally reported vulnerabilities. You will engage in code reviews,... 
    Local area
    Worldwide
    Flexible hours

    Okta, Inc.

    New York, NY
    3 days ago
  • Product Security Engineer This is UpGuard's first dedicated product security hire. You'll...  ...environments: performing security reviews, managing vulnerabilities, and running detection and response...  ...posture as we grow. This is a Staff-level individual contributor role. What... 
    Work at office
    Remote work
    Work from home
    Relocation
    Shift work

    UpGuard

    New York, NY
    2 days ago
  • $234k - $290k

     ...About the Role We’re looking for a Staff Product Security Engineer to lead the design and implementation...  ...container networking, and secrets management. Drive software supply chain...  ...integrity, dependency management, and vulnerability reduction. Build internal frameworks... 
    Local area
    Remote work

    AlphaSense, Inc.

    New York, NY
    2 days ago
  •  ...Profound is seeking a Security Engineer to own the security posture across our platform, infrastructure, and corporate environment. You will shape access control, vulnerability management, and incident response from the ground up, partnering with Engineering and Infrastructure... 

    Slope

    New York, NY
    2 days ago
  • $192k - $240k

     ...Senior Security Engineer, Vulnerability Management Here at Datadog, we think about vulnerability management a little differently. We embrace open source software, recognize our role in the software supply chain, and see attackers weaponizing vulnerabilities faster than... 
    Work at office

    Triwill Group

    New York, NY
    1 day ago
  • $168k - $240k

     ...wide range of simple, reliable, and secure crypto products and services to...  ...builds the tools to make AI-first engineering secure. The Role: Staff Application Security Engineer As...  ...practices and familiarity with common vulnerabilities (e.g. SSRF, race conditions,... 
    Work at office
    Remote work
    Flexible hours

    Gemini Personnel Pte Ltd

    New York, NY
    1 day ago
  • Security Engineer We are hiring a Security Engineer to support a high-impact enterprise initiative focused on secrets management and remediation, with an initial emphasis on exposed secrets found...  ...visible role in helping reduce vulnerabilities and improve enterprise secrets... 
    Remote work

    CirrusLabs

    New York, NY
    3 days ago
  • $224k - $356.5k

    Senior Offensive Security Engineer NVIDIA's Product Security organization is looking for a Senior Offensive Security Engineer to push the...  ...penetration testing, red teaming, exploit development, or vulnerability research Deep, hands-on exploitation skill in at least one... 

    NVIDIA

    New York, NY
    3 days ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Staff Security Engineer, Vulnerability Management. Be the first to apply!