Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Security Engineer II, Attack Surface Management

Apolis

Security Engineer II, Attack Surface Management

The Attack Surface Management (ASM) Security Engineer reduces enterprise risk by continuously discovering assets, identifying vulnerabilities, and driving remediation across infrastructure, cloud, applications, AI and connected/medical/IoT devices. The role supports a proactive, risk-based approach to vulnerability and exposure management aligned with healthcare security best practices.

Minimum Education:

  • Associate's degree - Computer Science or a related field OR the equivalent combination of experience and education that would demonstrate the capability to successfully perform the essential functions of this position.

Minimum Experience:

  • 5–7+ years in vulnerability management, security engineering, or cloud/app security.
  • Experience with vulnerability scanning tools and remediation workflows.
  • Strong understanding of CVSS scoring and risk-based prioritization.

Key Responsibilities & Accountabilities:

  • Operate continuous asset discovery and vulnerability scanning capabilities.
  • Validate, prioritize, and track remediation of vulnerabilities and misconfigurations.
  • Support cloud security posture management and configuration hardening.
  • Assist with secure development lifecycle (SDL) activities and application risk findings.
  • Coordinate medical and IoT device vulnerability remediation and compensating controls.
  • Produce metrics, dashboards, and reports to support KPIs and KRIs.

Incident & RACI Expectations:

  • Responsible for coordinating the remediation of non-active medical device vulnerabilities.
  • Consulted during major incidents to identify root causes and remediation guidance.
Vacancy posted 4 days ago
Similar jobs that could be interesting for youBased on the Security Engineer II, Attack Surface Management in United States vacancy
  •  ...innovation with Colombian heart A company that listens, invests in you, and celebrates wins together The Security Engineer, Vulnerability & Attack Surface Management operates across the full vulnerability lifecycle. You will act as the technical engine of the VM... 
    Suggested
    Work at office
    Remote work
    Flexible hours

    AspenView Technology Partners, Inc.

    Denver, CO
    2 days ago
  •  ...Paragon is recruiting for a Security Engineer II to work on the PEO-T contract for USTRANSCOM....  ...solution recommendations and working with management to improve efficiency in processes and...  ...e.g., enterprise teams in USTRANSCOM, Surface Deployment and Distribution Command [... 
    Suggested
    Contract work
    Work at office

    Paragon Technology Group

    Scott Air Force Base, IL
    1 day ago
  •  ...food service redistribution and freight management to cutting-edge logistics technology,...  ...step of the supply chain. The Engineer II, Security position, reporting to the Security, Manager...  ...including malware detection, phishing attacks, and unauthorized access attempts... 
    Suggested
    Local area
    Flexible hours

    Burris Logistics

    Milford, DE
    18 days ago
  • $159.3k - $202.4k

     ...trust. Members of the Stores Security team are guardians of that trust...  ...Security, the Vulnerability Management and Remediation (VMR)...  ...experienced and innovative Security Engineer to join our team in Austin,...  ...vulnerabilities identification, attack patterns, and remediation... 
    Suggested
    Internship
    Worldwide
    Flexible hours

    Amazon

    Austin, TX
    1 day ago
  • $46.64 - $72.29 per hour

     ...candidate's expertise and years of experience, among other factors. Position Highlights: Position: IT Security Engineer II- Identity Access and Management Location: 4901 Searle Pkwy Skokie Full Time Hours: Monday-Friday, 8am to 430pm... 
    Suggested
    Hourly pay
    Full time
    Part time
    For contractors
    Remote work
    Monday to Friday

    NorthShore University HealthSystem

    Skokie, IL
    20 hours ago
  • $165k - $242k

     ...Senior Security Engineer II, Vulnerability Management Livingston, NJ / New York, NY / Sunnyvale, CA / Bellevue, WA CoreWeave is The Essential Cloud for AI™. Built for pioneers by pioneers, CoreWeave delivers a platform of technology, tools, and teams that enables innovators... 
    Temporary work
    Flexible hours
    Shift work

    CoreWeave

    Sunnyvale, CA
    4 days ago
  • $159.3k - $202.4k

     ...Embark on a Mission to Fortify Amazon's Defenses as a Security Engineer II with the Vulnerability Management & Remediation Operations team! Amazon Security is seeking an experienced and innovative Security Engineer to join our Vulnerability Management and Remediation... 
    Internship
    Flexible hours

    Amazon

    Seattle, WA
    2 days ago
  • $85k - $100k

     ...Security Engineer II AssetMark is a leading strategic provider of innovative investment and consulting solutions serving independent financial...  .... We provide investment, relationship, and practice management solutions that advisors use in helping clients achieve wealth... 
    Flexible hours

    AssetMark

    Charlotte, NC
    1 day ago
  •  ...Network Security Engineer - II America Networks is a leading sensor and networking solutions partner for companies in any Industrial, Manufacturing, and Waste management space. We design and manufacture sensors for storage tanks, water metering, energy metering, gas... 

    America Networks

    Basking Ridge, NJ
    4 days ago
  •  ...Job Title: Security Engineer II Location: Milford, DE Type: Direct Hire Job Summary:...  ...Engineer will work Technology Services to managing escalated security incidents, monitoring...  ...including malware detection, phishing attacks, and unauthorized access attempts.... 
    Permanent employment
    Local area
    Night shift
    Weekend work

    System One Holdings, LLC

    Milford, DE
    20 hours ago
  •  ...Overview As a Senior Security Engineer II for Identity and Access Management (IAM) at Aledade, you will play a central role in enhancing the security posture of our enterprise, cloud-native environments, and applications. We are seeking a dedicated professional with in... 
    Temporary work
    Remote work
    Flexible hours

    Aledade, Inc.

    New York, NY
    20 hours ago
  • $18k

     ...Internal Review Security Engineer II (Contract Contingent) ProSidian is a Management and Operations Consulting Services Firm focusing on providing value to clients through tailored solutions based on industry leading practices. ProSidian services focus on the broad... 
    Contract work
    For contractors
    Work at office
    Immediate start

    ProSidian Consulting

    Arlington, VA
    4 days ago
  •  ...Senior Security Engineer II For Identity And Access Management (Iam) As a Senior Security Engineer II for Identity and Access Management (IAM) at Aledade, you will play a central role in enhancing the security posture of our enterprise, cloud-native environments, and... 
    Temporary work
    Remote work
    Flexible hours

    Aledade, Inc.

    Bethesda, MD
    4 days ago
  • Vulnerability Analyst — External Attack Surface & VDP Validate and reproduce findings from EASM (internet exposed assets, misconfigurations...  ...and ensure single-threaded tracking to closure. Partner with secure business enablement and product teams to negotiate remediation... 

    Vanguard

    Charlotte, NC
    20 hours ago
  • $115.5k - $165k

     ...efficient, resilient, and secure. Our cloud native Zero...  ...of cybersecurity. Our Engineering team built the world’s...  ..., Tenable.sc / Nessus Manager or similar) Building...  ...8570/8140 IAT Level II certification (e.g., Security+...  ...), and external attack surface concepts within... 
    Work at office
    Local area
    Worldwide

    Framework Ventures

    New York, NY
    20 hours ago
  • $165k - $242k

     ...more at What You'll Do: We are seeking a Senior Security Engineer to build the Vulnerability Management program protecting CoreWeave's AI infrastructure....  ...person, defined as a (i) U.S. citizen or national, (ii) U.S. lawful permanent resident (green card holder),... 
    Permanent employment
    Temporary work
    Casual work
    Work at office
    Remote work
    Flexible hours
    Shift work

    CoreWeave

    Sunnyvale, CA
    9 days ago
  • $159.3k - $202.4k

     ...Description Amazon Healthcare Security's (HealthSec) AI team is hiring a Security Engineer II to secure GenAI applications...  ...systems, including prompt injection attacks and model misuse About the...  ..., secure coding, identity management and authentication, software development... 
    Flexible hours

    Amazon

    Seattle, WA
    4 days ago
  •  ...to continuing growth, we are seeking a Security Engineer focused on securing and monitoring a...  ...Azure AD), Microsoft Defender, Intune-managed endpoints, and Microsoft 365 services...  ...Online, SharePoint, Teams) and reduce attack surface Support vulnerability management by... 
    Work at office

    Platform Accounting

    Salt Lake City, UT
    1 day ago
  •  ...Bosch Building Technologies - Systems Engineer II About Robert Bosch GmbH Headquartered...  ...and control technology, power tool, security and building technology, thermo-technology...  ..., implementation and 24/7 remote management. Climatec is active in several market segments... 
    Work at office
    Local area
    Remote work
    Worldwide
    Monday to Friday
    Flexible hours

    Climatec

    Arlington, TX
    17 days ago
  •  ...Breach & Attack Simulation Engineer Are you ready to make an impact at DTCC? Do you want to work...  ...Information Technology group delivers secure, reliable technology solutions that enable...  ..., performing upgrades and patching, managing access controls, and aligning... 
    Remote work
    Flexible hours

    Dtcc

    Tampa, FL
    20 hours ago
  •  ...and Vulnerability II Analyst. We are looking...  ...country. IS Security Services serves as...  ...for the overall management lifecycle of the Threat...  ...and advanced attacker tactics, techniques...  ..., Social Engineering, Physical Assessment...  ...and reducing attack surface.Works closely with... 
    Remote work
    Flexible hours

    BJC HealthCare

    Saint Louis, MO
    1 day ago
  • $85.15k - $136.02k

     ...Network Security Engineer II The SouthState story is one of steady growth, deep community roots...  ...requirements. Operational Management: Configure, support, and maintain...  ...processes and the development of new attacks and threat vectors. Recommend additional... 
    Full time
    Remote work
    Home office

    South State

    United States
    20 hours ago
  • $115k - $130k

     ...Ibotta is seeking a Security Engineer with a deep expertise in Application Security, Vulnerability Management, and Cloud Infrastructure to join our innovative team and contribute...  ...scale with AI generated submissions and attack surface. Analyze Ibotta's application... 
    Full time
    Live in
    Work at office
    Relocation package
    Flexible hours

    Ibotta

    Denver, CO
    4 days ago
  • $100k - $160k

     ...Devsecops Engineer Ii Chewy is seeking a DevSecOps Engineer II to...  ...partners, and our Information Security team plays a critical role...  ...security guidance and risk management through architecture design...  ...and mitigation of web based attacks, and provide when appropriate... 
    Local area
    Remote work
    Flexible hours

    Chewy

    Boston, MA
    3 days ago
  • $159.3k - $202.4k

     ...Research & Monitoring) is looking for a Security Engineer to join our team of offensive security...  ..., with new business areas and attack surfaces constantly emerging across Amazon. We...  ...exercise sound judgment, effectively manage stress and work safely and respectfully... 
    Local area
    Remote work
    Flexible hours

    Amazon

    Seattle, WA
    20 hours ago
  •  ...in proactive exposure management and winner of the SC Award...  ...see, understand, and secure their hybrid digital environments...  ..., and lateral attack paths, prioritizes...  ...as a Network Security Engineering Consultant and directly...  ...03 formerly 8570 level II certification (e.g. CompTIA... 
    Remote work

    RedSeal

    Quantico, VA
    20 hours ago
  • $125k - $152k

     ...Engineer Cyber II The Engineer Cyber II serves as a subject-matter expert who supports the...  ..., strategic plans, and formal program management documentation to guide capability development...  ...consultation to Information System Security Officers (ISSO's) to ensure that... 
    Temporary work
    Work experience placement
    Interim role
    Immediate start
    Flexible hours
    Shift work

    Integral Federal

    Aberdeen Proving Ground, MD
    9 days ago
  •  ...Security Identity & Access Management Engineer Bring your IT career and talents to CDW, where you can have a greater impact, be inspired by our mission and excited about your career and future. A Fortune 200 leader, we're the driven professionals and technology experts... 
    Remote work

    CDW

    United States
    4 days ago
  • $100k - $130k

     ...Network Security Engineer II Location – Onsite, Irvine, CA Grade: 8 Company Overview...  ...technologies. Participate in change management activities, including risk assessment,...  ...common network and application-layer attack techniques. Experience supporting production... 
    Work at office

    Hyundai AutoEver America

    Irvine, CA
    2 days ago
  • $131k - $169k

     ...global leader in AI-powered practice management software for accounting firms. We provide...  ...Small Workplaces™ List. Senior Security Engineer Our Engineering Standards at...  ...good account hygiene, least privilege, attack surface reduction and MFA. Identify and assess... 
    Work at office
    Work from home
    Flexible hours
    Day shift

    Karbon

    Austin, TX
    3 days ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Security Engineer II, Attack Surface Management. Be the first to apply!