Security Engineer II, Attack Surface Management
Security Engineer II Pay Range: $50/hour to $55/hour Summary: The Attack Surface Management (ASM) Security Engineer reduces enterprise risk by continuously discovering assets, identifying vulnerabilities, and driving remediation across infrastructure, cloud, applications, AI and connected/medical/IoT devices. The role supports a proactive, risk-based approach to vulnerability and exposure management aligned with healthcare security best practices. Key Responsibilities & Accountabilities:
- Operate continuous asset discovery and vulnerability scanning capabilities.
- Validate, prioritize, and track remediation of vulnerabilities and misconfigurations.
- Support cloud security posture management and configuration hardening.
- Assist with secure development lifecycle (SDL) activities and application risk findings.
- Coordinate medical and IoT device vulnerability remediation and compensating controls.
- Produce metrics, dashboards, and reports to support KPIs and KRIs.
Incident & RACI Expectations:
- Responsible for coordinating the remediation of non-active medical device vulnerabilities.
- Consulted during major incidents to identify root causes and remediation guidance.
Minimum Education:
- Associate's degree - Computer Science or a related field OR the equivalent combination of experience and education that would demonstrate the capability to successfully perform the essential functions of this position.
Minimum Experience:
- 5–7+ years in vulnerability management, security engineering, or cloud/app security.
- Experience with vulnerability scanning tools and remediation workflows.
- Strong understanding of CVSS scoring and risk-based prioritization.
Preferred
- Healthcare environment experience is a plus but not required.
- Security certifications such as Security+, SSCP, or cloud security certifications.
Apply To This Job