Nvidia
Senior Cyber Security Engineer - Vulnerability Operation
US, CA, Remote · Remote · Cyber Security · yesterday
We are seeking a Senior Cyber Security Engineer to advance the evolution of our Vulnerability Operations engineering capability, with a strong focus on data-driven security, intelligent automation, and AI-assisted workflows. This is a senior, hands-on engineering role focused on building scalable, data-centric solutions, embedding security into the software development lifecycle (SDLC), and applying AI/ML techniques to enhance vulnerability detection, prioritization, and remediation. Operating at the intersection of security, engineering, data, and AI, you will drive the transformation of vulnerability management into a predictive, intelligence-led subject area, using AI-assisted workflows to enable faster decision-making and proactive risk reduction across a complex enterprise environment.
What You’ll Be Doing:
Design, improve, and operate scalable vulnerability management workflows across ingestion, triage, prioritization, remediation, and reporting.
Engineer integrations across vulnerability scanners, endpoint tools, cloud platforms, asset inventory, ticketing systems, and remediation workflows.
Build automation to reduce manual effort, improve consistency, and accelerate vulnerability response across engineering teams.
Partner with application, infrastructure, cloud, and platform teams to clarify remediation requirements and drive issues to closure.
Support risk-based vulnerability prioritization using asset context, exploitability, threat intelligence, and business impact.
Embed vulnerability management practices into engineering and CI/CD workflows where appropriate.
Track remediation progress, identify blockers, and communicate outstanding risk to technical and leadership audiences.
Contribute to process improvements, standards, and operational playbooks for enterprise vulnerability operations.
What we need to see:
12+ years of experience in vulnerability management, security engineering, AppSec, DevSecOps, PSIRT, or a related technical field.
Bachelor’s degree in computer science, information technology, cybersecurity, or equivalent experience.
Strong understanding of vulnerability management lifecycle, enterprise risk management, CVSS, exploitability, and remediation practices.
Hands-on experience with vulnerability and security tools such as Tenable, Qualys, Tanium, CrowdStrike, or similar platforms.
Experience integrating security tools and workflows using APIs, scripting, automation, or orchestration.
Experience working with cloud environments such as AWS or Azure.
Familiarity with security frameworks and compliance standards such as ISO 27001, NIST, PCI, or SOX.
Strong communication and collaboration skills, with the ability to drive progress across teams without direct authority.
Ability to operate independently, handle ambiguity, and prioritize work in a fast-moving enterprise environment.
Ways To Stand Out From The Crowd:
Experience leading enterprise-wide vulnerability remediation campaigns.
Background in application security, cloud security, secure architecture, or infrastructure security.
Experience integrating vulnerability management into developer workflows or CI/CD pipelines.
Familiarity with threat intelligence and exploit prediction approaches.
Experience using automation or AI-assisted workflows to improve triage, ticket enrichment, remediation guidance, or operational efficiency.
NVIDIA is widely considered to be one of the technology world’s most desirable employers. We have some of the most forward-thinking and hardworking people on the planet working for us. If you're creative and autonomous, we want to hear from you!
Your base salary will be determined based on your location, experience, and the pay of employees in similar positions. The base salary range is 196,000 USD - 310,500 USD.You will also be eligible for equity and benefits.
This posting is for an existing vacancy.
NVIDIA uses AI tools in its recruiting processes.
NVIDIA is committed to fostering an inclusive work environment and proud to be an equal opportunity employer. As we highly value diversity in our current and future employees, we do not discriminate (including in our hiring and promotion practices) on the basis of race, religion, color, national origin, gender, gender expression, sexual orientation, age, marital status, veteran status, disability status or any other characteristic protected by law.