{"id":1163033,"url":"https://alion.io/job/geico-staff-security-engineer-vulnerability-management","title":"Staff Security Engineer – Vulnerability Management","company":{"id":2667051,"name":"GEICO","domain":"geico.com","url":"https://alion.io/company/geico-3","size_band":"1001-5000","is_staffing_agency":false,"employer_type":"direct","is_intermediary":false,"listed_via":null,"ats_vendor":"Workday","truth_index":{"grade":"B","score":75,"open_postings":30,"ghost_share":0,"stale_share":1,"repost_share":0,"time_to_fill_p50_days":null,"computed_at":"2026-09-25T05:45:01Z"}},"role":"Security","role_family":"Security","seniority":"staff","employment_type":"full_time","work_mode":"hybrid","remote_scope":null,"remote_scope_basis":null,"remote_working_hours":null,"hiring_geo_confidence":"structured","locations":["Seattle, United States","Palo Alto, United States","Dallas, United States","United States"],"countries":["US"],"hiring_countries":[],"hiring_countries_total":0,"salary":{"min":110000,"max":230000,"currency":"USD","period":"year","gross":null,"usd_annual":230000},"salary_estimate":null,"experience_years_min":8,"visa_sponsorship":false,"relocation_package":false,"has_equity":false,"technologies":[{"name":"Java","optional":false},{"name":"Python","optional":false},{"name":"SQL","optional":false},{"name":"CI/CD","optional":true},{"name":"SIEM","optional":true},{"name":"Threat Modeling","optional":true}],"status":"live","first_seen_at":"2026-06-18T00:00:00Z","employer_posted_date":"2026-06-18","last_verified_at":"2026-09-25T22:24:18Z","board_verified":true,"closed_at":null,"days_open":100,"trust":{"level":"stale","repost_count":0,"flags":["stale"],"days_open":99},"description":"Why Join GEICO?\nAt GEICO, we offer a rewarding career where your ambitions are met with endless possibilities.\nEvery day we honor our iconic brand by offering quality coverage to millions of customers and being there when they need us most. We thrive on relentless innovation to exceed our customers' expectations while making a real impact on local communities nationwide.\nFounded in 1936, GEICO is a member of the Berkshire Hathaway family of companies and one of the largest auto insurers in the United States. When you join our company, we want you to feel valued, supported, and proud to work here. That's why we offer the GEICO Pledge: Great Company, Great Culture, Great Rewards, and Great Careers.\nGEICO is seeking a highly experienced Staff Security Engineer to lead the strategy, architecture, and execution of Vulnerability Management across a complex, hybrid technology ecosystem. This role combines deep hands-on engineering expertise with strong ownership, operational rigor, and the ability to influence outcomes across teams.\nThis role reports directly to the hiring manager and is accountable for delivering measurable improvements in security posture, operational excellence, and engineering maturity.\nThe position operates as a hands-on advisor to the leadership while remaining deeply embedded in day-to-day execution. This is not a purely strategic role-the individual is expected to actively contribute to team deliverables, participate in on-call rotations, and take ownership of operational outcomes alongside peers.\nSuccess in this role requires independent leadership, strong judgment, and the ability to consistently drive high-quality outcomes while influencing teams across infrastructure, product, and engineering.\nKey Responsibilities\nOwnership & Accountability\nOwn outcomes end-to-end with a strong sense of accountability; does not defer responsibility for gaps or failures.\n\nDrive work to closure with clear ownership of results, timelines, and quality.\n\nProactively identify and address risks, gaps, and inefficiencies without waiting for direction.\n\nMaintain high standards of execution and hold self and others accountable to those standards.\n\nOperational Excellence, Monitoring & Engineering Excellence\nEstablish and enforce strong operational discipline across services, including monitoring, alerting, and reliability.\n\nEnsure systems are observable, measurable, and consistently meet defined SLAs/SLOs.\n\nDrive improvements in availability, performance, and scalability through data-driven decisions.\n\nReduce operational toil by simplifying systems, improving automation, and standardizing processes.\n\nBuild and maintain durable pipelines and integrations across asset inventory, scanning, ticketing, and engineering workflows.\n\nLeverage advanced SQL and data mining techniques to analyze vulnerability, asset, and operational data; generate insights that drive prioritization, risk reduction, and system improvements.\n\nSecurity Mindset with Offensive Perspective\nApply a security-first engineering mindset from design through production and ongoing operations.\n\nDrive vulnerability research by analyzing systems, dependencies, and emerging threats to uncover exploitable weaknesses.\n\nOperate with an offensive security mindset, proactively identifying and validating real attack paths and risks.\n\nLead and evolve attack surface and exposure management, maintaining continuous visibility into internal and external exposure across assets, services, and environments.\n\nIdentify, prioritize, and reduce exposure through improvements in architecture, configuration, and implementation.\n\nChallenge assumptions and existing designs where risks are not adequately addressed, acting as a constructive disruptor.\n\nIntegrate pragmatic, high-impact security improvements into engineering workflows without blocking delivery.\n\nCuriosity & Continuous Learning\nDemonstrate a strong “learn and be curious” mindset to deeply understand systems, dependencies, and behaviors.\n\nActively uncover service potential, hidden risks, scaling limits, and architectural gaps.\n\nStay current with evolving technologies, threats, and engineering practices, applying insights to improve systems.\n\nRelentless Execution\nMaintain urgency and consistently push for better outcomes, even under constraints.\n\nFollow through commitments with discipline and focus.\n\nRemove blockers, drive momentum, and ensure sustained progress across initiatives.\n\nContinuously raise the bar on quality, reliability, and security outcomes.\n\nTeam Contribution & Leadership\nOperate as a team player contributing daily alongside peers, including participation in on-call rotations.\n\nProvide advisory support to leadership while remaining grounded in execution and delivery.\n\nInfluence without authority by setting a high bar for ownership, engineering rigor, and operational discipline.\n\nMentor and elevate engineers through guidance, design reviews, and hands-on collaboration.\n\nVulnerability Management Execution\nLead the full vulnerability lifecycle: discovery, validation, contextual risk analysis, prioritization, and remediation.\n\nLeverage threat intelligence and system context to distinguish true risk from noise.\n\nDrive automation across scanning, triage, remediation tracking, and reporting.\n\nGenerate actionable insights that enable teams to reduce risk efficiently and measurably.\n\nCross-Functional Partnership\nCollaborate with infrastructure, cloud, DevOps, and product engineering teams to integrate security into delivery workflows.\n\nPartner with risk, governance, and incident response functions to ensure alignment on priorities and outcomes.\n\nCommunicate clearly with technical and non-technical stakeholders on risk, trade-offs, and remediation strategies.\n\nRequired Qualifications\n8+ years of experience in cybersecurity or security engineering roles.\n\nDeep expertise in vulnerability management, security engineering, and modern infrastructure (cloud, containers, distributed systems).\n\nStrong programming/scripting skills (Python, Go, Java, or similar) with experience building automation at scale.\n\nStrong data mining and analytical capabilities with exceptional SQL skills; ability to query, transform, and analyze large security datasets to derive actionable insights and drive decision-making.\n\nProven ability to operate with high ownership and deliver results independently.\n\nStrong understanding of systems, networking, identity, and security architecture.\n\nAbility to influence engineering teams and senior stakeholders with clear, outcome-oriented communication.\n\nPreferred Qualifications\nExperience with vulnerability research, offensive security techniques, or threat modeling.\n\nFamiliarity with attack surface management and exposure analysis at scale.\n\nExperience integrating security into CI/CD and DevSecOps practices.\n\nWorking knowledge and applied experience with regulatory and control frameworks, including PCI and NYDFS, is a strong plus.\n\nExperience with SIEM, SOAR, and large-scale security data pipelines.\n\nRelevant security certifications (CISSP, OSCP, cloud security certifications) are a plus.\n\nEducation\nMaster’s degree in computer science, Cybersecurity, or equivalent practical experience.\n\nAnnual Salary\n$110,000.00 - $230,000.00The above annual salary range is a general guideline. Multiple factors are taken into consideration to arrive at the final hourly rate/ annual salary to be offered to the selected candidate. Factors include, but are not limited to, the scope and responsibilities of the role, the selected candidate’s work experience, education and training, the work location as well as market and business considerations.\nGEICO will consider sponsoring a new qualified applicant for employment authorization for this position.The GEICO Pledge:\nGreat Company: Protecting customers through life’s twists and turns with innovation and integrity.\nGreat Careers: Personalized development programs, mentorship, and certification assistance.\nGreat Culture: Inclusive and collaborative culture rooted in shared success.\nGreat Rewards: Competitive pay, benefits, and flexibility to support your well-being and future.\nThe equal employment opportunity policy of the GEICO Companies provides for a fair and equal employment opportunity for all associates and job applicants regardless of race, color, religious creed, national origin, ancestry, age, gender, pregnancy, sexual orientation, gender identity, marital status, familial status, disability or genetic information, in compliance with applicable federal, state and local law. GEICO hires and promotes individuals solely on the basis of their qualifications for the job to be filled.\nGEICO reasonably accommodates qualified individuals with disabilities to enable them to receive equal employment opportunity and/or perform the essential functions of the job, unless the accommodation would impose an undue hardship to the Company. This applies to all applicants and associates. GEICO also provides a work environment in which each associate is able to be productive and work to the best of their ability. We do not condone or tolerate an atmosphere of intimidation or harassment. We expect and require the cooperation of all associates in maintaining an atmosphere free from discrimination and harassment with mutual respect by and for all associates and applicants.","description_format":"text","description_chars":9362,"description_truncated":false,"requirements":{"experience_years_min":8,"management_years_min":null,"team_size_min":null,"manages_managers":false,"education":{"level":"master","optional":false},"security_clearance":false,"languages":[]},"benefits":["Continuous learning"],"hiring_locations":[{"name":"United States","iso":"US","kind":"country"}],"hiring_excludes":[],"relocation_offered":false,"industries":["Endpoint Security","Information Security","Vulnerability Management","Property & Casualty Insurance"],"lifecycle":[{"event":"open","at":"2026-09-24T00:49:50Z"}],"liveness":{"score":10,"band":"cold","label":"Long shot","p_open":1,"p_active":0.368,"p_room":0.28,"age_days":99,"expected_fill_days":40,"reasons":["conf:0","stale_co","velocity","win:tail","crowd:brand"],"computed_at":"2026-09-25T05:45:01Z"},"pay":{"stated_usd_annual":230000,"is_top_pay":true},"html_url":"https://alion.io/job/geico-staff-security-engineer-vulnerability-management","json_url":"https://alion.io/job/geico-staff-security-engineer-vulnerability-management.json","meta":{"generated_at":"2026-09-26T00:54:44Z","cache_seconds":300,"methodology":"https://alion.io/methodology","terms":"https://alion.io/terms","contact":"https://alion.io/contact","api":"https://alion.io/developers","usage":{"tier":"crawler","counted_by":"address","units_charged":1,"used_today":855,"day_limit":5000,"remaining_today":4145,"minute_limit":60,"resets_at":"2026-09-27T00:00:00Z"}}}