This position is listed on behalf of a partner company, who manages all applications and next steps. Our partner is looking for a Cybersecurity Engineer I/II (Vulnerability & Patch Management) based in the United States.
Join a cybersecurity team focused on protecting critical infrastructure and strengthening enterprise resilience.
This role offers hands-on exposure to vulnerability scanning, risk assessment, patch coordination, and security operations.
You’ll work alongside experienced cybersecurity engineers who provide mentorship while helping you expand your technical capabilities.
The position spans enterprise systems, cloud environments, applications, servers, endpoints, and network devices.
You’ll contribute to compliance, threat response, automation, and continuous improvements to security processes.
The environment is collaborative, structured, and designed for curious professionals who want to grow.
With meaningful ownership and access to modern security tools, you’ll help reduce cyber risk across a complex technology ecosystem.
Accountabilities
- Run vulnerability scans using platforms such as Nessus, Qualys, or similar tools under the guidance of senior engineers.
- Track, triage, research, and document vulnerabilities across enterprise systems, cloud environments, and applications.
- Research CVEs and support risk prioritization by assessing potential business and technical impact.
- Develop vulnerability reports and metrics for team review and decision-making.
- Coordinate and track patch deployment across servers, endpoints, and network devices.
- Monitor patch compliance dashboards, follow up on outstanding or failed patch cycles, and maintain accurate patch schedules.
- Support testing of patches in non-production environments before broader deployment.
- Collaborate with IT and DevOps teams to maintain patch documentation and ensure effective remediation workflows.
- Maintain runbooks, procedures, and documentation for vulnerability and patch management processes.
- Support security and compliance documentation related to frameworks and requirements such as NIST and SOX.
- Partner with SOC and IT teams to align patching priorities with incident response activities and threat intelligence.
- Participate in security meetings, threat briefings, training, and ongoing cybersecurity education.
- Develop foundational scripting skills in Python, PowerShell, or Bash to automate repetitive security and patch-management activities.
- Gain exposure to SIEM platforms and security dashboards used to monitor patch compliance and security posture.
- At least 2 years of experience in cybersecurity engineering or a related cybersecurity role.
- Basic understanding of vulnerability management concepts, including CVEs, CVSS scoring, vulnerability remediation, and patch cycles.
- Foundational knowledge of Windows and/or Linux operating systems.
- Familiarity with fundamental networking concepts such as IP addresses, ports, firewalls, and network traffic flows.
- Exposure to vulnerability scanning tools such as Nessus, Qualys, OpenVAS, or comparable platforms is preferred.
- Awareness of patch management principles and the importance of timely vulnerability remediation.
- Introductory scripting experience with Python, PowerShell, or Bash; coursework-level experience may be considered.
- Exposure to cloud environments such as AWS, Azure, or GCP is a plus.
- Bachelor’s degree or higher in Computer Science, Cybersecurity, Information Technology, or a related field is preferred.
- Entry-level certifications such as CompTIA Security+, CompTIA IT Fundamentals, or cloud/security fundamentals certifications are valued.
- Exposure to CEH, OSCP study materials, or similar cybersecurity training is a plus.
- Strong attention to detail and the ability to maintain accurate technical documentation.
- Good written and verbal communication skills, with the ability to collaborate effectively across technical teams.
- Proactive, curious, coachable, and comfortable asking questions, taking notes, and following through on assigned work.
- Genuine interest in cybersecurity developments, emerging threats, and continuous technical learning.
- Must be authorized to work in the United States.
- Ability to work remotely from anywhere within the contiguous 48 states.
- Willingness to travel up to 20%, including occasional business travel to Fort Worth, Texas.
- Competitive base salary range of $93,750-$175,000, depending on level, location, skills, experience, and education.
- L3 salary range of $93,750-$125,000 and L4 salary range of $123,750-$175,000.
- Annual bonus eligibility through an incentive compensation program.
- Comprehensive health care options, including medical, dental, vision, telemedicine, mental health, and cancer support.
- Health Savings Account (HSA) options with employer contributions.
- Life and disability insurance provided at no cost.
- Industry-leading 401(k) and Railroad Retirement program.
- Family benefits including parental, pediatric, family-building, adoption, and surrogacy support.
- Dependent care spending account with employer match.
- Generous leave and paid time-off policies.
- Discounts on travel, gym memberships, counseling services, and wellness programs.
- Fully remote work within the contiguous United States.
- Business travel expenses covered for required travel.
- Mentorship and professional development within a structured cybersecurity engineering environment.
- Potential employment authorization support for eligible H-1B transfers, TN nonimmigrant status, and STEM OPT candidates with at least two years of remaining eligibility.

