Alpha Consulting Corp. is seeking a Senior Vulnerability Engineer to support enterprise vulnerability management and compliance auditing in a highly regulated environment. The role involves engineering and optimizing vulnerability management capabilities across cloud and on-premises infrastructures.
Responsibilities:
- Engineer, maintain, and optimize enterprise vulnerability and exposure management platforms using Tenable One, Nessus, and Tenable WAS
- Configure and support authenticated and non-authenticated web application scanning including Selenium-based authentication workflows, session handling, and SSO integrations
- Perform credentialed vulnerability and compliance scanning across Linux, Windows, databases, cloud infrastructure, web applications, and network appliances
- Support continuous attack surface visibility, asset discovery, exposure prioritization, and scalable scan operations across hybrid cloud and multi-tenant enterprise environments
- Troubleshoot complex operational issues involving TLS/SSL negotiation, authentication failures, load balancers, reverse proxies, cloud networking, firewall segmentation, and distributed scanning infrastructure
- Deploy and maintain compliance audit configurations aligned to IRS Safeguards / SCSEM, CIS Benchmarks, National Institute of Standards and Technology SP 800-53, NIST SP 800-115, NIST SP 800-137, DISA STIG, and FedRAMP requirements
- Integrate Tenable platforms with enterprise technologies including CyberArk, Splunk, ServiceNow, and AWS APIs
- Support remediation validation, compliance reporting, audit readiness activities, and operational dashboard development
- Troubleshoot asset correlation and inventory issues involving cloud, virtualized, cloned, and ephemeral infrastructure environments
Requirements:
- Bachelor's degree in Cybersecurity, Information Technology, Computer Science, Engineering, or related field; equivalent experience may be considered
- 10+ years of experience supporting enterprise vulnerability management, exposure management, cybersecurity engineering, or security operations programs
- Hands-on experience with Tenable One, Nessus, Tenable WAS, AWS cloud environments, and enterprise vulnerability management platforms
- Experience supporting authenticated and non-authenticated web application scanning in enterprise environments
- Strong understanding of vulnerability management, exposure management, attack surface visibility, compliance auditing, and cloud-native security concepts
- Familiarity with IRS Safeguards / SCSEM, CIS Benchmarks, National Institute of Standards and Technology guidance, DISA STIG, and FedRAMP compliance frameworks
- Experience supporting enterprise integrations, automation workflows, and operational reporting capabilities
- Strong troubleshooting, analytical, and problem-solving skills across infrastructure, cloud, and application environments
- Project management, workflow, innovation and process improvement, client delivery, solutioning, and consulting skills