2

Remote Qualys Vulnerability Management Jobs in Utah

Cybersecurity Engineer (Remote)

Lehi, UT · On-site +1

  • Retirement

  • PTO

Vulnerability & Application Security Management: Own the vulnerability management program end-to-end: oversee continuous vulnerability scanning (Tenable) and software composition analysis/code ...

Cyber Operations Engineer III

Sandy, UT · On-site +1

$91K - $120K/yr

  • Medical

  • Dental

  • Vision

  • Life

  • Retirement

  • PTO

Experience with threat intelligence frameworks, vulnerability management processes, and MITRE ATT ... Remote Work: Enjoy the flexibility of working from home while optimizing your work-life balance.

Application Security Engineer

Salt Lake City, UT · On-site +1

$56.75 - $76/hr

Conduct threat modeling, code reviews, and vulnerability assessments for web, cloud, and OT ... Provide expert input on cryptography and key management for applications, ensuring robust ...

Remote Qualys Vulnerability Management information

What are some common challenges remote Qualys Vulnerability Management professionals face, and how can these be addressed?

One common challenge for remote Qualys Vulnerability Management professionals is ensuring effective communication and collaboration with IT and security teams across different time zones and departments. Addressing this requires establishing clear processes for reporting vulnerabilities, prioritizing remediation, and using collaboration tools to stay aligned. Additionally, managing multiple clients or environments remotely can introduce complexity, so strong organizational skills and proactive scheduling of scans and follow-ups are essential. Regular virtual meetings and detailed documentation also help maintain transparency and accountability within the team.

What is the difference between Remote Qualys Vulnerability Management vs Remote Vulnerability Analyst?

AspectRemote Qualys Vulnerability ManagementRemote Vulnerability Analyst
CertificationsQualys Certified, Security+CompTIA Security+, CISSP (preferred)
Work EnvironmentSecurity teams, IT departments, using vulnerability management toolsSecurity teams, IT departments, analyzing vulnerabilities and reports
Industry UsageCybersecurity, IT, Managed Security Service ProvidersCybersecurity, IT, consulting firms
Primary FocusManaging and scanning vulnerabilities with Qualys platformAnalyzing vulnerabilities, assessing risks, and reporting

Remote Qualys Vulnerability Management roles focus on using Qualys tools to identify and manage security vulnerabilities, while Remote Vulnerability Analysts analyze vulnerability data, assess risks, and prepare reports. Both roles require cybersecurity knowledge but differ in technical focus and responsibilities.

What are the key skills and qualifications needed to thrive as a remote Qualys Vulnerability Management professional?

To excel in Remote Qualys Vulnerability Management, you need a strong background in cybersecurity principles, vulnerability assessment, and typically a degree in computer science or related field. Proficiency with Qualys Vulnerability Management tools, understanding of network security protocols, and often relevant certifications like CompTIA Security+ or CISSP are essential. Analytical thinking, attention to detail, and effective communication are standout soft skills for interpreting scan results and collaborating with distributed teams. These skills ensure accurate identification and remediation of security risks, safeguarding organizational assets in remote environments.

What is a remote Qualys Vulnerability Management?

A Remote Qualys Vulnerability Management job involves using the Qualys platform to identify, assess, and prioritize security vulnerabilities in an organization's IT infrastructure, all while working remotely. Professionals in this role deploy and manage vulnerability scans, analyze scan results, and provide recommendations for remediation to minimize risk. They often collaborate with IT and security teams to ensure vulnerabilities are addressed promptly, helping to maintain the security posture of the organization. The remote aspect means all tasks are performed online, allowing for flexibility in work location.

What are the most commonly searched types of Qualys Vulnerability Management jobs in Utah?

The most popular types of Qualys Vulnerability Management jobs in Utah are:

What are popular job titles related to Remote Qualys Vulnerability Management jobs in Utah?

For Remote Qualys Vulnerability Management jobs in Utah, the most frequently searched job titles are:

What job categories do people searching Remote Qualys Vulnerability Management jobs in Utah look for?

The top searched job categories for Remote Qualys Vulnerability Management jobs in Utah are:

What cities in Utah are hiring for Remote Qualys Vulnerability Management jobs?

Cities in Utah with the most Remote Qualys Vulnerability Management job openings:

Cybersecurity Engineer (Remote)

RainFocus

Lehi, UT • On-site, Remote

Full-time

Retirement, PTO

Posted 29 days ago


Job description

RainFocus, one of the most innovative software companies, is in search of an exceptional Cybersecurity Engineer.
About RainFocus
RainFocus cares about its employees, customers, and the world in which we live. Our rapidly growing team serves Fortune 500 companies like Adobe, Cisco, IBM, Oracle, VMware, and others to prepare and execute in-person, virtual, and hybrid events across the world. Those events are delivered through our industry-disrupting software platform, with groundbreaking business intelligence, to elevate the attendee experience, streamline event operations, and accelerate marketing results. We are well-funded, growing fast, and building a company that is changing the market - it will be challenging, fun, and exciting.
About the Role
As a Security Engineer, you will play a critical role in safeguarding our organization's digital assets, infrastructure, and application ecosystem. This is a mid-level, autonomous role (not entry-level) where you will bridge the gap between IT operations, software development, and risk management.
You won't just be reviewing logs, settings, and configs; you will be actively replicating vulnerabilities, collaborating with developers on secure architecture, managing our bug bounty program, and keeping our security tool stack running smoothly.
Core Responsibilities
  • Vulnerability & Application Security Management: Own the vulnerability management program end-to-end: oversee continuous vulnerability scanning (Tenable) and software composition analysis/code dependencies (Sonarqube), drive remediation across teams, and replicate and validate discovered vulnerabilities using tools like Burp Suite and Kali Linux.
  • Crowdsourced Security & Threat Intel: Manage and triage our crowdsourced bug bounty program (BugCrowd) and monitor our external security posture rating (Bitsight).
  • Secure Development Collaboration: Act as the security voice in developer architecture meetings. Partner with engineering teams to review code dependencies, threat-model new features, and ensure secure coding practices.
  • Risk & Change Management: Own and conduct system impact analyses for proposed changes, represent security on the Change Control Board (CCB), and lead threat modeling sessions for new systems, features, and infrastructure changes.
  • Incident Management & Operations: Triage and document security incidents within OneTrust and Jira. Collaborate with DevOps to ensure security tools are properly deployed across AWS environments and endpoint configurations.
  • Endpoint & Tool Oversight: Maintain a "read-only/audit" oversight of our endpoint detection, MDM, and email security tools (Sophos, JAMF, BetterCloud) to ensure compliance and active alerting.
  • Security Awareness & Culture: Administer the security awareness learning modules (RF Academy) and lead internal initiatives to keep security top-of-mind for all employees.

Required Skills & Qualifications
  • Citizenship: All candidates must be a US citizen.
  • Experience: 3-5 years of dedicated experience in a technical cybersecurity role (e.g., Security Engineer, AppSec Engineer, or Senior Security Analyst, etc.).
  • Application Security: Strong familiarity with the OWASP Top 10, web application security testing, and reviewing secure code dependencies (SCA).
  • Vulnerability Assessment: Proven experience running enterprise vulnerability scanners, interpreting results, and driving remediation across cross-functional teams.
  • Cloud & Infrastructure: Foundational knowledge of cloud environments (specifically AWS) and securing cloud-native applications.
  • Communication: Excellent collaboration skills. You must be able to sit down with software developers, understand their sprint goals, and help them fix security bugs without breaking their workflow.

Preferred Experience & Tool Stack
Direct experience with our specific stack is a massive plus:
  • AppSec/PenTesting: Burp Suite, Kali Linux, BugCrowd, Sonarqube
  • SecOps & Vulnerability: Tenable, Bitsight, OneTrust
  • IT & Endpoint Ecosystem: Jira, AWS, Sophos, JAMF, PDQ, BetterCloud
  • Certifications: CompTIA Security+, CEH, GIAC, or progress toward a CISSP, or other relevant certifications
  • Automation: Basic scripting skills (Python, PowerShell, or Bash) to automate repetitive security tasks or log analysis.
  • Security Frameworks: Experience with maintaining compliance with PCI-DSS, ISO 27001, and SOC 2 frameworks.
  • Artificial Intelligence: Experience utilizing AI to improve productivity and efficiency, as well as experience reviewing AI tools, integrations, and features.

Success Measures
  • Proactive Remediation: Decreased time-to-remediation for vulnerabilities identified by Tenable and BugCrowd.
  • Seamless Dev Integration: Active, constructive participation in developer sprint/architecture cycles, resulting in fewer security defects reaching production.
  • Incident Readiness: Efficient tracking, documentation, and resolution of incidents within OneTrust

Success Measures
  • Reduced number of security incidents and vulnerabilities.
  • Timely and effective incident response and resolution.
  • Successful implementation and adherence to security policies and procedures.
  • Positive feedback from internal teams on security awareness and training programs.
  • Successful completion of security audits and compliance assessments.

Why work at RainFocus?
At RainFocus we delight millions of attendees at large-scale events by delivering better insights, experiences, and marketing. We were able to pivot our product and services offering in 2020 to continue growing and serving new clients and events.
As a member of the RainFocus team, you will have the opportunity to experience first-hand the impact of our platform at events around the world. Additionally, RainFocus offers competitive salaries, competitive benefits, 401k, generous PTO, and countless other team building activities.
What are you waiting for? Apply today! We need more talented, hard-working, fun-loving team members just like yourself!
We may use artificial intelligence (AI) tools to support parts of the hiring process, such as reviewing applications, analyzing resumes, or assessing responses and identifying potential inconsistencies or verification signals in application materials based on available information. These tools assist our recruitment team but do not replace human judgment. Final hiring decisions are ultimately made by humans. If you would like more information about how your data is processed, please contact us.