1

Senior Risk Engineer Jobs in Santa Clara, CA (NOW HIRING)

You will report to the Senior Security Operations Manager and work closely with Cloud Platform ... Drive risk-based remediation across cloud, container, and endpoint environments. You will shift the ...

Were a team of engineers, clinicians, and innovators united by one purpose: to make surgery smarter ... Provide vision for technical project team and foster environment that encourages creativity, risk ...

Were a team of engineers, clinicians, and innovators united by one purpose: to make surgery smarter ... Provide vision for technical project team and foster environment that encourages creativity, risk ...

Sr. Manager GRC

San Jose, CA ยท On-site

  • Medical

  • Dental

  • Vision

  • Retirement

We are looking for a Senior Manager, GRC, to join our team in one of today's most exciting ... Collaborate with IT, legal, enterprise risk management, engineering, and business leaders; act as a ...

Sr. Manager GRC

San Jose, CA ยท On-site

  • Medical

  • Dental

  • Vision

  • Retirement

We are looking for a Senior Manager, GRC, to join our team in one of today's most exciting ... Collaborate with IT, legal, enterprise risk management, engineering, and business leaders; act as a ...

Showing results 21-40

Senior Risk Engineer information

See Santa Clara, CA salary details

$70.3K

$149.5K

$216.7K

How much do senior risk engineer jobs pay per year?

As of Aug 12, 2026, the average yearly pay for senior risk engineer in Santa Clara, CA is $149,461.00, according to ZipRecruiter salary data. Most workers in this role earn between $123,400.00 and $169,500.00 per year, depending on experience, location, and employer.

What does a senior risk engineer do?

A Senior Risk Engineer is responsible for identifying, assessing, and mitigating risks in engineering projects or operations, often within sectors like insurance, energy, or manufacturing. They analyze potential hazards, develop risk management strategies, and ensure compliance with regulations and industry standards. These professionals also provide recommendations to improve safety, reduce losses, and support business decision-making. Senior Risk Engineers often mentor junior staff and work closely with project managers, safety teams, and other stakeholders.

What are the key skills and qualifications needed to thrive as a senior risk engineer, and why are they important?

To thrive as a Senior Risk Engineer, you need deep expertise in risk assessment, engineering principles, and regulatory compliance, typically supported by a degree in engineering or a related field and several years of industry experience. Familiarity with risk analysis tools (such as HAZOP, FMEA), industry standards, and certifications like Professional Engineer (PE) or Certified Safety Professional (CSP) are often required. Strong analytical thinking, communication, and leadership skills help you effectively identify risks and guide teams in implementing mitigation strategies. These competencies are critical for ensuring operational safety, regulatory adherence, and minimizing potential losses in complex engineering environments.

How does a senior risk engineer typically collaborate with cross-functional teams to address potential hazards in large-scale projects?

A Senior Risk Engineer often works closely with project managers, design engineers, safety specialists, and operations teams to identify, assess, and mitigate risks associated with large-scale projects. This collaboration involves leading risk assessment workshops, reviewing technical documents, and ensuring that all stakeholders understand risk mitigation strategies. Effective communication and the ability to translate complex technical risks into actionable plans are key to success in this role. Regular meetings and progress reviews help ensure that risk controls are integrated throughout all project phases.

Is risk engineering a good career?

Risk engineering is a viable career that involves identifying and analyzing potential hazards to prevent losses in industries such as insurance, manufacturing, and construction. It requires strong analytical skills, knowledge of safety standards, and often certifications like the Certified Risk Manager (CRM). The field offers opportunities for advancement and specialization, with a focus on problem-solving and risk mitigation.

What is the difference between Senior Risk Engineer vs Risk Analyst?

AspectSenior Risk EngineerRisk Analyst
Required CredentialsBachelor's or higher in engineering, risk management certifications (e.g., CRM)Bachelor's in finance, economics, or related field; risk management certifications often preferred
Work EnvironmentEngineering firms, industrial sites, insurance companiesFinancial institutions, insurance companies, consulting firms
Employer & Industry UsageUsed in engineering, manufacturing, energy sectorsCommon in finance, insurance, and corporate risk departments

While both roles focus on assessing and managing risks, the Senior Risk Engineer typically works in technical and industrial environments, applying engineering principles. The Risk Analyst often operates within financial or corporate settings, analyzing data to inform risk decisions. The roles share certifications and require analytical skills but differ mainly in industry focus and technical depth.

What are the most commonly searched types of Risk Engineer jobs in Santa Clara, CA? The most popular types of Risk Engineer jobs in Santa Clara, CA are:
What are popular job titles related to Senior Risk Engineer jobs in Santa Clara, CA? For Senior Risk Engineer jobs in Santa Clara, CA, the most frequently searched job titles are:
What job categories do people searching Senior Risk Engineer jobs in Santa Clara, CA look for? The top searched job categories for Senior Risk Engineer jobs in Santa Clara, CA are:
What cities near Santa Clara, CA are hiring for Senior Risk Engineer jobs? Cities near Santa Clara, CA with the most Senior Risk Engineer job openings:

Senior Director of Subject Matter Expert - CTEM, RBVM, ASPM - Risk Operation Center (ROC)

Qualys

Foster City, CA โ€ข On-site

Full-time

Re-posted 27 days ago


Job description

Come work at a place where innovation and teamwork come together to support the most exciting missions in the world!

Job Description: Senior Director of Subject Matter Expert - CTEM, RBVM, ASPM - Risk Operation Center (ROC)

Date posted: March 2026

About the job

Come work at a place where innovation and teamwork come together to support the most exciting missions in the world!
Senior Director of Subject Matter Expert - CTEM, RBVM, CAASM - Risk Operation Center

Location: Foster City, CA, USA
Organization: Product GTM & SME
Reports To: SVP of Product Management

Role Overview

We are seeking a Senior Director - Subject Matter Expert (SME) to lead deep technical expertise and field architecture & deployment for the Qualys Enterprise TruRisk Management (ETM) platform and Risk Operations Center (ROC) operating model.

This role is a hands-on technical SME leadership position responsible for driving the architecture, deployment strategy, and customer adoption of Qualys exposure management solutions including:

Enterprise TruRisk Management (ETM)
Risk Operations Center (ROC)

Cyber Risk Quantification (CRQ)
VMDR (Vulnerability Management Detection & Response)
CyberSecurity Asset Management (CSAM)
External Attack Surface Management (EASM)

The Senior Director will serve as a technical authority and practitioner working directly with engineering, product management, and enterprise customers to operationalize Continuous Threat Exposure Management (CTEM) and modern risk-centric security operations - ROC

This role will lead a small elite team of 5-6 technical SMEs responsible for architecture guidance, field enablement, customer advisory, leading POC/POV and feedback into the product roadmap.

Key Responsibilities

Technical Leadership & Architecture

Act as the deep technical authority for Qualys exposure management architecture including:

ETM risk correlation and prioritization
ROC operational workflows
Vulnerability management and remediation orchestration
ASPM & CNAPP integration to Exposure Management Platform (ETM)
Cross-domain exposure analytics across infrastructure, cloud, identity, and applications

Design and guide enterprise implementations that integrate:

VMDR vulnerability telemetry
Asset intelligence from CSAM
External attack surface data from EASM
Cloud posture insights from TotalCloud
Application security insights from ASPM / TotalAppSec

3rd Party (Non-Qualys) Ecosystems such as CNAPP, AppSec, IoT/OT, Identity, CMDB, etc.

Lead the development of reference architectures and deployment models for large global enterprises.

Outbound Customer and Sales enablement Responsibilities:

  • Develop sales enablement collateral, including customer product presentations, decks and demo scripts.
  • Help develop messaging and product positioning in collaboration with PM and PMMs leads.
  • Research the competitive landscape, determine how competitors are positioned and develop optimized positioning strategies and support documents for the CTEM, CAASM, CRQ, and RBVM.
  • Educate the sales team on how to address competitors in the field with Qualys' unique positioning.
  • Develop collateral and be an expert on CTEM and RBVM technology and terminology.
  • Be an expert in explaining the product to sales and be involved with demos and presentations to customers.
  • Foster strong relationships with customers to gather feedback, understand pain points, and translate insights into product requirements.
  • Design, deliver, and train the Qualys Sales Team on value-based demonstration of our products

Hands-On Platform Expertise

Work directly with engineering and product teams to:

Prototype new ETM and ROC capabilities
Validate exposure management workflows
Test integrations with DevSecOps pipelines and CI/CD environments
Provide technical feedback on product architecture and scalability

Provide deep expertise in:

Vulnerability lifecycle management
Exposure prioritization and TruRisk scoring
Attack path analysis
Cyber Risk quantification
Remediation orchestration
ASPM and application risk correlation.

Risk Operations Center (ROC) Strategy

Define how enterprises implement the Risk Operations Center model using Qualys ETM.

Develop best practices and implementation playbooks for:

Cross-team risk prioritization
Exposure triage workflows
Remediation SLAs
Executive risk reporting
Operationalizing CTEM across security teams.

Customer Advisory & Strategic Engagement

Act as a trusted technical advisor to CISOs, security architects, and DevSecOps leaders.

Lead architecture workshops, executive technical briefings, strategic customer advisory sessions and proof-of-concept deployments.

Support major strategic and enterprise accounts globally and complex deployments

Team Leadership

Lead, mentor, and grow a team of 5-6 highly skilled technical SMEs, setting clear priorities, fostering a high-performance culture, and ensuring a strong execution rhythm.

Build and deliver scalable and repeatable playbooks for:

Field architecture guidance
ETM and ROC technical enablement
ASPM, CNAPP adoption and DevSecOps integration
Product feedback and innovation.

Build a center of excellence for exposure management architecture within the company

Product Collaboration

Partner closely with Product Management and Engineering to:

Influence product roadmap
Validate new capabilities
Translate customer needs into platform improvements
Accelerate innovation across exposure management and application security.

Required Qualifications

12-15+ years' experience in cybersecurity architecture, product strategy, or technical leadership
Deep expertise in vulnerability management and exposure management platforms
Strong hands-on experience with application security,ASPM, and CNAPP ecosystems
Experience designing security architectures for large enterprise environments
Strong knowledge of cloud platforms (AWS, Azure, GCP)
Familiarity with DevSecOps pipelines and developer security workflows
Experience integrating security platforms across:

  • Exposure Management
  • Vulnerability management
  • Application security
  • Cloud security
  • Asset management
  • Identity security.

Demonstrated ability to lead technical teams and influence cross-functional stakeholders.

Preferred Experience

Experience working with platforms similar to Qualys and competitive vendor landscape focusing on RBVM, CTEM, AppSec, ASPM, CNAPP etc.

Familiarity with frameworks such as:

  • Continuous Threat Exposure Management (CTEM)
  • Zero Trust
  • NIST Cybersecurity Framework
  • MITRE ATT&CK.

Experience working directly with enterprise CISOs and security leadership teams.

The salary range for this position is $200,000 - $235,000 per year. Final compensation will be determined based on several factors, including but not limited to skills, relevant experience, and work location. Please note this range reflects base salary and does not include incentive compensation or potential equity grants. We also offer a comprehensive and highly competitive benefits package.

Qualys is an Equal Opportunity Employer, please see our EEO policy.