2

Vulnerability Researcher Remote Jobs in New Mexico

Our solutions enable more efficient clinical research, more effective healthcare delivery, and more ... Run day-to-day vulnerability workflows: detection, prioritization, remediation, and validation ...

$40/hr

... vulnerability testing of web applications to identify weaknesses * Research and identify potential ... This internship is primarily a remote opportunity. However, if you are located near one of our ...

New

$40/hr

... vulnerability testing of web applications to identify weaknesses * Research and identify potential ... This internship is primarily a remote opportunity. However, if you are located near one of our ...

New

Senior AI Systems Engineer

Albuquerque, NM · On-site +1

$95K - $130K/yr

... vulnerability management, and secure architecture reviews. * Assess and implement system ... This position may be performed fully remote, hybrid, or onsite at an ARA office. Preference will be ...

Vulnerability Researcher Remote information

What does a vulnerability researcher do, especially in a remote role?

A Vulnerability Researcher is responsible for identifying, analyzing, and reporting security weaknesses in software, hardware, or network systems. Working remotely, they use specialized tools and techniques to discover vulnerabilities, assess potential impacts, and sometimes develop proof-of-concept exploits. Their findings help organizations improve security by patching vulnerabilities before they can be exploited by malicious actors. Effective communication and collaboration with security teams are also important aspects of the role, even when working from afar.

What are the key skills and qualifications needed to thrive as a vulnerability researcher remote, and why are they important?

To thrive as a Vulnerability Researcher (Remote), you need strong expertise in cybersecurity fundamentals, reverse engineering, and exploit development, typically supported by a degree in computer science or related certifications such as OSCP or CEH. Familiarity with technical tools like IDA Pro, Ghidra, fuzzers, debuggers, and scripting languages (e.g., Python) is essential for analyzing vulnerabilities. Analytical thinking, problem-solving, and effective communication are key soft skills that help in documenting findings and collaborating with distributed teams. These skills ensure the accurate identification and mitigation of security risks, which is crucial for protecting organizations against cyber threats.

What are some common challenges faced by remote vulnerability researchers and how can they be addressed?

Remote vulnerability researchers often encounter challenges such as staying current with rapidly evolving threat landscapes, maintaining effective communication with distributed teams, and accessing secure lab environments for testing. To address these, it's important to regularly engage in professional development, participate in virtual security communities, and utilize secure cloud-based lab solutions. Additionally, setting clear communication protocols and using collaboration tools can help ensure smooth teamwork and project progress.

What is the difference between Vulnerability Researcher Remote vs Penetration Tester Remote?

AspectVulnerability Researcher RemotePenetration Tester Remote
CredentialsCertifications like OSCP, CEH, CISSP often preferredSimilar certifications, with emphasis on offensive security skills
Work EnvironmentResearch-focused, analyzing vulnerabilities in software and systemsSimulating attacks to identify security weaknesses
Industry UsageUsed in cybersecurity firms, tech companies, and research labsCommon in consulting firms, security service providers, and internal security teams
Search & Comparison IntentUnderstanding roles in vulnerability discovery and researchComparing offensive security roles and testing approaches

Vulnerability Researcher Remote and Penetration Tester Remote both focus on cybersecurity but differ in approach. Researchers analyze and discover vulnerabilities, while testers simulate attacks to evaluate security. Both roles require similar certifications and are employed in related industries, but their daily tasks and objectives vary.

What are the most commonly searched types of Vulnerability Researcher jobs in New Mexico?

The most popular types of Vulnerability Researcher jobs in New Mexico are:

What are popular job titles related to Vulnerability Researcher Remote jobs in New Mexico?

For Vulnerability Researcher Remote jobs in New Mexico, the most frequently searched job titles are:

What job categories do people searching Vulnerability Researcher Remote jobs in New Mexico look for?

The top searched job categories for Vulnerability Researcher Remote jobs in New Mexico are:

What cities in New Mexico are hiring for Vulnerability Researcher Remote jobs?

Cities in New Mexico with the most Vulnerability Researcher Remote job openings:

Infographic showing various Vulnerability Researcher Remote job openings in New Mexico as of August 2026, with employment types broken down into 85% Full Time, 9% Part Time, and 6% Contract. Highlights an 81% Physical, 7% Hybrid, and 12% Remote job distribution.

Cloud Security Operations Engineer (GCP/AWS) - Remote

Medable, Inc.

Remote

Full-time

Medical, Dental, Vision

Re-posted 23 days ago


Job description

Medable's mission is to get effective therapies to patients faster. We provide an end-to-end, agentic clinical trial platform with a flexible suite of tools that allows patients, healthcare providers, clinical research organizations and pharmaceutical sponsors to work together as a team in clinical trials. Our solutions enable more efficient clinical research, more effective healthcare delivery, and more accurate precision and predictive medicine. Our target audiences are patients, providers, principal investigators, and innovators who work in healthcare and life sciences.

Our vision is to accelerate the path to human discovery and medical cures. We are passionate about driving innovation and empowering consumers. We are proactive, collaborative, self-motivated learners, committed, bold and tenacious. We are dedicated to making this world a healthier place.

1. Responsibilities
  • Work cross-functionally with Information Security Operations and Infrastructure/DevOps teams, to administer and optimize security posture across multi-cloud (GCP/AWS) infrastructure, including native security services, IAM, logging, and threat detection.
  • Triage and respond to cloud security alerts and vulnerabilities; implement timely mitigations, configuration changes, and patches.
  • Own configuration and hygiene for cloud security consoles (examples: GCP Security Command Center, Cloud Logging, Cloud Armor, KMS, IAM,etc.).
  • Partner with DevOps to implement secure baseline configurations and guardrails (network segmentation, least privilege, encryption, key management, secrets handling, egress controls), in alignment with industry standard frameworks such as CIS, NIST 800-53, OWASP Top 10, etc.
  • Run day-to-day vulnerability workflows: detection, prioritization, remediation, and validation across cloud services, hosts, containers, and third-party dependencies.
  • Manage and harden security configurations for Kubernetes Engine environments, including:
    • Cluster and node security settings, RBAC, pod security controls, network policies, admission controls, and runtime security, Image vulnerability scanning, container supply-chain controls, patch cadence and version lifecycle management for clusters/nodes and supporting components.
  • Support secure implementations/integrations of AI within cloud infrastructure, including:
    • Data protection controls (PII/PHI handling, encryption, retention, audit logging).
    • Network controls (private connectivity where feasible, egress restrictions, proxying, allowlists).
    • Usage monitoring, abuse prevention, and security reviews for AI-driven features/workflows.
    • Contributing to internal AI security standards (prompt/data handling guidance, logging strategy, third-party risk considerations).
  • Work cross-functionally with IS Risk and Compliance team to produce evidence and reporting to support internal security requirements and external compliance obligations (e.g., SOC 2 / ISO-aligned controls, healthcare and privacy expectations).
  • Participate in security incident response for cloud-related events, including containment and recovery actions.
  • Other duties as assigned.
2. Experience
  • 4+ years of hands-on experience in cloud security, DevSecOps, cloud engineering with security focus, or security operations in cloud environments or a combination of education and experience.
  • Experience in healthcare technology and/or regulated environments (privacy, audit evidence, security control documentation).
  • Practical experience administering security controls in GCP and AWS (IAM, logging, encryption/KMS, network security, cloud security services).
  • Experience securing Kubernetes environments, including RBAC, cluster hardening, workload controls, and patch/version management.
  • Strong vulnerability management experience (triage, remediation coordination, patching workflows, validation).
  • Experience supporting secure integrations of LLM/AI services (e.g., ChatGPT/Grok) in production systems, including data governance and key management.
3. Skills
  • Ability to work cross-functionally between InfoSec and Infrastructure/DevOps, and translate security requirements into implementable controls.
  • Comfort working from tickets/alerts through to implemented changes in production cloud environments.
  • Comfortable writing code in any one programming language: Javascript/Python/Bash.
  • Familiarity with Infrastructure-as-Code and automation concepts (Terraform/CloudFormation, CI/CD pipelines, scripting).
4. Education, Certifications, Licenses
  • Bachelor's degree in Cybersecurity, Information Technology, Computer Science or a related field preferred.
  • Security certifications (one or more): GCP Professional Cloud Security Engineer, CISSP, CCSP, Security+.
5. Travel Requirements

As required.

At Medable, we believe that our team of Medaballers is our greatest asset. That is why we are committed to your personal and professional well-being. Our rewards are more than just benefits - they demonstrate our commitment to providing an inclusive, healthy and rewarding experience for all our team members.

Flexible Work

  • Remote from the start, we believe in a flexible employee experience

Compensation

  • Competitive base salaries

  • Annual performance-based bonus

  • Stock options for employees, aligning personal achievements to Medable's success

Health and Wellness

  • Comprehensive medical, dental, and vision insurance coverage

  • Carrot Fertility Program

  • Health Saving Accounts (HSA) and Flexible Spending Accounts (FSA)

  • Wellness program (Mental, Physical and Financial)

Recognition

  • Peer-to-peer recognition program, celebrating achievements and milestones

Community Involvement

  • Volunteer time off to support causes you care about

Medable is committed to providing reasonable accommodations for qualified individuals with disabilities in our job application procedures. If you need assistance or would like to request an accommodation due to a disability, please contact us athr@medable.com.