We are looking for a proactive, detail-oriented individual with the ability to manage multiple remediation activities in parallel to identify, analyze, and support the remediation of vulnerabilities across Cloudflare's Infrastructure and cloud environments.
Requirements
- Conduct vulnerability scanning, and perform in-depth analysis of findings from scanning tools (e.g., Qualys, Nessus, Rapid7)
- Triage, validate and prioritize vulnerabilities using risk-based approaches to determine real business impact, and working with engineering and compliance teams to agree remediation actions and timelines.
- Develop, document, and deliver technical remediation guidance and solutions to enable application and infrastructure teams to remediate efficiently and consistently.
- Support DOD IL4 and FedRamp preparation, by ensuring vulnerability management processes, evidence, reporting, and controls meet regulatory and assurance expectations.
- Work closely with engineering and service teams to embed vulnerability management into delivery pipelines, operational processes, and change management.
- Establish strong relationships with engineering teams to track and report status and remediation progress
- Manage and track the remediation backlog, maintaining focus on risk reduction and measurable progress.
- Contribute to the continuous improvement of vulnerability management standards, procedures, and playbooks, ensuring alignment with IL4, FedRamp and other compliance requirements.
Benefits
- Free meals, snacks, and beverages on site