Vulnerability Management Engineer

Posted:
11/12/2024, 6:42:02 AM

Location(s):
Raleigh, North Carolina, United States ⋅ North Carolina, United States

Experience Level(s):
Mid Level ⋅ Senior

Field(s):
IT & Security ⋅ Software Engineering

Workplace Type:
Remote

We're Celonis, the global leader in Process Mining technology and one of the world's fastest-growing SaaS firms. We believe there is a massive opportunity to unlock productivity by placing data and intelligence at the core of business processes - and for that, we need you to join us.

The Team:

Our Global information security organization is responsible for security and trust. We think security-offensively and defensively. We continuously monitor our global security posture and are always adapting to the ever-changing threat landscape.

The Security Engineering team is tasked with building security into and breaking “all the things” at Celonis. Our builders are software security engineers and platform security engineers, and our breakers include red teamers as well as offensive and application security engineers. We also partner with our product and engineering teams for security by design practices and assist with triaging and remediating technical security issues.

 

The Role:

The Vulnerability Management Engineer will work within the Security Engineering team to enhance and ensure the continuous vulnerability lifecycle management within Celonis’ diverse environments. This role will work within a team of Vulnerability Management Engineers in the collection, monitoring, reporting, and impact assessment for vulnerability related data from partners, vendors, and internal intelligence sources. This individual will lead by building bridges and forming relationships with the technical teams within Celonis, to support strategies and controls for vulnerabilities within these environments. 

 

The work you’ll do:

  • Enhance the current Vulnerability Management strategy and process for Celonis
  • Act as a champion for vulnerability management and information security including broadening awareness and use of the team’s services, education of security best practices and integration with other business areas
  • Drive actionable metrics and reporting for operations and leadership transparency
  • Provide prompt attention and visibility into risks, vulnerabilities, and issues serving as an escalation path for team member effectiveness
  • Closely support and collaborate with Celonis’ Security Engineering and Trust teams
  • Serve as subject matter expert related to vulnerability management and secure configuration
  • Have the ability to understand and develop enterprise policy and technical standards with specific regard to vulnerability management and secure configuration
  • Be able to identify and assess the potential impact from vulnerabilities specific to Celonis’ environment, and determine and implement mitigating controls
  • Identify and lead the appropriate measures to manage/remediate vulnerabilities and reduce potential impacts on information resources to a level acceptable to the senior management of the company
  • Build strong partnerships with technical teams to promote best practices for managing vulnerabilities in an agile manner and within cloud solutions
  • Providing mentorship, coaching, performance management and support to team members with regard to vulnerability assessment, communication/rapport with other divisions and various levels of leadership, technical expertise, and career development
  • Oversight of onboard and offboard resources

 

The qualifications you need:

  • Experience in vulnerability management or related field such as penetration testing, SOC, or threat intelligence
  • Drive to learn new things about vulnerability management, exploits, hacker techniques, and overall security operations
  • Familiar with industry standard security best practices and vulnerability management processes including compliance reporting
  • Demonstrated ability to participate in cross functional teams, including offsite, remote and offshore resources
  • Excel at prioritizing work and other demands for self and team including making risk-based decisions about remediation recommendations
  • Ability to define, communicate and execute on a vision and strategy
  • Ability to effectively communicate with technical and non-technical resources
  • Self-directed, works with minimal guidance, and recognizes when guidance needed
  • Demonstrated ability to stay abreast securing evolving technology such as cloud and mobile computing
  • Experience working in very large enterprise environment with diverse teams
  • Advanced experience with vulnerability scanning tools and other security testing tools
  • Understanding of attacker mindset, exploitation, and how vulnerabilities are leveraged

 

 

 

 

What Celonis Can Offer You:

  • The unique opportunity to work with industry-leading process mining technology
  • Investment in your personal growth and skill development (clear career paths, internal mobility opportunities, L&D platform, mentorships, and more)
  • Great compensation and benefits packages (equity (restricted stock units), life insurance, time off, generous leave for new parents from day one, and more). For intern and working student benefits, click here.
  • Physical and mental well-being support (subsidized gym membership, access to counseling, virtual events on well-being topics, and more)
  • A global and growing team of Celonauts from diverse backgrounds to learn from and work with
  • An open-minded culture with innovative, autonomous teams
  • Business Resource Groups to help you feel connected, valued and seen (Black@Celonis, Women@Celonis, Parents@Celonis, Pride@Celonis, Resilience@Celonis, and more)
  • A clear set of company values that guide everything we do: Live for Customer Value, The Best Team Wins, We Own It, and Earth Is Our Future

 

About Us:

Celonis helps some of the world’s largest and most esteemed brands make processes work for people, companies and the planet. With over 5,000 enterprise customer deployments across nearly every industry, the Celonis Process Intelligence Platform uses process mining and AI to give you a living digital twin of your business operation. It’s system-agnostic and without bias, and empowers companies to reduce waste, create value and benefit people across the top, bottom, and green lines. Since 2011, the Celonis platform has enabled its customers to identify more than $18 billion in value. Celonis is headquartered in Munich, Germany, and New York City, USA, with more than 20 offices worldwide.

Get familiar with the Celonis Process Intelligence Platform by watching this video.

 

Equal Opportunity at Celonis:

Celonis is an equal opportunity employer. We celebrate diversity and are committed to creating an inclusive environment and equal opportunity in all aspects of employment. We will not tolerate any unlawful discrimination or harassment of any kind. We make all employment decisions without regard to race/ethnicity, color, sex, pregnancy, age, sexual orientation, gender identity or expression, transgender status, national origin, citizenship status, religion, physical or mental disability, veteran status, or any other factor protected by applicable anti-discrimination laws. As a US federal contractor, we are committed to the principles of affirmative action in accordance with applicable laws and regulations. Different makes us better

 

Your Privacy:

Any information you submit to Celonis as part of your application will be processed in accordance with Celonis’ Accessibility and Candidate Notices

Please be aware of common job offer scams, impersonators and frauds. Learn more here.

Celonis

Website: https://www.celonis.com/

Headquarter Location: Munich, Bayern, Germany

Employee Count: 1001-5000

Year Founded: 2011

IPO Status: Private

Last Funding Type: Secondary Market

Industries: Analytics ⋅ Big Data ⋅ Business Intelligence ⋅ Business Process Automation (BPA) ⋅ SaaS