Apply

Ready to go for it?

AI Apply speeds things up—apply directly if you prefer.

FREE ACCESS
5,000–10,000 jobs/day
Scoutfield Logo

See all jobs on Scoutfield

Search thousands of fresh jobs every day.

Discover
  • Fresh listings
  • Fast filters
  • No subscription required
Create a free account and start exploring right away.
Brown Brothers Harriman

Senior Vulnerability & Security Engineer

Brown Brothers Harriman

. Lead the advancement of the organization's vulnerability management and security configuration programs .

Posted 9/23/2026full-timeUnited StatesSenior💰 $150,000 - $195,000 per yearWebsite

Core Competencies

Role fit
Core Competencies

Use this summary to align your resume positioning with the role.

Demonstrates extensive experience in vulnerability management and security configuration, with a strong focus on risk assessment, remediation strategies, and compliance with industry standards. Capable of providing technical leadership and mentorship while effectively communicating complex cybersecurity issues to diverse audiences.

Highest-signal resume keywords
Vulnerability ManagementSecurity Configuration ManagementRisk AssessmentNIST ComplianceCISSP Certification

ATS Keywords

Tailor your resume
Applicant Tracking System Keywords

Tip: use these terms in your resume and cover letter to boost ATS matches.

Hard Skills
Vulnerability AnalysisRisk Acceptance MethodologiesRemediation StrategiesTechnical Analysis of CVEsAutomated Solutions EngineeringConfiguration Compliance AssessmentThreat Intelligence AnalysisPenetration TestingApplication Security TestingEDR Platforms
Soft Skills
Analytical SkillsProblem-SolvingStakeholder ManagementCommunication SkillsInfluencing Skills
Tools & Technologies
PowerShellPythonAdvanced PowerPointExcel DashboardsVulnerability Scanning Tools
Certifications & Qualifications
CISSP
Industry Keywords
CybersecurityFinancial ServicesNISTISO 27001OWASPNYDFS Part 500DORACISSTIG

Tech Stack

Tools & technologies
CloudCyber SecurityPython

About the role

Key responsibilities & impact
  • Lead the advancement of the organization's vulnerability management and security configuration programs
  • Identify, assess, prioritize, and manage security exposures across the enterprise
  • Analyze vulnerabilities from vulnerability scanning, EDR platforms, application security testing, penetration testing, and threat intelligence
  • Conduct technical analysis of CVEs, vendor advisories, and threat intelligence
  • Assess exploitability, attack vectors, business impact, and mitigation options
  • Provide risk-based recommendations for remediation planning, exception management, and cybersecurity governance
  • Partner with infrastructure, cloud, application, platform, and engineering teams on remediation strategies
  • Assess proposed mitigations and residual risk
  • Review and recommend actions regarding vulnerability exception requests
  • Design, implement, and continuously improve vulnerability and security configuration management capabilities
  • Develop and maintain secure configuration baselines aligned with organizational standards and industry frameworks
  • Engineer automated solutions for configuration compliance assessment, monitoring, measurement, and reporting
  • Integrate configuration findings with vulnerability management workflows
  • Evaluate emerging technologies, tools, and methodologies
  • Serve as technical escalation point and subject matter expert
  • Provide technical leadership, mentorship, and guidance to cybersecurity team members
  • Maintain awareness of emerging threats, vulnerabilities, exploitation techniques, and industry best practices

Requirements

What you’ll need
  • 7+ years of cybersecurity experience, preferably within financial services or another highly regulated industry
  • Strong technical knowledge of enterprise infrastructure, operating systems, networking, databases, applications, and cloud platforms
  • Demonstrated experience analyzing vulnerabilities, assessing risk, and developing remediation strategies
  • Experience engineering and operating enterprise vulnerability management and security configuration management programs
  • Experience with vulnerability exception processes, compensating controls, risk acceptance methodologies, and remediation governance
  • Strong understanding of NIST, ISO 27001, OWASP, NYDFS Part 500, DORA, CIS, and STIG
  • Experience interpreting cybersecurity control requirements and evaluating compliance with organizational standards
  • Strong analytical, problem-solving, stakeholder management, communication, and influencing skills
  • Ability to communicate complex technical issues effectively to technical and business audiences
  • CISSP or equivalent preferred
  • Experience with PowerShell, Python, or similar preferred
  • Advanced PowerPoint and Excel skills, including executive-level risk reporting, dashboards, metrics, and presentations preferred

Benefits

Comp & perks
  • Annual target bonus
  • Discretionary bonuses
  • Profit-sharing
  • Long-term savings
  • Healthcare
  • Income protection
  • Professional development opportunities
  • Time off
  • Guidance and mentoring
  • Diverse and inclusive workplace