Logo for F2Onsite

Vulnerability Management Engineer

Role overview

Qualifications

  • Hands-on experience operating enterprise vulnerability management platforms, including Tenable and CrowdStrike
  • Strong understanding of vulnerability lifecycle management, asset inventory reconciliation, and risk-based remediation
  • Experience prioritizing vulnerabilities using CVSS, EPSS, CISA KEV, and validated exploitability methodologies
  • Hands-on experience building ServiceNow Vulnerability Response / SecOps workflows

Responsibilities

  • Build and operationalize a mature vulnerability management program across a large enterprise environment
  • Develop risk-based Service Level Agreements (SLAs) and establish exception handling processes
  • Drive initial remediation efforts for the organization's highest-risk vulnerabilities in partnership with various teams
  • Author operational runbooks and standard operating procedures for steady-state operations

About the company

F2Onsite logo

F2Onsite

IT Services & IT Consulting

F2onsite is a national IT services company operating in 50 states across the U.S and Canada that provides onsite technicians to a variety of customers. F2onsite’s Total Outsourced Resource Management includes: Field Services Dispatch Program -Certified Technicians, Next Business Day, 2nd Business Day Infrastructure Deployment Solutions -Delivery Management, Project Reporting, and Complete Project Resources On-Demand Resource Solutions -Any Location/Skill, Contract or Contract/Direct The company provides Certified Field Technicians across the United States for Warranty Break/Fix services, Desktop and Deskside support, Point of Sale services, IMAC work, Site Surveys, Data Migration, Printer Solutions, Server Moves/Fixes, Technology Refreshes, Device Rollouts, Installation and Deployments, Digital Signage, LCD Support, and most any other I.T. service that requires "Boots on the Ground" technicians. F2onsite is a privately held company, based in Dallas, Texas with technicians and employees in more than 17,000 zip codes across the country. For more information, visit our website at www.F2onsite.com.

Company details

Company typeSME
IndustryIT Services & IT Consulting
Company size201 - 500

Your match analysis

See how your profile stacks up against this role.

We compared the job requirements to your profile to show where you're strong and where you fall short.

Job description

We are seeking an experienced Vulnerability Management Engineer to design, build, and operationalize a mature vulnerability management program across a large, rapidly evolving enterprise environment. This is a hands-on engineering role responsible for developing sustainable processes, workflows, and operational procedures while driving enterprise-wide vulnerability remediation.

This engagement focuses on building a comprehensive vulnerability management program with ServiceNow Vulnerability Response workflow development serving as the primary deliverable. The ideal candidate has extensive experience with enterprise vulnerability management, ServiceNow Security Operations, and risk-based remediation across complex infrastructure environments.

What You'll Do

Vulnerability Management Program Development

  • Build and operationalize a mature vulnerability management program across a large and continuously changing enterprise asset environment.
  • Reconcile and maintain an authoritative asset inventory across multiple security and identity platforms.
  • Identify asset visibility and scanner coverage gaps to improve overall security posture.

Asset Inventory & Vulnerability Assessment

  • Reconcile asset data across:
    • Tenable
    • CrowdStrike
    • Okta
    • Active Directory
    • Microsoft Intune
    • ServiceNow CMDB
  • Identify scanner, agent, and asset coverage gaps.
  • Aggregate and de-duplicate vulnerability findings from multiple sources.
  • Establish a baseline of the organization's current vulnerability posture.

Risk-Based Prioritization

  • Enrich vulnerability data using:
    • CVSS
    • EPSS
    • CISA Known Exploited Vulnerabilities (KEV)
    • NodeZero validated-exploitable findings
  • Produce and maintain a risk-ranked vulnerability register.
  • Prioritize remediation efforts based on business risk and exploitability.

ServiceNow Vulnerability Response Engineering

  • Design, build, and configure the ServiceNow Vulnerability Response workflow, including:
    • Intake
    • Prioritization
    • Assignment
    • Tracking
    • Verification
    • Re-scanning
    • Closure
  • Develop risk-based Service Level Agreements (SLAs).
  • Establish exception handling and risk acceptance processes.
  • Integrate workflows within ServiceNow SecOps.

Remediation & Program Operations

  • Drive initial remediation efforts for the organization's highest-risk vulnerabilities in partnership with infrastructure and application owners.
  • Coordinate remediation activities across multiple technical teams.
  • Track remediation progress and report on key program metrics.
  • Develop executive-ready reporting and dashboards.

Documentation & Operational Support

  • Author operational runbooks and standard operating procedures.
  • Transition the vulnerability management program into steady-state operations.
  • Provide weekly project status updates and implementation progress.

AI-Driven Security Engineering

  • Utilize frontier AI models such as ChatGPT Enterprise and Claude to accelerate:
    • Vulnerability analysis
    • Finding de-duplication
    • Risk prioritization
    • Reporting
    • Workflow design
    • Operational documentation
  • Apply AI responsibly while following enterprise governance and security best practices.

Required Qualifications

Must-Have Skills

  • Hands-on experience operating enterprise vulnerability management platforms, including:
    • Tenable
    • CrowdStrike Falcon Spotlight / Exposure Management
  • Strong understanding of:
    • Vulnerability lifecycle management
    • Asset inventory reconciliation
    • Risk-based remediation
    • Enterprise security operations
  • Experience prioritizing vulnerabilities using:
    • CVSS
    • EPSS
    • CISA Known Exploited Vulnerabilities (KEV)
    • Validated exploitability methodologies
  • Hands-on experience building ServiceNow Vulnerability Response / SecOps workflows (required and non-negotiable).
  • Experience coordinating remediation across infrastructure and application teams.
  • Experience designing remediation SLAs and executive reporting.
  • Proficiency using frontier AI models, including ChatGPT Enterprise and Claude, within security engineering workflows.
  • Ability to work independently and drive initiatives from discovery through operational maturity.

Preferred Qualifications

Experience with the following technologies is highly desired:

  • NodeZero
  • CrowdStrike NG-SIEM
  • ServiceNow CMDB
  • Patch management platforms
  • Change management processes
  • CMDB reconciliation

Industry experience in:

  • Insurance
  • Financial Services
  • Other regulated industries

Preferred certifications include:

  • CISSP
  • GIAC Security Certifications
  • Tenable Certifications
  • CrowdStrike Certifications

Equivalent hands-on experience will be considered in place of certifications.

Technology Environment

You will be supporting and working with:

  • Tenable
  • CrowdStrike Falcon Spotlight / Exposure Management
  • CrowdStrike NG-SIEM
  • NodeZero
  • Okta
  • Active Directory
  • Microsoft Intune / MDM
  • ServiceNow Vulnerability Response
  • ServiceNow SecOps
  • ServiceNow CMDB
  • ChatGPT Enterprise
  • Claude

Work Environment

  • Fully remote position.
  • Collaborative IT Security Engineering team operating within a SAFe Agile framework.
  • ServiceNow is utilized for ITSM and Security Operations.
  • Zoom is used for collaboration and team communication.
  • AI-forward culture where frontier AI models are actively incorporated into engineering workflows.
  • Fast-paced, acquisition-driven environment requiring flexibility, adaptability, and strong execution.

Initial Project Focus

Upon joining, you will lead the implementation of the organization's enterprise Vulnerability Management initiative, including:

  • Building a comprehensive asset inventory and identifying coverage gaps.
  • Conducting a current-state vulnerability assessment.
  • Developing and implementing the ServiceNow Vulnerability Response workflow.
  • Establishing remediation SLAs and driving initial remediation efforts.
  • Creating operational runbooks and transitioning the program into steady-state operations.

What We're Looking For

We're looking for a self-directed Vulnerability Management Engineer who thrives on building security programs from the ground up. You'll be comfortable leading enterprise vulnerability initiatives, coordinating remediation across multiple teams, and developing scalable operational processes. Success in this role requires strong technical expertise, exceptional communication skills, and the ability to operate effectively in a fast-paced, acquisition-driven environment while leveraging AI to improve security operations.
U.S. Citizenship required

Apply once. Then go straight to the hiring manager.

After you apply, unlock the direct contact details of the people who actually make the call. A quick follow-up makes you 5x more likely to land an interview.

MR

Marcus Rivera

Chief Revenue Officer

m.rivera@company.com
linkedin.com/in/marcusrivera
Unlocked after you apply
·

Engineering Manager Related jobs

Other jobs at F2Onsite

Premium

Reach out to the hiring manager directly.

Gain access to the contact details of the hiring managers who actually decide, and reach out to network with them directly. That, plus more when you upgrade:

  • Full match report with fit score and gaps
  • Career diagnostics on how recruiters read you
  • Curated company matches and warm intros
  • 48h early access to new roles

Cancel anytime.