Cybersecurity Engineer I/II (Vulnerability & Patch Management) (Remote - US)

BNSF

Fort Worth, Northern (TX, KY)

Hybrid

USD 94,000 - 175,000

Full time

6 days ago
Be an early applicant
Application generator

A complete application in a minute — tailored resume and cover letter, ready to send.

Get past ATS filters

Benefits offered by this job

401(k) plan
Health care options
HSA contributions
Life and disability insurance
Family benefits
Travel discounts
Annual bonus

Job summary

BNSF is seeking an entry-to-mid level Cybersecurity Engineer I/II to support vulnerability and patch management for a remote US-based team. The role involves scanning, triage, patch coordination, and collaboration with SOC/IT, with opportunities to grow in scripting and threat intel alignment.

Travel is up to 20% with occasional visits to Fort Worth HQ. U.S. work authorization required; sponsorship available for qualified candidates. Competitive benefits included.

Qualifications

  • Authorized to work in the US
  • Minimum 2 years of experience in cybersecurity engineering or related roles
  • Basic understanding of vulnerability concepts (CVEs, CVSS, patch cycles)
  • Familiarity with Windows and/or Linux at a foundational level

Responsibilities

  • Vulnerability Management: run scans with Nessus/Qualys; track, triage, document vulnerabilities; support risk prioritization by CVEs
  • Patch Management: coordinate and track patch deployment; monitor status dashboards; test patches in non-production environments
  • Security Operations Support: maintain runbooks and procedures; support compliance docs (NIST, SOX)
  • Automation & Tooling: develop beginner scripting (Python/PowerShell) to automate tasks; learn security dashboards

Skills

US work authorization
2+ years exp
Vulnerability concepts
Windows basics

Education

Bachelor’s degree or higher in CS/Cybersecurity/IT

Tools

Nessus
Qualys
OpenVAS

Job description

Cybersecurity Engineer I/II (Vulnerability & Patch Management) (Remote - US)

be part of a team that values safety, inclusion, and excellence

we are one of the largest U.S. railroads transporting the nation’s freight across 28 western states and 3 Canadian provinces. as a member of our team, you will play a role in supporting the movement of essential products and materials that help feed, clothe, supply, and power communities throughout America and the world.

bnsf | tech: innovating and transforming the future of freight rail

bnsf | tech is the technology division making BNSF the preeminent freight and mobility company in north america.

are you ready to drive change?

if you are passionate about making a difference and eager to advance your career in a dynamic and supportive environment, we want you on our team! join us in reshaping the future of freight rail and discover a fulfilling career where your contributions matter.

we are committed to a culture where all employees are included, belong, and have equal opportunity to achieve their full potential. Come make a difference with us!

learn more about BNSF and our Benefits

Job Location: Remote US

Anticipated Start Date: 10/01/2026

The US base salary range for this full-time position is provided below:

Salary Range: $93,750 - $175,000

L3: $93,750 - $125,000

L4: $123,750 - $175,000

The range represents the amount bnsf | tech reasonably expects to pay for the position based on the level, scope, and responsibilities of the role. Individual compensation and level of position offered is determined by the hiring location and additional factors including but not limited to job-related skills, experience, and relevant education or training.In addition to base pay and bonus eligibility, BNSF offers a comprehensive benefits package.

This is a full-time remote position. Employees may work from anywhere within the contiguous 48 states of the United States

Travel is up to 20% Employees will be required to occasionally travel to our corporate headquarters in Fort Worth, TX for in person meetings. Travel expenses for business needs will be covered by BNSF

This position is open to candidates who are currently authorized to work in the United States. We are also open to sponsoring H-1B transfers, TN nonimmigrant status, and STEM OPT candidates with at least 2 years of remaining eligibility.

cybersecurity: protect the company, our customers and employees against cyber threats and innovate engineering solutions for a more resilient rail network.

We are looking for a curious, motivated, and coachable junior cybersecurity professional to join our Vulnerability & Patch Management team. You don't need to know everything, but you do need a solid foundation, a willingness to learn, and the drive to grow. You will work alongside experienced engineers who will mentor you as you help protect one of the nation's most critical infrastructure networks.

Key responsibilities may include:

Vulnerability Management

Run vulnerability scans using tools such as Nessus, Qualys, or similar platforms under the guidance of senior engineers

Track, triage, and document vulnerabilities across enterprise systems, cloud environments, and applications

Support risk prioritization efforts by researching CVEs and understanding their potential impact

Learn to generate vulnerability reports and metrics for team review

Patch Management

Coordinate and track patch deployment across servers, endpoints, and network devices

Monitor patch status dashboards and help follow up on outstanding or failed patch cycles

Support testing of patches in non-production environments before broader rollout

Maintain patch schedules and documentation in collaboration with IT and DevOps teams

Security Operations Support

Contribute to maintaining runbooks and procedures for vulnerability and patch workflows

Support compliance-related documentation efforts (e.g., NIST, SOX) as they relate to patch and vulnerability posture

Collaborate with SOC and IT teams to ensure patching aligns with incident response and threat intel priorities

Participate in team meetings, threat briefings, and ongoing security education

Automation & Tooling (Learning Focus)

Develop beginner-level scripting skills (Python or PowerShell) to help automate repetitive vulnerability and patch tasks

Gain exposure to SIEM platforms and security dashboards used to monitor patch compliance

The duties and responsibilities in this posting are representative categories to be used in deciding whether to apply for this position. This is not an exhaustive list of the position’s duties.

At BNSF Railway, we encourage individuals from all backgrounds to apply, showcasing their skills, experiences and development. We provide resources and tools to help you reach your full potential, fostering a supportive and inclusive environment.

Basic Qualifications

  • Authorized to work in the US
  • Minimum 2 years of experience in cybersecurity engineering or related roles
  • Basic understanding of common vulnerability concepts (e.g., CVEs, CVSS scores, patch cycles)
  • Familiarity with operating systems (Windows and/or Linux) at a foundational level

Eagerness to learn, ask questions, and grow in a structured team environment

Preferred Qualifications

  • Bachelor’s degree or higher in Computer Science, Cybersecurity, Information Technology, or related field
  • Able to work now and in the future without BNSF’s assistance (whether monetary, through sponsorship, or otherwise) in obtaining, maintaining, or extending employment authorization (including H-1B, STEM OPT/CPT, or TN nonimmigrant status).
  • Entry-level certifications such as CompTIA Security+, CompTIA IT Fundamentals (ITF+), or any vendor-specific cloud/security fundamentals cert (AWS, Azure, Google)
  • Exposure to CEH, OSCP study materials, or similar is a plus

Basic understanding of network concepts: IP addresses, ports, firewalls, and how traffic flows

Some exposure to vulnerability scanning tools (e.g., Nessus, Qualys, OpenVAS)

Awareness of patch management concepts and why timely patching matters

Introductory scripting ability in Python, PowerShell, or Bash (even coursework-level experience counts)

Exposure to cloud environments (AWS, Azure, or GCP)

Strong attention to detail

Good written and verbal communication

Ability to document clearly

Collaborative mindset and comfort working across teams

Proactive attitude: you ask questions, take notes, and follow through

Interest in staying current on cybersecurity news and emerging threats

At BNSF, you will have access to a comprehensive and competitive benefits package including:

  • An industry-leading 401(k) and renowned Railroad Retirement program.
  • A range of robust health care options for you and your dependents (including domestic partners), including medical, dental, vision, telemedicine, mental health, cancer support, and high-quality care network options.
  • Health care spending accounts (HSA) with employer contributions, as well as life and disability insurance, provided at no cost.
  • Family benefits includingparental, pediatric and family building support, adoption and surrogacy reimbursement, and dependent care spending account (with employer match).
  • Access to discounts on travel, gym memberships, counseling services and wellness support.
  • Annual bonus (Incentive Compensation Program)

All positions require pre-employment background verification, medical review and pre-employment drug screen. You can find more information by reviewing the Hiring Process. Federal authority requires BNSF employees, whose work requires unescorted access to secure areas of port facilities, to obtain a TWIC. More information is available at https://www.tsa.gov/for-industry/twic

BNSF Railway is an Equal Opportunity Employer, all qualified applicants receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability or protected veteran status.

Nearest Major Market: Fort Worth

Nearest Secondary Market: Dallas

Job Segment: Cyber Security, Computer Science, Engineer, Supply, Security, Technology, Entry Level, Engineering, Operations

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Cybersecurity Engineer I/II (Remote - US)
Cybersecurity Engineer I/II (Remote - US)

BNSF • Northern (KY)

Hybrid
USD 94,000 - 175,000
401(k) plan
Healthcare options
Life insurance
+3
Sr/Staff Cybersecurity Engineer (Remote - US)
Sr/Staff Cybersecurity Engineer (Remote - US)

BNSF • Northern (KY)

Hybrid
USD 165,000 - 300,000
401(k) plan
Healthcare options
HSA contributions
+1
Product, Platform & Enterprise Full Stack Software Engineer I/II (Remote - US)
Product, Platform & Enterprise Full Stack Software Engineer I/II (Remote - US)

BNSF • United States

Remote
USD 93,750 - 175,000
401(k) plan
Health, dental, vision insurance
Life and disability insurance
+2
Network Software Engineer I/II (Remote - US)
Network Software Engineer I/II (Remote - US)

BNSF • Northern (KY)

Hybrid
USD 94,000 - 175,000
401(k) plan
Health insurance and family benefits
Telemedicine and mental health support
+2
Principal Telecom Engineer, Interoperable Train Control Messaging (Remote - US)
Principal Telecom Engineer, Interoperable Train Control Messaging (Remote - US)

BNSF Railway • United States

On-site
USD 107,000 - 145,000
401(k) and Railroad Retirement
Health care options
HSA with employer contributions
+2
System Safety Summer Intern 2027
System Safety Summer Intern 2027

BNSF • Fort Worth (TX)

On-site
USD 53,000 - 64,000
401(k)
Health care options
Life and disability insurance
+2
Remote Cybersecurity Engineer I/II - Vuln & Patch
Remote Cybersecurity Engineer I/II - Vuln & Patch

BNSF • Fort Worth (TX), Northern (KY)

Hybrid
USD 94,000 - 175,000
401(k) plan
Health care options
HSA contributions
+4
Cybersecurity Engineer I/II — Secure Rail & Cloud (Remote US)
Cybersecurity Engineer I/II — Secure Rail & Cloud (Remote US)

BNSF • Northern (KY)

Hybrid
USD 94,000 - 175,000
401(k) plan
Healthcare options
Life insurance
+3
Director Strategic Sourcing
Director Strategic Sourcing

BNSF Railway • Town of Texas (WI)

Hybrid
USD 95,000 - 158,000
401(k)
Healthcare options
HSA with employer contributions
+5
Remote Cybersecurity Engineer I/II - Protect Critical Rail
Remote Cybersecurity Engineer I/II - Protect Critical Rail

BNSF • United States

Remote
USD 94,000 - 175,000
401(k) plan
Comprehensive health options
HSA with employer contributions
+2