Get more replies from employers
Send a job-specific resume in minutes.
Viasat is seeking a seasoned Vulnerability Management professional to drive risk prioritization and remediation across our global infrastructure. You will triage CVEs, determine mitigation paths, map vulnerabilities to system owners, and push automation to scale the program.
You will collaborate with auditors, design dashboards to track MTTD/MTTR, and lead zero-day assessments to quickly scope exposure and coordinate rapid responses with engineering teams.
One team. Global challenges. Infinite opportunities. At Viasat, we’re on a mission to deliver connections with the capacity to change the world. For more than 35 years, Viasat has helped shape how consumers, businesses, governments and militaries around the globe communicate. We’re looking for people who think big, act fearlessly, and create an inclusive environment that drives positive impact to join our team.
Experience: 5+ years of experience in Vulnerability Management, with at least 3 years dedicated specifically to tactical vulnerability management.
Risk-Prioritization: In-depth knowledge of modern vulnerability evaluation frameworks, including EPSS, CVSS, SSVC, and KEV.
Audit Defense: Demonstrable experience preparing for and participating in external third-party security audits (e.g., ISO 27001, PCI, or CMMC).
Defending Technical Risk Decisions: Demonstrated ability to confidently explain vulnerability prioritizations, technical workarounds, and formal risk acceptance/exception decisions to both internal compliance teams and external auditors.
Tooling Proficiency: Deep hands-on experience with enterprise scanners and cloud-native security platforms.
Technical Depth: Good understanding of operating system internals, container environments, and cloud security fundamentals.
Communication & Influence: Demonstrable ability to translate complex vulnerability details into clear, actionable technical instructions for engineering partners without direct authority.
Tactical Threat Triage: Analyze internal data against new CVEs and vulnerability disclosures to identify critical risks relevant to our infrastructure and work to mitigate them.
Lead Zero-Day Assessments: Act as the VM first-responder during critical, zero-day disclosures. Quickly scope our exposure, assess the blast radius across infrastructure and codebases, and coordinate response efforts.
Scale Reporting Metrics: Design automated dashboards that track operational efficiency metrics, such as Mean Time to Detect (MTTD) relevant CVEs and Mean Time to Remediate (MTTR).
Support Audits & Regulatory Compliance: Serve as the technical point of contact during internal and external audits. Interface directly with auditors to demonstrate program maturity and explain vulnerability scanning methodologies.
Build automated reports and dashboards that pull audit evidence on demand. Examples include proof of patching SLA alignment, historical scanning cadences, and approved risk exceptions. This reduces manual preparation time.
Artificial Intelligence: Familiarity/Experience with AI technologies, with a strong preference for knowledge in AI risk and governance frameworks (experience applying these concepts to vulnerability management is a major plus).
Penetration Testing: Experience with penetration testing methodologies and tools to help validate vulnerability exploitability and assist with remediation prioritization.
Workflow Automation: Prior experience building security pipelines inside automation and orchestration platforms.
CI/CD: Familiarity with CI/CD tools and automated configuration/deployment environments.
Active Security Community Engagement: A passion for following emerging threats, exploit trends, and security research.
Web Applications: experience in assessments or penetration testing of web applications and Internet-facing tech stacks.
$121,000.00 - $191,000.00 / annually. For specific work locations within San Jose, the San Francisco Bay area and New York City metropolitan area, the base pay range for this role is $150,000.00 - $225,000.00 / annually
At Viasat, we consider many factors when it comes to compensation, including the scope of the position as well as your background and experience. Base pay may vary depending on job-related knowledge, skills, and experience. Additional cash or stock incentives may be provided as part of the compensation package, in addition to a range of medical, financial, and/or other benefits, dependent on the position offered. Learn more about Viasat’s comprehensive benefit offerings that are focused on your holistic health and wellness at https://careers.viasat.com/benefits.
Viasat is proud to be an equal opportunity employer, seeking to create a welcoming and diverse environment. All qualified applicants will receive consideration for employment without regard to race, color, religion, gender, gender identity or expression, sexual orientation, national origin, ancestry, physical or mental disability, medical condition, marital status, genetics, age, or veteran status or any other applicable legally protected status or characteristic. If you would like to request an accommodation on the basis of disability for completing this on-line application, please click here.