Senior Vulnerability Management Engineer

LPL Financial LLC

Fort Mill, Charlotte (SC, NC)

On-site

USD 101,000 - 168,000

Full time

4 days ago
Be an early applicant
Application generator

Get a reply from this employer — a resume and cover letter tailored to exactly what they’re hiring for.

Get past ATS filters

Benefits offered by this job

401K matching
Health benefits
Employee stock options
Paid time off

Job summary

LPL Financial is seeking a Senior Vulnerability Management Engineer to mature the VM program across the enterprise, coordinating with infrastructure, cloud, engineering, and application teams.

You will manage vulnerability scanning tools, lead remediation initiatives, and partner with security and IT to implement effective controls. Strong communication with stakeholders is essential.

Qualifications

  • 5+ years in information security within a large enterprise.
  • 5+ years of vulnerability management experience with leading tools (Qualys, InsightVM/Rapid7, Wiz, Nessus).
  • Advanced knowledge of major cloud platforms and CSPM tooling.

Responsibilities

  • Manage vulnerability scanning tools across Microsoft, Linux, virtualization, databases and cloud.
  • Define/implement remediation processes and track vulnerabilities to resolution.
  • Lead enterprise initiatives to improve the Vulnerability Management program.
  • Partner with security and IT to assess impacts and implement mitigating controls.
  • Identify measures to reduce risk to information resources and report to senior management.
  • Promote best practices and integrate VM services across teams and cloud environments.
  • Maintain VM platforms/tools and cloud security posture management configurations.
  • Stay current on vulnerability exploits and industry trends.

Skills

Vulnerability management
Microsoft platform
Linux/UNIX
Cloud security
Vulnerability scanning
Remediation leadership
Stakeholder communication

Education

Bachelor's/Master's in InfoSec/Engineering/CS

Tools

Qualys
InsightVM
Nessus
Wiz
XPanse
Prisma
Laceworks
Orca

Job description

Job Description Where Ambition Meets Innovation Build a career that matches all your initiative with an impressive dose of innovation. From cutting-edge resources and a collaborative environment to the freedom to make an impact and more, you’ll find the ingredients you need at LPL Financial to shape your success while helping clients pursue their financial goals.

Please note: This position does not offer work authorization sponsorship now or in the future. Applicants must have valid U.S. work authorization that does not require employer sponsorship.

Job Overview

LPL Financial is in search of a Senior Vulnerability Management Engineer who can execute and mature the existing Vulnerability Management program at LPL and its subsidiaries. As a member of the Cyber Security organization, the Senior Vulnerability Management Engineer plays a key role in securing systems built and/or used by LPL Financial. A successful candidate can expect to manage Vulnerability Scanning tools and work closely with infrastructure, cloud, engineering, and application teams, as well as third party vendors to ensure that vulnerabilities are effectively managed throughout the environment.

Responsibilities
  • Perform as a vulnerability management SME in one or more of the following areas: Microsoft platform (Server, workstation, applications), Open Systems platforms (Linux, UNIX, VM Ware ESX), virtualization platforms (e.g. Citrix), Networking, Databases (Oracle, SQL Server, DB2, IMS), and Cloud (AWS, Azure, Google).
  • Lead efforts to define/implement processes, policies, and procedures to govern vulnerability remediation efforts and track open vulnerabilities from identification to resolution, following up with remediation owners and escalating risk as necessary.
  • Lead and drive large initiatives with enterprise level visibility to improve the Vulnerability Management program.
  • Be able to successfully partner with other security and IT professionals to assess potential impact from vulnerabilities specific to LPL Financials environment, and determine and implement mitigating controls.
  • Identify and recommend appropriate measures to manage and remediate vulnerabilities and reduce potential impacts on information resources to a level acceptable to the senior management of the company.
  • Build strong partnerships with technical teams to promote best practices for managing vulnerabilities in an agile manner and within cloud solutions.
  • Be a champion for vulnerability management and information security including broadening awareness and use of the team’s services, education of security best practices and integration with other business areas.
  • Assist with the management and maintenance of vulnerability management platforms/tools, including troubleshooting and resolving technical/functional issues and ensuring successful platform operations.
  • Review, implement, and maintain cloud security posture management policies to identify misconfigurations or vulnerabilities in cloud resources.
  • Partner with Security Engineering to implement and manage Cloud Security Posture Management tools to perform automated security scanning/analysis of cloud resources, including containers and serverless functions.
  • Understand vulnerability exploitation techniques and stays up to date on the latest vulnerabilities and exploits.
  • Develop and improve KPIs, metrics, and trending for vulnerability management functions.
  • Participate and lead new projects as needed.
Requirements
  • 5+ years of practical experience in information security field within a large enterprise environment
  • 5+ years of vulnerability management experience working with vulnerability management tools (e.g. Qualys, InsightVM/Rapid7, Wiz, Nessus, etc.)
Preferences
  • Bachelors and/or Master's Degree or in Information Security, Engineering, Computer Science.
  • Familiar with industry standard security best practices and vulnerability management processes including identification, analysis, reporting, and remediation.
  • Advanced level of knowledge of the major Cloud platforms, the types of resources that can be deployed within each platform, common cloud misconfigurations/vulnerabilities and how to fix such issues.
  • In depth understanding of types of vulnerabilities and techniques/compensating controls to mitigate associated risk.
  • Experience managing and using Cloud Security Posture Management tools such as Wiz, XPanse, Prisma, Laceworks, Orca.
  • Experience with reviewing, analyzing, managing, and remediating security vulnerabilities and misconfigurations in cloud resources.
  • Experience at a financial services/technology company or in a regulated industry.
  • Ability to communicate with both technical and non-technical stakeholders at all levels of the organization.
  • Strong analytical, interpersonal and communication skills.
Pay Range

$100,631.00 - $167,787.00

Additionally, LPL Total Rewards package is highly competitive, designed to support your success at work, at home, and at play – such as 401K matching, health benefits, employee stock options, paid time off, volunteer time off, and more.

Company Overview

Company Overview: LPL Financial Holdings Inc. (Nasdaq: LPLA) is among the fastest growing wealth management firms in the U.S. As a leader in the financial advisor-mediated marketplace(6), LPL supports over 32,000 financial advisors and the wealth management practices of approximately 1,100 financial institutions, servicing and custodying approximately $2.3 trillion in brokerage and advisory assets on behalf of approximately 8 million Americans. The firm provides a wide range of advisor affiliation models, investment solutions, fintech tools and practice management services, ensuring that advisors and institutions have the flexibility to choose the business model, services, and technology resources they need to run thriving businesses. For further information about LPL, please visit www.lpl.com. At LPL, independence means that advisors and institution leaders have the freedom they deserve to choose the business model, services, and technology resources that allow them to run a thriving business. They have the flexibility to do business their way. And they have the freedom to manage their client relationships, because they know their clients best. Simply put, we take care of our advisors and institutions, so they can take care of their clients. For further information about LPL, please visit www.lpl.com. Join the LPL team and help us make a difference by turning life's aspirations into financial realities.

Interview Information

LPL will only communicate with a job applicant directly from an @lplfinancial.com email address and will never conduct an interview online or in a chatroom forum. During an interview, LPL will not request any form of payment from the applicant, or information regarding an applicant’s bank or credit card.

Should you have any questions regarding the application process, please contact LPL's Human Resources Solutions Center at (855) 575-6947.

Additional Information

EAC 5.19.26 LPL Financial is the nation's largest independent broker-dealer.* Our company is widely known for its financial strength, exceptional service, and favorable industry reputation among financial professionals.

Check out the links below! We Are LPL Benefits Culture Social Responsibility

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior Vulnerability Management Engineer
Senior Vulnerability Management Engineer

Talanto • Charlotte (NC), Northern (KY)

Hybrid
USD 101,000 - 168,000
Sr. Application Security Engineer
Sr. Application Security Engineer

LPL Financial LLC • Town of Charlotte (NY), Fort Mill (SC)

On-site
USD 101,000 - 168,000
AVP, Engineering Security Operations Manager
AVP, Engineering Security Operations Manager

LPL Financial LLC • Austin (TX)

On-site
USD 129,986 - 216,609
401K matching
Health benefits
Employee stock options
+2
Sr. Application Security Engineer
Sr. Application Security Engineer

LPL Financial • New York (NY)

On-site
USD 101,000 - 168,000
Sr. Application Security Engineer
Sr. Application Security Engineer

LPL Financial • Tempe (AZ)

On-site
USD 101,000 - 168,000
401K matching
Health benefits
Employee stock options
+2
Sr. Application Security Engineer
Sr. Application Security Engineer

LPL Financial • San Diego (CA)

On-site
USD 101,000 - 168,000
Sr. Application Security Engineer
Sr. Application Security Engineer

LPL Financial • Fort Mill (SC)

On-site
USD 101,000 - 168,000
401K matching
Health benefits
Employee stock options
+2
Sr. Application Security Engineer
Sr. Application Security Engineer

LPL Financial • Austin (TX)

On-site
USD 101,000 - 168,000
Sr. Software Engineer
Sr. Software Engineer

LPL Financial LLC • Town of Charlotte (NY), Fort Mill (SC)

On-site
USD 106,000 - 177,000
AVP, Engineering Security Operations Manager
AVP, Engineering Security Operations Manager

LPL Financial • Austin (TX)

On-site
USD 129,000 - 217,000
401K matching
Health benefits
Employee stock options
+2