Senior Vulnerability Management Engineer

LPL Financial

Tempe (AZ)

On-site

USD 101,000 - 168,000

Full time

16 hours ago
Be an early applicant
Application generator

A complete application in a minute — tailored resume and cover letter, ready to send.

Get past ATS filters

Benefits offered by this job

401K matching
Health benefits
Employee stock options
Paid time off
Volunteer time off

Job summary

LPL Financial is seeking a Senior Vulnerability Management Engineer to mature and run the vulnerability program across the enterprise and subsidiaries. This role partners with infrastructure, cloud, engineering, and application teams to ensure vulnerabilities are identified, tracked, and remediated effectively.

As part of the Cyber Security organization, you will manage scanning tools and drive strategic initiatives, advocating best practices in a fast-paced financial services environment.

Qualifications

  • 5+ years of experience in information security within a large enterprise.
  • 5+ years of vulnerability management experience with vulnerability management tools (Qualys, InsightVM/Rapid7, Wiz, Nessus).
  • Bachelor's or Master's degree in Information Security, Engineering, or Computer Science preferred.
  • Knowledge of major Cloud platforms and common cloud misconfigurations/vulnerabilities.

Responsibilities

  • Lead vulnerability management efforts across Microsoft, Linux/UNIX, virtualization, networking, databases, and cloud environments.
  • Define and implement processes to govern remediation and track vulnerabilities from identification to resolution.
  • Partner with security and IT teams to assess risks and implement mitigating controls.

Skills

Vulnerability management
Information security
Cloud platforms
Vulnerability scanning tools
Stakeholder communication

Education

Bachelor's/Master's degree

Tools

Qualys
InsightVM
Nessus
Wiz
Rapid7

Job description

Job Description

Where Ambition Meets Innovation

Build a career that matches all your initiative with an impressive dose of innovation. From cutting-edge resources and a collaborative environment to the freedom to make an impact and more, you’ll find the ingredients you need at LPL Financial to shape your success while helping clients pursue their financial goals.

Please note:

This position does not offer work authorization sponsorship now or in the future. Applicants must have valid U.S. work authorization that does not require employer sponsorship.

Job Overview:

LPL Financial is in search of a Senior Vulnerability Management Engineer who can execute and mature the existing Vulnerability Management program at LPL and its subsidiaries. As a member of the Cyber Security organization, the Senior Vulnerability Management Engineer plays a key role in securing systems built and/or used by LPL Financial. A successful candidate can expect to manage Vulnerability Scanning tools and work closely with infrastructure, cloud, engineering, and application teams, as well as third party vendors to ensure that vulnerabilities are effectively managed throughout the environment.

Responsibilities:
  • Perform as a vulnerability management SME in one or more of the following areas: Microsoft platform (Server, workstation, applications), Open Systems platforms (Linux, UNIX, VM Ware ESX), virtualization platforms (e.g. Citrix), Networking, Databases (Oracle, SQL Server, DB2, IMS), and Cloud (AWS, Azure, Google).
  • Lead efforts to define/implement processes, policies, and procedures to govern vulnerability remediation efforts and track open vulnerabilities from identification to resolution, following up with remediation owners and escalating risk as necessary
  • Lead and drive large initiatives with enterprise level visibility to improve the Vulnerability Management program
  • Be able to successfully partner with other security and IT professionals to assess potential impact from vulnerabilities specific to LPL Financials environment, and determine and implement mitigating controls.
  • Identify and recommend appropriate measures to manage and remediate vulnerabilities and reduce potential impacts on information resources to a level acceptable to the senior management of the company.
  • Build strong partnerships with technical teams to promote best practices for managing vulnerabilities in an agile manner and within cloud solutions.
  • Be a champion for vulnerability management and information security including broadening awareness and use of the team’s services, education of security best practices and integration with other business areas.
  • Assist with the management and maintenance of vulnerability management platforms/tools, including troubleshooting and resolving technical/functional issues and ensuring successful platform operations
  • Review, implement, and maintain cloud security posture management policies to identify misconfigurations or vulnerabilities in cloud resources
  • Partner with Security Engineering to implement and manage Cloud Security Posture Management tools to perform automated security scanning/analysis of cloud resources, including containers and serverless functions
  • Understands vulnerability exploitation techniques and stays up to date on the latest vulnerabilities and exploits
  • Develop and improve KPIs, metrics, and trending for vulnerability management functions.
  • Participate and lead new projects as needed.
What are we looking for?

We want strong collaborators who can deliver a world-class client experience. We are looking for people who thrive in a fast-paced environment, are client-focused, team oriented, and are able to execute in a way that encourages creativity and continuous improvement.

Requirements:
  • 5+ years of practical experience in information security field within a large enterprise environment
  • 5+ years of vulnerability management experience working with vulnerability management tools (e.g. Qualys, InsightVM/Rapid7, Wiz, Nessus, etc.)
Preferences:
  • Bachelors and/or Master’s Degree or in Information Security, Engineering, Computer Science.
  • Familiar with industry standard security best practices and vulnerability management processes including identification, analysis, reporting, and remediation.
  • Advanced level of knowledge of the major Cloud platforms, the types of resources that can be deployed within each platform, common cloud misconfigurations/vulnerabilities and how to fix such issues
  • In depth understanding of types of vulnerabilities and techniques/compensating controls to mitigate associated risk
  • Experience managing and using Cloud Security Posture Management tools such as Wiz, XPanse, Prisma, Laceworks, Orca
  • Experience with reviewing, analyzing, managing, and remediating security vulnerabilities and misconfigurations in cloud resources
  • Experience at a financial services/technology company or in a regulated industry.
  • Ability to communicate with both technical and non-technical stakeholders at all levels of the organization.
  • Strong analytical, interpersonal and communication skills
Please note:

This position does not offer work authorization sponsorship now or in the future. Applicants must have valid U.S. work authorization that does not require employer sponsorship.

Pay Range:

$100,631.00 - $167,787.00

  • Additionally, LPL Total Rewards package is highly competitive, designed to support your success at work, at home, and at play – such as 401K matching, health benefits, employee stock options, paid time off, volunteer time off, and more.
Company Overview:

LPL Financial Holdings Inc. (Nasdaq: LPLA) is among the fastest growing wealth management firms in the U.S. As a leader in the financial advisor-mediated marketplace(6) , LPL supports over 32,000 financial advisors and the wealth management practices of approximately 1,100 financial institutions, servicing and custodying approximately $2.3 trillion in brokerage and advisory assets on behalf of approximately 8 million Americans. The firm provides a wide range of advisor affiliation models, investment solutions, fintech tools and practice management services, ensuring that advisors and institutions have the flexibility to choose the business model, services, and technology resources they need to run thriving businesses. For further information about LPL, please visit www.lpl.com.

At LPL, independence means that advisors and institution leaders have the freedom they deserve to choose the business model, services, and technology resources that allow them to run a thriving business. They have the flexibility to do business their way. And they have the freedom to manage their client relationships, because they know their clients best. Simply put, we take care of our advisors and institutions, so they can take care of their clients.

For further information about LPL, please visit www.lpl.com.

Join the LPL team and help us make a difference by turning life’s aspirations into financial realities. EOE.

Information on Interviews:

LPL will only communicate with a job applicant directly from an @lplfinancial.com email address and will never conduct an interview online or in a chatroom forum. During an interview, LPL will not request any form of payment from the applicant, or information regarding an applicant’s bank or credit card. Should you have any questions regarding the application process, please contact LPL’s Human Resources Solutions Center at (855) 575-6947.

EAC 5.19.26

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior Vulnerability Management Engineer
Senior Vulnerability Management Engineer

LPL Financial LLC • Fort Mill (SC), Charlotte (NC)

On-site
USD 101,000 - 168,000
401K matching
Health benefits
Employee stock options
+1
Sr. Application Security Engineer
Sr. Application Security Engineer

LPL Financial • San Diego (CA)

On-site
USD 101,000 - 168,000
Sr. Application Security Engineer
Sr. Application Security Engineer

LPL Financial • Tempe (AZ)

On-site
USD 101,000 - 168,000
401K matching
Health benefits
Employee stock options
+2
Sr. Application Security Engineer
Sr. Application Security Engineer

LPL Financial • Fort Mill (SC)

On-site
USD 101,000 - 168,000
401K matching
Health benefits
Employee stock options
+2
Sr. Application Security Engineer
Sr. Application Security Engineer

LPL Financial • Austin (TX)

On-site
USD 101,000 - 168,000
Sr. Application Security Engineer
Sr. Application Security Engineer

LPL Financial LLC • Town of Charlotte (NY), Fort Mill (SC)

On-site
USD 101,000 - 168,000
AVP, Engineering Security Operations Manager
AVP, Engineering Security Operations Manager

LPL Financial • Austin (TX)

On-site
USD 129,000 - 217,000
401K matching
Health benefits
Employee stock options
+2
AVP, Engineering Security Operations Manager
AVP, Engineering Security Operations Manager

LPL Financial • San Diego (CA)

On-site
USD 129,000 - 217,000
AVP, Engineering Security Operations Manager
AVP, Engineering Security Operations Manager

LPL Financial • Fort Mill (SC)

On-site
USD 129,000 - 217,000
401K matching
Health benefits
Employee stock options
+2
VP, Cloud Security Operations
VP, Cloud Security Operations

LPL Financial • Austin (TX)

On-site
USD 154,000 - 258,000
401(k) matching
Health benefits
Employee stock options
+2