Vulnerability Management Engineer

Steelcase

Grand Rapids (MI)

Hybrid

USD 110,000 - 150,000

Full time

3 days ago
Be an early applicant
Application generator

Stand out for this role — generate a tailored resume and cover letter in about a minute.

Get past ATS filters

Benefits offered by this job

Hybrid work schedule
Continuing education and learning
Inclusive culture
Meaningful, planet-positive work

Job summary

Steelcase is seeking a security engineer to own the vulnerability management program across endpoints, servers, cloud, and manufacturing environments. You will design AI-assisted triage and automated remediation workflows, ensuring rapid patching and secure configurations across teams.

You will collaborate with infrastructure, cloud, and plant-floor teams, run exposure monitoring, and translate data into actionable metrics for leadership.

Qualifications

  • Hands-on experience with vulnerability scanning, assessment, or remediation in an enterprise environment.
  • Automation-first mindset with scripting (Python/PowerShell) or APIs to build repeatable security workflows.
  • Ability to prioritize risks using CVSS/EPSS and asset criticality in context.
  • A collaborative style and ability to communicate technical risk clearly.
  • Bachelor's degree in a related field or equivalent experience.

Responsibilities

  • Owning the vulnerability management program end to end across endpoints, servers, cloud, containers, applications, and manufacturing environments.
  • Building AI-assisted triage and prioritization that accounts for exploitability and business impact.
  • Designing automated remediation workflows with patch orchestration, ticket routing, and verification.
  • Partnering with infrastructure, cloud, application, and plant-floor teams to make secure configuration the default.
  • Running and improving attack surface management, external exposure monitoring, and test coordination.
  • Turning noisy data into clear metrics to show risk trends to leaders.
  • Experimenting with new tooling and sharing learnings with the security team.

Education

Bachelor's degree or equivalent experience

Tools

Qualys
Tenable
Rapid7
Wiz
Nuclei
Microsoft Defender Vulnerability Management

Job description

Who you are:

You are not satisfied with a scanner that emails out a list of forty thousand findings. You want to know which ten actually matter, why, and how to get them fixed, ideally without a person having to chase each one.

You are a builder at heart. You would rather write the automation that closes the loop than track the ticket by hand, and you are excited by the idea of AI agents that triage, correlate, and remediate alongside you.

You like working with people across infrastructure, cloud, application, and manufacturing teams, and you know that making it easy to fix things is most of the job.

Helping You Thrive By:
  • Offering competitive wages and benefits, that support your life both in and out of work
  • Providing a flexible hybrid work schedule, meaning we expect the office to be your primary place of work, balanced with choice and control.
  • Creating continuous learning opportunities to help you grow and upskill.
  • Fostering a culture of inclusion where employees feel seen, heard and valued - and living it out every day.
  • Empowering you to make a meaningful impact on people and the planet through your work and Steelcase's ongoing commitment.
You'll Support Meaningful Work By:
  • Owning the vulnerability management program end to end across endpoints, servers, cloud, containers, applications, and manufacturing environments.
  • Building AI-assisted triage and prioritization that combines exploitability, threat intelligence, asset context, and business impact so we fix what attackers will actually use, not what a severity score says.
  • Designing automated remediation workflows: patch orchestration, ticket creation and routing, exception handling, and verification, with people in the loop where it matters and out of the loop where it does not.
  • Partnering with infrastructure, cloud, application, and plant-floor teams to make secure configuration and rapid patching the default rather than the exception.
  • Running and improving attack surface management, external exposure monitoring, and penetration test coordination and follow-through.
  • Turning noisy data into clear metrics and stories that help leaders see where risk is shrinking and where it is not.
  • Experimenting constantly: evaluating new tooling, building proofs of concept, and sharing what you learn with the broader security team.
Minimum Qualifications
  • Hands-on experience with vulnerability scanning, assessment, or remediation in an enterprise environment.
  • An automation-first instinct: you reach for a repeatable solution rather than a manual one. How you get there is up to you - scripting in Python or PowerShell, working with APIs, or using AI and low-code tooling to build what you need.
  • Understanding of how vulnerabilities are exploited and how to prioritize them in context, using inputs such as CVSS, EPSS, known-exploited lists, and asset criticality.
  • A collaborative working style and the ability to explain technical risk clearly to the people who need to fix it.
  • Bachelor's degree in a related field, or equivalent experience.
Desired Skills and Experience
  • Experience with platforms such as Qualys, Tenable, Rapid7, Wiz, Nuclei, or Microsoft Defender Vulnerability Management.
  • Experience with cloud security posture management, container security, or application security testing.
  • Familiarity with OT/ICS or manufacturing environments and their patching constraints.
  • Experience using large language models, agents, or workflow automation to enrich, triage, or act on security findings.
  • Experience with ServiceNow or similar platforms for remediation workflows.
  • Certifications such as Security+, GSEC, GCIH, OSCP, CISSP, or cloud provider security certifications.

Qualified applicants must be authorized to work in the United States on a full-time basis. Steelcase will not provide support for or sponsor work authorization and/or visas for this role.

QualificationsAdditional Information

At Steelcase, we put people at the center of everything we do. We understand the role of work and believe that it can bring meaning and purpose to the lives of our customers and our employees. We prioritize supporting our employees both in and out of work, in all aspects of their lives. When we bring our talents together, we make a positive lasting impact through our work and communities.

Steelcase provides employment opportunities to all qualified employees and applicants without regard to race, color, creed, genetic information, religion, national origin, gender, sexual orientation, gender identity and expression, age, disability, or veteran status and bases all employment decisions only on valid job requirements. If we can make the application process easier through accommodation, please email us at myhr@steelcase.com.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Vulnerability Management Engineer
Vulnerability Management Engineer

Purchaseyourfreedom • Grand Rapids (MI)

Hybrid
USD 110,000 - 160,000
Competitive wages & benefits
Flexible hybrid work schedule
Continuous learning opportunities
+2
Automation-Driven Vulnerability Engineer
Automation-Driven Vulnerability Engineer

Purchaseyourfreedom • Grand Rapids (MI)

Hybrid
USD 110,000 - 160,000
Competitive wages & benefits
Flexible hybrid work schedule
Continuous learning opportunities
+2
Senior Identity Management Engineer
Senior Identity Management Engineer

Steelcase • Grand Rapids (MI)

Hybrid
USD 100,000 - 135,000
Hybrid work schedule
Competitive wages and benefits
Continuous learning opportunities
+1
Senior Identity Management Engineer
Senior Identity Management Engineer

Purchaseyourfreedom • Grand Rapids (MI)

On-site
USD 100,000 - 135,000
Vulnerability Management Engineer, AI-Driven Remediation
Vulnerability Management Engineer, AI-Driven Remediation

Steelcase • Grand Rapids (MI)

Hybrid
USD 110,000 - 150,000
Hybrid work schedule
Continuing education and learning
Inclusive culture
+1
Vulnerability Management Lead
Vulnerability Management Lead

K2Share LLC • Washington

On-site
USD 120,000 - 180,000
Vulnerability Management Lead
Vulnerability Management Lead

K2United, LLC. • Washington

On-site
USD 130,000 - 170,000
Vulnerability Management Lead
Vulnerability Management Lead

K2United • Washington

On-site
USD 120,000 - 180,000
Manager, Vulnerability Management
Manager, Vulnerability Management

Optimum • Norwalk (CT)

On-site
USD 133,000 - 220,000
Cyber Manager - Governance, Risk and Compliance
Cyber Manager - Governance, Risk and Compliance

Steelcase • Grand Rapids (MI)

Hybrid
USD 150,000 - 200,000
Hybrid work model
Continual learning opportunities
Competitive wages and benefits