Principal Cyber Vulnerability Engineer Dallas or Detroit metro

  45

  2

  Atlanta


Vacancy: Not Disclosed Posted: 01-Jul-2024 Applicants: 50

Full Job Description

Full job description

Principal Cyber Vulnerability Engineer


The Cyber Vulnerability Operations Team consists of both the Application Security (AppSec) teams and the Vulnerability Management Operations (VM Ops) teams. Together, the Vulnerability Operations team collaborates with peers across Comerica to provide visibility into vulnerabilities within applications and infrastructure and ensures they are remediated, as well as facilitates and enforces the use of secure development practices across the bank. The Principal Cyber Vulnerability Operations Engineer role is responsible for vulnerability scanning, prioritizing vulnerabilities, and driving remediations while partnering with the application and infrastructure teams. The ideal candidate for this role will have hands-on expertise working in vulnerability management and operations and will have knowledge of tools and technologies such as Qualys, PowerBI, Windows/Linux Server administration, experience coding in one programming language. This candidate will be experienced in working with cross-functional teams in vulnerability management and prioritization and will have the ability to automate while using a programming language. Ideal candidate will have expertise in Qualys Policy management , PCI Compliance and VMDR modules. They will have working knowledge of server administration in Windows/Unix/Linux OS. They will have experience creating policies in vulnerability management product that align to internal corporate standards.

 

Position Responsibilities:


Vulnerability Management Operations

  • Perform vulnerability assessments and common baseline control scans across the Comerica environment and report on Key Risks Indicators (KRIs).
  • Lead security vulnerabilities and risk management activities across Comerica, including identifying vulnerabilities and supporting application/system owners to manage risks/remediate vulnerabilities.
  • Establish and mature processes around vulnerability management, remediation, and reporting.
  • Lead key projects such as vulnerability prioritization to remediate critical key vulnerabilities.
  • Participate in vendor evaluations and selection for vulnerability management products, such as external attack surface management. Implement and support those products on a continuous basis.
  • Stay current on vulnerability management best practices across the industry.

Administration & Reporting

  • Develop a comprehensive set of metrics to track on enterprise risks and remediation trends and keep Management informed of them through accurate, timely, and appropriate reporting.
  • Support monthly KRI reporting through data collection, working with application and infrastructure teams to remediate vulnerabilities.
  • Create presentations based off KRI materials and keep Management informed of them.

Technical Consulting & Communication

  • Drive technical excellence and implementation of vulnerability management best practices in collaboration with technology teams across the enterprise.
  • Provide consultation to and work closely with other functional infrastructure areas/departments on multiple initiatives to meet common organizational/business goals and objectives.
  • Collaborate with business units, application and infrastructure teams, and vendors to identify, review and evaluate solution requirements.
  • Automate existing manual processes in order to create improved processes and create faster delivery.
  • Coach and mentor more junior team members and application teams on vulnerability remediation efforts.

Risk Management

  • Identify and communicate gaps in our vulnerability management practices.
  • Participate in Red Team exercises to identify potential vulnerabilities proactively.
  • Partner with application and infrastructure owners to provide consulting on vulnerability remediation to allow them to appropriately remediate large highly complex vulnerabilities within the SLA (service level agreement) and reduce risk for the bank.
  • Develop cyber vulnerability analysis for known vulnerabilities, as well as cyber-related metrics and reporting deliverables.


Position Qualifications:

  • Bachelor’s Degree from an accredited university in Computer Science, Engineering, Information Systems, Cybersecurity, or Business Administration OR equivalent through a combination of High School/GED education and/or technology experience OR 12 years of relevant experience
  • 6 years of experience in Cyber or Information Security, preferably in Vulnerability Management and Security in the financial services industry
  • 5 years of experience in collaborating across Enterprise IT and Security to remediate vulnerabilities identified
  • 3 years of experience with programming concepts and fundaments (e.g. Python, .Net, Java, Java Script, or Powershell) and ability to automate with those tools
  • 3 years of experience in in Qualys Policy management , PCI Compliance and VMDR modules
  • 3 years of experience/working knowledge in server administration
  • 2 years of experience coaching/mentoring contractors
  • 2 years of experience Vulnerability assessments, including creating, maintaining, and troubleshooting scan configurations across the enterprise
  • 2 years of experience with Vulnerability Management across cloud platforms and with EVM management/prioritization
  • 2 years of experience with endpoint protection technologies

 

Auburn Hills Operations Center
8:00am - 5:00pm Monday - Friday

Apply Mode:

Online Mode (No Fees required) 100% Free to apply

Who Can Apply in Comerica:

  • All Candidates can apply in Comerica job Recruitment 2026
  • Male Female both can apply in Comerica career vacancies 2026.

Experience Required:

2 Yr Exp. Holder can apply in Comerica

Selection Process:

Principal Cyber Vulnerability Engineer Dallas or Detroit metro Selection Process: The Selection will be selected on the basis of the Below Given Details.

  • Interview
  • Document Verification

Kindly do check the Official Notification and verify your eligibility before applying for the job notification. Notification Link Is Given Below.

Application Fees:

Principal Cyber Vulnerability Engineer Dallas or Detroit metro application fees 100% free for all.

No fees required.

Pay Scale(Salary):

Comerica company Job Pay Scale: Selected candidates will get salary on the basis of the details given Below.

  • Salary will be according to posts, qualification, Experience and jio company rule.

Kindly do check the Official Notification and For more salary details. Notification Link Is Given Below.

Educational Qualification:

Candidates Who Have Passed bachelor degree or its Equivalent From a Recognized Board or University Are Eligible For this recruitment.

kindly check the Official Notification for more qualification details. Notification Link Is Given Below.

Document Required:

Required Documents For This recruitment: Candidate should have this Document Before Apply Online. Candidates Are Suggested To Read the Official Notification Before Applying.

  • Document – Qualifications certificate with marksheets.
  • ID Proof Like The Adhar Card, PAN Card, Voter ID, Passport (Any one or Required)
  • Passport size Photographs
  • Signature

How to apply:

  1. All the eligible candidates can apply for This Job as mentioned below
  2. Read official notification carefully From the Official Website.
  3. Read Notification Carefully Before Apply.
  4. Keep Ready Your All Documents Like Adhar Card, 10th, 12th, Graduate Certificates or Any.
  5. Fill The Application Form (Link Is Given Below)
  6. Attach Required Document and Passport Size Photo with Signature.
  7. Then Submit. Done.

Note

Beware of fake consultant Don't pay any amount to anyone ,private company or joblagii do not charge any amount from anyone.