Lead Vulnerability Management Engineer

Cloudflare, Inc

Confirmed live yesterday High trust
Hybrid

Quick summary

Work type
Hybrid
Location
Austin, TX
Posted
23 days ago
Freshness
Confirmed live yesterday

Market check

Salary context

How this pay compares to similar roles

Similar $185k
$123k most similar roles pay here $236k

This listing doesn't post a salary. Most similar roles pay $159,000–$211,200.

Based on 240 similar postings.

Employer

About Cloudflare, Inc

Cloudflare is a prominent cloud services and security company that provides content delivery network (CDN), DDoS mitigation, and Zero Trust security services to millions of internet properties.

Cloudflare, Inc currently has 190 open roles on FindRole.

Listed pay typically runs $215,000–$278,000 across 59 roles with salary data.

Most-posted roles

View all roles at Cloudflare, Inc

At a glance

TL;DR · Lead Vulnerability Management Engineer

Lead Vulnerability Management Engineer The Lead Vulnerability Management Engineer serves as the technical authority for the vulnerability management program, focusing on architecture, systems design, and long-term technology strategy. You will lead the evaluation and integration of advanced security technologies across global infrastructure and cloud environments while collaborating with Engineering, Infrastructure, and Product teams to build scalable remediation workflows. Key responsibilities include conducting advanced scanning, validating findings, triaging critical risks, and designing AI-driven solutions to automate the vulnerability lifecycle. You will also act as a technical liaison for GRC teams to ensure compliance with frameworks like FedRAMP, SOC-2, and PCI-DSS. Required skills include experience with platforms such as Qualys, Nessus, or Rapid7 InsightVM, knowledge of CVSS and EPSS scoring, and proficiency in Python or AI tools like Opencode and Windsurf to manage complex technical workflows.

What you'll do

  • Serve as the technical authority and mentor for the Vulnerability Management team's architecture and systems design.
  • Lead the evaluation, integration, and architectural design of security tools across global infrastructure and cloud environments.
  • Conduct advanced vulnerability scanning and perform in-depth validation to triage and prioritize critical risks.
  • Develop AI-driven solutions to automate the vulnerability lifecycle and eliminate repetitive operational tasks.
  • Manage the remediation backlog by tracking risk reduction progress and reporting on systemic security trends.
  • Translate complex technical vulnerabilities into clear compliance context for GRC teams and audit readiness.
  • Convert regulatory requirements into actionable technical scanning policies and automated remediation workflows.

What we're looking for

  • A Bachelor's degree in Computer Science, Information Security, or related security certifications is required.
  • 5+ years of Vulnerability Management experience in a senior or lead technical capacity is required.
  • You must have a solid understanding of cloud, enterprise, and government security frameworks including FedRAMP, SOC 2, PCI DSS, and NIST.
  • Experience with vulnerability risk scoring methodologies like CVSS and EPSS is required.
  • Hands-on experience with vulnerability scanning platforms such as Qualys, Nessens, or Rapid7 InsightVM is required.
  • Demonstrated experience using AI to develop and manage complex workflows and applications is required.
  • Experience with scripting languages (Python), specific AI tools (Opencode/Windsurf), and infrastructure pentesting tools are preferred.
  • Export control laws, including the U.S. Export Administration Regulations.

More like this

Similar roles

Senior Vulnerability Management Engineer

SoFi

Seattle, WA +1 7 days ago $124,800$234,000
Vulnerability Management Kubernetes Python Go Java Bash SCA SAST DAST CI/CD Qualys Helm Maven Gradle Webhooks OWASP CVE CVSS CWE
4+ yrs exp

Staff Vulnerability Management Engineer

SoFi

Seattle, WA +1 43 days ago $144,000$247,500
Vulnerability Management Python Go JavaScript TypeScript Java Kubernetes AWS GCP Azure CI/CD Infrastructure as Code SAST SCA SBOM Tines Wiz Semgrep Snyk Rapid7 Tenable Checkmarx CVSS EPSS CISA KEV AI/ML

Lead InfoSec Engineer, Vulnerability Management

S&P Global

New York, NY 53 days ago $125,000$145,000
Vulnerability Management SAST DAST Qualys Tanium Rapid7 Fortify Checkmarx Veracode Power BI Tableau NIST Cybersecurity Framework ISO 27001 CVE CVSS CWE AI/ML Risk Management
7+ yrs exp

Vulnerability Management Engineer

SoFi

San Francisco, CA 7 days ago $99,200$186,000
Vulnerability Management AppSec SAST DAST AWS Python Go Bash Java CI/CD OWASP CVE CVSS Agile

Senior Systems Engineer, Vulnerability Management

Neurocrine

Remote (San Diego, CA) 8 days ago $103,300$141,000
AWS Azure Linux Windows Python Bash PowerShell Ansible SSM) Patch Manager WSUS SCCM Intune Configuration Management ITIL ServiceNow GxP SOX Vulnerability Management Patch Management
4+ yrs exp Remote