Security Controls Engineer

Gen Digital

Confirmed live yesterday High trust

Quick summary

Work type
On-site
Location
Tempe, AZ
Posted
137 days ago
Freshness
Confirmed live yesterday

Market check

Salary context

How this pay compares to similar roles

Similar $175k
$120k most similar roles pay here $226k

This listing doesn't post a salary. Most similar roles pay $145,700–$203,500.

Based on 240 similar postings.

Employer

About Gen Digital

Gen Digital is a US-based consumer cybersecurity company formed by the merger of NortonLifeLock and Avast. It sells identity protection, antivirus, VPN, and privacy software under the Norton, Avast, AVG, Avira, LifeLock, ReputationDefender, and CCleaner brands.

Gen Digital currently has 23 open roles on FindRole.

Listed pay typically runs $172,240–$190,140 across 16 roles with salary data.

Most-posted roles

View all roles at Gen Digital

At a glance

TL;DR · Security Controls Engineer

As a Security Controls Engineer, you will join a team focused on translating complex legal, regulatory, and security framework requirements into actionable vulnerability management and remediation programs across multiple security and DevOps teams. You will own the end-to-end vulnerability management lifecycle for infrastructure, cloud, applications, containers, and third-party components. Your daily work involves integrating SAST, DAST, SCA, and IaC scanning into CI/CD pipelines while managing risk-based prioritization and tracking remediation via Jira or Azure Boards. You will develop dashboards to report on SLA compliance and vulnerability aging to senior leadership. The role requires expertise in cloud environments like AWS, Azure, or GCP, as well as familiarity with frameworks such as ISO 27001, NIS2, SOC 2, GDPR, and PCI DSS to ensure compliance and secure development practices.

What you'll do

  • Translate legal, regulatory, and security framework requirements into actionable technical tasks for engineering teams.
  • Manage the end-to-end vulnerability lifecycle across infrastructure, cloud, applications, containers, and third-party components.
  • Integrate automated security scanning tools like SAST, DAST, and SCA into CI/CD pipelines.
  • Coordinate remediation efforts across multiple security domains and DevOps teams to ensure consistent adoption.
  • Develop dashboards to report vulnerability aging, SLA compliance, and risk exposure to senior leadership.
  • Map vulnerability management practices to regulatory frameworks and collect evidence for audits.
  • Automate playbooks and standardize templates to reduce manual triage effort and improve program maturity.

What we're looking for

  • A degree in Information Technology or a related field with a focus on cybersecurity (preferred).
  • 3+ years of experience in vulnerability management, security engineering, or security program delivery in cloud/software environments.
  • Experience in cloud environments including AWS, Azure, or GCP and understanding of shared responsibility models.
  • Working knowledge of regulatory security requirements and implementation of frameworks like ISO 27001, NIS2, SOC 2, GDPR, or PCI DSS.
  • Ability to translate policy and control language into developer-ready user stories, acceptance criteria, and runbooks.
  • Experience using work tracking tools such as Jira or Azure DevOps to create status reports and dashboards.
  • Understanding of modern SDLC/DevOps practices including CI/CD, IaC, pipelines, and change management.
  • A wry sense of humor (preferred).

More like this

Similar roles

Staff Vulnerability Management Engineer

SoFi

Seattle, WA +1 43 days ago $144,000$247,500
Vulnerability Management Python Go JavaScript TypeScript Java Kubernetes AWS GCP Azure CI/CD Infrastructure as Code SAST SCA SBOM Tines Wiz Semgrep Snyk Rapid7 Tenable Checkmarx CVSS EPSS CISA KEV AI/ML

Lead InfoSec Engineer, Vulnerability Management

S&P Global

New York, NY 53 days ago $125,000$145,000
Vulnerability Management SAST DAST Qualys Tanium Rapid7 Fortify Checkmarx Veracode Power BI Tableau NIST Cybersecurity Framework ISO 27001 CVE CVSS CWE AI/ML Risk Management
7+ yrs exp

Lead, Application Security

Prudential Financial

Newark, NJ 11 days ago $123,700$204,100
SAST SCA DAST ASPM DevSecOps CI/CD Python PowerShell Bash AWS Azure GCP OWASP Top 10 MITRE ATT&CK NIST PCI DSS SBOM Policy-as-Code

Security Engineer

SpaceX

Hawthorne, CA 105 days ago $130,000$155,000
Python Go C# C/C++ Rust Linux Windows macOS PKI SAML OIDC OAuth TCP/IP REST HTTP-RPC Web Application Firewalls

Security Engineer

SpaceX

Cape Canaveral, FL 105 days ago
Python Go C# C C++ Rust Linux Windows macOS SAML OIDC OAuth PKI TCP/IP REST HTTP-RPC Web Application Firewalls

Security Engineer

Adobe

Seattle, WA +1 87 days ago $149,400$216,300
Entra ID Okta SailPoint Zero‑Trust RBAC ABAC M365 Slack GitHub Workday Google Teleport Vault CI/CD Python PowerShell Terraform infrastructure‑as‑code
2+ yrs exp