Staff Cloud Security Engineer, Vulnerability Management

CVS Health

Confirmed live 2 days ago High trust
Closes in 3 days Remote

Quick summary

Work type
Remote
Location
MN
Salary
$118,450–$236,900 / yr
Posted
11 days ago
Freshness
Confirmed live 2 days ago
Closes
Sep 14, 2026 (soon)

Market check

Salary context

Competitive pay

How this pay compares to similar roles

Similar $182k
This role $178k
$104k most similar roles pay here $251k

This role pays more than 56% of similar roles. Most pay $151,206–$212,625 — the shaded band above. At the midpoint, this role pays about $178k versus about $182k for comparable roles.

Based on 240 similar postings.

Employer

About CVS Health

CVS Health is a leading American healthcare company operating retail pharmacies, pharmacy benefit management services, and a health insurance segment through Aetna, one of the nation''s largest health insurers. Industry: Healthcare & Pharmacy

CVS Health currently has 88 open roles on FindRole.

Listed pay typically runs $118,450–$284,280 across 84 roles with salary data.

Most-posted roles

View all roles at CVS Health

At a glance

TL;DR · Staff Cloud Security Engineer, Vulnerability Management

Staff Cloud Security Engineer- Vulnerability Management joins the security team to drive vulnerability remediation efforts across cloud platforms and database environments. This role involves overseeing the administration of the Minimum Security Baseline program, managing cloud security monitoring, and implementing security controls for enterprise databases. The specialist will manage OpenShift and Kubernetes clusters, ensuring secure deployment and lifecycle management while integrating security into CI/CD pipelines. Key responsibilities include leading risk assessments, coordinating cross-functional teams to prioritize vulnerabilities, and mentoring team members on best practices. The role requires expertise in AWS, Azure, GCP, and database technologies, alongside proficiency in Python, PowerShell, Bash, Terraform, and Ansible. Candidates will utilize tools like Wiz, Qualys, or Tenable to secure infrastructure while ensuring compliance with standards such as GDPR, HIPAA, SOC 2, and PCI-DSS across the enterprise.

What you'll do

  • Design and maintain security measures for cloud platforms including AWS, Azure, GCP, and OpenShift.
  • Implement and manage security controls, encryption, and access protocols for enterprise databases.
  • Secure OpenShift and Kubernetes clusters by managing RBAC, compliance controls, and container scanning.
  • Lead vulnerability management programs by conducting scans, risk assessments, and tracking remediation efforts.
  • Automate security processes and integrate security checks into CI/CD pipelines.
  • Ensure infrastructure complies with regulatory standards such as GDPR, HIPAA, SOC 2, and PCI-DSS.
  • Mentor team members and provide technical guidance on security best practices and operational workflows.

What we're looking for

  • Bachelor’s degree or equivalent experience (High School Diploma and 4 years relevant experience).
  • 7+ years of experience in cloud security, database security, or related security roles.
  • 5+ years of experience with Cloud Platforms (AWS, Azure, GCP) and Database technologies.
  • 5+ years of experience in scripting and automation using Python, PowerShell, Bash, Terraform, or Ansible.
  • 3+ years of experience with vulnerability scanning tools and security assessment techniques.
  • 2+ years of hands-on experience with OpenShift/Kubernetes administration and security.
  • Knowledge of regulatory compliance standards such as GDPR, HIPAA, PCI-DSS, NIST, or ISO 27001.
  • Relevant certifications like CISSP, CCSP, AWS/Azure Security, or Red Hat OpenShift Security are preferred.

More like this

Similar roles

Staff Cloud Security Engineer

Warner Bros. Discovery

Atlanta, GA +2 52 days ago $115,780$215,020
AWS GCP Azure Kubernetes Docker Python CI/CD DevSecOps CSPM Wiz Prisma Cloud Orca Microservices Security Automation Threat Modeling XDR zero-trust architecture Office 365 Atlassian
7+ yrs exp Hybrid

Lead InfoSec Engineer, Vulnerability Management

S&P Global

New York, NY 53 days ago $125,000$145,000
Vulnerability Management SAST DAST Qualys Tanium Rapid7 Fortify Checkmarx Veracode Power BI Tableau NIST Cybersecurity Framework ISO 27001 CVE CVSS CWE AI/ML Risk Management
7+ yrs exp

Senior Vulnerability Management Engineer

SoFi

Seattle, WA +1 7 days ago $124,800$234,000
Vulnerability Management Kubernetes Python Go Java Bash SCA SAST DAST CI/CD Qualys Helm Maven Gradle Webhooks OWASP CVE CVSS CWE
4+ yrs exp

Vulnerability Management Engineer

SoFi

San Francisco, CA 7 days ago $99,200$186,000
Vulnerability Management AppSec SAST DAST AWS Python Go Bash Java CI/CD OWASP CVE CVSS Agile

Senior Systems Engineer, Vulnerability Management

Neurocrine

Remote (San Diego, CA) 8 days ago $103,300$141,000
AWS Azure Linux Windows Python Bash PowerShell Ansible SSM) Patch Manager WSUS SCCM Intune Configuration Management ITIL ServiceNow GxP SOX Vulnerability Management Patch Management
4+ yrs exp Remote

Cloud Security Engineer

Leidos

Seaside, CA 129 days ago $107,900$195,050
Cloud Security RMF DevSecOps Zero Trust FedRAMP DISA SRG STIGs eMASS AWS Azure Kubernetes Docker IAM Fortify Sonatype Encryption
10+ yrs exp