Staff Security Engineer - Vulnerability Management US Public Sector | Okta

Okta Inc

Hybrid Actively hiring Verified listing
San Francisco, CA Posted 28 days ago $180,000$247,500 / year

Market check

Salary context

Above market

How this pay compares to similar roles

Similar $175k
This role $214k
$115k most similar roles pay here $262k

This role pays more than 80% of similar roles. Most pay $147,608–$203,300 — the shaded band above. At the midpoint, this role pays about $214k versus about $175k for comparable roles.

Based on 240 similar postings.

Employer

About Okta Inc

Okta, Inc. is an American identity and access management company based in San Francisco. It provides cloud software that helps companies manage and secure user authentication into applications, and for developers to build identity controls into applications, websites, web services, and devices.[

Okta Inc currently has 145 open roles on FindRole.

Listed pay typically runs $194,000–$267,000 across 145 roles with salary data.

Most-posted roles

View all roles at Okta Inc

At a glance

TL;DR

Join the Okta Security team as a Staff Security Engineer specializing in Vulnerability Management for the US Public Sector. This senior-level role involves owning the full lifecycle of asset and vulnerability management, including designing cloud-based and on-prem deployments, assessing new technologies, and responding to security incidents with detailed risk analysis. You will collaborate closely with Engineering, Product, and Business Technology teams to enhance Okta’s infrastructure security. Key skills include experience in AWS core services, serverless computing environments like AWS Lambda, and proficiency in Shell scripting and Python automation. Familiarity with vulnerability scanners such as Qualys and TenableSC is beneficial. This role demands a deep understanding of vulnerabilities, exploitation, and remediation within highly regulated environments, ensuring compliance with standards like NIST 800-171 and FedRamp.

Skills

AWS Python Shell CI/CD Qualys TenableSC Prisma Cloud Wiz Orca Lacework Paramify Atlassian Jira ServiceNow CVE CVSS EPSS OWASP CISA KEV catalog DynamoDB S3 API Gateway AWS Lambda

What you'll do

  • Own the full lifecycle operations of Asset and Vulnerability Management scanning infrastructure.
  • Assess new scan technologies to determine their business value for vulnerability management.
  • Monitor security inquiries and incidents, communicating real risk effectively based on technical details.
  • Contribute to internal processes that accelerate remediation of critical vulnerabilities and zero-days.
  • Support compliance teams in preparing POAMs and Continuous Monitoring processes for regulatory standards.

What we're looking for

  • 5+ years of multifaceted cybersecurity experience in a technology-centric company.
  • Proven ability to architect and deploy self-hosted vulnerability management solutions in AWS for regulated environments.
  • Proficiency in AWS core services, including S3, DynamoDB, API Gateway, and serverless computing with AWS Lambda.
  • Functional knowledge of vulnerabilities, exploitation, and remediation strategies.
  • Experience with commercial or open-source vulnerability scanners and reporting tools like Qualys, TenableSC, Prisma Cloud, etc.

More like this

Similar roles

Sr. Security Engineer, Vulnerability Management

Alkami

Remote (Home Office, US) 49 days ago $112,000$140,000
Wiz Tenable Qualys Rapid7 Vulcan Kenna CVSS AWS Azure GCP Prisma Cloud Orca Docker Kubernetes NIST CSF PCI DSS SOC 2 ISO 27001 Jira ServiceNow CI/CD
Remote

Staff Software Engineer - Federal | Okta

Okta Inc

WA 99 days ago $161,000$221,000
Python Terraform AWS GCP Azure CI/CD Bash PowerShell Go ETL ELT APIs MFA SAML OAuth OIDC WebAuthn Policy-as-code Prometheus Grafana

Staff Security Engineer

Qualcomm

San Diego, CA 93 days ago $149,600$224,400
C C++ Java Python System Verilog CI/CD Kubernetes AWS Docker Git PostgreSQL MongoDB Linux Nginx OAuth OpenID Connect TLS SSH GPG SELinux PCI DSS ISO 27001