Datavant2
Datavant2

Vulnerability & Exposure Management Engineer

engineeringfull-timeRemote - United States
SALARY
Not listed
WORK TYPE
remote
JOB TYPE
full-time
INDUSTRY
healthcare
Apply for this position
✦ AutoApply Sick of applying? We apply to roles like this for you, up to 20 a month.
Learn more

About the role

What We’re Looking For

A security engineer to help build and operate an engineering-driven vulnerability and exposure management program, focused on turning vulnerability data into actionable signals embedded in modern engineering workflows. This role emphasizes automation, practical risk reduction, and hands-on execution across application, cloud, and infrastructure environments. It is not primarily a ticket-tracking or audit-administration role, but a technical role contributing to scalable solutions.

What You Will Do

  • Contribute to the design, implementation, and operation of Datavant’s vulnerability and exposure management capabilities, with a focus on reducing real exploit risk.
  • Build and enhance automation and workflows that ingest, normalize, and prioritize vulnerability signals across multiple sources.
  • Develop and improve engineer-facing dashboards and integrations that help teams understand and act on vulnerability risk.
  • Work with product and engineering teams to assess vulnerability findings, explain exploitability and impact, and support practical remediation or mitigation approaches.
  • Help embed vulnerability signals into existing engineering workflows (CI/CD, PRs, backlogs) to improve visibility and adoption.
  • Support validation of remediation efforts to ensure exposure is meaningfully reduced.
  • Assist in translating compliance and control requirements into scalable technical implementations.
  • Support FedRAMP and other assessments by validating technical evidence and remediation outcomes.
  • Execute technical projects that improve vulnerability visibility, prioritization, and risk reduction.
  • Contribute to improving processes, tooling, and automation within the vulnerability management program.

What You Need to Succeed

  • Solid technical experience in vulnerability management and application security, with hands-on exposure to assessing and prioritizing vulnerability findings.
  • Demonstrated ability to build or automate technical workflows using scripting or programming languages such as Python or Go.
  • Experience working with application, cloud, or container security in AWS and/or Azure environments.
  • Working knowledge of security controls and compliance frameworks (e.g., NIST, CIS, FedRAMP), with the ability to apply requirements in practical engineering contexts.
  • Ability to reason about exploitability, exposure, and impact beyond severity scores.
  • Experience collaborating with engineering teams to support remediation efforts.
  • Clear communication skills and ability to explain technical risk to varied audiences.
  • Ability to operate effectively in fast-paced environments with evolving priorities.
  • Foundational understanding of how vulnerability management fits within broader security and engineering functions.
  • Experience with commercial security tooling (e.g., SAST, SCA, cloud security platforms) and ability to interpret tool outputs critically.

What Helps You Stand Out

  • Experience building custom scripts,
✦ Sick of applying to 40 jobs a month?
I rewrite your resume for ATS by hand first. Once you sign off on it, AutoApply applies to up to 20 roles like this a month, cover letter in your own voice each time. From $14.99/mo, cancel anytime.
Get AutoApply
Apply now
Vulnerability & Exposure Management Engineer at Datavant2 — Remote