Nasuni

Nasuni

Security Engineer II - Cloud & Vulnerability Management

Remote - United States · Mid · Contract

Sponsorship not specifiedDetected 37 days ago
AWSGCPAzureCloud PlatformsCybersecurityCollaboration

About the role

  • This role is responsible for executing and continuously improving vulnerability management, asset visibility, and cloud security processes.
  • The Security Engineer II works independently within defined areas of ownership while partnering with senior security team members on broader security strategy and program evolution.

Responsibilities

  • Own day-to-day execution of Nasuni's vulnerability management processes and tooling across cloud infrastructure (Wiz), on-premises and network assets (Rapid7), while contributing to ongoing program improvements.
  • Support the maintenance of a current, accurate asset inventory across cloud workloads, physical infrastructure, network devices, and employee endpoints.
  • Manage the full vulnerability lifecycle, including identification, triage, prioritization, remediation coordination, and validation.
  • Partner with Engineering, SRE, and IT/Infrastructure teams to drive remediation activities.
  • Contribute to patch management coordination efforts and support secure configuration baseline reviews across key asset classes.
  • Maintain visibility and inventory accuracy across cloud, endpoint, network, and infrastructure assets in partnership with IT/Infrastructure teams.
  • Support secure configuration of cloud workloads, network controls, IAM, and infrastructure components in collaboration with engineering and SRE teams.
  • Provide security input on infrastructure changes and support security reviews as needed.
  • Support security incidents where infrastructure, asset, or vulnerability context is needed.
  • Independently manage and investigate moderate-severity security incidents within your domain; conduct root cause analysis and contribute to post-incident reviews.

Requirements

  • Participation in an on-call rotation is required.

Skills

  • Experience with cloud security platforms, ideally including Wiz or a comparable CSPM tool
  • familiarity with AWS, Azure, or GCP security fundamentals.
  • Hands-on experience with vulnerability management tools such as Rapid7 InsightVM, Qualys, Tenable, or equivalent.
  • Familiarity with secure configuration standards such as CIS Benchmarks and common vulnerability frameworks (CVSS, CVE).
  • Education and Certifications
  • Bachelor's degree in Information Security, Computer Science, or a related field
  • or equivalent practical experience.
  • Certifications preferred: CompTIA Security+, AWS Security Specialty, CySA+, or equivalent.
  • Why work at Nasuni?

Compensation

  • In accordance with U.S. pay transparency laws, Nasuni is committed to providing visibility into compensation for all U.S.-based roles.
  • Click HERE to view our compensation ranges by job grade.
  • Actual compensation will be based on a variety of factors, including a candidate's experience, skills, education, and work location.

Benefits

  • "Take What You Need" paid time off policy
  • Comprehensive health, dental and vision plans
  • Company-paid life and disability insurance
  • 401(k) and Roth IRA retirement plan
  • Wide array of wellbeing offerings
  • Maintain accurate records of scanning activity, remediation outcomes, and asset coverage for audit readiness.
  • Flexible remote work policy
  • Free on-site fitness centers and stocked kitchens in select

Company info

  • Nasuni does not accept agency resumes.
  • Please do not forward resumes to our job boards, Nasuni employees or any other company location.
  • Nasuni is not responsible for any fees related to unsolicited resumes.
  • Nasuni is an equal opportunity employer.
  • The equal employment opportunity policy at Nasuni protects employees and job applicants from discrimination on the bases of race, religion, color, sex (including pregnancy, gender identity, and sexual orientation), parental status, national origin, age, disability, family medical history or genetic information, political affiliation, military service, or other non-merit based factors.
  • These protections extend to all management practices and decisions, including recruitment and hiring practices, appraisal systems, promotions, and training and career development programs.

This listing is sourced directly from Nasuni's careers page and normalized into a canonical job model.