Senior Security Engineer, Vulnerability Management Expert

2 days ago


Cambridge, Massachusetts, United States Moderna Full time
Role Overview

We are seeking a highly skilled and experienced Senior Security Engineer to join our dynamic team at Moderna. The ideal candidate will have extensive experience in vulnerability management, patch management, and incident response.

This role involves driving and executing vulnerability management processes, ensuring the security posture of enterprise assets, and supporting the incident response team.

Key Responsibilities
  • Develop and implement a comprehensive vulnerability management program.
  • Conduct regular vulnerability assessments and penetration testing to identify security weaknesses.
  • Continuously monitor and assess publicly disclosed vulnerabilities to determine their potential impact on enterprise assets.
  • Provide detailed analysis and reports on identified vulnerabilities specific to Moderna's systems, assets, and environments, including risk assessments, mitigation recommendations, and remediation timelines.
  • Stay up-to-date with the latest security threats, trends, and technologies to ensure the organization's security measures are current and effective, working closely with our Threat Intelligence team.
  • Prioritize and coordinate remediation efforts of identified vulnerabilities across multi-functional engineering and manufacturing partners.
  • Develop and maintain metrics to measure the effectiveness of the vulnerability management program.
  • Perform security assessments of applications, systems, and networks to ensure compliance with security policies and standards.
  • Collaborate with development and infrastructure teams to integrate vulnerability management into the software development lifecycle (SDLC).
  • Act as a key member of the incident response team to investigate and mitigate security incidents.
  • Provide expertise and guidance during security incidents to ensure timely and effective resolution.
  • Develop, review, and update security policies, procedures, and standards to enhance the security posture of the organization.
  • Ensure compliance with relevant regulations and industry standards.
  • Provide leadership and mentorship to junior security engineers and other IT staff.
  • Work closely with cross-functional teams, including IT, development, and operations, to ensure alignment on security initiatives.
  • Communicate effectively with executive leadership and other stakeholders regarding security risks and mitigation strategies.
Requirements
  • 6+ years of experience in information security, with a focus on vulnerability management.
  • Experience with cloud security (AWS, Azure, GCP).
  • Familiarity with DevSecOps practices and integrating security into CI/CD pipelines.
  • Knowledge of scripting and automation tools (e.g., Python, PowerShell).
What You'll Bring to the Table
  • Strong knowledge of vulnerability management tools (e.g., Qualys, Nessus, Rapid7) and techniques.
  • Experience with security assessment methodologies and penetration testing tools.
  • In-depth understanding of security frameworks and standards (e.g., NIST, ISO 27001, CIS).
  • Proven experience in incident response and handling security incidents.
  • Excellent analytical, problem-solving, and communication skills.
  • Relevant certifications such as CISSP, CISM, CEH, or GIAC are highly desirable.
Benefits
  • Highly competitive and inclusive medical, dental, and vision coverage options.
  • Flexible Spending Accounts for medical expenses and dependent care expenses.
  • Lifestyle Spending Account funds to help you engage in personal enrichment and self-care activities.
  • Family care benefits, including subsidized back-up care options and on-demand tutoring.
  • Free premium access to fitness, nutrition, and mindfulness classes.
  • Exclusive preferred pricing on Peloton fitness equipment.
  • Adoption and family-planning benefits.
  • Dedicated care coordination support for our LGBTQ+ community.
  • Generous paid time off, including vacation, sick time, and holidays.
  • Volunteer time to participate within your community.
  • Discretionary year-end shutdown.
  • Paid sabbatical after 5 years; every 3 years thereafter.
  • Generous Paid Leave offerings, including 18 weeks of 100% paid parental leave for all new parents.
  • 401k match and Financial Planning tools.
  • Moderna-paid Life, LTD, and STD insurance coverages, as well as voluntary benefit options.
  • Complimentary concierge service including home services research, travel booking, and entertainment requests.
  • Free parking or subsidized commuter passes.
  • Location-specific perks and extras.
About Moderna

Since our founding in 2010, we have aspired to build the leading mRNA technology platform, the infrastructure to reimagine how medicines are created and delivered, and a world-class team.

We believe in giving our people a platform to change medicine and an opportunity to change the world.

By living our mission, values, and mindsets every day, our people are the driving force behind our scientific progress and our culture.

Together, we are creating a culture of belonging and building an organization that cares deeply for our patients, our employees, the environment, and our communities.

We are proud to have been recognized as a Science Magazine Top Biopharma Employer, a Fast Company Best Workplace for Innovators, and a Great Place to Work in the U.S.

As we build our company, we have always believed an in-person culture is critical to our success. Moderna champions the significant benefits of in-office collaboration by embracing a 70/30 work model. This 70% in-office structure helps to foster a culture rich in innovation, teamwork, and direct mentorship.

Join us in shaping a world where every interaction is an opportunity to learn, contribute, and make a meaningful impact.

If you want to make a difference and join a team that is changing the future of medicine, we invite you to visit to learn more about our current opportunities.

Moderna is a smoke-free, alcohol-free, and drug-free work environment.

Moderna is a place where everyone can grow. If you meet the Basic Qualifications for the role and you would be excited to contribute to our mission every day, please apply.

Moderna is proud to be an equal opportunity workplace and is an affirmative action employer.

Moderna is committed to equal employment opportunity and non-discrimination for all employees and qualified applicants without regard to a person's race, color, sex, gender identity or expression, age, religion, national origin, ancestry or citizenship, ethnicity, disability, military or protected veteran status, genetic information, sexual orientation, marital or familial status, or any other personal characteristic protected under applicable law.

Moderna is an E-Verify Employer in the United States. We also consider qualified applicants regardless of criminal histories, consistent with legal requirements.

Belonging, Inclusion, and Diversity are critical to the success of our company and our impact on society.

We're focused on attracting, retaining, developing, and advancing our employees and believe that by cultivating diverse experiences, backgrounds, and ideas, we can provide an environment where every employee is able to contribute their best.

Moderna is committed to offering reasonable accommodations to qualified job applicants with disabilities. Any applicant requiring an accommodation in connection with the hiring process and/or to perform the essential functions of the position for which the applicant has applied should contact the Accommodations team at (EEO/AAP Employer).


  • Security Engineer

    2 days ago


    Cambridge, Massachusetts, United States S&P Global Full time

    About the Role:We are seeking a seasoned Security Engineer to join our team at S&P Global. As a key member of our Infrastructure team, you will be responsible for ensuring the security of our systems and web applications.Key responsibilities include:Implementing security frameworks to ensure compliance with S&P Global standardsDeveloping and updating...


  • Cambridge, Massachusetts, United States Capital One Full time

    Job SummaryCapital One is seeking a highly skilled Senior Platform Engineer to join our Workday Security team. As a key member of our team, you will be responsible for leading the design, implementation, and maintenance of security measures to protect our Workday environment.Key ResponsibilitiesDesign, implement, and manage security controls for the Workday...


  • Cambridge, Massachusetts, United States EverQuote Full time

    Job SummaryEverQuote is seeking a Senior Manager, IT Controls to lead our Sarbanes-Oxley (SOX) IT Controls program. This hybrid role will report to the CIO and operate and manage a SOX IT Controls program where revenue transactions and key reporting come from custom developed systems deployed to Amazon Web Services using CI/CD.Key Responsibilities:Work with...

  • Security Manager

    3 days ago


    Cambridge, Massachusetts, United States Birth Control Pharmacist | a division of EmpoweRx Inc Full time

    About UsBorn out of a passion for reproductive health and justice, Birth Control Pharmacist is a division of EmpoweRx Inc, a company dedicated to empowering individuals to take charge of their health through innovative technology solutions.Job SummaryWe are seeking a highly skilled Security Manager to join our small and agile team. As a key member of our...


  • Cambridge, Massachusetts, United States Draper Labs Full time

    Job DescriptionDraper Labs is seeking a highly skilled Sr. Systems Engineer - Endpoint to join our team. As a key member of our Desktop Engineering group, you will be responsible for designing, implementing, and maintaining endpoint computing systems, including Windows, macOS, and Linux.Key ResponsibilitiesOversee the lifecycle of endpoint computing systems,...


  • Cambridge, Massachusetts, United States Capital One Full time

    Job Title: Senior Manager, Data EngineeringCapital One is seeking a Senior Manager, Data Engineering to join our team. As a Senior Manager, Data Engineering, you will be responsible for leading a team of data engineers to design, develop, and implement data pipelines and architectures that support business growth and innovation.Key Responsibilities:Lead a...


  • Cambridge, Massachusetts, United States Draper Labs Full time

    Job SummaryWe are seeking a highly skilled Senior Systems Engineer to join our team at Draper Labs. As a key member of our Desktop Engineering group, you will be responsible for designing, implementing, and maintaining our endpoint computing systems, including Windows, Linux, and macOS.Key ResponsibilitiesDesign and implement endpoint computing systems,...


  • Cambridge, Massachusetts, United States Draper Labs Full time

    Job DescriptionDraper Labs is seeking a highly skilled Junior Embedded Vulnerability Researcher to join our team of experts in cybersecurity and embedded systems.About the RoleWe are looking for a talented individual to conduct research and analysis on embedded systems and their vulnerabilities. The successful candidate will have a strong background in...


  • Cambridge, Massachusetts, United States EverQuote Full time

    Job Title: Senior Manager, IT ControlsEverQuote is seeking a highly experienced Senior Manager, IT Controls to join our team in Cambridge, MA. As a key member of our IT organization, you will be responsible for leading our Sarbanes-Oxley (SOX) IT Controls program, ensuring the integrity and accuracy of our revenue transactions and key reporting.About the...


  • Cambridge, Massachusetts, United States Draper Labs Full time

    Job Summary:Draper Labs is seeking a highly motivated and skilled Cyber Security Specialist to join our Digital Technologies and Sciences Division. As a Cyber Security Specialist, you will be responsible for designing, developing, and enhancing engineering solutions for challenging problems related to cybersecurity. You will work with multiple senior...


  • Cambridge, Massachusetts, United States Draper Full time

    Job SummaryDraper is seeking a highly skilled System Security Engineer to support the development of secure systems and platforms. The ideal candidate will have a strong background in cybersecurity and experience with system security architecture, hardware security, and software security.The successful candidate will be responsible for designing and...


  • Cambridge, Massachusetts, United States Capital One Full time

    Job Title: Senior Platform EngineerCapital One is seeking a highly skilled Senior Platform Engineer to join our team. As a Senior Platform Engineer, you will be responsible for designing, developing, testing, implementing, and supporting technical solutions across a full-stack of development tools and technologies.Key Responsibilities:Collaborate with...


  • Cambridge, Massachusetts, United States Apple Full time

    Job Title: Senior Engineering Program Manager for Machine LearningAt Apple, we're committed to innovation and excellence. We're seeking a highly skilled Senior Engineering Program Manager to lead the development of our Machine Learning (ML) international locales expansion.Key Responsibilities:Lead high-profile Foundation Model programs, responsible for...


  • Cambridge, Massachusetts, United States Management Recruiters International Full time

    Job Title: Senior Enterprise Network ArchitectWe are seeking a highly skilled Senior Enterprise Network Architect to join our team. As a key member of our network engineering team, you will be responsible for designing, deploying, and managing enterprise-level routing and switching solutions to meet client requirements.Key Responsibilities:Design, deploy,...


  • Cambridge, Massachusetts, United States RISCPoint Advisory Group Full time

    About RISCPoint Advisory GroupRISCPoint Advisory Group is a rapidly growing and leading cybersecurity and compliance consultancy firm. We are a tight-knit team of experienced professionals that focus on integrating seamlessly with our clients to harmonize security and compliance obligations with business success.Job DescriptionWe are seeking a conceptual...


  • Cambridge, Massachusetts, United States Draper Labs Full time

    Job Title: Senior Cell Biologist/EngineerDraper Labs is seeking a highly skilled Senior Cell Biologist/Engineer to join our Bioengineering Division. As a key member of our team, you will be responsible for developing and deploying multidisciplinary solutions at the convergence of biology and engineering to address critical needs in national security and...


  • Cambridge, Massachusetts, United States Flagship Ventures Full time

    Job SummaryFlagship Ventures is seeking an experienced Senior Manager of IT Operations to join our team. As a key member of our IT organization, you will be responsible for designing, building, and running highly available, resilient, and secured systems and infrastructure.The ideal candidate will have a strong background in IT operations, with a focus on...


  • Cambridge, Massachusetts, United States Flagship Ventures Full time

    Job Title: Senior Automation EngineerFlagship Ventures is seeking a highly skilled Senior Automation Engineer to join our team. As a key member of our team, you will be responsible for designing, developing, and implementing advanced automation solutions within our lab environments.About the RoleWe are looking for a talented individual with a strong...


  • Cambridge, Massachusetts, United States Capital One Full time

    About the RoleAs a Senior Manager, Machine Learning Engineering at Capital One, you will be part of an Agile team dedicated to productionizing machine learning applications and systems at scale. You will participate in the detailed technical design, development, and implementation of machine learning applications using existing and emerging technology...


  • Cambridge, Massachusetts, United States Draper Labs Full time

    Job Title: Senior Sensor Electronics EngineerDraper Labs is seeking a highly skilled Senior Sensor Electronics Engineer to join our Instrumentation, Electronics Group. As a senior member of our team, you will play a key role in designing, developing, and verifying state-of-the-art sensors and actuators for a wide range of applications.Key...