Jobs and Careers
GE

Staff Security Engineer - Vulnerability Management (REMOTE)

GEICO
United StatesRemotefull_timeVerifiedPosted 12 Aug 2025
💰 $230,000/yr($115,000/yr$230,000/yr)

About the role

At GEICO, we offer a rewarding career where your ambitions are met with endless possibilities. 

Every day we honor our iconic brand by offering quality coverage to millions of customers and being there when they need us most. We thrive through relentless innovation to exceed our customers’ expectations while making a real impact for our company through our shared purpose. 

When you join our company, we want you to feel valued, supported and proud to work here. That’s why we offer The GEICO Pledge: Great Company, Great Culture, Great Rewards and Great Careers.

GEICO is seeking a highly skilled and experienced Staff Security Engineer to lead our Vulnerability Management program. The ideal candidate will be a seasoned security professional with deep expertise in identifying, analyzing, and remediating vulnerabilities across a large-scale, complex enterprise environment. This role is a key leadership position within our Cybersecurity team, responsible for defining the strategic direction of our vulnerability management initiatives, mentoring junior engineers, and driving a culture of security awareness and proactive risk reduction.

As a Staff Security Engineer, you will:

  • Own and lead the end-to-end Vulnerability Management lifecycle, including discovery, prioritization, remediation, and reporting.

  • Develop and execute a long-term strategy for vulnerability management, incorporating emerging threats, industry best practices, and new technologies.

  • Serve as a subject matter expert on vulnerability scanning tools (e.g., Tenable.io, Qualys, CrowdStrike), penetration testing methodologies, and threat modeling.

  • Conduct in-depth analysis of vulnerability data to identify critical risks and provide actionable recommendations to engineering and business teams.

  • Drive the automation of vulnerability discovery and remediation processes to improve efficiency and reduce manual effort.

  • Partner with development, DevOps, and infrastructure teams to integrate security into the SDLC (Software Development Life Cycle) and foster a "shift-left" security approach.

  • Create and present clear, concise reports on the state of the vulnerability program to senior leadership, highlighting key risks, progress, and strategic initiatives.

  • Mentor and guide junior security engineers, sharing knowledge and expertise to help them grow their skills and careers.

  • Collaborate with the Incident Response team to provide critical context and support during security incidents.

  • Ensure the vulnerability management program meets regulatory and compliance requirements (e.g., PCI DSS, SOX).

Qualifications:

  • 6+ years of experience in cybersecurity, with at least 4 years specifically focused on vulnerability management.

  • Expertise with leading vulnerability scanning platforms (e.g., Tenable.io, Qualys, Rapid7).

  • Strong understanding of network protocols, operating systems (Windows, Linux), and cloud environments (AWS, Azure, GCP).

  • Proficiency in scripting languages (e.g., Python, PowerShell) for automation.

  • Knowledge of secure coding practices and common web application vulnerabilities (OWASP Top 10).

  • Excellent written and verbal communication skills, with the ability to articulate complex technical issues to both technical and non-technical audiences.

  • Proven leadership and mentorship abilities.

  • Strong analytical and problem-solving skills.

  • Ability to work effectively in a fast-paced, dynamic environment.

  • Professional security certification (e.g., CISSP, CCSP, CSSLP) is a plus

Education:

  • Bachelor's degree in Computer Science, Information Technology, Cybersecurity, or a related field; or equivalent practical experience.


 

Annual Salary

$115,000.00 - $230,000.00

The above annual salary range is a general guideline. Multiple factors are taken into consideration to arrive at the final hourly rate/ annual salary to be offered to the selected candidate. Factors include, but are not limited to, the scope and responsibilities of the role, the selected candidate’s work experience, education and training, the work location as well as market and business considerations.


 

GEICO will consider sponsoring a new qualified applicant for employment authorization for this position.


 

The GEICO Pledge:

Great Company: At GEICO, we help our customers through life’s twists and turns. Our mission is to protect people when they need it most and we’re constantly evolving to stay ahead of their needs.

Apply for this role

Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.

Apply Now →Generate Application Kit

Free account required — sign up in 30s

Company

GEICO

View company profile →