Jobs and Careers
ME
Security Engineer, Vulnerability Management
MetaNew York City, United Statesfull_timeVerifiedPosted 18 Jan 2025
💰 $251,000/yr($177,000/yr – $251,000/yr)
About the role
The Meta Security Organization is seeking a passionate and experienced Security Engineer to help us mature Meta’s security posture through our vulnerability management program. Our team strives to go beyond identifying vulnerabilities by preventing security problems during the development process to eliminate entire classes of vulnerabilities.
Do you have experience analyzing vulnerabilities and building vulnerability management programs? Can you identify when a vulnerability is critical enough to require real-time security response?Have you partnered with cross-functional partners to measure and improve how to identify, fix, and prevent vulnerabilities? Does the idea of having a meaningful and measurable impact on the security of one of the world's largest infrastructures, which serves billions of people, sound exciting to you? Well, good news, we need your help!Security Engineer, Vulnerability Management Responsibilities
$177,000/year to $251,000/year + bonus + equity + benefits
Individual compensation is determined by skills, qualifications, experience, and location. Compensation details listed in this posting reflect the base hourly rate, monthly rate, or annual salary only, and do not include bonus, equity or sales incentives, if applicable. In addition to base compensation, Meta offers benefits. Learn more about benefits at Meta.
Equal Employment Opportunity and Affirmative Action Meta is proud to be an Equal Employment Opportunity and Affirmativ
Do you have experience analyzing vulnerabilities and building vulnerability management programs? Can you identify when a vulnerability is critical enough to require real-time security response?Have you partnered with cross-functional partners to measure and improve how to identify, fix, and prevent vulnerabilities? Does the idea of having a meaningful and measurable impact on the security of one of the world's largest infrastructures, which serves billions of people, sound exciting to you? Well, good news, we need your help!Security Engineer, Vulnerability Management Responsibilities
- Analyze vulnerabilities to determine the real impact to our systems and applications, incorporating threat intelligence.
- Drive solutions that enable high fidelity vulnerability contextualization, tracking, and remediation.
- Influence what areas of the vulnerability pipeline would most benefit from automation to improve operational efficiency and influence the team to prioritize the work.
- Dive into large datasets to identify strategic opportunities for security posture improvement.
- Influence the Meta-wide vulnerability management strategy, collaborating with partners to deliver multi-year roadmaps, while coaching and supporting team members.
- Provide rapid-response vulnerability analysis for active zero-days and participate in regular on-call vulnerability management rotation.
- B.S. or M.S. in Computer Science or related field, or equivalent experience
- 10+ years of experience in identifying security vulnerabilities, issues, risks, and developing mitigation plans.
- 6+ years of experience in network, system, or software architecture: design, implementation, support, and evaluation of security-focused tools and services.
- Technical and process subject matter expert regarding vulnerability management operations and company-wide programs to address the risk at scale.
- Experience developing and delivering information on vulnerability operations and management program status for leadership.
- Experience leading and managing complex cross-functional programs.
- Experience responding to both external and insider threats.
- Coding/scripting experience in one or more general purpose languages.
- Experience generating automated metrics to measure service and program effectiveness and consistency.
- Experience making contributions to the security or privacy community (public research, blogging, presentations, etc.).
- Background in malware analysis, digital forensics, intrusion detection, and/or threat intelligence.
- Broad knowledge across the security domain.
- Experience with attacker tactics, techniques, and procedures.
$177,000/year to $251,000/year + bonus + equity + benefits
Individual compensation is determined by skills, qualifications, experience, and location. Compensation details listed in this posting reflect the base hourly rate, monthly rate, or annual salary only, and do not include bonus, equity or sales incentives, if applicable. In addition to base compensation, Meta offers benefits. Learn more about benefits at Meta.
Equal Employment Opportunity and Affirmative Action Meta is proud to be an Equal Employment Opportunity and Affirmativ
Apply for this role
Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.
Apply Now →Generate Application KitFree account required — sign up in 30s