Xcel Energy

Security Engineer - Exposure Management

Xcel Energy$97K — $138K *
Information Technology
5 - 7 years of experience
Job Overview by Ladders

Qualifications

  • 5+ years in information security
  • 3+ years in enterprise vulnerability or network security
  • Strong networking knowledge including firewalls and DNS
  • Familiarity with vulnerability assessment concepts
  • Basic understanding of cloud services and web applications
  • Experience correlating external data with internal systems
  • Strong analytical and problem-solving abilities
  • Ability to communicate technical risks clearly to non-technical stakeholders

Responsibilities

  • Build and manage attack surface management processes and workflows
  • Maintain visibility of externally exposed assets and services
  • Correlate findings to internal systems and accountable ownership
  • Coordinate with various teams to validate and manage exposure
  • Develop integrations for discovery and data enrichment
  • Ensure accurate routing of findings to relevant owners
  • Analyze exposure data to assess actual risk
  • Document operational processes and standards

Benefits

  • Annual Incentive Program
  • Medical/Pharmacy Plan
  • Dental and Vision Insurance
  • Paid time off (PTO) and Holidays
  • Tuition Reimbursement
  • 401(k) plan and Pension
  • Fitness Center Reimbursement
  • Parental Leave
Full Job Description
Role Summary

The Security Engineer - Exposure Management is responsible for building and maturing the attack surface management capability with a focus on answering where the organization is most exposed and what the actual risk is. This role owns external visibility, correlates external exposure to internal systems and accountable owners, and provides clear, actionable risk insight to stakeholders. The role operates in an advisory capacity and drives informed remediation through visibility, analysis, and communication, not direct system changes.

Primary Objectives

  • Establish and maintain authoritative visibility of externally exposed assets across domains, IP space, applications, and services.


  • Correlate external exposure to internal systems and accountable owners, including complex non-1:1 relationships.


  • Answer where risk exists and what exposure means in practical terms to the business.


  • Build workflows to manage external findings with minimal manual effort using integration and automation.


  • Improve coverage, mapping accuracy, and data quality to reduce unknown external exposure.


Responsibilities

  • Build and operate the attack surface management capability, including processes, integrations, and workflows.


  • Maintain visibility into externally exposed assets including domains, IPs, web applications, APIs, certificates, load balancers, and DMZ services.


  • Correlate external findings to internal systems and ownership across complex, indirect relationships.


  • Coordinate with threat intelligence, network, firewall, DNS, and load balancing teams to validate exposure and ownership.


  • Develop and maintain integrations to support discovery, enrichment, and correlation of external assets.


  • Drive routing accuracy by ensuring findings map to the correct owners and identifying ownership gaps.


  • Identify and resolve data quality issues impacting visibility, coverage, and correlation.


  • Integrate findings into ServiceNow workflows where applicable to support routing and tracking.


  • Reduce manual effort by standardizing and automating repeatable processes.


  • Analyze exposure and vulnerability data in context to determine actual risk beyond tool-based severity.


  • Communicate complex technical risk clearly to non-technical stakeholders with actionable recommendations.


  • Document processes, playbooks, and operational standards to sustain the capability.


Required Qualifications

  • Minimum 5 years of experience in information security.


  • Minimum 3 years of hands-on experience in enterprise vulnerability management, exposure management, or network security.


  • Strong understanding of networking fundamentals including firewalls, ACLs, routing, load balancing, and externally exposed architectures.


  • Strong understanding of DNS, web infrastructure, certificates, and DMZ environments.


  • Understanding of infrastructure vulnerability assessment and discovery scanning concepts.


  • Basic understanding of cloud-hosted and externally exposed services.


  • Basic understanding of web applications and externally facing service risk.


  • Strong experience correlating external data to internal systems and ownership across inconsistent datasets.


  • Strong analytical and complex technical problem-solving skills.


  • Ability to assess and communicate risk beyond tool-generated severity using context.


  • Experience working with CMDB or similar systems for asset and ownership tracking.


  • Ability to operate independently in a greenfield program environment.


Preferred Qualifications

  • Experience integrating external exposure data into ServiceNow workflows for routing and tracking.


  • Experience improving data quality, deduplication, and correlation across multiple data sources.


  • Experience working with externally exposed enterprise environments and perimeter infrastructure.


  • Experience automating data collection, normalization, or correlation using scripting or APIs.


Certifications

  • Sec+ required.


  • Higher-level security or risk-related certifications preferred.


Work Location

Hybrid role requiring three days per week in the office. Must be located within Xcel Energy territory and reasonably close to an Xcel Energy facility. Denver, Colorado and Minnesota areas preferred.

Non-Bargaining

The anticipated starting base pay for this position is: $97,600.00 to $138,600.00 per year

This position is eligible for the following benefits: Annual Incentive Program, Medical/Pharmacy Plan, Dental, Vision, Life Insurance, Dependent Care Reimbursement Account, Health Care Reimbursement Account, Health Savings Account (HSA) (if enrolled in eligible health plan), Limited-Purpose FSA (if enrolled in eligible health plan and HSA), Transportation Reimbursement Account, Short-term disability (STD), Long-term disability (LTD), Employee Assistance Program (EAP), Fitness Center Reimbursement (if enrolled in eligible health plan), Tuition reimbursement, Transit programs, Employee recognition program, Pension, 401(k) plan, Paid time off (PTO), Holidays, Volunteer Paid Time Off (VPTO), Parental Leave

Benefit plans are subject to change and Xcel Energy has the right to end, suspend, or amend any of its plans, at any time, in whole or in part.

In any materials you submit, you may redact or remove age-identifying information including but not limited to dates of school attendance and graduation. You will not be penalized for redacting or removing this information.

Deadline to Apply: 06/21/26

All Xcel Energy employees and contractors share responsibility for protecting the company's information and systems by adhering to cybersecurity policies, standards, and best practices, recognizing that cybersecurity is everyone's responsibility.

About Xcel Energy

Xcel Energy Careers

Join the dynamic team at Xcel Energy, where innovation meets expertise in the pursuit of sustainable energy solutions. As a leading energy company, Xcel Energy offers unparalleled job opportunities that empower professionals to advance their careers while contributing to environmental stewardship.

Work You’ll Do

At Xcel Energy, you’ll collaborate with skilled professionals dedicated to pioneering advancements in the energy sector. Our team is at the forefront of developing sustainable energy technologies that revolutionize how people consume energy. By joining us, you will be part of a culture that values diversity, leadership, and professional growth.

Innovate and Lead

Step into a role where your skills will directly enhance our capabilities in delivering reliable and sustainable energy. Xcel Energy is a hub for innovation, where your ideas can lead to groundbreaking solutions that shape the future of energy. Our leadership is committed to fostering an environment where creativity and strategic thinking are at the core of our operations.

Career Development

Xcel Energy is deeply invested in the professional development of its team members. With a variety of career paths available, from engineering to customer service, your journey with us is filled with endless possibilities. We support your growth with robust training programs, leadership development opportunities, and diversity training that prepare you for success.

Join Our Team

Explore the numerous employment opportunities at Xcel Energy, from entry-level positions to senior roles. We are hiring individuals who are passionate about making a difference and ready to contribute their expertise to our mission of delivering safe, clean, and reliable energy.

Internship Programs

Kickstart your career with an internship at Xcel Energy. Our internships provide hands-on experience in real-world projects that matter. You’ll gain invaluable insights into the energy sector while developing essential skills that will enhance your resume and increase your marketability.

Benefits and Culture

Xcel Energy is not just about work; we care about our employees' well-being. We offer competitive benefits, including health care, retirement plans, and wellness programs, designed to keep you at your best. Our inclusive culture encourages collaboration and offers networking opportunities that foster connections and professional growth.

Stay Connected

Keep up to date with the latest at Xcel Energy: - **Search Xcel Energy Jobs**: Find positions that match your skills and interests. We look for driven, curious, and innovative team players. - **Read Careers Blog**: Stay ahead with career tips, insider perspectives, and industry-leading insights you can put to use today—all from the people who work here. - **Job Alert Emails**: Personalize your subscription to receive job alerts, latest news, and insider tips tailored to your preferences. Discover the exciting and rewarding opportunities that await at Xcel Energy. Join Xcel Energy today and be part of a team that is dedicated to building a sustainable future. Your career at Xcel Energy is not just a job; it’s an opportunity to excel in an environment that appreciates your contribution and supports your professional growth.
Learn more about Xcel Energy
Size
11,321 employees
Market Cap
$38.6 billion
Industry
Net Income
$1.4 billion
Founded
2000
5 Year Trend
+3.9%
Revenue
$11.5 billion
NASDAQ

Similar Jobs

More Jobs at Xcel Energy

More Information Technology Jobs

Find similar Security Engineer - Exposure Management jobs: