ABOUT THE ROLE:The
Vulnerability Management team is responsible for assessing and mitigating security risks across our portfolio. This role will focus on vulnerability analysis and risk assessment, ensuring the organization is well-protected against emerging threats. The ideal candidate will have deep expertise in vulnerability scoring, data analysis, and automation.
RESPONSIBILITIES:In this role, you'll be responsible for evaluating vulnerabilities and determining their impact based on industry standards. You'll work closely with cross-functional teams to improve security posture and integrate best practices. Your role will include:
- Conducting vulnerability assessments using the CVSS standard as defined by First.org.
- Understanding and implementing vector strings and vector chaining for risk evaluation.
- Performing data analysis to assess security risks across the organization.
- Identifying vulnerability reachability and impact to prioritize security responses.
- Writing Python scripts to manage and manipulate data from sources such as CSV, Excel, JSON, and RESTful APIs.
- Applying MITRE ATT&CK framework for attack path analysis.
Creating data reporting solutions, including simple dashboards. - Engaging with stakeholders across the organization to ensure security buy-in.
Demonstrating strong critical analysis, problem-solving, and security expertise.
BASIC QUALIFICATIONS:- You are a highly skilled Vulnerability Analyst with deep expertise in vulnerability assessment, data management, and security frameworks. You have strong analytical skills and a keen ability to evaluate risk. The ideal candidate will also have:
- Mastery of CVSS and its environmental processing.
- Expertise in Python for security data manipulation.
- Strong understanding of vulnerability impact, risk assessment, and mitigation strategies.
- Proficiency with MITRE ATT&CK framework for security analysis.
- Experience creating dashboard-based reports to communicate security findings.
- Excellent communication and stakeholder management skills.
PREFERRED SKILLS AND EXPERIENCE:- Experience with Elastic/OpenSearch.
- Familiarity with Kibana/Grafana dashboarding.
- Development of security automation playbooks.
- Experience with AWS and/or GCP.
- Experience building agentic workflows for vulnerability management.
COMPENSATION AND BENEFITS:$100,000 - $258,000 USD
Base salary is just one part of our total rewards package at SpaceXAI, which also includes equity, comprehensive medical, vision, and dental coverage, access to a 401(k) retirement plan, short & long-term disability insurance, life insurance, and various other discounts and perks.