Security Engineer, Vulnerability Management

RingCentral, Inc
Belmont, CA, United States
$120K-$150K a year
Full-time

Security Engineer, Vulnerability Management : (Belmont CA, Denver CO, Dallas TX)

RingCentral is the global leader in cloud-based communications and collaboration software. We are fundamentally changing the nature of human interaction-giving people the freedom to connect powerfully and personally from anywhere, at any time, on any device.

As part of the RingCentral CISO team, you'll help define and drive security discipline and standards required for complex, business-critical problems supported with elegant, user-friendly solutions that perform at massive scale.

It's a once-in-a-career chance to get your hands on the latest-and-greatest technologies, and build the platform that's reshaping the way the world communicates.

About this role :

As a Security Engineer, Vulnerability Management at RingCentral, your primary responsibilities will be to perform vulnerability scans of our systems and networks, and monitor, triage and track remediation of vulnerabilities.

In addition you'll be developing automation for these tasks. This role is a hybrid role, to be based at our Belmont CA, Denver CO, or Dallas TX offices.

Primary Duties :

Maintain Vulnerability Management process

Perform vulnerability scans using different tools / methods

Prioritize findings and assign them to system / service owners

Monitor for, triage and track remediation of vulnerabilities in our systems and networks

Conduct risk-based evaluation of policy exception requests

Develop automatization for all steps above

Develop visualization of current VM state

Participate in and assist with audits of information security program (FedRAMP, SOX, GDPR, SOC2, HITRUST)

Act as a member of the information security policy review committee

Additional Roles and Responsibilities :

Conduct routine log review of information security events, investigating and responding as necessary

Maintain and enhance monitoring capabilities to ensure the integrity of our systems and networks

Act as a member of the Incident Response Team, triaging, responding to and reporting incidents and associated metrics

Administer and maintain security products (phishing training, vulnerability management, web application firewall, SIEM, IDS, (h)IPS, EDR, etc)

Participate in on-call rotation

Maintain a comprehensive understanding of our information systems

Work closely with the multiple operation teams to implement and enforce our policy

Coordinate and participate in external assessments of our information security (risk assessment, penetration test, incident response tabletop)

Required Skills :

Experience operating vulnerability scanning tools (Qualys, Nessus, etc)

Familiarity with vulnerability management concepts, such as CVE and CVSS

Familiarity with hardening standards and benchmarks (CIS, STIG, etc)

Strong knowledge of endpoint and server operating systems (e.g. Windows, macOS, Linux) and relevant security risks, controls, and vulnerabilities

Strong knowledge of network and network security fundamentals

Familiarity with enterprise security tools (antivirus, firewalls, email monitoring, two-factor authentication, SIEM, IDS / IPS, etc.)

Familiarity with AWS environments and AWS security tools

Knowledge of and experience with compliance / remediation efforts of relevant domestic and international security standards and best practices such as FedRAMP, SOX, SOC2, NIST, GDPR and HIPAA

Familiarity with cloud computing environments and applications in a security context strongly preferred

Ability to quickly change priorities and handle simultaneous tasks

Excellent oral and written communications

Education / Pre-requisites :

3-5 years' experience in an information security field

US Citizenship required

BS degree in Computer Science, Cyber Security, Information Technology (or related discipline); Graduate degree in Information Assurance (or related discipline) or equivalent formal training and experience in Information Security

CISSP or GIAC certifications preferred

What we offer :

RingCentral offers all the work / life benefits you could ever want, (and none of the micromanagement.)

Comprehensive medical, dental, vision, disability, life insurance

Health Savings Account (HSA), Flexible Spending Account (FSAs) and Commuter Benefits

401K match and ESPP

Flexible PTO

Wellness programs including1 : 1 wellness coaching through TaskHuman and meditation guidance through Headspace

Paid parental leave and new parent gift boxes

Pet insurance

Employee Assistance Program (EAP) with counseling sessions available 24 / 7

Rocket Lawyer services that provide legal advice, document creation and estate planning

Employee bonus referral program

RingCentral's work culture is the backbone of our success. And don't just take our word for it : we are recognized as a Best Place to Work by Glassdoor, the Top Work Culture by Comparably and hold local BPTW awards in every major location.

Bottom line : We are committed to hiring and retaining great people because we know you power our success.

About RingCentral :

RingCentral, Inc. (NYSE : RNG) is a leading provider of business cloud communications and contact center solutions based on its powerful Message Video Phone (MVP) global platform.

More flexible and cost effective than legacy on-premises PBX and video conferencing systems that it replaces, RingCentral empowers modern mobile and distributed workforces to communicate, collaborate, and connect via any mode, any device, and any location.

RingCentral is headquartered in Belmont, California, and has offices around the world. If you are hired in Colorado, the compensation range for this position is between $100,000 and $130,000.

If you are hired in Belmont, the compensation range for this position is between $120,000 and $150,000.

RingCentral is an equal opportunity employer that truly values diversity. We do not discriminate on the basis of race, religion, color, national origin, gender, sexual orientation, age, marital status, veteran status, or disability status.

We are committed to providing reasonable accommodations for individuals with disabilities during our application and interview process.

If you require such accommodations, please click on the following link to learn more about how we can assist you.

1 day ago
Related jobs
Promoted
RingCentral, Inc
Belmont, California

As a Security Engineer, Vulnerability Management at RingCentral, your primary responsibilities will be to perform vulnerability scans of our systems and networks, and monitor, triage and track remediation of vulnerabilities. Security Engineer, Vulnerability Management. Administer and maintain securi...

Promoted
Lacework
Mountain View, California

We are looking for an experienced Software Engineer in the Vulnerability Management team to accelerate one of Lacework’s core security application roadmaps. The ideal candidate is a software engineer who is passionate about cloud security, systems engineering, big data, and directly addressing custo...

HITACHI AMERICA, LTD.
United States,California,Remote
Remote

Are you a cybersecurity wizard passionate about protecting digital landscapes? Hitachi America Ltd seeks a dynamic and innovative Security Engineer to focus on Attack Surface Reduction & Vulnerability Management. As a Security Engineer, you will create a state-of-the-art, all-encompassing attack sur...

Games Jobs Direct
San Mateo, California

Senior Security Software Engineer. Identity and Access Management team at Roblox, your primary responsibility will be to refine and implement automation around identity lifecycle and access management. This role is crucial for the continuous improvement and management of our specific access control ...

TikTok
Mountain View, California

Team IntroThe application security, vulnerability management, and assurance (AVA) team plays a crucial role in validating vulnerability reports and collaborating with developer and engineering teams to remediate findings. Minimum Qualifications: - Bachelor’s Degree or industry equivalent work experi...

Roblox
San Mateo, California

Senior Security Software Engineer. Identity and Access Management team at Roblox, your primary responsibility will be to refine and implement automation around identity lifecycle and access management. This role is crucial for the continuous improvement and management of our specific access control ...

Highmark Health
CA, Working at Home, California

The Identity & Access Management Senior Security Engineer is responsible for acting as resource, leader, and peer coach with other engineers in the development, testing, implementation, and integration of Identity and Access Management systems and solutions. Experience working within an information ...

Lacework
Mountain View, California

We are looking for an experienced Software Engineer in the Vulnerability Management team to accelerate one of Lacework’s core security application roadmaps. Software Engineer - Vulnerability Management. The ideal candidate is a software engineer who is passionate about cloud security, systems engine...

The Mice Groups
Newark, California

Title: Vulnerability Management Engineer. Demonstrated experience in automotive vulnerability management or cybersecurity. Bachelor's degree in Computer Science, Cybersecurity. Profound understanding of automotive systems, network protocols, and security principles. ...

Games Jobs Direct
San Mateo, California

Senior/Principal Vulnerability Management Engineer. You will partner across the company and within Information Security to help Roblox build a world class vulnerability management program. You will perform vulnerability assessments and remediation capabilities at scale and support the leadership tea...