Coalfire Logo

Coalfire

ConMon Engineer

Reposted 10 Days Ago
Be an Early Applicant
Remote
Hiring Remotely in United States
Mid level
Remote
Hiring Remotely in United States
Mid level
The Continuous Monitoring Engineer will manage vulnerability processes, support compliance in cloud environments, and collaborate with technical teams for remediation.
The summary above was generated by AI

About Coalfire


Coalfire is on a mission to make the world a safer place by solving our clients’ hardest cybersecurity challenges. We work at the cutting edge of technology to advise, assess, automate, and ultimately help companies navigate the ever-changing cybersecurity landscape. We are headquartered in Denver, Colorado with offices across the U.S. and U.K., and we support clients around the world.


But that’s not who we are – that’s just what we do.

 

We are thought leaders, consultants, and cybersecurity experts, but above all else, we are a team of passionate problem-solvers who are hungry to learn, grow, and make a difference.


Position Summary


We’re looking for a continuous monitoring engineer to work on our vulnerability management processes, driving compliance and security in cloud-based environments. If you’re driven by a desire to innovate, excel at operational excellence, and thrive in a collaborative environment, come be part of a team committed to making the world a safer place. 

What You'll Do

  • Support and maintain enterprise vulnerability management tools (such as Tenable, Nessus, Burp, Qualys, Rapid7, Wiz, Prisma, Microsoft Defender), ensuring timely updates and patches
  • Run regular and on-demand scans across operating systems, databases, web applications, and containers, then work with technical teams (for example, SRE and client administrators) to create tickets for remediation
  • Track and document vendor dependencies, operational requirements, and open vulnerabilities on a monthly basis, producing clear reports and updates for clients
  • Provide risk-based recommendations to address identified vulnerabilities, aligning remediation efforts with compliance obligations
  • Collaborate with cross-functional technical teams to integrate vulnerability management processes within cloud environments (AWS, Azure, GCP)
  • Contribute to improving internal standards and processes, including maintaining documentation, training materials, and standard operating procedures
  • Participate in security assessment and authorization activities, ensuring alignment with frameworks such as FedRAMP, HITRUST, PCI, or similar

What You'll Bring

  • 3–5 years of professional experience in vulnerability management, compliance monitoring, or related security operations roles
  • Hands-on expertise with operating system, database, network, container, web application, and API vulnerability management
  • Direct experience supporting vulnerability management in at least two of the following cloud providers: AWS, Azure, GCP
  • Background working within at least one compliance framework (for example, FedRAMP, HITRUST, PCI), including risk assessment and reporting
  • Experience delivering monthly or periodic vulnerability status reports and tracking remediation efforts with internal and external teams
  • Basic administrative understanding of AWS, Azure, or GCP
  • Strong knowledge of vulnerability scanning technologies and methods, including scoring systems (CVSS, CMSS)
  • Effective communication, organizational, and documentation skills, with an emphasis on providing timely updates and clear reports to clients
  • Ability to work efficiently with technical teams to investigate, prioritize, and remediate vulnerabilities
  • Proficiency in scripting languages such as Python or PowerShell for task automation
  • Familiarity with defining baseline configuration standards (for example, CIS Benchmarks) and reporting on compliance posture

Bonus Points

  • Administrator-level certification in AWS, Azure, or GCP
  • Security-focused cloud certifications for AWS, Azure, or GCP
  • Security+
  • CISSP

Why You’ll Want to Join Us


At Coalfire, you’ll find the support you need to thrive personally and professionally. In many cases, we provide a flexible work model that empowers you to choose when and where you’ll work most effectively – whether you’re at home or an office.


Regardless of location, you’ll experience a company that prioritizes connection and wellbeing and be part of a team where people care about each other and our communities. You’ll have opportunities to join employee resource groups, participate in in-person and virtual events, and more. And you’ll enjoy competitive perks and benefits to support you and your family, like paid parental leave, flexible time off, certification and training reimbursement, digital mental health and wellbeing support membership, and comprehensive insurance options.


At Coalfire, equal opportunity and pay equity is integral to the way we do business. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or status as a protected veteran. Coalfire is committed to providing access, equal opportunity, and reasonable accommodation for individuals with disabilities in employment, its services, programs, and activities. To request reasonable accommodation to participate in the job application or interview process, our Human Resources team at [email protected].

Top Skills

AWS
Azure
Burp
GCP
Microsoft Defender
Nessus
Powershell
Prisma
Python
Qualys
Rapid7
Tenable
Wiz

Similar Jobs

15 Days Ago
Remote
United States
Senior level
Senior level
Cloud • Security • Cybersecurity
Lead and enhance vulnerability management processes, drive compliance, oversee enterprise tools, report on vulnerabilities, and provide strategic recommendations.
Top Skills: AWSAzureBurpGCPMicrosoft DefenderNessusPowershellPrismaPythonQualysRapid7TenableTerraformWiz
2 Hours Ago
Remote
United States
25K-39K Annually
Mid level
25K-39K Annually
Mid level
SEO
Develop and maintain websites using Next.js and WordPress, focusing on performance and usability. Collaborate with designers and manage CI/CD deployments.
Top Skills: CloudflareCSSGraphQLHTMLJavaScriptNext.JsPHPReact ContextReduxRestful ApisTailwind CssWordpress
2 Hours Ago
Remote
Hybrid
Chicago, IL, USA
149K-190K Annually
Senior level
149K-190K Annually
Senior level
eCommerce • Food • Information Technology • Mobile • Cybersecurity • App development • Big Data Analytics
The Senior Cybersecurity Architect defines security requirements and architecture for systems, leads risk-based decisions, and collaborates with teams to enhance security measures.
Top Skills: Computer ScienceCybersecurityInformation Technology

What you need to know about the Charlotte Tech Scene

Ranked among the hottest tech cities in 2024 by CompTIA, Charlotte is quickly cementing its place as a major U.S. tech hub. Home to more than 90,000 tech workers, the city’s ecosystem is primed for continued growth, fueled by billions in annual funding from heavyweights like Microsoft and RevTech Labs, which has created thousands of fintech jobs and made the city a go-to for tech pros looking for their next big opportunity.

Key Facts About Charlotte Tech

  • Number of Tech Workers: 90,859; 6.5% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Lowe’s, Bank of America, TIAA, Microsoft, Honeywell
  • Key Industries: Fintech, artificial intelligence, cybersecurity, cloud computing, e-commerce
  • Funding Landscape: $3.1 billion in venture capital funding in 2024 (CED)
  • Notable Investors: Microsoft, Google, Falfurrias Management Partners, RevTech Labs Foundation
  • Research Centers and Universities: University of North Carolina at Charlotte, Northeastern University, North Carolina Research Campus

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account