OT Expert (AMER)
North America
⚠️ We'll shut down after Aug 1st - try foo🦍 for all jobs in tech ⚠️
Full Time Senior-level / Expert USD 157K - 180K
Armis Security
Armis, the Cyber Exposure Management & Security Company.Armis, the cyber exposure management & security company, protects the entire attack surface and manages an organization’s cyber risk exposure in real time. In a rapidly evolving, perimeter-less world, Armis ensures that organizations continuously see, protect and manage all critical assets - from the ground to the cloud. Armis secures Fortune 100, 200 and 500 companies as well as national governments, state and local entities to help keep critical infrastructure, economies and society stay safe and secure 24/7.
Armis is a privately held company headquartered in California.
As the Vulnerability and VIPR Pro Expert, you will lead the effort to identify, assess, prioritize, and mitigate vulnerabilities across systems and applications. You’ll serve as the subject matter expert (SME) for VIPR Pro and work cross-functionally with infrastructure, product, compliance, and engineering teams to drive remediation and improve our overall security posture.
You will provide support for the TCSM organization and be able to drive the Value the customer sees through a Vulnerability lens. This is a client facing role, where you will engage with multiple clients at the same time and be able able to hold a security stand of best practices.
Key Responsibilities
- Own and manage the enterprise vulnerability management lifecycle, including scanning, reporting, triage, and tracking remediation.
- Act as the internal SME for VIPR Pro, configuring scanning schedules, refining detection signatures, and integrating outputs into ticketing and SIEM systems.
- Partner with DevOps, SREs, and application teams to understand asset context, risk prioritization, and remediation timelines.
- Analyze vulnerability scan results and prioritize remediation based on CVSS scores, exploitability, business impact, and compliance obligations.
- Build and maintain dashboards, metrics, and executive reporting for vulnerability status, remediation SLAs, and risk trends.
- Develop and implement workflows and automation for vulnerability tracking and alerting.
- Assist in external audits and compliance initiatives (e.g., SOC 2, ISO 27001, FedRAMP, HIPAA) by supplying evidence and remediation tracking.
- Conduct internal workshops and training to promote secure configurations and patching best practices.
- Continuously assess VIPR Pro effectiveness and work with the vendor and internal teams to optimize.
- Work across multiple clients to provide guidance and strategic approaches
- Support TSCMs for the VIPR Solution delivery
- Assist in identifying opportunities for growth and Value add
Required Qualifications
- 8 + years in cybersecurity, vulnerability management, or related fields.
- Hands-on experience with other RBVM (risk based vulnerability management) tools in an enterprise environment (configuration, reporting, integration).
- Capable/ Allowed to work in Federal and US Government area
- Strong understanding of CVSS scoring, threat intelligence context, and vulnerability remediation prioritization.
- Familiarity with common operating systems (Linux, Windows), container technologies, and cloud environments (AWS, GCP, or Azure).
- Familiarity with Rest Api’s is crucial
- Proficient in scripting and automation tools (Python, PowerShell, Bash, etc.).
- Experience working with SIEM, CMDB, asset inventory, and ticketing systems (ServiceNow, Jira, etc.).
- Excellent communication and reporting skills, with the ability to convey technical risks to non-technical stakeholders.
Preferred Qualifications
- Security certifications such as CISSP, OSCP, CEH, or GIAC
- Experience with FedRAMP or other regulated security frameworks
- Familiarity with patch management tools, vulnerability management tools i.e. Rapid 7 / Qualys, and threat modeling
- AppSec i.e. SAST / DAST; SCA
If you’re passionate about data engineering and cybersecurity and want to work at the forefront of innovation, we’d love to hear from you!
Salary range guidance for this position is: $157,000- $180,000.00
The salary range listed does not include other forms of compensation or benefits (e.g. i.e. stipend for transit/parking, bonuses, commissions, stocks, health insurance benefits, etc.) offered to candidates. Visit our careers site for more information on benefits at Armis.
The choices you make in your career journey matter. You want to do interesting work in an important field while also having time to live your life, which is why we place so much value in your life-work balance. Armis sets you up for success with comprehensive health benefits, discretionary time off, paid holidays including monthly me days, and a highly inclusive and diverse workplace. Put your unique experiences and perspective to work in an environment where they will enable you to thrive, grow, and live your life with integrity.
Armis is proud to be an equal opportunity employer. We never discriminate based on race, ethnicity, color, ancestry, national origin, religion, sex, sexual orientation, gender identity, age, disability, veteran status, genetic information, marital status or any other legally protected (or not) status. In compliance with federal law, all persons hired will be required to submit satisfactory proof of identity and legal authorization.
Tags: APIs Application security Audits Automation AWS Azure Bash CEH CISSP Cloud Compliance CVSS DAST DevOps FedRAMP GCP GIAC HIPAA ISO 27001 Jira Linux OSCP PowerShell Privacy Python Qualys REST API SAST Scripting SIEM SLAs SOC SOC 2 Threat intelligence Vulnerabilities Vulnerability management Windows
Perks/benefits: Career development Health care Insurance
More jobs like this
Explore more career opportunities
Find even more open roles below ordered by popularity of job title or skills/products/technologies used.