Coalfire Logo

Coalfire

ConMon Engineer

Reposted 16 Days Ago
Be an Early Applicant
Remote
Hiring Remotely in United States
Mid level
Remote
Hiring Remotely in United States
Mid level
The Continuous Monitoring Engineer will manage vulnerability processes, support compliance in cloud environments, and collaborate with technical teams for remediation.
The summary above was generated by AI

About Coalfire


Coalfire is on a mission to make the world a safer place by solving our clients’ hardest cybersecurity challenges. We work at the cutting edge of technology to advise, assess, automate, and ultimately help companies navigate the ever-changing cybersecurity landscape. We are headquartered in Denver, Colorado with offices across the U.S. and U.K., and we support clients around the world.


But that’s not who we are – that’s just what we do.

 

We are thought leaders, consultants, and cybersecurity experts, but above all else, we are a team of passionate problem-solvers who are hungry to learn, grow, and make a difference.


Position Summary


We’re looking for a continuous monitoring engineer to work on our vulnerability management processes, driving compliance and security in cloud-based environments. If you’re driven by a desire to innovate, excel at operational excellence, and thrive in a collaborative environment, come be part of a team committed to making the world a safer place. 

What You'll Do

  • Support and maintain enterprise vulnerability management tools (such as Tenable, Nessus, Burp, Qualys, Rapid7, Wiz, Prisma, Microsoft Defender), ensuring timely updates and patches
  • Run regular and on-demand scans across operating systems, databases, web applications, and containers, then work with technical teams (for example, SRE and client administrators) to create tickets for remediation
  • Track and document vendor dependencies, operational requirements, and open vulnerabilities on a monthly basis, producing clear reports and updates for clients
  • Provide risk-based recommendations to address identified vulnerabilities, aligning remediation efforts with compliance obligations
  • Collaborate with cross-functional technical teams to integrate vulnerability management processes within cloud environments (AWS, Azure, GCP)
  • Contribute to improving internal standards and processes, including maintaining documentation, training materials, and standard operating procedures
  • Participate in security assessment and authorization activities, ensuring alignment with frameworks such as FedRAMP, HITRUST, PCI, or similar

What You'll Bring

  • 3–5 years of professional experience in vulnerability management, compliance monitoring, or related security operations roles
  • Hands-on expertise with operating system, database, network, container, web application, and API vulnerability management
  • Direct experience supporting vulnerability management in at least two of the following cloud providers: AWS, Azure, GCP
  • Background working within at least one compliance framework (for example, FedRAMP, HITRUST, PCI), including risk assessment and reporting
  • Experience delivering monthly or periodic vulnerability status reports and tracking remediation efforts with internal and external teams
  • Basic administrative understanding of AWS, Azure, or GCP
  • Strong knowledge of vulnerability scanning technologies and methods, including scoring systems (CVSS, CMSS)
  • Effective communication, organizational, and documentation skills, with an emphasis on providing timely updates and clear reports to clients
  • Ability to work efficiently with technical teams to investigate, prioritize, and remediate vulnerabilities
  • Proficiency in scripting languages such as Python or PowerShell for task automation
  • Familiarity with defining baseline configuration standards (for example, CIS Benchmarks) and reporting on compliance posture

Bonus Points

  • Administrator-level certification in AWS, Azure, or GCP
  • Security-focused cloud certifications for AWS, Azure, or GCP
  • Security+
  • CISSP

Why You’ll Want to Join Us


At Coalfire, you’ll find the support you need to thrive personally and professionally. In many cases, we provide a flexible work model that empowers you to choose when and where you’ll work most effectively – whether you’re at home or an office.


Regardless of location, you’ll experience a company that prioritizes connection and wellbeing and be part of a team where people care about each other and our communities. You’ll have opportunities to join employee resource groups, participate in in-person and virtual events, and more. And you’ll enjoy competitive perks and benefits to support you and your family, like paid parental leave, flexible time off, certification and training reimbursement, digital mental health and wellbeing support membership, and comprehensive insurance options.


At Coalfire, equal opportunity and pay equity is integral to the way we do business. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or status as a protected veteran. Coalfire is committed to providing access, equal opportunity, and reasonable accommodation for individuals with disabilities in employment, its services, programs, and activities. To request reasonable accommodation to participate in the job application or interview process, our Human Resources team at [email protected].

Top Skills

AWS
Azure
Burp
GCP
Microsoft Defender
Nessus
Powershell
Prisma
Python
Qualys
Rapid7
Tenable
Wiz

Similar Jobs

21 Days Ago
Remote
United States
Senior level
Senior level
Cloud • Security • Cybersecurity
Lead and enhance vulnerability management processes, drive compliance, oversee enterprise tools, report on vulnerabilities, and provide strategic recommendations.
Top Skills: AWSAzureBurpGCPMicrosoft DefenderNessusPowershellPrismaPythonQualysRapid7TenableTerraformWiz
43 Minutes Ago
Easy Apply
Remote
United States
Easy Apply
Internship
Internship
Beauty • Robotics • Design • Appliances • Manufacturing
As an SQA Engineering Co-op, you will review product requirements, write automated test scripts, and support manual testing in a lab environment.
Top Skills: JavaLinuxNode.jsPythonRest Apis
57 Minutes Ago
Remote
2 Locations
Mid level
Mid level
Fintech • Machine Learning • Social Impact • Software • Financial Services
As an Engineer II, you will develop payment platform infrastructure, write clean code, and collaborate across teams to enhance user experiences.
Top Skills: GoNextjsPythonReactTypescript

What you need to know about the Boston Tech Scene

Boston is a powerhouse for technology innovation thanks to world-class research universities like MIT and Harvard and a robust pipeline of venture capital investment. Host to the first telephone call and one of the first general-purpose computers ever put into use, Boston is now a hub for biotechnology, robotics and artificial intelligence — though it’s also home to several B2B software giants. So it’s no surprise that the city consistently ranks among the greatest startup ecosystems in the world.

Key Facts About Boston Tech

  • Number of Tech Workers: 269,000; 9.4% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Thermo Fisher Scientific, Toast, Klaviyo, HubSpot, DraftKings
  • Key Industries: Artificial intelligence, biotechnology, robotics, software, aerospace
  • Funding Landscape: $15.7 billion in venture capital funding in 2024 (Pitchbook)
  • Notable Investors: Summit Partners, Volition Capital, Bain Capital Ventures, MassVentures, Highland Capital Partners
  • Research Centers and Universities: MIT, Harvard University, Boston College, Tufts University, Boston University, Northeastern University, Smithsonian Astrophysical Observatory, National Bureau of Economic Research, Broad Institute, Lowell Center for Space Science & Technology, National Emerging Infectious Diseases Laboratories

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account