Come work at a place where innovation and teamwork come together to support the most exciting missions in the world!
Qualys Inc. is a pioneer and leading provider of cloud security and compliance solutions. Qualys helps organizations simplify security operations and lower the cost of compliance by delivering critical security intelligence on demand and automating the full spectrum of auditing, compliance and protection for IT systems and web applications via its award winning Qualys Cloud Platform.Qualys is looking for an experienced Principal SME for Scanning Technologies to join the Product team in USA. As a SME at Qualys, you will lead strategic initiatives to enhance vulnerability detection, scanning accuracy, and remediation workflows across enterprise environments using Qualys Cloud Agent, SDK / Command Line Agent etc. You will be instrumental in shaping the future of Qualys scanning platforms, driving and improving scan performance and utilizing multiple scanners when and how to run a supplemental scan against a Cloud Agent asset. This role is ideal for a seasoned cybersecurity professional with deep expertise in vulnerability management, scanning technologies, and enterprise-scale remediation strategies.
Key Responsibilities:- Lead the design and optimization of scanning technologies across Qualys platforms (Cloud Agent, Command Line Agent, VMDR, Policy Compliance, etc.) to define scanning strategies and best practices
- Architect scalable scanning solutions for hybrid environments (cloud, on-prem, edge).
- Collaborate with product and engineering teams to enhance scan coverage, reduce false positives, and improve detection fidelity.
- Serve as the technical authority on Qualys scanning tools, APIs, and integrations
- Drive continuous improvement in scanning methodologies, including agent-based and agentless approaches.
- Represent Qualys in industry forums, customer engagements, and partner alliances focused on scanning and risk operations.
- Interface with product management to help prioritize the most impactful scanning strategies
- Improve Vulnerability Coverage Efficacy
- Develop and deliver a variety of technical engagements including workshops, whiteboarding architecture design sessions, and training
- Lead delivery of a fully functional, integrated Proof of Concept leveraging the latest Qualys SDK, Command Line Agent and other relevant interfaces and scanners for comprehensive scanning strategies.
- 6+ years of experience in vulnerability management, scanning technologies, and enterprise security operations.
- Expertise in Qualys platforms (VMDR, Policy Compliance) will be good but not mandatory.
- Solid understanding of OS-level security, network protocols, and cloud infrastructure.
- Experience with API integrations, CMDB enrichment, and scan orchestration.
- Excellent communication and stakeholder management skills in a global, matrixed environment.
- Experience in large enterprise environments.
- Background in product design, Pre sales, and familiarity working with product builds.
- Familiarity with risk-based vulnerability management frameworks
- Experience in 24/7 high-availability infrastructure and application hosting.
- Good understanding and hands-on experience with Security products and technologies not limited to asset management, patching, vulnerability management, risk assessment, configuration management, and cloud security.
- Ability to understand and design complex architectures that improves scanning efficiency use cases end-to-end
- Self-starter who has a “can-do” attitude and passion for leveraging technology to solve business problems
- Strong communicator
- Excellent interpersonal and presentation skills
#LI-Remote
***********************************************************************************************************
The salary range for this position is $140,000 - $175,000 per year. Final compensation will be determined based on several factors, including but not limited to skills, relevant experience, and work location. Please note this range reflects base salary and does not include incentive compensation or potential equity grants. We also offer a comprehensive and highly competitive benefits package.
Qualys is an Equal Opportunity Employer, please see our EEO policy.
Skills Required
- 6+ years of experience in vulnerability management
- Expertise in Qualys platforms (VMDR, Policy Compliance)
- Solid understanding of OS-level security, network protocols, and cloud infrastructure
- Experience with API integrations, CMDB enrichment, and scan orchestration
- Excellent communication and stakeholder management skills
Qualys Compensation & Benefits Highlights
The following summarizes recurring compensation and benefits themes identified from responses generated by popular LLMs to common candidate questions about Qualys and has not been reviewed or approved by Qualys.
-
Affordable Benefits — Benefits costs are widely viewed as low for employees and dependents, with healthcare often described as almost fully paid for. Feedback suggests this affordability helps offset perceptions of lower base pay in some roles.
-
Healthcare Strength — Healthcare offerings are broad, including multiple medical plan options, dental and vision coverage, mental health support, and disability insurance. Benefits are described as “pretty amazing” or “great,” reinforcing perceived quality and coverage depth.
-
Equity Value & Accessibility — Equity participation is accessible through company stock plans and an employee stock purchase plan. Compensation packages commonly include equity alongside salary and bonus, which some consider a meaningful part of total rewards.
Qualys Insights
What We Do
Qualys, Inc. (NASDAQ: QLYS) is a pioneer and leading provider of disruptive cloud-based security, compliance and IT solutions with more than 10,000 subscription customers worldwide, including a majority of the Forbes Global 100 and Fortune 100. Qualys helps organizations streamline and automate their security and compliance solutions onto a single platform for greater agility, better business outcomes, and substantial cost savings. The Qualys Cloud Platform leverages a single agent to continuously deliver critical security intelligence while enabling enterprises to automate the full spectrum of vulnerability detection, compliance, and protection for IT systems, workloads and web applications across on premises, endpoints, servers, public and private clouds, containers, and mobile devices. Founded in 1999 as one of the first SaaS security companies, Qualys has strategic partnerships and seamlessly integrates its vulnerability management capabilities into security offerings from cloud service providers, including Amazon Web Services, the Google Cloud Platform and Microsoft Azure, along with a number of leading managed service providers and global consulting organizations. For more information, please visit http://www.qualys.com







