Location — We are flexible on remote working from home, if you are located in the USA and reside in one of the following states: CA, CO, CT, FL, GA, *IL, KS, MA, MD, ME, NJ, NC, NY, OR, TN, TX, VA, OH and WA. We have physical offices in Austin, TX and Tampa, FL, if you prefer a hybrid option.
*Onsite interviews maybe required for this rol
- Lead and operate the full vulnerability management and CSPM lifecycle, ensuring timely discovery, assessment, prioritization, and remediation.
- Administer and optimize our vulnerability management and CSPM platforms, including policies, integrations, reporting, and automation.
- Monitor cloud and infrastructure environments to identify misconfigurations, excessive permissions, and compliance drift, primarily in AWS.
- Partner with engineering and DevOps teams to drive remediation efforts, facilitate triage discussions, and provide technical guidance on complex issues.
- Align security practices with frameworks such as FedRAMP, NIST CSF, ISO 27001, and CIS Controls.
- Track and report key KPIs and risk metrics to leadership, including SLA compliance and vulnerability trends.
- Automate detection, remediation workflows, and tool integrations to enhance efficiency and expand security capabilities
- Other duties as needed
- Bachelor’s degree in Cybersecurity, Computer Science, Information Technology, or equivalent experience.
- 5+ years of experience in vulnerability management and at least 2+ years in cloud security.
- Hands-on experience with CSPM tools, vulnerability detection platforms, and automation (Wiz, AWS Inspector, Nessus, OpenSCAP preferred).
- Strong understanding of AWS security best practices and cloud-native architectures.
- Familiarity with vulnerability scoring systems like CVSS and risk-based prioritization.
- Excellent communication, collaboration, and stakeholder management skills.
- Security certifications such as CISSP, AWS Security Specialty, or GIAC Cloud Security are a plus.
- Preferred knowledge of regulatory and compliance frameworks such as PCI DSS, HIPAA, SOX, FedRAMP.
Skills Required
- Bachelor's degree in Cybersecurity, Computer Science, Information Technology, or equivalent experience
- 5+ years of experience in vulnerability management
- 2+ years of experience in cloud security
- Hands-on experience with CSPM tools, vulnerability detection platforms, and automation
- Strong understanding of AWS security best practices and cloud-native architectures
- Familiarity with CVSS and risk-based prioritization
- Excellent communication, collaboration, and stakeholder management skills
- Experience with Wiz, AWS Inspector, Nessus, or OpenSCAP
- CISSP, AWS Security Specialty, or GIAC Cloud Security certification
- Knowledge of PCI DSS, HIPAA, SOX, or FedRAMP compliance frameworks
- Must be a U.S. citizen or lawful permanent resident
NinjaOne Compensation & Benefits Highlights
The following summarizes recurring compensation and benefits themes identified from responses generated by popular LLMs to common candidate questions about NinjaOne and has not been reviewed or approved by NinjaOne.
-
Healthcare Strength — Health coverage spans medical, dental, and vision with a notable employer premium contribution, alongside mental-health and wellness programs. This combination indicates robust support for routine and preventive care.
-
Leave & Time Off Breadth — Policies highlight unlimited or flexible PTO alongside paid holidays and sick time, as well as generous parental leave. Flexible scheduling and hybrid/remote options reinforce time-off usability.
-
Fair & Transparent Compensation — Pay is characterized as decent to good overall and competitive for many engineering and senior IC roles. Publicly posted ranges and salary snapshots align to market-typical totals in several functions.
NinjaOne Insights
What We Do
NinjaOne, the automated endpoint management platform, delivers visibility, security, and control over all endpoints for more than 30,000 customers in 130+ countries. The cloud-native NinjaOne platform simplifies endpoint management, patching, and visibility for environments at any scale. It is proven to increase productivity, reduce security risk, and lower costs.
Why Work With Us
NinjaOne is proud to be an independent, founder-led company. NinjaOne is filled with passionate, driven people of all backgrounds. We’re proud to celebrate our differences and build a company based on integrity, inclusion and acceptance. We invest in our staff and implement a policy of transparency with a flat organizational structure.
Gallery








