Vulnerability Intelligence Program Coordinator

Posted 7 Days Ago
Be an Early Applicant
Hiring Remotely in Prague
Remote or Hybrid
Mid level
Artificial Intelligence • Cloud • Information Technology • Sales • Security • Software • Cybersecurity
Take Command of your Career
The Role
Manage Rapid7's Emergent Threat Response and Coordinated Vulnerability Disclosure programs, facilitating vendor communication and overseeing vulnerability documentation and outreach.
Summary Generated by Built In
Rapid7's Vulnerability Intelligence team is looking for an Vulnerability Intelligence Program Coordinator to drive and expand our Coordinated Vulnerability Disclosure (CVD) program, and our Emergent Threat Response (ETR) program. Our CVD program sees dozens of new vulnerabilities disclosed each year across many different technologies, commercial vendors, and open-source repositories. Our ETR program provides company-wide responses to widespread threats that pose risk to customers. This role will work closely with vulnerability researchers, penetration testers, threat analysts, and product teams to both drive and grow these programs.
About the Team
Rapid7's Vulnerability Intelligence team leads industry research to uncover and prioritize risks for organizations worldwide. Our researchers discover and disclose zero-day vulnerabilities, analyze n-day vulnerabilities, develop Metasploit exploit modules, and identify patterns in emerging attack surfaces. Beyond driving coordinated responses to major incidents, the team provides actionable insights that help defenders stay ahead of evolving threats-proactively shaping understanding of today's risks and tomorrow's attack vectors.
In this role, you will:
  • Program manage Rapid7's Emergent Threat Response program, driving and growing Rapid7's cross team response to widespread threats.
  • Program manage Rapid7's Coordinated Vulnerability Disclosure program, shepherding each disclosure from initial outreach through final public release and ensuring thoughtful adherence to Rapid7's coordinated disclosure policy .
  • Lead vendor outreach and communication for external vulnerability disclosures directly, including ongoing vendor negotiations, third-party involvement (e.g., from CERTs or IR firms), and customer-ready messaging.
  • Copy-edit and publish vulnerability disclosure blogs on Rapid7-discovered issues and response blogs for emergent threats, working with our PR, Labs, and product teams to make sure each blog tells a coherent, compelling story and includes relevant Rapid7 customer information.
  • Create and maintain operational documentation for the programs you manage.
  • Be an advocate for both CVD and ETR within Rapid7 and across the broader community.

The skills you'll bring include:
  • A strong understanding of the context and ecosystem surrounding enterprise software vulnerabilities. Prior experience as a vulnerability analyst is a plus. We are not looking for a background in technical vulnerability research, but understanding what matters, what doesn't and why are important.
  • Strong communication skills and experience working across teams and functions to drive operations for complex and time sensitive programs.
  • Experience conducting coordinated vulnerability disclosure (CVD) operations, particularly with external vendors and industry bodies; experience conducting complex multi-party disclosure negotiations with government or CERT involvement is a big plus.
  • A strong understanding of how the CVE ecosystem and associated metadata work (CVSS, CWE, etc.).
  • The ability to both write and copy-edit written material about vulnerabilities and exploitation with accuracy and specificity, conveying complex and nuanced topics to a broad audience.
  • Understanding the benefits and challenges of vulnerability disclosure and response, including the political and media climate around CVEs, exploits, and threats.
  • Curiosity and openness to understanding the why behind change, actively driving progress with a forward-looking mindset.
  • Accountability for delivering outcomes and meeting commitments by establishing ownership, clear roles, and shared expectations across teams and projects.
  • Ability to build and leverage a global network, working across boundaries to drive sustainable improvements that create lasting business and customer value.
  • Core Value Embodiment: Embody our core values to foster a culture of excellence that drives meaningful impact and collective success.

We know that the best ideas and solutions come from multi-dimensional teams. That's because these teams reflect a variety of backgrounds and professional experiences. If you are excited about this role and feel your experience can make an impact, please don't be shy - apply today.
About Rapid7
At Rapid7, our vision is to create a secure digital world for our customers, our industry, and our communities. We do this by harnessing our collective expertise and passion to challenge what's possible and drive extraordinary impact. We're building a dynamic and collaborative workplace where new ideas are welcome.
Protecting 11,000+ customers against bad actors and threats means we're continuing to push the envelope - just like we've been doing for the past 20 years. If you're ready to solve some of the toughest challenges in cybersecurity, we're ready to help you take command of your career. Join us.
#LI-SIM
About Rapid7
At Rapid7, our vision is to create a secure digital world for our customers, our industry, and our communities. We do this by harnessing our collective expertise and passion to challenge what's possible and drive extraordinary impact. We're building a dynamic and collaborative workplace where new ideas are welcome.
Protecting 11,000+ customers against bad actors and threats means we're continuing to push the envelope just like we' ve been doing for the past 20 years. If you 're ready to solve some of the toughest challenges in cybersecurity, we're ready to help you take command of your career. Join us.

Top Skills

Cvss
Cwe
Cybersecurity
Vulnerability Management

What the Team is Saying

Cathal
Ali
Aparna
Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
HQ: Boston, MA
2,400 Employees
Year Founded: 2000

What We Do

At Rapid7, our vision is to create a secure digital world for our customers, our industry, and our communities. We do this by harnessing our collective expertise and passion to challenge what’s possible and drive extraordinary impact. We’re building a dynamic and collaborative workplace where new ideas are welcome.

Protecting 11,000+ customers against bad actors and threats means we’re continuing to push the envelope - just like we’ve been doing for the past 20 years. If you’re ready to solve some of the toughest challenges in cybersecurity, we’re ready to help you take command of your career.

Join us.

Why Work With Us

With our products, research, and open source communities, we’re building a secure digital future for everyone. This means constantly learning and evolving in an industry that’s anything but stagnant. You’ll be faced with tough challenges, and given the support to find creative solutions that drive our business, and your career forward.

Gallery

Gallery
Gallery
Gallery
Gallery
Gallery
Gallery
Gallery
Gallery
Gallery
Gallery

Rapid7 Offices

Hybrid Workspace

Employees engage in a combination of remote and on-site work.

Our default working model is hybrid, with employees working three days per week in the office. This approach underpins our commitment to flexibility and adaptability while supporting our dedication to development, teamwork and customer purpose.

Typical time on-site: 3 days a week
Company Office Image
HQBoston
Singapore - Regional Headquarters
Company Office Image
Arlington
Company Office Image
Austin, TX
Company Office Image
Belfast, GB
Dublin
Galway
Melbourne
Tokyo
Munich
Company Office Image
Prague
India
Company Office Image
Reding, UK
Company Office Image
Tampa, FL
Tel Aviv
Learn more

Similar Jobs

Rapid7 Logo Rapid7

Senior Product Manager

Artificial Intelligence • Cloud • Information Technology • Sales • Security • Software • Cybersecurity
Remote or Hybrid
Prague, CZE
2400 Employees

Rapid7 Logo Rapid7

Cybersecurity Advisor II

Artificial Intelligence • Cloud • Information Technology • Sales • Security • Software • Cybersecurity
Remote or Hybrid
Prague, CZE
2400 Employees

Rapid7 Logo Rapid7

Senior Devops Engineer

Artificial Intelligence • Cloud • Information Technology • Sales • Security • Software • Cybersecurity
Remote or Hybrid
Prague, CZE
2400 Employees

Rapid7 Logo Rapid7

Senior Software Engineer

Artificial Intelligence • Cloud • Information Technology • Sales • Security • Software • Cybersecurity
Remote or Hybrid
Prague, CZE
2400 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account