Security Engineer jobs in United States
cer-icon
Apply on Employer Site
company-logo

DigiDoc, Inc. dba Public Sector Solutions Group · 10 hours ago

Security Engineer

DigiDoc, Inc. dba Public Sector Solutions Group is seeking a Vulnerability Management Engineer to assess, manage, and reduce security vulnerabilities across enterprise server and workstation environments. The role involves performing vulnerability scans, recommending remediation plans, and developing reporting to enhance the organization's security maturity.

Document ManagementInformation TechnologySecuritySoftware
Hiring Manager
Danielle D.
linkedin

Responsibilities

Perform recurring vulnerability scans for servers and workstation environments
Analyze scan results to identify actionable risks, false positives, and system exposure levels
Prioritize vulnerabilities based on industry frameworks (CVSS, KEV, CISA, etc.)
Coordinate with application owners for patching and remediation scheduling
Partner with server and desktop teams to support monthly and quarterly patching cycles
Provide technical guidance on workarounds, hotfixes, or remediate configuration issues
Assist in validating remediation success post-deployment
Help refine patch and configuration baselines for repeatability and security
Develop weekly, monthly, and quarterly dashboards on:
Remediation progress
Aging vulnerabilities
SLA/KPI compliance tracking
Platform-level trends
Report critical vulnerabilities and escalating risks to leadership as needed
Operate and tune vulnerability scanning and endpoint management tools (e.g., Qualys, Microsoft Defender, Intune, PatchMyPC, SCCM, Azure Update Manager, etc.)
Recommend configuration improvements, automation, and scanning optimizations
Assist in integrating scan results into ticketing or workflow tools such as ServiceNow or Jira
Ensure systems adhere to organization security policies, CIS benchmarks, NIST guidance, and other relevant frameworks
Help improve patching and vulnerability management SOPs, runbooks, and governance processes
Support internal or external audit and compliance reporting requirements

Qualification

Vulnerability managementPatch managementSecurity scanning toolsWindows ServerLinux platformsAutomation scriptingCommunication skillsIndependent work

Required

3–7 years' experience in vulnerability management, patch management, or endpoint/server security operations
Demonstrated technical proficiency with Windows Server and Windows desktop platforms
Patch deployment and configuration management experience
Experience operating one or more security scanning platforms (e.g. Qualys, Defender, Azure Update Manager, PatchMyPC, etc.)
Ability to analyze scan output, identify false positives, and communicate meaningful remediation guidance
Strong understanding of CVEs, CVSS scoring, and exploitability assessments
Strong understanding of common ransomware and threat vectors targeting enterprise endpoints

Preferred

Experience in mixed operating system environments (Windows and Linux)
Familiarity with Microsoft Intune and/or SCCM
Familiarity with Azure Update Manager
Familiarity with Azure Arc
Familiarity with ServiceNow
Familiarity with CIS or NIST standards
Ability to create automation scripts (PowerShell, Bash, Python, or similar)
Experience working in enterprise or government environments
Strong written and verbal communication
Ability to translate technical risk into business impact
Comfortable working independently and making data-based recommendations

Company

DigiDoc, Inc. dba Public Sector Solutions Group

twittertwitter
company-logo
The Public Sector Solutions Group is an award-winning Information Technology consulting firm with an emphasis on access to real-time information and an enhanced user experience.

Funding

Current Stage
Growth Stage

Leadership Team

leader-logo
Kevin Collins
Chief Technology Officer & Head of Sales
linkedin
Company data provided by crunchbase