
Cybersecurity Engineer I/II – Vulnerability & Patch Management
Posted Sep 1

Posted Sep 1
This is a fully remote position, open to applicants in United States.
• Conduct vulnerability scans utilizing Nessus, Qualys, or similar tools under the guidance of senior engineers.
• Monitor, triage, and document vulnerabilities across enterprise systems, cloud environments, and applications.
• Investigate CVEs and assist with vulnerability risk prioritization.
• Create vulnerability reports and metrics for team assessment.
• Coordinate and oversee patch deployment across servers, endpoints, and networking devices.
• Track patch status dashboards and follow up on pending or unsuccessful patch cycles.
• Assist in patch testing within non-production environments prior to broader implementation.
• Maintain patch schedules and documentation in collaboration with IT and DevOps teams.
• Preserve runbooks and procedures for vulnerability and patch workflows.
• Aid in compliance documentation for NIST and SOX standards.
• Work with SOC and IT teams to synchronize patching efforts with incident response and threat intelligence priorities.
• Engage in team meetings, threat briefings, and continuous security education.
• Develop basic Python or PowerShell scripts to automate repetitive tasks.
• Gain familiarity with SIEM platforms and security dashboards used for monitoring patch compliance.
• Contribute to the protection of BNSF’s critical freight rail infrastructure, customers, and employees against cyber threats.
• Must be authorized to work in the US.
• At least 2 years of experience in cybersecurity engineering or related fields.
• Fundamental understanding of common vulnerability concepts, including CVEs, CVSS scores, and patch cycles.
• Basic familiarity with Windows and/or Linux operating systems.
• Willingness to learn, ask questions, and develop in a structured team setting.
• Ability to work independently now and in the future without BNSF assistance for employment authorization (preferred).
• Entry-level certifications such as CompTIA Security+, CompTIA IT Fundamentals (ITF+), or vendor-specific cloud/security fundamentals certification (preferred).
• Exposure to CEH, OSCP study materials, or similar (preferred).
• Basic understanding of network concepts, including IP addresses, ports, firewalls, and traffic flows (preferred).
• Familiarity with vulnerability scanning tools such as Nessus, Qualys, or OpenVAS (preferred).
• Awareness of patch management concepts (preferred).
• Introductory scripting skills in Python, PowerShell, or Bash (preferred).
• Exposure to AWS, Azure, or GCP cloud environments (preferred).
• Strong attention to detail (preferred).
• Good written and verbal communication skills (preferred).
• Ability to document information clearly (preferred).
• Collaborative approach and comfort in cross-team interactions (preferred).
• Proactive mindset and ability to follow through (preferred).
• Interest in current cybersecurity news and emerging threats (preferred).
• Bachelor’s degree or higher in Computer Science, Cybersecurity, Information Technology, or a related field (preferred).
• Successful completion of pre-employment background verification, medical review, and drug screening.
• TWIC required if the role involves unescorted access to secure areas of port facilities.
• An industry-leading 401(k) plan and prestigious Railroad Retirement program.
• Comprehensive medical, dental, vision, telemedicine, mental health, cancer support, and high-quality care network options.
• Health care spending accounts (HSA) with employer contributions.
• Life and disability insurance provided at no cost.
• Support for parental, pediatric, and family building needs.
• Reimbursement for adoption and surrogacy expenses.
• Dependent care spending account with employer matching.
• Discounts on travel, gym memberships, counseling services, and wellness support.
• Annual bonus through the Incentive Compensation Program.
• Generous leave and time-off policies.
• Coverage of travel expenses for business-related needs by BNSF.
• Mentorship opportunities with experienced engineers.
• A supportive and inclusive work environment.
Sony Interactive Entertainment
Squads
Neo4j
PingWind Inc. (SDVOSB)
Get handpicked remote jobs straight to your inbox weekly.