Cybersecurity Engineer I/II – Vulnerability & Patch Management

atBNSF RailwayRemoteUS flagUnited StatesFull-timeCybersecurity / Security EngineerJuniorMid-level$93.8k – $175k/year

Posted Sep 1

This is a fully remote position, open to applicants in United States.

📋 Description

• Conduct vulnerability scans utilizing Nessus, Qualys, or similar tools under the guidance of senior engineers.

• Monitor, triage, and document vulnerabilities across enterprise systems, cloud environments, and applications.

• Investigate CVEs and assist with vulnerability risk prioritization.

• Create vulnerability reports and metrics for team assessment.

• Coordinate and oversee patch deployment across servers, endpoints, and networking devices.

• Track patch status dashboards and follow up on pending or unsuccessful patch cycles.

• Assist in patch testing within non-production environments prior to broader implementation.

• Maintain patch schedules and documentation in collaboration with IT and DevOps teams.

• Preserve runbooks and procedures for vulnerability and patch workflows.

• Aid in compliance documentation for NIST and SOX standards.

• Work with SOC and IT teams to synchronize patching efforts with incident response and threat intelligence priorities.

• Engage in team meetings, threat briefings, and continuous security education.

• Develop basic Python or PowerShell scripts to automate repetitive tasks.

• Gain familiarity with SIEM platforms and security dashboards used for monitoring patch compliance.

• Contribute to the protection of BNSF’s critical freight rail infrastructure, customers, and employees against cyber threats.


⛳️ Requirements

• Must be authorized to work in the US.

• At least 2 years of experience in cybersecurity engineering or related fields.

• Fundamental understanding of common vulnerability concepts, including CVEs, CVSS scores, and patch cycles.

• Basic familiarity with Windows and/or Linux operating systems.

• Willingness to learn, ask questions, and develop in a structured team setting.

• Ability to work independently now and in the future without BNSF assistance for employment authorization (preferred).

• Entry-level certifications such as CompTIA Security+, CompTIA IT Fundamentals (ITF+), or vendor-specific cloud/security fundamentals certification (preferred).

• Exposure to CEH, OSCP study materials, or similar (preferred).

• Basic understanding of network concepts, including IP addresses, ports, firewalls, and traffic flows (preferred).

• Familiarity with vulnerability scanning tools such as Nessus, Qualys, or OpenVAS (preferred).

• Awareness of patch management concepts (preferred).

• Introductory scripting skills in Python, PowerShell, or Bash (preferred).

• Exposure to AWS, Azure, or GCP cloud environments (preferred).

• Strong attention to detail (preferred).

• Good written and verbal communication skills (preferred).

• Ability to document information clearly (preferred).

• Collaborative approach and comfort in cross-team interactions (preferred).

• Proactive mindset and ability to follow through (preferred).

• Interest in current cybersecurity news and emerging threats (preferred).

• Bachelor’s degree or higher in Computer Science, Cybersecurity, Information Technology, or a related field (preferred).

• Successful completion of pre-employment background verification, medical review, and drug screening.

• TWIC required if the role involves unescorted access to secure areas of port facilities.


🏝️ Benefits

• An industry-leading 401(k) plan and prestigious Railroad Retirement program.

• Comprehensive medical, dental, vision, telemedicine, mental health, cancer support, and high-quality care network options.

• Health care spending accounts (HSA) with employer contributions.

• Life and disability insurance provided at no cost.

• Support for parental, pediatric, and family building needs.

• Reimbursement for adoption and surrogacy expenses.

• Dependent care spending account with employer matching.

• Discounts on travel, gym memberships, counseling services, and wellness support.

• Annual bonus through the Incentive Compensation Program.

• Generous leave and time-off policies.

• Coverage of travel expenses for business-related needs by BNSF.

• Mentorship opportunities with experienced engineers.

• A supportive and inclusive work environment.

People also viewed

Sony Interactive Entertainment20 hours ago

Senior Security AI Risk Analyst

US flagCalifornia OnlyFull-timeCybersecurity / Security Engineer$167.5k – $251.3k/year
ApplyView job
Squads20 hours ago

Security Engineer

North AmericaFull-timeCybersecurity / Security Engineer$175k – $220k/year
ApplyView job
Neo4j20 hours ago

Senior Director, Product, Security and Privacy

US flagUnited States OnlyFull-timeCybersecurity / Security Engineer$260k – $300k/year
ApplyView job
PingWind Inc. (SDVOSB)21 hours ago

Cloud Security Architect – Engineer

US flagAlabama, +1 more stateFull-timeCybersecurity / Security Engineer
ApplyView job
CSCI Consulting21 hours ago

SAP S/4HANA Defense & Security Functional Lead

US flagUnited States OnlyFull-timeCybersecurity / Security Engineer
ApplyView job
Strategic Systems International22 hours ago

AI Security Engineer – AI, Agentic Security

MX flagMexico, +4 more countriesFreelanceCybersecurity / Security Engineer
ApplyView job

Never miss a great job!

Get handpicked remote jobs straight to your inbox weekly.

Trusted by 7,400+ designers