
Senior Security Engineer, Customer Transparency
Posted 13 hours ago

Posted 13 hours ago
This is a fully remote position, open to applicants in United States.
• Develop and sustain security tools, utilizing AI where applicable to enhance security workflows.
• Pinpoint the aspects of their Tanium deployment that customers are unaware of and collaborate with Engineering and Product stakeholders to address these gaps.
• Manage the SBOM and vulnerability management initiative, ensuring visibility for both internal and external stakeholders.
• Work alongside customers, partners, and Tanium’s Customer organization to recognize customer requirements and create systems that address recurring challenges.
• Serve as a security technical expert for customer-facing teams by responding to security questions and escalations, maintaining reusable responses, and interacting directly with customers as necessary.
• Oversee Tanium’s bug bounty program, which includes evaluating reports, assessing exploitability and severity, adjudicating duplicates and submissions that are out of scope, recommending awards, and nurturing relationships with researchers.
• Write and disseminate Tanium Security Advisories and CVE records, incorporating CWE classification and CVSS scoring.
• Organize disclosure timing and embargoes among researchers, customers, partners, and external coordinating entities.
• A Bachelor's Degree in Computer Science or a related field, or equivalent experience.
• At least 5 years of industry experience (7+ years preferred).
• Background in product and application security, vulnerability research, or software engineering with a significant focus on security.
• Proven experience engaging with customers and external security researchers.
• Familiarity with applying AI tools to security tasks.
• Experience in creating tools or data interfaces utilized by external stakeholders, including support and customers.
• Proficiency with modern software engineering development and automation tools, such as git and CI/CD pipelines.
• Ability to assess vulnerability severity and exploitability and their impact on business.
• Knowledge of SCA/SBOM tools and third-party dependency vulnerability management (preferred).
• Familiarity with coordinated vulnerability disclosure, CVE assignment, CVSS, CWE, and CNA operations (preferred).
• Experience in managing or significantly supporting a bug bounty program or VDP (preferred).
• Published vulnerability research, credited CVEs, bug bounty results, open-source security tools, or conference presentations (preferred).
• Basic understanding of Tanium products and services (preferred).
• Strong grasp of applied cryptography, including encryption, hashing, and secure key management (preferred).
• Excellent verbal and written communication skills.
• Capability to thrive in a fast-paced and dynamic environment.
• Equity awards.
• Medical, dental, and vision insurance.
• Family planning benefits.
• Health savings account.
• Flexible spending account.
• Transportation savings account.
• 401(k) retirement savings plan with company matching.
• Life, accident, and disability coverage.
• Business travel accident insurance.
• Employee assistance programs.
• Disability insurance.
• Additional well-being benefits.
• 5 days of volunteer time off (VTO).
G-P
DyFlex Solutions
Papa Johns
Prelim
Get handpicked remote jobs straight to your inbox weekly.