Full-Time

Staff Security Engineer

Vulnerability Analysis

Confirmed live in the last 24 hours

CVS Health

CVS Health

10,001+ employees

Comprehensive pharmacy and healthcare services

Healthcare
Consumer Goods

Compensation Overview

$118.5k - $284.3kAnnually

+ Bonus + Commission + Equity Award Program

Senior, Expert

Company Historically Provides H1B Sponsorship

Boston, MA, USA + 4 more

More locations: Smithfield, RI, USA | Chicago, IL, USA | Hartford, CT, USA | Richardson, TX, USA

Category
Cybersecurity
IT & Security
Required Skills
Risk Management

You match the following CVS Health's candidate preferences

Employers are more likely to interview you if you match these preferences:

Degree
Experience
Requirements
  • 7+ years of experience in vulnerability management, cybersecurity, or a related field.
  • 5+ hands-on experience with vulnerability risk detection tools (e.g., Qualys, Crowdstrike, Tanium, Microsoft Defender, Wiz).
  • 5+ years of experience with cybersecurity frameworks (CIS, NIST, ISO 27001) and regulatory requirements (GDPR, HIPAA, etc.)
Responsibilities
  • Analyze vulnerability scan results and additional risk telemetry to determine the severity, impact, and risk of identified vulnerabilities.
  • Research emerging threats and vulnerabilities to stay ahead of potential risks.
  • Identify the appropriate risk severity and corresponding remediation service level agreement (SLA) after vulnerability analysis.
  • Collaborate with IT, DevOps, and application teams to develop appropriate remediation strategies.
  • Provide technical guidance on patch management, security policy configuration changes, and other mitigation measures.
  • Track and validate the effectiveness of remediation efforts to ensure vulnerabilities are resolved.
  • Perform in-depth analysis of vulnerabilities to determine potential exploit scenarios and business impact.
  • Create detailed reports and dashboards for stakeholders, highlighting key findings, risks, and mitigation status.
  • Present vulnerability assessment findings to leadership, providing clear recommendations for risk reduction.
  • Partner closely with IT, infrastructure, business units, and other stakeholders to ensure remediation strategies effectively integrated and aligned with enterprise architecture.
  • Partner with compliance and risk management teams to ensure remediation strategies meet regulatory requirements.
  • Ensure vulnerability management practices align with security frameworks (e.g., NIST, CIS, ISO 27001) and regulatory requirements (e.g., PCI DSS, HIPAA).
  • Support audit and compliance efforts by providing necessary data and documentation on vulnerability management activities.
  • Identify opportunities to enhance vulnerability management processes and tools.
  • Assist with the automation of routine tasks, such as scanning, reporting, and remediation tracking, to improve efficiency.
  • Contribute to the development and refinement of security policies, procedures, and best practices.
Desired Qualifications
  • Knowledge of common vulnerabilities and exploitation techniques (e.g., OWASP Top 10, CVSS).
  • Proficiency in operating systems (Windows, Linux) and network protocols.
  • Understanding of cloud security (AWS, Azure, GCP) and container security (e.g., Kubernetes, Docker).
  • Familiarity with scripting and automation tools (e.g., Python, Bash, PowerShell).
  • Strong analytical and problem-solving abilities.
  • Excellent communication skills, with the ability to convey technical information to both technical and non-technical audiences.
  • Attention to detail and a proactive approach to identifying and resolving vulnerabilities.
  • CEH (Certified Ethical Hacker)
  • CISSP (Certified Information Systems Security Professional)
  • GIAC certifications (e.g., GSEC, GCIA, GPEN)
  • CCFA (Crowdstrike Certified Falcon Administrator)
  • QFIM (Qualys File Integrity Monitoring)
  • QPolicy (Qualys Policy Compliance)

CVS Health operates a large network of retail pharmacies and walk-in medical clinics across the United States, providing a variety of health-related products and services. Their offerings include prescription medications, over-the-counter health products, beauty items, and general merchandise. CVS Health also functions as a pharmacy benefits manager, serving over 75 million plan members, and has a senior pharmacy care business that assists more than one million patients each year. This integrated model allows CVS Health to deliver affordable health management solutions, enhancing access to quality care and improving health outcomes while aiming to lower overall healthcare costs. The company's extensive market presence and diverse services distinguish it from competitors, with a commitment to supporting individuals and communities in achieving better health.

Company Stage

Debt Financing

Total Funding

N/A

Headquarters

Woonsocket, Rhode Island

Founded

1963

Simplify Jobs

Simplify's Take

What believers are saying

  • Expansion of telehealth services allows CVS to reach more patients remotely.
  • Increased consumer interest in wellness boosts demand for CVS's health-related products.
  • The trend towards value-based care aligns with CVS's integrated healthcare approach.

What critics are saying

  • Legal challenges related to opioid prescriptions could harm CVS's reputation and finances.
  • The DOJ's intervention in a whistleblower lawsuit may increase legal costs for CVS.
  • The Horizon Organic Milk recall exposes potential vulnerabilities in CVS's supply chain.

What makes CVS Health unique

  • CVS Health operates over 9,600 retail pharmacies and 1,100 walk-in clinics nationwide.
  • The company integrates pharmacy benefits management with specialty pharmacy services for comprehensive care.
  • CVS Health offers tailored medication plans through personalized medicine and pharmacogenomics.

Help us improve and share your feedback! Did you find this helpful?

Benefits

Health Insurance

Dental Insurance

Vision Insurance

Life Insurance

Disability Insurance

401(k) Retirement Plan

Company Equity

Wellness Program

Professional Development Budget

Paid Vacation

Paid Holidays