FREE ACCESS
5,000–10,000 jobs/day
See all jobs on JobTailor
Search thousands of fresh jobs every day.
Discover
- Fresh listings
- Fast filters
- No subscription required
Create a free account and start exploring right away.

Vulnerability Engineer
Domino Data LabVulnerability Engineer managing CVE risk for Domino’s enterprise AI and data science platform in India. Validating exploits, maintaining scanning pipelines, and partnering with Engineering on fixes.
Core Competencies
Role fitCore Competencies
Use this summary to align your resume positioning with the role.
Demonstrates expertise in vulnerability management for SaaS products, including CVSS scoring, exploit development, and automation of SAST/DAST pipelines. Proficient in collaborating with engineering teams to prioritize and implement vulnerability fixes while effectively communicating risks to diverse audiences.
Highest-signal resume keywords
Vulnerability ManagementCVSS ScoringSAST/DAST AutomationExploit DevelopmentVulnerability-Scanning Tools
ATS Keywords
Tailor your resumeApplicant Tracking System Keywords
Tip: use these terms in your resume and cover letter to boost ATS matches.
Hard Skills
Vulnerability ManagementCVSS v3.1/v4.0 ScoringExploit DevelopmentSAST/DAST Pipeline AutomationScripting (Python)Vulnerability-Scanning ToolsThreat ModelingAPI Security FundamentalsContainer ManagementNetworking Fundamentals
Soft Skills
Clear CommunicationAbility to Operate with Ambiguity
Tools & Technologies
Prisma CloudTwistlockJFrogTrivyBurp SuiteAirflowSnowflakeKubernetesLinuxAWS
Certifications & Qualifications
OSWAOSWE
Industry Keywords
SaaSContainerized ProductRegulated EnvironmentOWASP Top 10Penetration Testing
Tech Stack
Tools & technologiesAirflowAWSCloudKubernetesLinuxPython
About the role
Key responsibilities & impact- Own first-pass CVSS scoring and exploitability analysis for vulnerability risk assessments
- Reproduce and confirm customer-reported and penetration-test findings before escalation to Engineering
- Maintain SAST/DAST and vulnerability-scanning automations, troubleshoot failures, and tune configurations
- Build or run proof-of-concept exploits for selected CVEs
- Partner with Engineering to prioritize and ship vulnerability fixes
- Support the Staff Security Engineer by handling day-to-day vulnerability-management workload
Requirements
What you’ll need- Hands-on experience managing vulnerabilities for a large SaaS product across OS, container, and dependency exposure
- Experience triaging and tracking CVEs for a SaaS or containerized product
- Experience reproducing and validating customer-reported or penetration-test vulnerabilities
- Experience with vulnerability-scanning tools such as Prisma Cloud/Twistlock, JFrog, or Trivy
- Ability to build or maintain SAST/DAST pipeline automation
- Experience partnering with Engineering to prioritize and ship fixes
- Background in a highly regulated environment or modern software company
- Strong scripting ability; Python preferred
- Working knowledge of CVSS v3.1/v4.0 scoring
- Exploit development or proof-of-concept skills, including tools such as Burp Suite
- Familiarity with OWASP Top 10 and testing methodology
- Working knowledge of containers, Kubernetes, Linux, AWS, and networking fundamentals
- Understanding of authentication/authorization and API security fundamentals
- Basic threat-modeling ability
- Clear communication and ability to draft risk statements for non-technical audiences
- Ability to operate with ambiguity
- OSWA, OSWE, or similar offensive-security certification is nice to have
- Familiarity with Airflow and Snowflake is nice to have
Benefits
Comp & perks- Teaching and learning environment with tools needed for success
- Diverse and inclusive workplace
- Growth mindset and opportunities for improvement