Mobile Vulnerability Management Engineer

@ Neshent Technologies
Neshent Technologiesneshenttechnologies.com

Mobile Vulnerability Management Engineer

Revere, Massachusetts
Posted today

About the job

Company specializes in security solutions; role focuses on managing mobile vulnerability scanning, compliance, and integrating security platforms for enterprise devices.

Requirements

  • 8–10 years experience in cybersecurity
  • Experience with vulnerability management tools
  • Knowledge of iOS/iPadOS and Android security
  • Experience with automation and scripting
  • Understanding of security governance

Qualifications

  • Bachelor's degree or higher
  • Certifications like CISSP or Security+
  • Experience with security platform certifications
  • Strong risk and compliance understanding

Full job description

We are seeking a Mobile Vulnerability Management & Configuration Compliance Engineer to design, validate, and operationalize automated vulnerability scanning and configuration compliance capabilities for enterprise-issued iOS/iPadOS and Android devices.

Key Responsibilities
  • Define PoC scope, success criteria, and test plans for mobile vulnerability scanning using agent-based, agentless, MDM-integrated, and API-driven approaches.
  • Evaluate vulnerability management tools based on OS/app coverage, detection accuracy, scalability, device impact, privacy, and reporting.
  • Conduct pilots across representative mobile device populations and validate vulnerability detection, configuration compliance, and integration capabilities.
  • Integrate mobile security solutions with Intune, Workspace ONE, Jamf, SIEM, ITSM, and CMDB platforms.
  • Produce PoC findings, risk analysis, cost/benefit analysis, architecture decisions, and go/no-go recommendations.
  • Develop and manage the mobile vulnerability lifecycle, including discovery, assessment, prioritization, remediation, validation, and reporting.
  • Establish mobile-specific risk and severity scoring based on exposure, device role, application risk, and compliance impact.
  • Coordinate remediation with endpoint engineering, mobility administrators, application owners, and operations teams.
  • Develop and maintain security baselines for iOS/iPadOS and Android.
  • Translate security requirements into enforceable policies covering encryption, authentication, OS updates, application controls, certificates, VPN/Wi-Fi security, and logging.
  • Implement compliance monitoring, configuration drift detection, and automated/semi-automated remediation.
  • Develop automation scripts and APIs to normalize, enrich, and process vulnerability findings.
  • Support change management and provide technical guidance and training to operations teams.
  • Partner with Information Security and Compliance teams to ensure alignment with regulatory requirements, including NYDFS.
Required Skills
  • 8–10 years of overall IT/cybersecurity experience.
  • 8–10 years of experience in vulnerability management, endpoint security, mobile security, or configuration compliance.
  • Strong experience with enterprise iOS/iPadOS and Android security and compliance.
  • Experience with vulnerability management platforms such as Qualys, Rapid7, Tenable, or equivalent.
  • Hands-on experience with Intune, Workspace ONE, or Jamf.
  • Experience integrating security platforms with SIEM, ITSM, and CMDB systems.
  • Strong understanding of vulnerability management, risk assessment, security baselines, compliance monitoring, and remediation.
  • Experience with automation, scripting, APIs, and security data normalization.
  • Strong understanding of cybersecurity governance, compliance, and enterprise security controls.
Preferred Certifications
  • CompTIA Security+ / CySA+
  • GIAC GSEC / GMON or related certifications
  • Qualys, Rapid7, Tenable, or equivalent platform certifications
  • CISSP, CISM, or CCSP
  • ITIL Foundation
Show full description