Talent.com
Senior Security Engineer – Vulnerability Management & Automation
Senior Security Engineer – Vulnerability Management & AutomationPepsiCo • Purchase, New York, US
Senior Security Engineer – Vulnerability Management & Automation

Senior Security Engineer – Vulnerability Management & Automation

PepsiCo • Purchase, New York, US
[job_card.30_days_ago]
[job_preview.job_type]
  • [job_card.full_time]
[job_card.job_description]
Overview

We are looking for an experienced and highly technical Senior Security Engineer with 6 to 7 years of expertise in Vulnerability Management, Security Automation, and Enterprise Security Operations. This role demands advanced coding skills (Python, PowerShell, Bash, or equivalent) to develop automation frameworks, integrate security tools, and optimize vulnerability remediation workflows.

The ideal candidate will have a deep understanding of SAP security, Onapsis, and Tenable, along with hands-on experience in ServiceNow Vulnerability Response (VR) module, Configuration Compliance, and third-party security platforms (Okta, Salesforce, M365, SAP, etc.). This role will focus on enterprise vulnerability management, integrating security findings into ServiceNow, automating compliance reporting, and enhancing risk visibility across on-prem and cloud environments.

As a seasoned professional, you will lead strategic security automation initiatives, design scalable security architectures, drive SAP vulnerability remediation, and mentor junior analysts.

Responsibilities
  • Advanced Security Automation & API Development
  • Develop, optimize, and scale automation scripts (Python, PowerShell, Bash) to improve vulnerability detection, tracking, and remediation.
  • Design custom API integrations between Tenable, Onapsis, ServiceNow VR, and ITSM platforms to automate security workflows.
  • Implement security automation playbooks that reduce manual efforts and accelerate response times.
  • Engineer custom security solutions to streamline vulnerability scanning and compliance reporting.
  • Enterprise Vulnerability Management & Risk Prioritization
  • Lead enterprise-wide vulnerability assessments using Tenable, Onapsis, Qualys, or Nexpose.
  • Implement automated risk-based prioritization models, leveraging AI/ML-driven insights where applicable.
  • Oversee and optimize the ServiceNow VR module for scalable vulnerability tracking, exception management, and automated ticketing.
  • Work closely with IT and business stakeholders to define remediation SLAs, risk thresholds, and compliance requirements.
  • SAP Security & Onapsis Integration
  • Lead the security assessment of SAP environments, ensuring compliance with industry standards and best practices.
  • Automate the ingestion of Onapsis vulnerability findings into ServiceNow VR for enhanced tracking and resolution.
  • Work with SAP teams to remediate misconfigurations, unauthorized access risks, and compliance gaps.
  • Develop automation frameworks to monitor SAP security posture and streamline remediation workflows.
  • Security Platform & ServiceNow Integration
  • Manage the full integration of Tenable, Onapsis, and Configuration Compliance findings into ServiceNow VR.
  • Enhance Configuration Compliance monitoring by automating the processing of audit findings and risk exceptions.
  • Ensure that security data is accurate, actionable, and seamlessly integrated with ITSM and GRC platforms.
  • Deep Network & Security Protocols Expertise
  • Apply expert-level knowledge of networking and security protocols (, TCP/IP, HTTP/S, SSH, FTP, DNS, SSL/TLS, VPNs, RDP).
  • Assess security implications of common ports (, 443 (HTTPS), 22 (SSH), 3389 (RDP), 53 (DNS), 445 (SMB)) and automate network security controls.
  • Work on firewall rule reviews, segmentation strategies, and security policy enforcement.
  • Compliance Automation & Security Governance
  • Design automation workflows for PCI-DSS, NIST, ISO 27001, and CIS benchmarks compliance.
  • Develop tools to generate real-time compliance reports, track remediation progress, and reduce audit preparation time.
  • Stay ahead of emerging threats, regulatory changes, and vulnerability trends, continuously refining security automation strategies.
  • Strategic Leadership & Mentorship
  • Provide technical leadership in vulnerability management, SAP security, and security automation.
  • Drive strategic discussions with IT, business, and leadership teams to align security initiatives with organizational goals.
  • Mentor junior and mid-level security analysts, sharing best practices in automation, API development, and risk prioritization.
  • Develop comprehensive security documentation, playbooks, and process improvements.

Compensation & Benefits:

  • The expected compensation range for this position is between $89,000 - $149,000.
  • Location, confirmed job-related skills, experience, and education will be considered in setting actual starting salary. Your recruiter can share more about the specific salary range during the hiring process.
  • Bonus based on performance and eligibility target payout is 10% of annual salary paid out annually.
  • Paid time off subject to eligibility, including paid parental leave, vacation, sick, and bereavement.
  • In addition to salary, PepsiCo offers a comprehensive benefits package to support our employees and their families, subject to elections and eligibility: Medical, Dental, Vision, Disability, Health, and Dependent Care Reimbursement Accounts, Employee Assistance Program (EAP), Insurance (Accident, Group Legal, Life), Defined Contribution Retirement Plan.
Qualifications
  • Strong programming skills in Python, PowerShell, Bash, or equivalent languages for security automation.
  • Deep expertise in SAP security and Onapsis vulnerability management.
  • Advanced API development skills, integrating security platforms (Tenable, Onapsis, ServiceNow, ITSM).
  • Strong experience with ServiceNow VR module, including automation, custom workflows, and integrations.
  • Hands-on experience with Tenable, Qualys, or Nexpose for enterprise vulnerability scanning.
  • Expert-level understanding of network security protocols and common port numbers.
  • Experience securing third-party platforms (Okta, SAP, ServiceNow, Salesforce, M365).
  • Proven ability to lead security automation initiatives and mentor junior analysts.
  • Strong analytical, troubleshooting, and problem-solving skills.

Preferred Qualifications:

  • Experience with cloud security automation (AWS, Azure, GCP).
  • Infrastructure-as-Code (Terraform, Ansible) for security automation.
  • Familiarity with SAP Basis, HANA security, and GRC compliance.
  • Experience with machine learning-driven security automation.
  • Security certifications (CISSP, OSCP, GIAC, AWS Security Certs, Onapsis Certified Expert) are a plus.
EEO Statement

Our Company will consider for employment qualified applicants with criminal histories in a manner consistent with the requirements of the Fair Credit Reporting Act, and all other applicable laws, including but not limited to, San Francisco Police Code Sections 4901-4919, commonly referred to as the San Francisco Fair Chance Ordinance; and Chapter XVII, Article 9 of the Los Angeles Municipal Code, commonly referred to as the Fair Chance Initiative for Hiring Ordinance.

All qualified applicants will receive consideration for employment without regard to age, race, color, religion, sex, sexual orientation, gender identity, national origin, protected veteran status, or disability status.

PepsiCo is an Equal Opportunity Employer: Female / Minority / Disability / Protected Veteran / Sexual Orientation / Gender Identity / Age

If you'd like more information about your EEO rights as an applicant under the law, please download the available EEO is the Law & EEO is the Law Supplement documents. View PepsiCo EEO Policy.

Please view our Pay Transparency Statement

[job_alerts.create_a_job]

Senior Security Engineer – Vulnerability Management & Automation • Purchase, New York, US

[internal_linking.similar_jobs]
Manager, Security Posture Management Innovation Engineer

Manager, Security Posture Management Innovation Engineer

KPMG • Stamford, CT, United States
[job_card.full_time]
Known for being a great place to work and build a career, KPMG provides audit, tax and advisory services for organizations in today's most important industries.Our growth is driven by delivering re...[show_more]
[last_updated.last_updated_30] • [promoted]
OT Security Engineer: Industrial IoT & OT Defense

OT Security Engineer: Industrial IoT & OT Defense

Crane Co. • Stamford, CT, United States
[job_card.full_time]
A leading Industrial Security firm in Stamford, Connecticut is looking for an OT Security Engineer to safeguard Operational Technology systems.The role involves developing security controls, identi...[show_more]
[last_updated.last_updated_variable_days] • [promoted]
Principal Software Engineering Architect, Information Security

Principal Software Engineering Architect, Information Security

TransUnion LLC • City of White Plains, NY, United States
[job_card.full_time]
TransUnion's Job Applicant Privacy Notice.Personal Information We Collect.At TransUnion, we have a welcoming and energetic environment that encourages collaboration and innovation we're consistentl...[show_more]
[last_updated.last_updated_variable_days] • [promoted]
Director of Information Security

Director of Information Security

InsideHigherEd • Hempstead, New York, United States
[job_card.full_time] +1
Hofstra University is nationally ranked and recognized as Long Island’s largest private university located in Hempstead, N.When you work at Hofstra, you join a team of talented professionals commit...[show_more]
[last_updated.last_updated_30] • [promoted]
Lead Substation Protection & Control Engineer

Lead Substation Protection & Control Engineer

CDM Smith • Stamford, CT, United States
[job_card.full_time]
As a Lead Substation Protection & Control (P&C), you'll play a key role in leading the design and delivery of complex substation projects that ensure the reliability, safety, and efficiency of powe...[show_more]
[last_updated.last_updated_variable_days] • [promoted]
Senior Offensive Security Consultant: PenTesting & Red Team

Senior Offensive Security Consultant: PenTesting & Red Team

Ernst & Young Oman • Stamford, CT, United States
[job_card.full_time]
A global professional services firm seeks a Senior Consultant in Offensive Security to enhance clients' security through proactive measures.The ideal candidate has over 5 years of experience, stron...[show_more]
[last_updated.last_updated_variable_days] • [promoted]
Security Director North America - Now Hiring!

Security Director North America - Now Hiring!

Henkel • Stamford, CT, United States
[job_card.full_time]
At Henkel, you’ll be part of an organization that’s shaping the future through innovation, sustainability and collaboration.With our trusted brands like Persil®, ‘all®, Loctite®, Snuggle®, and Schw...[show_more]
[last_updated.last_updated_variable_days]
Manager, Detection Engineering and Security Automation

Manager, Detection Engineering and Security Automation

Gartner • Stamford, CT, United States
[job_card.full_time]
Hiring near our Irving, TX and Stamford, CT Centers of Excellence with a flexible environment.Join a world-class team of skilled engineers who build creative digital solutions to support our collea...[show_more]
[last_updated.last_updated_30] • [promoted]
Senior Implementation Engineer – Cloud & Data Security

Senior Implementation Engineer – Cloud & Data Security

TM2 Group, LLC • Stamford, CT, United States
[job_card.full_time]
A leading technology firm in Stamford, CT is seeking a Principal Implementation Engineer to lead complex implementations and mentor a team of engineers.This role requires over 10 years of experienc...[show_more]
[last_updated.last_updated_variable_days] • [promoted]
SAP Security & IAM Analyst | GRC, S/4HANA, Azure

SAP Security & IAM Analyst | GRC, S/4HANA, Azure

Ampcus, Inc • City of White Plains, NY, United States
[job_card.full_time]
An established industry player is seeking a motivated SAP Security Analyst to enhance their security posture within a diverse SAP environment.This role involves supporting Identity Access Managemen...[show_more]
[last_updated.last_updated_variable_days] • [promoted]
Senior Fire Protection Engineer

Senior Fire Protection Engineer

LaBella Associates • White Plains, NY, US
[job_card.full_time]
[filters_job_card.quick_apply]
We are currently hiring a Senior Fire Protection Engineer in our Building Engineering division at our Rochester, Albany, Ithaca, Poughkeepsie, Syracuse, or White Plains office.The Building Engineer...[show_more]
[last_updated.last_updated_30]
Senior Offensive Security Lead — Pen Testing & Red Team

Senior Offensive Security Lead — Pen Testing & Red Team

Ernst & Young Oman • Stamford, CT, United States
[job_card.full_time]
A global professional services firm is looking for a Senior Consultant in Offensive Security to enhance clients' cybersecurity.This role involves managing penetration tests, collaborating with cros...[show_more]
[last_updated.last_updated_variable_days] • [promoted]
Senior Security Architect

Senior Security Architect

TradeJobsWorkForce • 10709 Eastchester, NY, US
[job_card.full_time]
Senior Security Architect Job Duties: Enhances security team accomplishments and competence by planning delivery of solutions; answering technical and procedural questions for less experienced team...[show_more]
[last_updated.last_updated_30] • [promoted]
Senior Controls Engineer

Senior Controls Engineer

E Tech Group • White Plains, NY, United States
[job_card.full_time]
At E Tech Group, joining our team means joining a group of passionate and forward-thinking experts.We're one of the largest engineering and system integration firms in the United States providing v...[show_more]
[last_updated.last_updated_variable_days] • [promoted]
Lead Implementation Engineer — Data Security

Lead Implementation Engineer — Data Security

Protegrity • Stamford, CT, United States
[job_card.full_time]
A leading Data Protection company is seeking a Principal Implementation Engineer in Stamford, Connecticut, to lead the implementation of solutions in complex client environments.The ideal candidate...[show_more]
[last_updated.last_updated_variable_days] • [promoted]
Senior Application Security Engineer Remote - SF Bay Area, Hybrid - NYC

Senior Application Security Engineer Remote - SF Bay Area, Hybrid - NYC

GlossGenius, Inc. • Stamford, CT, United States
[filters.remote]
[job_card.full_time]
GlossGenius is building an ecosystem enabling entrepreneurs to succeed.We empower small business owners to focus on being creators, not admins, by offering a range of business management tools incl...[show_more]
[last_updated.last_updated_variable_days] • [promoted]
AI Security Architect

AI Security Architect

Teladoc Health • Purchase, New York, United States
[job_card.full_time] +1
Join the team leading the next evolution of virtual care.At Teladoc Health, you are empowered to bring your true self to work while helping millions of people live their healthiest lives.Here you w...[show_more]
[last_updated.last_updated_variable_days] • [promoted]
Security Operations Lead

Security Operations Lead

FlexTrade Systems Inc. • Great Neck, NY, United States
[job_card.full_time]
FlexTrade Systems is a provider of customized multi-asset execution and order management trading solutions for buy- and sell-side financial institutions.Through deep client partnerships with some o...[show_more]
[last_updated.last_updated_variable_days] • [promoted]