Position Summary
Company is looking for a senior-level cybersecurity engineer to lead the architecture, deployment, and operationalization of the Tenable One exposure management platform across a global data center and colocation environment.
This role spans both traditional IT vulnerability management and OT/IoT security — including building management systems, power and cooling infrastructure, and other critical facility technology.
This is a hands-on senior individual contributor role. The engineer will own technical design decisions, drive the build, and hand off a running, measurable program to the customer's security operations team.
Architecture
- Design the end-to-end Tenable One architecture: scanner/sensor placement, network segmentation considerations, data flow, and integration points across a distributed global footprint.
- Produce a target-state architecture and phased deployment roadmap covering IT and OT/IoT scopes.
- Define asset discovery, tagging, and grouping strategy to support accurate exposure scoring and business-context reporting.
- Advise on passive vs. active collection methods in sensitive OT environments where active scanning carries operational risk.
Deployment
- Deploy and configure Tenable One and its component modules — Tenable Vulnerability Management, Tenable Security Center, Tenable OT Security, Nessus scanners, Nessus Agents, and Tenable Identity Exposure / Attack Surface Management as scoped.
- Stand up scan policies, credentialed scanning, agent deployment at scale, and scan scheduling aligned to customer change windows.
- Build integrations with adjacent systems: CMDB/ITSM (ServiceNow), SIEM, ticketing, identity, and cloud provider accounts.
- Validate coverage and data quality; remediate scan gaps, credential failures, and false positives.
Operationalization
- Establish the vulnerability and exposure management operating model: SLAs, risk-based prioritization, remediation workflows, exception handling, and escalation paths.
- Build dashboards and executive-level reporting on exposure posture, remediation velocity, and coverage.
- Automate recurring workflows (ticket creation, asset reconciliation, reporting) via API and scripting.
- Document runbooks, standard operating procedures, and knowledge transfer materials; train customer analysts and engineers.
- Partner with IT, OT/facilities, and application owners to drive adoption and remediation accountability.