← All Roles
Posted Jun 12, 2026

Security Engineer II, Attack Surface Management

Security Engineer II Pay Range: $50/hour to $55/hour Summary: The Attack Surface Management (ASM) Security Engineer reduces enterprise risk by continuously discovering assets, identifying vulnerabilities, and driving remediation across infrastructure, cloud, applications, AI and connected/medical/IoT devices. The role supports a proactive, risk-based approach to vulnerability and exposure management aligned with healthcare security best practices. Key Responsibilities & Accountabilities: • Operate continuous asset discovery and vulnerability scanning capabilities. • Validate, prioritize, and track remediation of vulnerabilities and misconfigurations. • Support cloud security posture management and configuration hardening. • Assist with secure development lifecycle (SDL) activities and application risk findings. • Coordinate medical and IoT device vulnerability remediation and compensating controls. • Produce metrics, dashboards, and reports to support KPIs and KRIs. Incident & RACI Expectations: • Responsible for coordinating the remediation of non-active medical device vulnerabilities. • Consulted during major incidents to identify root causes and remediation guidance. Minimum Education: • Associate's degree - Computer Science or a related field OR the equivalent combination of experience and education that would demonstrate the capability to successfully perform the essential functions of this position. Minimum Experience: • 5–7+ years in vulnerability management, security engineering, or cloud/app security. • Experience with vulnerability scanning tools and remediation workflows. • Strong understanding of CVSS scoring and risk-based prioritization. Preferred • Healthcare environment experience is a plus but not required. • Security certifications such as Security+, SSCP, or cloud security certifications.