About this role
Our client is seeking a Security Platform Engineer specializing in Tool Configuration and Data Unification. This role requires deep security domain expertise to configure and unify the output of multiple security scanners into a coherent vulnerability language. You will be responsible for tuning detection tools, defining normalization processes for findings, and designing data models that transform raw scanner output into actionable vulnerability records. Collaborating with DevSecOps and GRC engineers, you will manage the security data pipeline to support compliance and vulnerability management at scale.
Key Responsibilities:
- Own scanner configuration and tuning across the detection fleet, including Trivy, Semgrep, Qualys, Tenable, AWS Inspector, CrowdStrike, and Dependabot.
- Design deduplication and correlation strategies in DefectDojo to reduce ticket volume by approximately 70%.
- Define the unified findings data model to support FedRAMP vulnerability reporting schemas.
- Build the reachability signal layer using AWS Reachability Analyzer and eBPF-based signals.
- Configure runtime visibility with CrowdStrike and reconcile observations against image-scan results.
- Partner with GRC engineers to ensure the data model meets audit evidence requirements.
- Validate detection coverage across various environments and identify blind spots.
Required Skills:
- 6+ years in security engineering with hands-on vulnerability management experience.
- Strong understanding of CVEs, scanner false-positive patterns, and disagreement analysis.
- Proven experience configuring and tuning various commercial and open-source scanning tools.
- Strong data modeling skills for security findings, including normalization and enrichment.
- Expertise in AWS cloud security, particularly in container security on EKS/ECS.
- Familiarity with exploitability intelligence and vulnerability prioritization.
- Experience with DefectDojo for vulnerability aggregation and deduplication.
Preferred (Bonus) Skills:
- Experience with DefectDojo's deduplication engine and API.
- Knowledge of network reachability analysis tools and methodologies.
- Familiarity with FedRAMP concepts and vulnerability rating systems.
- Experience writing custom scanner parsers or transformation code in Python.
What we offer:
Our client provides a dynamic work environment, opportunities for professional growth, and the chance to work on cutting-edge security technologies. You will be part of a collaborative team dedicated to enhancing security measures and compliance standards.