Cybersecurity Engineer - Vulnerability Management

Jane Street Jane Street · Quant · New York, NY · Cybersecurity

Jane Street is seeking a Cybersecurity Engineer to mature their vulnerability management program, focusing on automation and scaling. The role involves hands-on building, reasoning about risk, and leveraging AI tooling alongside human judgment. Responsibilities include managing the vulnerability lifecycle, prioritizing findings, driving automation, and building metrics.

What you'd actually do

  1. Supporting and improving the vulnerability management lifecycle end to end, from discovery and validation through triage, assignment, remediation tracking, and verification
  2. Reviewing new findings from automated scanning tools, threat intel, and security advisories, then prioritizing based on real exploitability and exposure rather than severity score alone, so we act on what genuinely matters
  3. Validating and deduplicating findings across sources, confirming whether an affected product or component is actually present, and routing work to the team that owns the fix
  4. Measuring scanning coverage and data quality and knowing what isn't being scanned, where scans are stale, and where authentication is failing, rather than assuming coverage is complete
  5. Driving automation across vulnerability management tooling and processes

Skills

Required

  • Cybersecurity Engineer
  • vulnerability management
  • automation
  • technical foundation
  • data querying and shaping
  • building and debugging data pipelines
  • automated scanning platform experience (Rapid7, Tenable, or Qualys)
  • threat modeling
  • version control
  • code review
  • maintainable code
  • personal cybersecurity hygiene
  • clear communication

Nice to have

  • software inventory
  • SBOM data

What the JD emphasized

  • automation
  • scaling
  • AI tooling