Cybersecurity Vulnerability Engineer in Canada Creek, Nova Scotia at Jobgether
Explore Related Opportunities
Job Description
This position is listed on behalf of a partner company, who manages all applications and next steps. Our partner is looking for a Cybersecurity Vulnerability Engineer based in Canada.
The Cybersecurity Vulnerability Engineer will play a critical role in protecting enterprise technology environments by identifying, assessing, and coordinating responses to emerging security vulnerabilities. This position focuses on vulnerability analysis, incident response support, threat intelligence, and risk remediation across complex on-premise and cloud infrastructures. You will collaborate with security, infrastructure, application, and product teams to understand exposure and drive effective mitigation strategies. The role offers the opportunity to work on high-impact cybersecurity initiatives while strengthening organizational resilience against evolving threats. As a security-focused professional, you will translate complex vulnerability information into actionable recommendations and support continuous improvement of security practices. This is an opportunity to contribute to a global technology environment where innovation, collaboration, and operational excellence are highly valued.
- Monitor and evaluate newly disclosed vulnerabilities and emerging threats from security intelligence sources, vulnerability databases, vendor advisories, and trusted research communities.
- Lead and coordinate vulnerability response activities for security issues that may impact enterprise systems, applications, cloud environments, and networks.
- Analyze vulnerabilities to understand affected components, exploitation requirements, attack vectors, required privileges, potential business impact, and available mitigation strategies.
- Review CVEs, technical advisories, security research publications, proof-of-concept information, and exploit intelligence to determine risk relevance.
- Assess enterprise exposure by validating whether vulnerable technologies, configurations, or services are present across environments.
- Partner with infrastructure, IT, application, cloud, product, and security teams to define remediation actions and establish ownership.
- Track vulnerability remediation activities through completion, ensuring risks are appropriately mitigated and deadlines are achieved.
- Escalate unresolved vulnerabilities, missed timelines, ownership challenges, and significant residual risks to relevant stakeholders.
- Maintain accurate status reporting and communicate vulnerability risks, progress, and remediation efforts to technical teams and leadership.
- Translate complex security findings into clear, actionable guidance for engineering, infrastructure, product, and business teams.
- Collaborate with incident response and threat detection teams when vulnerabilities require investigation for potential exploitation or additional monitoring.
- Support continuous improvement of vulnerability management processes, workflows, and security operations.
- Bachelor’s degree in computer information systems, computer science, engineering, programming, or a related technical field.
- 5+ years of cybersecurity experience, including 3–5 years focused on vulnerability management, vulnerability analysis, security engineering, incident response, threat intelligence, penetration testing, or related security functions.
- Strong experience analyzing CVEs and determining their relevance, exploitability, and business impact within complex enterprise environments.
- Solid understanding of vulnerability exploitation, attack paths, operating systems, networking, authentication mechanisms, privilege boundaries, and common security controls.
- Ability to interpret vendor advisories, security research, proof-of-concept material, logs, configurations, and vulnerability evidence.
- Working knowledge of Windows and Linux environments, network infrastructure, cloud technologies, virtualization, containers, and enterprise applications.
- Strong analytical and problem-solving skills with the ability to investigate complex security issues and recommend effective solutions.
- Ability to independently coordinate urgent cross-functional security activities involving multiple teams and competing priorities.
- Strong organizational skills with the ability to manage multiple vulnerability response initiatives from identification through resolution.
- Knowledge of information security practices across prevention, detection, and response domains.
- Experience supporting large, complex, or globally distributed enterprise environments is preferred.
- Experience using scripting and automation tools such as Python, PowerShell, APIs, SQL, or similar technologies to support vulnerability analysis and data correlation is an asset.
- Ability to obtain required security clearances and authorizations related to controlled technical information and regulated environments.
- Competitive total target compensation range of CAD 123,459 to CAD 172,842.60 annually, including base salary and variable compensation target.
- Comprehensive health and wellness benefits, including extended health, dental coverage, health spending account, life insurance, disability coverage, travel insurance, and employee assistance programs.
- Retirement savings plans with employer contributions and matching programs.
- Paid vacation days, holidays, and sick leave.
- Additional voluntary insurance options, including life, accident, critical illness, and long-term disability coverage.
- Employee discounts on services such as home, auto, and gym memberships.
- Fully remote work opportunity based in Canada.
- Opportunity to contribute to impactful cybersecurity programs protecting critical technology environments.
- Collaborative workplace culture focused on innovation, diversity, inclusion, and professional development.