- Salary
- $101k – $168k
- Location
- Fort Mill/Charlotte, United States of America · San Diego · Austin TX · Tempe
- Type
- Full-time
- Department
- Engineering
- Seniority
- Senior
- Education
- Bachelor
- Source
- Workday
Description
Job Description
Where Ambition Meets Innovation
Build a career that matches all your initiative with an impressive dose of innovation. From cutting-edge resources and a collaborative environment to the freedom to make an impact and more, you’ll find the ingredients you need at LPL Financial to shape your success while helping clients pursue their financial goals.
Please note: This position does not offer work authorization sponsorship now or in the future. Applicants must have valid U.S. work authorization that does not require employer sponsorship.
Job Overview:
LPL Financial is in search of a Senior Vulnerability Management Engineer who can execute and mature the existing Vulnerability Management program at LPL and its subsidiaries. As a member of the Cyber Security organization, the Senior Vulnerability Management Engineer plays a key role in securing systems built and/or used by LPL Financial. A successful candidate can expect to manage Vulnerability Scanning tools and work closely with infrastructure, cloud, engineering, and application teams, as well as third party vendors to ensure that vulnerabilities are effectively managed throughout the environment.
Responsibilities:
Perform as a vulnerability management SME in one or more of the following areas: Microsoft platform (Server, workstation, applications), Open Systems platforms (Linux, UNIX, VM Ware ESX), virtualization platforms (e.g. Citrix), Networking, Databases (Oracle, SQL Server, DB2, IMS), and Cloud (AWS, Azure, Google).
Lead efforts to define/implement processes, policies, and procedures to govern vulnerability remediation efforts and track open vulnerabilities from identification to resolution, following up with remediation owners and escalating risk as necessary
Lead and drive large initiatives with enterprise level visibility to improve the Vulnerability Management program
Be able to successfully partner with other security and IT professionals to assess potential impact from vulnerabilities specific to LPL Financials environment, and determine and implement mitigating controls.
Identify and recommend appropriate measures to manage and remediate vulnerabilities and reduce potential impacts on information resources to a level acceptable to the senior management of the company.
Build strong partnerships with technical teams to promote best practices for managing vulnerabilities in an agile manner and within cloud solutions.
Be a champion for vulnerability management and information security including broadening awareness and use of the team’s services, education of security best practices and integration with other business areas.
Assist with the management and maintenance of vulnerability management platforms/tools, including troubleshooting and resolving technical/functional issues and ensuring successful platform operations
Review, implement, and maintain cloud security posture management policies to identify misconfigurations or vulnerabilities in cloud resources
Partner with Security Engineering to implement and manage Cloud Security Posture Management tools to perform automated security scanning/analysis of cloud resources, including containers and serverless functions
Understands vulnerability exploitation techniques and stays up to date on the latest vulnerabilities and exploits
Develop and improve KPIs, metrics, and trending for vulnerability management functions.
Participate and lead new projects as needed.
What are we looking for?
We want strong collaborators who can deliver a world-class client experience. We are looking for people who thrive in a fast-paced environment, are client-focused, team oriented, and are able to execute in a way that encourages creativity and continuous improvement.
Requirements:
5+ years of practical experience in information security field within a large enterprise environment
5+ years of vulnerability management experience working with vulnerability management tools (e.g. Qualys, InsightVM/Rapid7, Wiz, Nessus, etc.)
Preferences:
Bachelors and/or Master’s Degree or in Information Security, Engineering, Computer Science.
Familiar with industry standard security best practices and vulnerability management processes including identification, analysis, reporting, and remediation.
Advanced level of knowledge of the major Cloud platforms, the types of resources that can be deployed within each platform, common cloud misconfigurations/vulnerabilities and how to fix such issues
In depth understanding of types of vulnerabilities and techniques/compensating controls to mitigate associated risk
Experience managing and using Cloud Security Posture Management tools such as Wiz, XPanse, Prisma, Laceworks, Orca
Experience with reviewing, analyzing, managing, and remediating security vulnerabilities and misconfigurations in cloud resources
Experience at a financial services/technology company or in a regulated industry.
Ability to communicate with both technical and non-technical stakeholders at all levels of the organization.
Strong analytical, interpersonal and communication skills
Please note: This position does not offer work authorization sponsorship now or in the future. Applicants must have valid U.S. work authorization that does not require employer sponsorship.
#LI-Hybrid
Pay Range:
$100,631.00 - $167,787.00Company Overview:
LPL Financial Holdings Inc. (Nasdaq: LPLA) is among the fastest growing wealth management firms in the U.S. As a leader in the financial advisor-mediated marketplace(6) , LPL supports over 32,000 financial advisors and the wealth management practices of approximately 1,100 financial institutions, servicing and custodying approximately $2.3 trillion in brokerage and advisory assets on behalf of approximately 8 million Americans. The firm provides a wide range of advisor affiliation models, investment solutions, fintech tools and practice management services, ensuring that advisors and institutions have the flexibility to choose the business model, services, and technology resources they need to run thriving businesses. For further information about LPL, please visit www.lpl.com.
At LPL, independence means that advisors and institution leaders have the freedom they deserve to choose the business model, services, and technology resources that allow them to run a thriving business. They have the flexibility to do business their way. And they have the freedom to manage their client relationships, because they know their clients best. Simply put, we take care of our advisors and institutions, so they can take care of their clients.
For further information about LPL, please visit www.lpl.com.
Join the LPL team and help us make a difference by turning life’s aspirations into financial realities. Please log in or create an account to apply to this position. Principals only. EOE.
Information on Interviews:
LPL will only communicate with a job applicant directly from an @lplfinancial.com email address and will never conduct an interview online or in a chatroom forum. During an interview, LPL will not request any form of payment from the applicant, or information regarding an applicant’s bank or credit card. Should you have any questions regarding the application process, please contact LPL’s Human Resources Solutions Center at (855) 575-6947.
EAC 5.19.26