True Anomaly Logo

True Anomaly

Enterprise Security Engineer III, Vulnerability Management

Posted An Hour Ago
Be an Early Applicant
In-Office
Denver, CO, USA
115K-165K Annually
Mid level
In-Office
Denver, CO, USA
115K-165K Annually
Mid level
The Enterprise Security Engineer III role involves managing vulnerability scanning and remediation processes, collaborating with teams to reduce organizational security risks, and producing metrics for stakeholders.
The summary above was generated by AI

A new space race has begun. True Anomaly seeks those with the talent and ambition to build innovative technology that solves the next generation of engineering, manufacturing, and operational challenges for space security and sustainability.

OUR MISSION

The peaceful use of space is essential for continued prosperity on Earth—from communications and finance to navigation and logistics. True Anomaly builds innovative technology at the intersection of spacecraft, software, and AI to enhance the capabilities of the U.S., its allies, and commercial partners. We safeguard global security by ensuring space access and sustainability for all.

OUR VALUES

  • Be the offset. We create asymmetric advantages with creativity and ingenuity
  • What would it take? We challenge assumptions to deliver ambitious results
  • It’s the people. Our team is our competitive advantage and we are better together

YOUR MISSION

As an Enterprise Security Engineer focused on Vulnerability Management, you will play a critical role in identifying, tracking, and driving remediation of vulnerabilities across True Anomaly's enterprise environment. You will operate and mature our vulnerability management program, ensuring we maintain continuous visibility into our attack surface across endpoints, servers, cloud infrastructure, and applications. You will work alongside senior engineers and cross-functional partners to prioritize risk, coordinate remediation efforts, and measure progress toward reducing organizational exposure.

As part of True Anomaly's Enterprise Security team, you will be the connective tissue between security findings and actionable outcomes. You will be responsible for ensuring patches get deployed in a timely manner within established SLAs, tracking exceptions, and collaborating on methods to eliminate attack surface or automate vulnerability patching. You will be joining a fast-paced, challenging environment where your contributions will have a direct, measurable impact on our security posture.

This is an ideal role for someone who is detail-oriented, thrives on driving issues to closure, and is energized by the opportunity to build and mature a core security function alongside experienced professionals.

This position requires the ability to obtain and maintain a security clearance.


Responsibilities

  • Operate and maintain vulnerability scanning infrastructure across cloud, on-prem, and endpoint environments.
  • Execute regular vulnerability scans and manage scan schedules, policies, and agent deployments.
  • Triage and prioritize vulnerability findings based on exploitability, asset criticality, and business context.
  • Track remediation efforts across teams, monitor SLA adherence, and escalate aging vulnerabilities.
  • Partner with IT, DevOps, and engineering teams to coordinate patching and remediation activities.
  • Maintain accurate asset inventory and ensure scanning coverage across all environments.
  • Develop and maintain vulnerability management dashboards, metrics, and reporting for stakeholders and leadership.
  • Contribute to the development of vulnerability management policies, standards, and procedures.
  • Support compliance efforts by providing vulnerability data and evidence for audits and framework assessments (e.g., CMMC, NIST, FedRAMP).
  • Monitor threat intelligence feeds and vendor advisories to identify emerging vulnerabilities relevant to True Anomaly's environment.
  • Assist with ad hoc security assessments and penetration testing coordination as needed.
  • Stay updated with the latest vulnerability trends, exploitation techniques, and remediation best practices.

Qualifications

  • Minimum of 4 years of experience in information security or a related technical field, with exposure to vulnerability management.
  • Hands-on experience with vulnerability scanning tools such as Tenable, Qualys, Rapid7, or similar platforms.
  • Understanding of CVE scoring (CVSS), vulnerability prioritization frameworks (SSVC, EPSS), and risk-based remediation approaches.
  • Familiarity with patch management processes across Windows, Linux, Mac, and cloud environments.
  • Solid technical understanding of networking, operating systems, and common enterprise technologies.
  • Experience producing security metrics and reporting for technical and non-technical audiences.
  • Strong organizational skills with the ability to track and drive multiple remediation efforts simultaneously.
  • Strong analytical, problem-solving, and communication skills.
  • Ability to work both independently and collaboratively in a fast-paced environment.
  • Relevant certifications such as Security+, GSEC, CEH, or equivalents are a plus.

Preferred Qualifications

  • Active security clearance or ability to obtain and maintain security clearance.
  • Bachelor's degree in Computer Science, Information Security, or equivalent professional experience.
  • Experience building or maturing a vulnerability management program.
  • Familiarity with asset discovery and management tools.
  • Experience with cloud security posture management (CSPM) or cloud-native vulnerability scanning in Azure, AWS, or Google Cloud.
  • Familiarity with FedRAMP, CMMC, NIST frameworks and their vulnerability management requirements.
  • Exposure to manufacturing or operational technology environments.
  • Experience working at a startup and/or in the defense industry.

Work Environment

      • Work Location—this role will be onsite at our Denver or Long Beach office.  #LI-Onsite 
  • This role operates in a fast-paced, high-stakes environment where adaptability is essential.
  • On-call rotation participation, including after-hours participation, may be required in this role.
  • Must be comfortable working under pressure during active security incidents or critical vulnerability response.
  • Mentorship and growth opportunities with senior security engineers.
  • Direct exposure to leadership and opportunity to contribute to security strategy.

What We Offer

  • Competitive salary
  • Opportunity to work on challenging, mission-critical security initiatives
  • Professional development and certification support
  • Collaborative culture with experienced security professionals
  • Equity + Benefits including Health, Dental, Vision, HRA/HSA options, PTO and paid holidays, 401K, Parental Leave

COMPENSATION 

  • Colorado Base Salary: $115,000–$155,000 
  • California Base Salary: $120,000–$165,000 
  • Equity + Benefits including Health, Dental, Vision, HRA/HSA options, PTO and paid holidays, 401K, Parental Leave 
  • Your actual level and base salary will be determined on a case-by-case basis and may vary based on the following considerations: job-related knowledge and skills, education, location, and experience. 

This position will be open until it is successfully filled. To submit your application, please follow the directions below.

To conform to U.S. Government space technology export regulations, including the International Traffic in Arms Regulations (ITAR) you must be a U.S. citizen, lawful permanent resident of the U.S., protected individual as defined by 8 U.S.C. 1324b(a)(3), or eligible to obtain the required authorizations from the U.S. Department of State.

True Anomaly is committed to equal employment opportunity on any basis protected by applicable state and federal laws. If you have a disability or additional need that requires accommodation, please do not hesitate to let us know.


To conform to U.S. Government space technology export regulations, including the International Traffic in Arms Regulations (ITAR) you must be a U.S. citizen, lawful permanent resident of the U.S., protected individual as defined by 8 U.S.C. 1324b(a)(3), or eligible to obtain the required authorizations from the U.S. Department of State.

True Anomaly is committed to equal employment opportunity on any basis protected by applicable state and federal laws. If you have a disability or additional need that requires accommodation, please do not hesitate to let us.


Top Skills

AWS
Azure
Cve
Cvss
GCP
Qualys
Rapid7
Tenable
HQ

True Anomaly Centennial, Colorado, USA Office

True Anomaly Engineering and Manufacturing Office

Located in the foothills of the Rocky Mountains, about 15 miles south of Downtown Denver, Centennial is the home of True Anomaly HQ. Centennial offers access to both big-city amenities and the country’s best outdoor recreation, a great public school system, and a range of neighborhood options.

True Anomaly Colorado Springs, Colorado, USA Office

True Anomaly Mission Operations Office

CO Springs offers the best of Rocky Mountain living with easy access to nature, hundreds of miles of trails, parks, and open spaces for hiking, biking, and climbing. Colorado Springs is consistently rated one of the best places to live in the US, offers affordability and amazing quality of life

Similar Jobs at True Anomaly

An Hour Ago
In-Office
Denver, CO, USA
145K-205K Annually
Senior level
145K-205K Annually
Senior level
Aerospace • Artificial Intelligence • Hardware • Machine Learning • Software • Defense • Manufacturing
The Senior Application Security Engineer will implement security controls for space systems, ensuring compliance with government standards while collaborating with engineering teams to enhance security practices and respond to threats.
Top Skills: AWSAzureBicepC++ElixirGCPJavaScriptKubernetesPulumiPythonTerraform
20 Hours Ago
In-Office
Denver, CO, USA
115K-165K Annually
Mid level
115K-165K Annually
Mid level
Aerospace • Artificial Intelligence • Hardware • Machine Learning • Software • Defense • Manufacturing
As an Enterprise Security Engineer, you will design, implement, and maintain security controls across various environments while contributing to the organization's security posture and compliance.
Top Skills: AWSAzureCi/CdElixirEndpoint ProtectionGitopsGoGCPIds/IpsMdmPythonRustSIEMTerraformVulnerability Scanners
22 Hours Ago
In-Office
Denver, CO, USA
140K-190K Annually
Senior level
140K-190K Annually
Senior level
Aerospace • Artificial Intelligence • Hardware • Machine Learning • Software • Defense • Manufacturing
The Director will lead strategic expansion of facilities, overseeing site selection, real estate negotiations, construction management and operations across multiple locations for True Anomaly.

What you need to know about the Colorado Tech Scene

With a business-friendly climate and research universities like CU Boulder and Colorado State, Colorado has made a name for itself as a startup ecosystem. The state boasts a skilled workforce and high quality of life thanks to its affordable housing, vibrant cultural scene and unparalleled opportunities for outdoor recreation. Colorado is also home to the National Renewable Energy Laboratory, helping cement its status as a hub for renewable energy innovation.

Key Facts About Colorado Tech

  • Number of Tech Workers: 260,000; 8.5% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Lockheed Martin, Century Link, Comcast, BAE Systems, Level 3
  • Key Industries: Software, artificial intelligence, aerospace, e-commerce, fintech, healthtech
  • Funding Landscape: $4.9 billion in VC funding in 2024 (Pitchbook)
  • Notable Investors: Access Venture Partners, Ridgeline Ventures, Techstars, Blackhorn Ventures
  • Research Centers and Universities: Colorado School of Mines, University of Colorado Boulder, University of Denver, Colorado State University, Mesa Laboratory, Space Science Institute, National Center for Atmospheric Research, National Renewable Energy Laboratory, Gottlieb Institute

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account