EchoStar's portfolio of brands in action.
EchoStar Logo

EchoStar

Vulnerability Management & DevSecOps Engineer II

Posted 2 Hours Ago
Be an Early Applicant
In-Office
Littleton, CO
72K-103K Annually
Mid level
In-Office
Littleton, CO
72K-103K Annually
Mid level
The role involves managing automated security tooling, overseeing vulnerability management, integrating secure practices into development, and collaborating across teams to improve security posture.
The summary above was generated by AI
Company Summary
EchoStar is reimagining the future of connectivity. Our business reach spans satellite television service, live-streaming and on-demand programming, smart home installation services, mobile plans and products.
Today, our brands include Boost Mobile, DISH TV, Gen Mobile, Hughes and Sling TV.
Department Summary
Our Technology teams challenge the status quo and reimagine capabilities across industries. Whether through research and development, technology innovation or solution engineering, our team members play a vital role in connecting consumers with the products and platforms of tomorrow.
Job Duties and Responsibilities
Candidates must be willing to participate in at least one in-person interview, which may include a live whiteboarding or technical assessment session.
Key Responsibilities:
  • Help architect, implement, and manage automated security tooling (e.g., SAST, DAST, IaC, container scanning, AI Security) across the SDLC, integrating with developer environments, CI/CD pipelines, and production systems
  • Assist with maturing a comprehensive vulnerability management program, overseeing scanning, risk assessment, reporting, and remediation across applications, infrastructure, and third-party dependencies
  • Partner with engineering and product teams to embed secure development practices from design through deployment, providing expert guidance and integration support
  • Establish and refine vulnerability tracking and reporting processes, enabling rapid awareness, prioritization, and resolution of security issues through coordinated efforts across teams
  • Assist with refining and enforcing security policies and guardrails as code for cloud environments (AWS, Azure, GCP), ensuring automated enforcement of secure configurations and practices
  • Drive cross-functional collaboration with Dev, Ops, and InfoSec teams, incident support, automation solutions, and reporting to strengthen the organization's security posture and culture
  • Execution of regular asset discovery and vulnerability assessment scanning, interpret results, create and distribute reporting, educate and guide stakeholders, and prioritize remediation efforts based on risk
  • Provide expert guidance and integration support to empower asset owners to avoid risks and prevent risks from reaching production environments
  • Participate in incident response activities related to vulnerabilities and misconfigurations, assisting with root cause analysis and mitigating control implementation

Skills, Experience and Requirements
Education and Experience:
  • Bachelor's degree in Computer Science, Information Security, or a related field; Master's degree or security certifications (CISSP, CSSLP, GCSA, CCSP) preferred
  • 2+ years of experience in DevSecOps and Vulnerability Management, with a strong record of technical leadership and program maturity
  • Deep hands-on experience with application security tools (e.g., SCA, SAST, DAST, IaC, Secrets, Container Scanning, AI Security) and integration into development workflows (e.g., Snyk, Veracode, SonarQube, Prisma)
  • Proficient in asset discovery and vulnerability scanning tools (e.g., Tenable, Rapid7, Palo Alto Cortex/Prisma/XSIAM/XSOAR), including report creation and dashboarding; XQL experience a plus
  • Familiar with Docker, Kubernetes, and their security implications, as well as development and project management tools like Jira, Confluence, and ServiceNow

Skills and Qualifications:
  • Skilled in scripting and automation, with strong proficiency in Python (required) and familiarity with Bash, PowerShell, Go, and JavaScript; experienced with CI/CD pipelines and tools like Jenkins, GitLab, GitHub Actions, and Azure DevOps
  • Strong experience in cloud and application security, including AWS, Azure, GCP, Terraform, OWASP Top 10/API Top 10, and vulnerability frameworks like SANS Top 25, KEV, and EPSS
  • Proven ability to be a top performer in dynamic environments, managing projects, prioritizing tasks, and driving results with minimal direction
  • Excellent communicator and collaborator, able to influence stakeholders and tailor messaging for both technical and non-technical audiences
  • Continuously learning and highly adaptable, with a strong security mindset, curiosity, and a commitment to knowledge sharing, documentation, and organizational success

Salary Ranges
Compensation: $72,400.00/Year - $103,400.00/Year
Benefits
We offer versatile health perks, including flexible spending accounts, HSA, a 401(k) Plan with company match, ESPP, career opportunities, and a flexible time away plan; all benefits can be viewed here: DISH Benefits .
The base pay range shown is a guideline. Individual total compensation will vary based on factors such as qualifications, skill level, and competencies; compensation is based on the role's location and is subject to change based on work location.
Candidates need to successfully complete a pre-employment screen, which may include a drug test and DMV check. Our company is committed to fostering an inclusive and equitable workplace where every individual has the opportunity to succeed. We are dedicated to providing individuals with criminal or arrest records a fair chance of employment in accordance with local, state, and federal laws.
The posting will be active for a minimum of 3 days. The active posting will continue to extend by 3 days until the position is filled.

Top Skills

AWS
Azure
Azure Devops
Bash
Ci/Cd Pipelines
Docker
GCP
Github Actions
Gitlab
Go
JavaScript
Jenkins
Kubernetes
Palo Alto Cortex/Prisma/Xsiam/Xsoar
Powershell
Prisma
Python
Rapid7
Snyk
Sonarqube
Tenable
Terraform
Veracode
HQ

EchoStar Englewood, Colorado, USA Office

EchoStar Corporate Headquarters - Meridian Office

9601 S Meridian Boulevard, Englewood, CO, United States, 80112

EchoStar Denver, Colorado, USA Office

EchoStar Downtown Denver Office - DGC Office

1615 17th St., Denver, CO, United States, 80202

EchoStar Littleton, Colorado, USA Office

EchoStar Wireless Headquarters - Riverfront Office

5701 S Santa Fe Dr., Littleton, CO, United States, 80120

Similar Jobs at EchoStar

2 Hours Ago
In-Office
Englewood, CO, USA
63K-75K Annually
Entry level
63K-75K Annually
Entry level
Aerospace • Cloud • Digital Media • Information Technology • Mobile • News + Entertainment • Retail
Manage projects within the Billing & Credit team, communicate with stakeholders, document processes, and implement system improvements for customer billing accuracy.
Top Skills: Draw.IoGoogle SuiteHiveJIRALucidchartMicrosoft AccessMicrosoft Office ApplicationsSQL
2 Hours Ago
In-Office
Englewood, CO, USA
96K-138K Annually
Senior level
96K-138K Annually
Senior level
Aerospace • Cloud • Digital Media • Information Technology • Mobile • News + Entertainment • Retail
Lead the adoption of portfolio management methodologies, collaborate on strategic roadmaps, and drive IT project intake processes to align technology with business goals.
Top Skills: Agile MethodologiesJIRASdlcServicenow
8 Hours Ago
In-Office
Englewood, CO, USA
300K-400K
Expert/Leader
300K-400K
Expert/Leader
Aerospace • Cloud • Digital Media • Information Technology • Mobile • News + Entertainment • Retail
The SVP, Financial Planning & Analysis will lead EchoStar's FP&A function, guiding a team that provides reporting, analytics, and insights to support strategic initiatives and drive operational excellence for the company.
Top Skills: AnalyticsBudgetingCash ManagementFinancial AnalysisForecastingReporting

What you need to know about the Colorado Tech Scene

With a business-friendly climate and research universities like CU Boulder and Colorado State, Colorado has made a name for itself as a startup ecosystem. The state boasts a skilled workforce and high quality of life thanks to its affordable housing, vibrant cultural scene and unparalleled opportunities for outdoor recreation. Colorado is also home to the National Renewable Energy Laboratory, helping cement its status as a hub for renewable energy innovation.

Key Facts About Colorado Tech

  • Number of Tech Workers: 260,000; 8.5% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Lockheed Martin, Century Link, Comcast, BAE Systems, Level 3
  • Key Industries: Software, artificial intelligence, aerospace, e-commerce, fintech, healthtech
  • Funding Landscape: $4.9 billion in VC funding in 2024 (Pitchbook)
  • Notable Investors: Access Venture Partners, Ridgeline Ventures, Techstars, Blackhorn Ventures
  • Research Centers and Universities: Colorado School of Mines, University of Colorado Boulder, University of Denver, Colorado State University, Mesa Laboratory, Space Science Institute, National Center for Atmospheric Research, National Renewable Energy Laboratory, Gottlieb Institute

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account