Talent.com
Esta oferta de trabajo no está disponible en tu país.
▷ [Urgente] Vulnerability & PKI Management...

▷ [Urgente] Vulnerability & PKI Management...

PetcoMX
Hace 10 horas
Descripción del trabajo

Our vision at Petco is Healthier Pets. Happier People. Better World. We’re making things better for pets, people, and the planet through our Think Adoption First philosophy, the Petco Foundation, and other important initiatives that focus on putting animals first, educating pet parents, and reducing our carbon footprint. The journey starts with knowledgeable, passionately engaged associates who are proud to recommend Petco as a place to work, who believe in our Vision and who are committed to delivering a superior customer experience.

From our retail stores and our network of Distribution Centers to our Corporate offices, you'll work with others who share your values and commitment. We seek individuals who are passionate about animal welfare, have great people skills and are driven to grow and advance in their careers with us. Our ongoing growth is creating exceptional opportunities for professional development and personal enrichment throughout our organization.

Role Overview

We are looking for a hands-on Security Engineer to lead Vulnerability Management and PKI operations within the Information Security Operations team. This role will own vulnerability scanning across our data center, endpoint, and cloud VM environments and drive remediation through partnerships with infrastructure teams. In addition, the role will oversee the lifecycle of public-facing SSL / TLS certificates and contribute to automation and process maturity around PKI.

The ideal candidate brings experience managing Tenable or similar platforms, understands patching cycles across hybrid infrastructure, and is well-versed in certificate management using tools like Sectigo or DigiCert. A working understanding of internal CA / PKI principles is a plus.

Responsibilities

Vulnerability Management

  • Own day-to-day operation of the Tenable platform : scan schedule, tagging, health checks, credential management and reporting.
  • Drive remediation of vulnerabilities by partnering with infrastructure teams.
  • Supports the end-to-end vulnerability process, including reporting of vulnerabilities and escalation of critical vulnerabilities.
  • Document security guidance, process and policy around the vulnerability management program.
  • Coordinate monthly patch guidance and vulnerability meetings for on-prem and cloud teams.
  • Maintain scan health and results from vulnerability management platforms.
  • Oversee ASV (Approved Scanning Vendor) scans for PCI compliance :
  • Conduct network and web application scans.
  • Validate and submit quarterly ASV reports, including dispute documentation for false positives or out-of-scope findings.
  • Manage remediation and tracking for EOL (End-of-Life) systems across on-prem and cloud environments.

PKI & Certificate Management

  • Maintain Certificate Manager :
  • o Oversee certificate lifecycle, including expiration review, issuance, renewals, and support requests.

    o Automate certificate management processes where possible.

  • Process public SSL certificate requests via ServiceNow.
  • Perform monthly audits of cert expiration and maintain active monitoring of managed certs.
  • Support certificate issuance from DigiCert (e.g., Verified Mark Certificates).
  • Possess working knowledge of internal CA security best practices; may contribute to internal CA processes.
  • Qualifications

  • 3+ years of experience in IT security or infrastructure with a focus on vulnerability and certificate management.
  • Hands-on experience with Tenable, Qualys, or similar vulnerability management platforms.
  • Experience managing SSL / TLS certificates via Sectigo, DigiCert, or similar certificate lifecycle platforms.
  • Solid understanding of vulnerability prioritization, remediation workflows, and patch cycles across on-prem and cloud systems.
  • Working knowledge of internal PKI / CA principles and public key infrastructure best practices.
  • Familiarity with PCI DSS ASV requirements and scan dispute / resubmission processes.
  • Ability to work cross-functionally and lead vulnerability remediation efforts with distributed teams.
  • Strong documentation, communication, and coordination skills.
  • Preferred Skills

  • Experience with external attack surface management tools.
  • Understanding of EOL system risk, tracking, and remediation coordination.
  • Security certifications such as Security+, CySA+, CISSP, or GIAC GSEC, CRISC, etc.
  • Bachelor's degree in Cybersecurity, Information Technology, or related field.
  • Crear una alerta de empleo para esta búsqueda

    Urgente • MX

    Ofertas relacionadas
    • Oferta promocionada
    Manager, Cybersecurity Incident Handler (GCP Environments) - Advanced English

    Manager, Cybersecurity Incident Handler (GCP Environments) - Advanced English

    KTSA - KPMG Technology Services AmericasMexico, Mexico
    We are KTSA – KPMG Technology Services Americas.A Service Delivery Center of KPMG US, with offices in Mexico City, Guadalajara, and a growing network of remote talent across the country.We deliver ...Mostrar másÚltima actualización: hace más de 30 días
    • Oferta promocionada
    PCI-QSA Senior Consultant - Mexico

    PCI-QSA Senior Consultant - Mexico

    Insight AssuranceMexico
    Teletrabajo
    Insight Assurance is a security and compliance firm trusted by over 1200 organizations for their SOC 2, PCI DSS, ISO 27001, and HIPAA audit needs. Insight Assurance is a licensed CPA firm, PCI Quali...Mostrar másÚltima actualización: hace 24 días
    • Oferta promocionada
    • Nueva oferta
    Telco Cloud Engineer (5G, OpenRan, OpenStack, Python) - Americas

    Telco Cloud Engineer (5G, OpenRan, OpenStack, Python) - Americas

    Canonical Group LtdMexico
    Teletrabajo
    The role of a Telco Field Engineer at Canonical.The telco industry is moving to software-defined services.This transformation is driven by open source software, cloud computing and the move to VNF ...Mostrar másÚltima actualización: hace 1 hora
    • Oferta promocionada
    Senior Specialist, Cybersecurity Incident Handler (Cortex XSOAR Environments) - Advanced English

    Senior Specialist, Cybersecurity Incident Handler (Cortex XSOAR Environments) - Advanced English

    KTSA - KPMG Technology Services AmericasMexico, Mexico
    We are KTSA – KPMG Technology Services Americas.A Service Delivery Center of KPMG US, with offices in Mexico City, Guadalajara, and a growing network of remote talent across the country.We deliver ...Mostrar másÚltima actualización: hace más de 30 días
    • Oferta promocionada
    Risk Management Lead - PCAOB

    Risk Management Lead - PCAOB

    NubankMexico
    Teletrabajo
    Nubank was founded in 2013 to free people from a bureaucratic, slow and inefficient financial system.Since then, through innovative technology and outstanding customer service, the company has been...Mostrar másÚltima actualización: hace 29 días
    • Oferta promocionada
    • Nueva oferta
    PMS Deployment Lead

    PMS Deployment Lead

    NirYuMexico
    Teletrabajo
    We are looking for a qualified candidate to support a Global portfolio of 1300+ hotels through the transition process to a new Property Management Suite, Opera Cloud & Colleague Advantage.This role...Mostrar másÚltima actualización: hace 13 horas
    • Oferta promocionada
    GRC Security Engineer- III

    GRC Security Engineer- III

    MetovaMexico
    Be among the first 25 applicants.We're looking for a Security Engineer with a tech-first mindset that can help grow and enhance our Cybersecurity and Privacy Organization.We work to make technology...Mostrar másÚltima actualización: hace más de 30 días
    • Oferta promocionada
    Senior Specialist, Cybersecurity Incident Handler (GCP Environments) - Advanced English

    Senior Specialist, Cybersecurity Incident Handler (GCP Environments) - Advanced English

    KTSA - KPMG Technology Services AmericasMexico, Mexico
    We are KTSA – KPMG Technology Services Americas.A Service Delivery Center of KPMG US, with offices in Mexico City, Guadalajara, and a growing network of remote talent across the country.We deliver ...Mostrar másÚltima actualización: hace más de 30 días
    • Oferta promocionada
    Security Incident Management

    Security Incident Management

    IngeniosiMexico, Mexico
    Evaluación de vulnerabilidades.Automatización de procesos de ciberseguridad.Conocimientos y habilidades técnicas : .Definición de alertas, reglas de correlación, paneles de monitoreo ("single pane of...Mostrar másÚltima actualización: hace 7 días
    • Oferta promocionada
    Security Engineer Level 3

    Security Engineer Level 3

    Net2Source (N2S)México, Mexico, Mexico
    Security Engineer Level 3 – GRC Tech Solutions.We’re looking for a “Security Engineer” with a tech-first mindset that can help grow and enhance Nordstrom’s Cybersecurity and Privacy Organization.We...Mostrar másÚltima actualización: hace 8 días
    • Oferta promocionada
    Snowflake Sr. BI / DW Engineer

    Snowflake Sr. BI / DW Engineer

    CompucomMexico, Mexico
    Engineer will design, develop, and maintain BI / ML / AI solutions that empower data-driven decision-making across the organization. You will work closely with cross-functional teams, translating busine...Mostrar másÚltima actualización: hace más de 30 días
    • Oferta promocionada
    Cyber Security - Lead Engineer

    Cyber Security - Lead Engineer

    FICOMexico
    Teletrabajo
    Join our world-class team today and fulfill your career potential!.We are the Detection Engineering team in FICO.Our mission is to build systems that can identify, analyze, and mitigate cyber threa...Mostrar másÚltima actualización: hace 10 días
    • Oferta promocionada
    Senior Associate, Cybersecurity AI Engineering - Advanced English

    Senior Associate, Cybersecurity AI Engineering - Advanced English

    KTSA - KPMG Technology Services AmericasMexico, Mexico
    We are KTSA – KPMG Technology Services Americas.A Service Delivery Center of KPMG US, with offices in Mexico City, Guadalajara, and a growing network of remote talent across the country.We deliver ...Mostrar másÚltima actualización: hace más de 30 días
    • Oferta promocionada
    Manager, Cybersecurity Incident Handler (Cortex XSOAR Environments) - Advanced English

    Manager, Cybersecurity Incident Handler (Cortex XSOAR Environments) - Advanced English

    KTSA - KPMG Technology Services AmericasMexico, Mexico
    We are KTSA – KPMG Technology Services Americas.A Service Delivery Center of KPMG US, with offices in Mexico City, Guadalajara, and a growing network of remote talent across the country.We deliver ...Mostrar másÚltima actualización: hace más de 30 días
    • Oferta promocionada
    OCI Engineer

    OCI Engineer

    Randstad MéxicoMexico, Mexico
    Randstad is the #1 HR Services Provider in the world, and we are looking for a.Nearshore Center at Randstad Mexico.This is your chance to join a dynamic, collaborative, and fast-paced environment w...Mostrar másÚltima actualización: hace 8 días
    • Oferta promocionada
    Senior ASCERA Deployment Engineer - Microsoft Sentinel (Ref : w6ZUs)

    Senior ASCERA Deployment Engineer - Microsoft Sentinel (Ref : w6ZUs)

    RSight®Mexico
    Be among the first 25 applicants.We are seeking for our client, a.Senior ASCERA Deployment Engineer.Senior ASCERA Deployment Engineer. Microsoft Sentinel, you will play a pivotal role in deploying, ...Mostrar másÚltima actualización: hace más de 30 días
    • Oferta promocionada
    Manager, Cyber Threat Intelligence - Advanced English

    Manager, Cyber Threat Intelligence - Advanced English

    KTSA - KPMG Technology Services AmericasMexico, Mexico
    We are KTSA – KPMG Technology Services Americas.A Service Delivery Center of KPMG US, with offices in Mexico City, Guadalajara, and a growing network of remote talent across the country.We deliver ...Mostrar másÚltima actualización: hace más de 30 días
    • Oferta promocionada
    Especialista en Gestión de Identidad y Accesos

    Especialista en Gestión de Identidad y Accesos

    Empresa ConfidencialMexico, Mexico
    Estamos buscando un / a Especialista en Gestión de Identidad y Accesos (IAM).El / la Especialista en IAM será responsable de implementar y gestionar soluciones para la administración de identidades, ac...Mostrar másÚltima actualización: hace 27 días
    • Oferta promocionada
    Lead Cloud Security Engineer

    Lead Cloud Security Engineer

    EPAM SystemsMexico
    Teletrabajo
    EPAM is a leading global provider of digital platform engineering and development services.We are committed to having a positive impact on our customers, our employees, and our communities.We embra...Mostrar másÚltima actualización: hace 24 días
    • Oferta promocionada
    Staff Security Engineer, Risk & Compliance Brazil, Sao Paulo

    Staff Security Engineer, Risk & Compliance Brazil, Sao Paulo

    NubankMexico
    Staff Security Engineer, Risk & Compliance.Nubank was founded in 2013 to revolutionize the financial system with innovative technology and customer-centric services across Latin America.Operating i...Mostrar másÚltima actualización: hace 22 días