Open Roles | AppFolio
Open Roles | AppFolio

Vulnerability Management Specialist

$104,000 – $130,000 per year

TLDR

Streamline security response with artificial intelligence, machine learning, and automation while responding to 0-day vulnerabilities.

At AppFolio, we paddle as one. We ride and make waves together, with a relentless focus on building great products for the way our customers work and live today – and tomorrow. AppFolio is a destination organization where careers are made and accelerated. Here, innovation is a team sport.

As a Vulnerability Management Specialist, you will contribute to security initiatives and work on high-impact projects as a member of the security engineering team. You will provide expertise and support to your team members in your areas of strength. Staying abreast of industry trends and technology is key to this role, and you will actively seek to continue to develop your skills and competencies with our support.

Success in this role requires a strong passion for computer, network, and application security. Experience in vulnerability management at a Software-as-a-Service company is preferred.

Your impact 

  • You will validate, prioritize, communicate, and track vulnerabilities to continuously improve the overall security posture of AppFolio technology systems and applications.

  • You will respond to emerging threats and potential security events as 0-day vulnerabilities are released.

  • You will work to ensure compliance with our vulnerability management policies, processes, and procedures, and drive the adoption of emerging industry best practices.

  • You will help streamline the vulnerability management process through the use of Artificial Intelligence, Machine Learning, and automation, improving the end-to-end process and reducing the time-to-action for known vulnerabilities.

  • Through an exceptional vulnerability management program, you will build trust and confidence with our customers and partners.

Qualifications 

  • BS in Computer Science or a related technical discipline, or equivalent industry experience

  • Cybersecurity-relevant certifications, such as but not limited to GCIA, GCIH, CEH, CISSP, CISM, or OSCP

  • Project management-relevant certifications, such as but not limited to CAPM or PMP

Must have

  • 2-5 years of experience in a related cybersecurity role, preferably with a focus on Vulnerability Management, Penetration Testing, or Incident Response.

  • Ability to write scripts in Ruby, Python, or other scripting languages

  • Hands-on experience with Vulnerability Management tools such as DefectDojo, Invicti, Wiz, or Cycode.

  • Hands-on experience with manual testing tools, especially validating vulnerabilities

  • Understanding the capabilities and limitations of SAST, DAST, SCA, and pen test tools.

  • Proficiency in various operating systems (Linux, MacOS, Windows)

  • Ability to assess security risks associated with vulnernabilities and prioritize them using existing frameworks like CVSS, accounting for local environmental factors.

  • Strong communication skills and an ability to explain complex security issues to technical and non-technical stakeholders

  • Ability to maintain strict organization while overseeing complex security findings, applying structured project-style oversight to guide multiple simultaneous vulnerabilities to remediation or risk acceptance.

Nice to Have

  • Hands-on experience with network protocol vulnerabilities

  • Experience identifying and managing vulnerabilities during CI/CD

  • Hands-on experience in cloud environments (AWS, GCP, Azure)

  • Hands-on experience with Burp Suite and Tenable or similar

  • Hands-on experience with Metasploit Framework or similar

Compensation & Benefits

The compensation that we reasonably expect to pay for this role is: $104,000 - $130,000 base pay. The actual compensation for this role will be determined by a variety of factors, including but not limited to the candidate’s skills, education, experience, and internal equity.

Please note that compensation is just one aspect of a comprehensive Total Rewards package. The compensation range listed here does not include additional benefits or any discretionary bonuses you may be eligible for based on your role and/or employment type.

Regular full-time employees are eligible for benefits - see here.

#LI-KB1

Benefits

Health Insurance

comprehensive Total Rewards package

Open Roles at AppFolio offers a job board specifically designed for the property management and legal industries, connecting talented individuals with innovative companies looking to streamline their operations. By focusing on cloud-based solutions and advancing technology like AI, Open Roles empowers businesses to efficiently manage and grow their real estate endeavors.

Founded
Founded 2006
Employees
500+ employees
Industry
Internet Software & Services
View company profile