{"schemaVersion":"jobsearcher.job.v1","id":"adf4d43f96d80f74873b9d37","url":"https://jobsearcher.com/jobs/adf4d43f96d80f74873b9d37","canonicalUrl":"https://jobsearcher.com/jobs/adf4d43f96d80f74873b9d37","title":"Vulnerability Operations Engineer (AI) - Remote","description":"CentralSquare Technologies is Hero-Grade. As the trusted provider of public sector software in North America, more than 8,000 agencies rely on our comprehensive, cloud-based platform to manage critical operations - from dispatch to records, permitting to payroll. We serve with purpose and stand together with our heroes, committed to supporting the public sector with software built for impact.What We’re AboutAt CentralSquare, we don’t just build software - we power public servants and uplift communities with Hero-Grade Technology. Every line of code, every feature we deliver helps heroes across North America protect, serve, and save lives. When you join us, you become part of a mission-driven team creating technology that makes communities safer and stronger.Your Growth Matters. We believe heroes deserve opportunities to rise. That’s why we invest in your career with mentorship, learning programs, and clear paths for advancement. If you’re motivated, there’s no limit to how far you can go.Your Commitment Deserves Reward. We offer competitive compensation and a benefits package designed to support your life inside and outside of work—tuition reimbursement, parental leave, paid volunteer hours, and unlimited PTO. Plus, our flexible work environment gives you the freedom to balance your heroic work with personal well-being, whether you’re in the office or remote.Join us and help build the tools that power real-life heroes. Together, we make a difference.The RoleCentralSquare is seeking a Vulnerability Operations (VulnOps) Engineer to join our Security team. This is an individual contributor role purpose-built for the post-AI era of vulnerability discovery — where AI models can now find and exploit flaws at machine speed, and reactive patch cycles are no longer sufficient.This role is not an advisory function. The VulnOps Engineer owns the full pipeline from discovery through fix delivery: running AI-powered scanning against CentralSquare’s assets.Job Duties IncludeProactive Vulnerability DiscoveryOperate and continuously improve an AI-powered scanning pipeline across CentralSquare's infrastructure componentsUse Claude Code\\Kiro and Orca to conduct ongoing vulnerability assessmentsApply reachability analysis to distinguish genuinely exploitable vulnerabilities from theoretical findings, reducing alert fatigue and focusing remediation effort where risk is real Monitor threat intelligence feeds, CVE disclosures, and coordinated disclosure programs (including Project Glasswing patch releases) to identify newly disclosed vulnerabilities affecting CentralSquare's environment.Fix Development and DeliveryDevelop and validate fixes and/or configuration changes using AI coding agents such as Claude Code, verifying resolution without regressions before submissionCollaborate with application and infrastructure teams, providing technical context and responding to questions about proposed changesSLA Ownership and Reporting Own the end-to-end SLA lifecycle for all open findings, maintaining real-time tracking of detection, fix submission, and remediation status in the vulnerability management systemProactively escalate findings approaching SLA breach with remediation options and risk contextProduce regular reporting on SLA adherence, remediation velocity, and open risk posture for the security leadership teamToolchain and Pipeline MaintenanceOwn the configuration, tuning, and operational health of VulnOps tooling including Orca, Claude Code, Kiro, Tanium, AWS Patch Manager, and Azure DevOps security integrationsEvaluate and recommend new tools and capabilities as the AI security tooling landscape evolvesCross-Functional CollaborationWork closely with application engineering, DevOps, and infrastructure teams to ensure fix delivery and implementation is efficient and minimally disruptive to production environmentsProvide security guidance to engineering teams in the context of AI-accelerated vulnerability discoveryPartner with the Risk and Compliance team to ensure vulnerability data and SLA metrics align with audit and regulatory reporting requirements (NIST CSF, PCI DSS, CJIS)Perform other duties as assignedWhat You'll Bring to NumeratorQualificationsEducation and ExperienceBachelor's degree in Cybersecurity, Computer Science, or Information Technology, or equivalent professional experience5-7 years of professional experience in vulnerability management, or a security engineering roleDemonstrated hands-on experience using AI coding agents (Claude Code or equivalent) to find, evaluate, and generate fixes for vulnerabilitiesTechnical SkillsExperience with cloud security posture management; direct experience with Orca preferred Patching tools experience (ex. Tanium, AWS Patch Manager) Experience with traditional vulnerability management tools like Tenable or InsightVM Hands-on experience with Infrastructure as Code Strong understanding of reachability analysis and the ability to apply it to distinguish exploitable findings from theoretical risk Familiarity with dependency and supply chain security concepts, including SBOM generation and management Working knowledge of common vulnerability classes and their remediation patterns Understanding of security frameworks including NIST CSF and CIS Controls Soft Skills and Work StyleHighly systematic and process-driven - capable of managing a high volume of concurrent findings without losing precision or letting items fall through the cracksSelf-directed and accountable: this role is measured by fix delivery and SLA outcomes, not activity metricsStrong written communication skillsComfortable working across organizational boundaries, earning credibility with engineering teams through technical quality rather than authorityAble to prioritize effectively under pressure, with clear judgment about when to escalate versus resolve independently CJIS Clearance A required part of the onboarding process for this role involves obtaining CJIS (Criminal Justice Information Services) clearance—a critical credential for safeguarding public safety data. At CentralSquare, we’ll stand with you every step of the way to secure this clearance should you be selected for hire. As part of the process, a comprehensive background check will be conducted, and please note that U.S. citizenship or permanent residency is generally required to obtain CJIS clearance.","company":"Centralsquare Technologies","rawCompany":"centralsquare technologies","isRemote":true,"isActive":false,"createdAt":"2026-07-01T09:53:47.362Z","occupations":[{"code":"15-1299.05","title":"Information Security Engineers","slug":"information-security-engineers"},{"code":"15-1299.08","title":"Computer Systems Engineers/Architects","slug":"computer-systems-engineers-architects"},{"code":"15-1212.00","title":"Information Security Analysts","slug":"information-security-analysts"}],"industries":[{"code":"541512","title":"Computer Systems Design Services","slug":"computer-systems-design-services"},{"code":"513210","title":"Software Publishers","slug":"software-publishers"},{"code":"541511","title":"Custom Computer Programming Services","slug":"custom-computer-programming-services"}],"jobPosting":{"@context":"https://schema.org","@type":"JobPosting","title":"Vulnerability Operations Engineer (AI) - Remote","description":"CentralSquare Technologies is Hero-Grade. As the trusted provider of public sector software in North America, more than 8,000 agencies rely on our comprehensive, cloud-based platform to manage critical operations - from dispatch to records, permitting to payroll. We serve with purpose and stand together with our heroes, committed to supporting the public sector with software built for impact.What We’re AboutAt CentralSquare, we don’t just build software - we power public servants and uplift communities with Hero-Grade Technology. Every line of code, every feature we deliver helps heroes across North America protect, serve, and save lives. When you join us, you become part of a mission-driven team creating technology that makes communities safer and stronger.Your Growth Matters. We believe heroes deserve opportunities to rise. That’s why we invest in your career with mentorship, learning programs, and clear paths for advancement. If you’re motivated, there’s no limit to how far you can go.Your Commitment Deserves Reward. We offer competitive compensation and a benefits package designed to support your life inside and outside of work—tuition reimbursement, parental leave, paid volunteer hours, and unlimited PTO. Plus, our flexible work environment gives you the freedom to balance your heroic work with personal well-being, whether you’re in the office or remote.Join us and help build the tools that power real-life heroes. Together, we make a difference.The RoleCentralSquare is seeking a Vulnerability Operations (VulnOps) Engineer to join our Security team. This is an individual contributor role purpose-built for the post-AI era of vulnerability discovery — where AI models can now find and exploit flaws at machine speed, and reactive patch cycles are no longer sufficient.This role is not an advisory function. The VulnOps Engineer owns the full pipeline from discovery through fix delivery: running AI-powered scanning against CentralSquare’s assets.Job Duties IncludeProactive Vulnerability DiscoveryOperate and continuously improve an AI-powered scanning pipeline across CentralSquare's infrastructure componentsUse Claude Code\\Kiro and Orca to conduct ongoing vulnerability assessmentsApply reachability analysis to distinguish genuinely exploitable vulnerabilities from theoretical findings, reducing alert fatigue and focusing remediation effort where risk is real Monitor threat intelligence feeds, CVE disclosures, and coordinated disclosure programs (including Project Glasswing patch releases) to identify newly disclosed vulnerabilities affecting CentralSquare's environment.Fix Development and DeliveryDevelop and validate fixes and/or configuration changes using AI coding agents such as Claude Code, verifying resolution without regressions before submissionCollaborate with application and infrastructure teams, providing technical context and responding to questions about proposed changesSLA Ownership and Reporting Own the end-to-end SLA lifecycle for all open findings, maintaining real-time tracking of detection, fix submission, and remediation status in the vulnerability management systemProactively escalate findings approaching SLA breach with remediation options and risk contextProduce regular reporting on SLA adherence, remediation velocity, and open risk posture for the security leadership teamToolchain and Pipeline MaintenanceOwn the configuration, tuning, and operational health of VulnOps tooling including Orca, Claude Code, Kiro, Tanium, AWS Patch Manager, and Azure DevOps security integrationsEvaluate and recommend new tools and capabilities as the AI security tooling landscape evolvesCross-Functional CollaborationWork closely with application engineering, DevOps, and infrastructure teams to ensure fix delivery and implementation is efficient and minimally disruptive to production environmentsProvide security guidance to engineering teams in the context of AI-accelerated vulnerability discoveryPartner with the Risk and Compliance team to ensure vulnerability data and SLA metrics align with audit and regulatory reporting requirements (NIST CSF, PCI DSS, CJIS)Perform other duties as assignedWhat You'll Bring to NumeratorQualificationsEducation and ExperienceBachelor's degree in Cybersecurity, Computer Science, or Information Technology, or equivalent professional experience5-7 years of professional experience in vulnerability management, or a security engineering roleDemonstrated hands-on experience using AI coding agents (Claude Code or equivalent) to find, evaluate, and generate fixes for vulnerabilitiesTechnical SkillsExperience with cloud security posture management; direct experience with Orca preferred Patching tools experience (ex. Tanium, AWS Patch Manager) Experience with traditional vulnerability management tools like Tenable or InsightVM Hands-on experience with Infrastructure as Code Strong understanding of reachability analysis and the ability to apply it to distinguish exploitable findings from theoretical risk Familiarity with dependency and supply chain security concepts, including SBOM generation and management Working knowledge of common vulnerability classes and their remediation patterns Understanding of security frameworks including NIST CSF and CIS Controls Soft Skills and Work StyleHighly systematic and process-driven - capable of managing a high volume of concurrent findings without losing precision or letting items fall through the cracksSelf-directed and accountable: this role is measured by fix delivery and SLA outcomes, not activity metricsStrong written communication skillsComfortable working across organizational boundaries, earning credibility with engineering teams through technical quality rather than authorityAble to prioritize effectively under pressure, with clear judgment about when to escalate versus resolve independently CJIS Clearance A required part of the onboarding process for this role involves obtaining CJIS (Criminal Justice Information Services) clearance—a critical credential for safeguarding public safety data. At CentralSquare, we’ll stand with you every step of the way to secure this clearance should you be selected for hire. As part of the process, a comprehensive background check will be conducted, and please note that U.S. citizenship or permanent residency is generally required to obtain CJIS clearance.","datePosted":"2026-07-01T09:53:47.362Z","dateModified":"2026-07-01T09:53:47.362Z","hiringOrganization":{"@type":"Organization","name":"Centralsquare Technologies","sameAs":"https://jobsearcher.com"},"jobLocationType":"TELECOMMUTE","applicantLocationRequirements":{"@type":"Country","name":"US"},"identifier":{"@type":"PropertyValue","name":"JobSearcher","value":"adf4d43f96d80f74873b9d37"},"url":"https://jobsearcher.com/jobs/adf4d43f96d80f74873b9d37"}}