T-Mobile

Cybersecurity Engineer, Vulnerability Management


Pay$102200.00 - $138300.00 / year
LocationFrisco/Texas
Employment typeFull-Time

This job is now closed

  • Job Description

      Req#: REQ241423

      Be unstoppable with us!
      T-Mobile is synonymous with innovation–and you could be part of the team that disrupted an entire industry! We reinvented customer service, brought real 5G to the nation, and now we’re shaping the future of technology in wireless and beyond. Our work is as exciting as it is rewarding, so consider the career opportunity below as your invitation to grow with us, make big things happen with us, above all, #BEYOU with us. Together, we won’t stop!

      JOB SUMMARY
      This is a hybrid role that can be performed out of our offices in Bellevue, WA, Overland Park, KS, Reston, VA, Frisco, TX, Denver, CO or Atlanta, GA only.

      The Cybersecurity Engineer will help ensure that our software, systems and infrastructure are designed and implemented to the highest security standards. As a Security Engineer for Vulnerability Management, you will oversee vulnerability assessments to support compliance audits (PCI, FedRamp, IL4). You will partner with a wide range of functional groups including Compliance, Legal, Security Architecture, Product Security and Engineering teams. You are a highly motivated individual with strong emotional intelligence and demonstrated experience in high growth, fast-paced organizations.

      This position serves as an authority which drives vision and results to enhance security posture within mobile device, IoT device, enterprise line of business applications, cloud, big data, and core and carrier network technologies as well as and other business units as needed. Acts as a security advisor to multi-functional teams for the successful delivery of projects or services to enterprise customers.

      Responsibilities

      • Automates, documents, shares, educates, delegates, and improves processes
      • Integrates diverse solution components across multiple platforms using industry standard interfaces
      • Presents technical designs and solutions to executives, management, and other audiences to gain consensus and/or project approval
      • Translates business and compliance needs into technical specifications to deliver vulnerability remediation to the enterprise
      • Serves as a subject matter expert for vulnerability management, scanning, and identification
      • Utilizes a risk-based approach to assessing and prioritizing vulnerabilities
      • Works analytically to solve both tactical and strategic problems within the vulnerability management and remediation programs
      • Researches, plans, develops, and oversees the implementations and configurations of vulnerability solutions using industry standard tools, such as, Rapid7, Tenable, Tripwire, NMAP, Qualys, PrismaCloud, Wiz.IO, RiskIQ, application scanners, and other vulnerability scanners on a wide variety of global corporate and business information systems both on prem and cloud based
      • Oversees and maintains technical documentation and architecture drawings related to vulnerability remediation
      • Facilitates the integration of vulnerability management tool data with enterprise systems to automate functions and workflows
      • Identifies attack surface reduction opportunities through vulnerability data analysis from enterprise custom and COTS applications
      • Identifies, develops, and implements mechanisms to address vulnerabilities and how they may lead to incidents in order to enhance compliance with and support of security standards and procedures

      Highly Desired

      • 2+ years' demonstrated ability in security/vulnerability management in an enterprise environment
      • 1+ years’ experience assessing and implementing vulnerability management tools, vulnerability scan configurations, vulnerability reporting, and vulnerability remediation
      • Experience researching resolutions to vulnerabilities and hands-on experience with mitigation
      • Understanding of security frameworks such as PCI, HIPAA, GDPR, etc.
      • Experience with Windows, Linux, and networking environments.
      • Experience with automation and API
      • Ability to quickly understand systems to identify and validate security requirements
      • Realistic outlook that understands security problems as a balance of both security and business needs
      • Strong analytical skills, documentation skills
      • Experience with change management
      • Ability to adapt to changing priorities
      • Strong collaborative mindset, able to function as a contributing member of the team

      Qualifications

      • Bachelor's Degree in Computer Science, Information Technology, etc. or equivalent work experience
      • Knowledge of coding/scripting
      • Scheduling flexibility to meet the needs of the business with some expected night and weekend shifts.
      • Significant knowledge of current technological trends and developments in the area of info security
      • Ability to create technical specification and requirements and work independently and with no direction/supervision. Able to quickly adapt to new or evolving technologies related to new product and services requiring validation or research.
      • Strong verbal and communication skills with diverse cross functional groups. Can present advanced concepts to leadership, peers, and others in subordinate roles.
      • A self-starter who is able to work under tight timelines.
      • Strong problem solving/remediation skills
      • Ability to plan, organize and prioritize tasks to complete independently, as well as delegate and track progress within the team, all within the time frame established.
      • In-depth knowledge of strategic security methodologies in large-scale environments. Author white papers and presents at industry conferences. Able to drive industry standards and socialize internally and externally.
      • Strong presentation skills to large and small audiences.
      • Understanding load balancers
      • Expert understanding of T-Mobile’s network elements and how they work together (T-Mobile's Enterprise Technology Services group, Engineering, 3rd Party, etc.).
      • Advance knowledge of scripting tools (Python/Perl/Shell/HTML/PHP)
      • Knowledge of federal and compliance regulations e.g. SOX, PCI and CPNI
      • CISSP and/or CCSK and/or CCSP and/or CISA/CISM certification a plus

      Experience Preferred

      • Experience with patching
      • General knowledge of enterprise-level applications such as SAP
      • Strong networking knowledge
      • General cloud knowledge
      • Experience with tools such as NMAP, DNS, NTP and Citrix, NGFW, and various SIEMs
      • Working knowledge of secure protocols and technologies such as TCP, UDP, SSL, FTP, SMTP, NetBIOS, and DHCP
      • Familiarity with Kanban or agile continuous improvement methodologies
      • Experience in endpoint protection tools
      • Experience developing and reporting enterprise level metrics
      • Experience with Power BI management

      • At least 18 years of age
      • Legally authorized to work in the United States

      Travel:
      Travel Required (Yes/No):Yes

      DOT Regulated:
      DOT Regulated Position (Yes/No):No
      Safety Sensitive Position (Yes/No):No

      Colorado Pay Range: $95,200 - $128,900

      Washington Pay Range : $102,200.00 - $138,300.00

      The pay range above is the general base pay range for a successful candidate in the state listed. The successful candidate’s actual pay will be based on various factors, such as work location, qualifications, and experience, so the actual starting pay may be above or below this range. At T-Mobile, employees in regular, non-temporary roles are eligible for an annual bonus or periodic sales incentive or bonus, based on their role. Most Corporate employees are eligible for a year-end bonus based on company and/or individual performance and which is set at a percentage of the employee’s eligible earnings in the prior year. Certain positions in Customer Care are eligible for monthly bonuses based on individual and/or team performance, while Retail and Business Sales roles are eligible for monthly or quarterly sales incentives. And since we are ALL owners, EVERY employee at T-Mobile is eligible for an Annual Stock Grant. For information about T-Mobile’s amazing benefits, check out https://careers.t-mobile.com/culture-and-benefits/

      Never stop growing!
      T-Mobile doesn’t have a corporate ladder–it’s more like a jungle gym of possibilities! We love helping our employees grow in their careers, because it’s that shared drive to aim high that drives our business and our culture forward.

      If you’d like to receive more information about careers at T-Mobile, sign up for the T-Mobile Talent Community today! https://www.tmobile.careers/profile/join/

      T-Mobile USA, Inc. is an Equal Opportunity Employer. All decisions concerning the employment relationship will be made without regard to age, race, ethnicity, color, religion, creed, sex, sexual orientation, gender identity or expression, national origin, religious affiliation, marital status, citizenship status, veteran status, the presence of any physical or mental disability, or any other status or characteristic protected by federal, state, or local law. Discrimination, retaliation or harassment based upon any of these factors is wholly inconsistent with how we do business and will not be tolerated.

      Talent comes in all forms at the Un-carrier. If you are an individual with a disability and need reasonable accommodation at any point in the application or interview process, please let us know by emailing ApplicantAccommodation@t-mobile.com or calling 1-844-873-9500. Please note, this contact channel is not a means to apply for or inquire about a position and we are unable to respond to non-accommodation related requests.

  • About the company