About The Position

BNSF | Tech is the technology division making BNSF the preeminent freight and mobility company in North America. We are looking for a curious, motivated, and coachable junior cybersecurity professional to join our Vulnerability & Patch Management team. You don't need to know everything, but you do need a solid foundation, a willingness to learn, and the drive to grow. You will work alongside experienced engineers who will mentor you as you help protect one of the nation's most critical infrastructure networks. The duties and responsibilities in this posting are representative categories to be used in deciding whether to apply for this position. This is not an exhaustive list of the position’s duties. At BNSF Railway, we encourage individuals from all backgrounds to apply, showcasing their skills, experiences and development. We provide resources and tools to help you reach your full potential, fostering a supportive and inclusive environment.

Requirements

  • Authorized to work in the US
  • Minimum 2 years of experience in cybersecurity engineering or related roles
  • Basic understanding of common vulnerability concepts (e.g., CVEs, CVSS scores, patch cycles)
  • Familiarity with operating systems (Windows and/or Linux) at a foundational level
  • Eagerness to learn, ask questions, and grow in a structured team environment

Nice To Haves

  • Bachelor’s degree or higher in Computer Science, Cybersecurity, Information Technology, or related field
  • Able to work now and in the future without BNSF’s assistance (whether monetary, through sponsorship, or otherwise) in obtaining, maintaining, or extending employment authorization (including H-1B, STEM OPT/CPT, or TN nonimmigrant status).
  • Entry-level certifications such as CompTIA Security+, CompTIA IT Fundamentals (ITF+), or any vendor-specific cloud/security fundamentals cert (AWS, Azure, Google)
  • Exposure to CEH, OSCP study materials, or similar is a plus
  • Basic understanding of network concepts: IP addresses, ports, firewalls, and how traffic flows
  • Some exposure to vulnerability scanning tools (e.g., Nessus, Qualys, OpenVAS)
  • Awareness of patch management concepts and why timely patching matters
  • Introductory scripting ability in Python, PowerShell, or Bash (even coursework-level experience counts)
  • Exposure to cloud environments (AWS, Azure, or GCP)
  • Strong attention to detail
  • Good written and verbal communication
  • Ability to document clearly
  • Collaborative mindset and comfort working across teams
  • Proactive attitude: you ask questions, take notes, and follow through
  • Interest in staying current on cybersecurity news and emerging threats

Responsibilities

  • Run vulnerability scans using tools such as Nessus, Qualys, or similar platforms under the guidance of senior engineers
  • Track, triage, and document vulnerabilities across enterprise systems, cloud environments, and applications
  • Support risk prioritization efforts by researching CVEs and understanding their potential impact
  • Learn to generate vulnerability reports and metrics for team review
  • Coordinate and track patch deployment across servers, endpoints, and network devices
  • Monitor patch status dashboards and help follow up on outstanding or failed patch cycles
  • Support testing of patches in non-production environments before broader rollout
  • Maintain patch schedules and documentation in collaboration with IT and DevOps teams
  • Contribute to maintaining runbooks and procedures for vulnerability and patch workflows
  • Support compliance-related documentation efforts (e.g., NIST, SOX) as they relate to patch and vulnerability posture
  • Collaborate with SOC and IT teams to ensure patching aligns with incident response and threat intel priorities
  • Participate in team meetings, threat briefings, and ongoing security education
  • Develop beginner-level scripting skills (Python or PowerShell) to help automate repetitive vulnerability and patch tasks
  • Gain exposure to SIEM platforms and security dashboards used to monitor patch compliance

Benefits

  • An industry-leading 401(k) and renowned Railroad Retirement program.
  • A range of robust health care options for you and your dependents (including domestic partners), including medical, dental, vision, telemedicine, mental health, cancer support, and high-quality care network options.
  • Health care spending accounts (HSA) with employer contributions, as well as life and disability insurance, provided at no cost.
  • Family benefits including parental, pediatric and family building support, adoption and surrogacy reimbursement, and dependent care spending account (with employer match).
  • Access to discounts on travel, gym memberships, counseling services and wellness support.
  • Annual bonus (Incentive Compensation Program)
  • Generous leave / time off policies.
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service