Vulnerability Engineer

Southern CompanyAtlanta, GA
Hybrid

About The Position

This Endpoint Security & Vulnerability Management Engineer position supports Digital Workplace Planning & Service Management and is focused on reducing enterprise cyber risk through vulnerability remediation, software lifecycle management, endpoint security controls, automation, reporting, and operational modernization. The Endpoint Security & Vulnerability Management Engineer works closely with Cyber Security, Infrastructure, Endpoint Engineering, Service Management, application owners, vendors, and support teams to improve software currency and compliance, accelerate remediation efforts, support secure delivery of endpoint technologies, and strengthen operational efficiency while maintaining a positive end-user experience. This position supports application control, application allowlisting, endpoint privilege management, software lifecycle health, patching support, automation, dashboards, operational documentation, and continuous improvement across the enterprise endpoint environment.

Requirements

  • A minimum of 3 years of experience in workplace support, desktop support, service desk, endpoint operations, EWS, systems administration, application support, vulnerability remediation support, or related enterprise technology disciplines.
  • Experience supporting Microsoft Windows endpoints, users, applications, or endpoint-related incidents in an enterprise support environment.
  • Ability to support vulnerability remediation execution by organizing work, tracking actions, following up with stakeholders, validating outcomes, and escalating blockers as needed.
  • Ability to partner effectively with Cyber Security, Infrastructure, Endpoint Engineering, Service Management, vendors, application owners, Workplace Support, Desktop Support, Service Desk, and EWS teams to coordinate remediation plans and operational follow-through.
  • Experience supporting software installs, application troubleshooting, application upgrades, patching, device remediation, customer validation, or software lifecycle activities.
  • Basic experience with PowerShell, command-line tools, endpoint troubleshooting utilities, or a demonstrated interest in learning scripting and automation.
  • Ability to learn and help develop scripts, workflows, dashboards, reporting methods, and process improvements that increase remediation efficiency and operational visibility.
  • Working knowledge of ServiceNow, Helix, Remedy, or comparable IT service management platforms.
  • Experience with change management, incident management, problem management, customer validation, operational governance, or audit response activities.
  • Ability to review vulnerability findings, support prioritization discussions, organize remediation actions, and escalate risks based on business impact, operational dependency, asset criticality, and remediation complexity.
  • Strong troubleshooting, analytical thinking, documentation, follow-up, attention to detail, and problem-solving skills.
  • Excellent written and verbal communication skills, including the ability to communicate technical concepts clearly to technical and non-technical audiences.
  • Ability to manage multiple priorities, organize work across queues or workstreams, coordinate with multiple teams, and drive tasks to completion with appropriate guidance, documentation, and escalation.
  • Strong organizational, documentation, stakeholder management, relationship-building, and customer service skills.
  • Ability to work individually and with a team, as needed, in a fast-paced environment with changing priorities and time-sensitive operational needs.

Nice To Haves

  • Prior vulnerability management, endpoint security, scripting, or advanced endpoint engineering experience is helpful but may be developed through internal training, mentoring, and hands-on project work.
  • Familiarity with Microsoft Intune, MECM/SCCM, Microsoft Configuration Manager, software deployment tools, device management consoles, or comparable endpoint support platforms preferred.
  • Basic understanding of vulnerability management, patching, remediation tracking, compliance follow-up, ticket management, or operational risk reduction preferred; deeper vulnerability management skills may be developed through training.
  • Exposure to endpoint security concepts such as application control, application allowlisting, endpoint privilege management, least privilege, security baselines, or secure support practices preferred.
  • Exposure to vulnerability management platforms such as Tenable, Qualys, Rapid7, CrowdStrike Spotlight, Tanium, Microsoft Defender Vulnerability Management, or equivalent technologies preferred but not required.
  • Exposure to endpoint privilege management platforms such as Delinea Privilege Manager, BeyondTrust, CyberArk Endpoint Privilege Manager, Microsoft Endpoint Privilege Management, or comparable technologies preferred but not required.
  • Awareness of NIST, CIS, Zero Trust, CVSS, CISA Known Exploited Vulnerabilities, vulnerability prioritization, and risk-based remediation practices preferred; practical knowledge may be developed through internal training and mentoring.
  • Preferred certifications or equivalent training may include Microsoft 365 Certified: Endpoint Administrator Associate (MD-102), Microsoft Certified: Security Operations Analyst Associate (SC-200), Microsoft Certified: Power BI Data Analyst Associate (PL-300), CompTIA Security+, CompTIA CySA+, ITIL Foundation, Tenable, Qualys, Rapid7, CrowdStrike, Tanium, CyberArk, BeyondTrust, Delinea, Microsoft Security, Identity, Azure, or comparable endpoint security, vulnerability management, endpoint management, reporting, automation, or IT service management training. Certifications are not required at time of hire for qualified internal candidates and may be pursued as part of the internal development plan.

Responsibilities

  • Reducing enterprise cyber risk through vulnerability remediation, software lifecycle management, endpoint security controls, automation, reporting, and operational modernization.
  • Improving software currency and compliance.
  • Accelerating remediation efforts.
  • Supporting secure delivery of endpoint technologies.
  • Strengthening operational efficiency while maintaining a positive end-user experience.
  • Supporting application control, application allowlisting, endpoint privilege management, software lifecycle health, patching support, automation, dashboards, operational documentation, and continuous improvement across the enterprise endpoint environment.
  • Supporting vulnerability remediation execution by organizing work, tracking actions, following up with stakeholders, validating outcomes, and escalating blockers as needed.
  • Partnering effectively with Cyber Security, Infrastructure, Endpoint Engineering, Service Management, vendors, application owners, Workplace Support, Desktop Support, Service Desk, and EWS teams to coordinate remediation plans and operational follow-through.
  • Supporting software installs, application troubleshooting, application upgrades, patching, device remediation, customer validation, or software lifecycle activities.
  • Learning and helping to develop scripts, workflows, dashboards, reporting methods, and process improvements that increase remediation efficiency and operational visibility.
  • Creating, maintaining, or interpreting reports using Excel, Power BI, endpoint management platforms, ITSM data, vulnerability tools, DEX tools, or comparable reporting sources.
  • Managing change management, incident management, problem management, customer validation, operational governance, or audit response activities.
  • Reviewing vulnerability findings, supporting prioritization discussions, organizing remediation actions, and escalating risks based on business impact, operational dependency, asset criticality, and remediation complexity.
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service