
Technical Lead, Security Operations
- Lehi, UT Santa Clara, CA
- Permanent
- Full-time
- Define the multi-year ASM roadmap; align tooling, data flows, and KPIs with business risk.
- Maintain a holistic inventory of on-prem, cloud, container, SaaS, and third-party assets, enriched with business context.
- Lead deployment and tuning of discovery scanners (network, cloud, container, endpoint).
- Correlate asset data to CMDB and CI/CD systems for real-time context.
- Conduct continuous discovery and vulnerability assessment across enterprise-wide assets.
- Operate and optimize the ASM tech stack (e.g., Tenable, etc.).
- Prioritize vulnerability remediation using criticality, exploit probability, rating, threat intel and business risk exposure.
- Document, report, and track remediation through Jira/ServiceNow workflows.
- Manage secret discovery tooling to eradicate hard-coded secrets across repos.
- Partner with developers to shift-left credential hygiene in CI/CD pipelines.
- Act as the single point of coordination (aka Customer Success Manager for ASM) among Security, Cloud, Infrastructure, and Engineering teams, aligning remediation efforts and SLAs.
- Communicating vulnerability results in language understood by both engineers and executives.
- Integrate scanners/APIs with ticketing systems to auto-generate and track findings.
- Define and publish KPIs (e.g., asset coverage, mean-time-to-remediate, risk-reduction trend).
- Produce dashboards and exec briefs that demonstrate posture and progress.
- 8-10+ years in cybersecurity with deep focus on vulnerability management, asset discovery, or attack surface management.
- Proven experience running enterprise-grade scanners such as Tenable, runZero, or the like.
- Hands-on experience of cloud platforms (AWS, Azure, GCP), containers (Docker/Kubernetes), and modern CI/CD.
- Proficient in scripting/automation (Python, Bash, PowerShell).
- Understanding of Windows, Linux, networking protocols, and hardening techniques.
- Familiarity with compliance frameworks (PCI, HIPAA, NIST, ISO) and how they map to vulnerability remediation .
- Good understanding of OWASP, CVSS and MITRE ATT&CK framework and the software development lifecycle.
- Demonstrated ability to influence cross-functional teams and drive accountability without authority.
- Analytical, highly organized, and comfortable translating risk into business terms.
- Self-starter who thrives in fast-paced, agile environments and communicates with clarity at all levels.
- Experience in SaaS or cloud-native companies with agile development practices.
- Security certifications-CISSP, GCIH, OSCP, AWS Security Specialty, or equivalent.
- Exposure to cloud CSPM platforms.
- Experience integrating ASM data into SOAR/SIEM workflows.
- Direct Impact: Your work measurably reduces organizational risk and secures customer trust.
- Innovation Culture: Collaborate with world-class engineers who value experimentation and continuous learning.
- Career Growth: Lead a strategic function with high executive visibility and opportunities to expand your leadership scope.
- Pure Innovation: We celebrate those who think critically, like a challenge and aspire to be trailblazers.
- Pure Growth: We give you the space and support to grow along with us and to contribute to something meaningful. We have been Named Fortune's Best Large Workplaces in the Bay Area™, Fortune's Best Workplaces for Millennials™ and certified as a Great Place to Work®!
- Pure Team: We build each other up and set aside ego for the greater good.