SolarWinds
Senior Security Operations & Vulnerability Management Engineer
At a Glance
About This Role
Responsibilities
- Own the full lifecycle of vulnerability discovery and remediation, moving beyond "Critical/High" labels to prioritize based on reachability, exploitability-in-the-wild (EPSS/KEV), and the specific context of the environment
- Act as the primary technical point of contact for Engineering and DevOps, explaining the "why" behind a fix, helping teams navigate technical debt, and negotiating remediation timelines that balance security with product velocity
- Use MITRE ATT&CK® to pivot from vulnerability data to proactive hunting, identifying exposure surface and drafting briefs within hours when new Zero-Days emerge
- Build and tune detection logic and design SOAR playbooks to automate ticket routing, asset tagging, and evidence collection
- Act as a Tier 3 escalation point and Incident Commander for major security events, leading deep dives after incidents to ensure root causes are addressed in the TVM roadmap
- Develop and report on KPIs that matter to executive leadership, such as Mean Time to Remediation (MTTR) for exploited flaws and burn-down rates on mission-critical assets
Requirements
- 5–7+ years in SecOps and Threat & Vulnerability Management (TVM)
- Deep, hands-on experience with enterprise-grade scanners (Qualys, Tenable, or Rapid7) and the ability to integrate them into CI/CD pipelines and cloud workflows
- Fluency in AWS/Azure/GCP security and understanding of container image scanning versus VM scanning
- Proficiency in Python, PowerShell, or SQL to pull data from APIs and identify meaningful outliers
- Ability to explain vulnerabilities and exploits to both technical engineers and executive leadership
- Strong command of NIST CSF and MITRE ATT&CK frameworks and their practical application
- Understanding of exploit development and penetration testing methodologies with the ability to identify "low hanging fruit" for attackers
- Professional certifications like CISSP, GCIH, or GEVA (GIAC Enterprise Vulnerability Assessor) highly regarded
- Cloud certifications (CCSP, AWS Security) or degree in Cybersecurity/CS a plus
Benefits & Perks
About SolarWinds
SolarWinds is a prominent provider of observability and IT management software, aimed at helping organizations monitor, analyze, and optimize their IT infrastructure in hybrid and multi-cloud environments. Founded in 1999 in Tulsa, Oklahoma, the company has grown significantly, relocating its headquarters to Austin, Texas, and expanding internationally. The company offers a comprehensive suite of IT management solutions, including network management, systems and database monitoring, application performance monitoring, and IT service management. Their SolarWinds Platform integrates these solutions to enhance performance, reliability, and security for enterprises. With over 300,000 customers worldwide, SolarWinds serves a diverse range of businesses, from small and mid-sized companies to large enterprises. The company also fosters a strong user community through THWACK®, which has nearly 200,000 members.
Security at SolarWinds
Compiled from public job postings, careers pages, and company materials. Data may not reflect current state — verify during interviews.
Security Philosophy
- SolarWinds' AppSec philosophy is centered on the 'Secure by Design' principle, which serves as the guiding framework for cyber resiliency.
- The approach prioritizes fixing security issues prior to release, viewing security as a mechanism that enables speed ('Brakes make you go faster').
- The team follows a defined software development methodology aligned with NIST SSDF controls and emphasizes an 'assume-breach' mindset.
Security Team
SolarWinds employs a dedicated product security function, as evidenced by active recruitment for leadership roles such as 'Lead Product Security Engineer'. The security organization is led by CISO Tim Brown, who oversees the Trust Center and the 'Secure by Design' initiative. Specific reporting lines (e.g., whether the team is centralized or embedded) and the precise team size are not publicly disclosed.
Key Initiatives
Key initiatives include the implementation of a 'Secure by Design' build system characterized by parallel builds and verified steps. SolarWinds has conducted a gap analysis against NIST SSDF controls to harden their development process. They maintain an active Vulnerability Disclosure Policy (VDP) managed by a PSIRT that commits to acknowledging reports within three business days. There is no public evidence of a formal 'Security Champions' program.
Preparing for an AppSec interview?
Get the weekly briefing 2,000+ security pros trust.
Interested in this role?
Apply on LinkedIn