×
Register Here to Apply for Jobs or Post Jobs. X

Vulnerability Management Engineer

Job in Madison, Dane County, Wisconsin, 53703, USA
Listing for: Nelnet
Full Time position
Listed on 2026-08-16
Job specializations:
  • IT/Tech
    Cybersecurity, Information Security & Data Protection
Salary/Wage Range or Industry Benchmark: 75000 - 125000 USD Yearly USD 75000.00 125000.00 YEAR
Job Description & How to Apply Below

Vulnerability Management Specialist

Nelnet Cyber Security Group (CSG) is looking for an experienced and skilled individual to join the Vulnerability Operations (VO) team. Nelnet's Vulnerability Operations team is responsible for managing the attack surface and collaboration with various business units to assess risk by identifying vulnerabilities and threats to our organization and working to drive remediation of identified security risks. The Vulnerability Operations team sits within the larger Nelnet Cyber Security Group and works closely with the Nelnet Security Operations Center (SOC) and Offensive Operations team.

Join Nelnet to lead and improve our efforts to identify, understand, and reduce the attack surface of Nelnet while helping our business units achieve the Nelnet core values for our customers, employees, and communities we serve. This position requires work in support of the Company's contract with the United States Department of Education ("ED"). As such, the United States Government requires that any applicant for this position must complete United States Government security clearance.

Effective June 1, 2018, ED has informed Nelnet that security clearance applications for foreign nationals are not being accepted or processed. In light of this direction from ED, Nelnet will be unable to hire applicants without United States citizenship for such positions.

This position offers a hybrid work option. Nelnet values flexibility and understands the importance of work-life integration. Our hybrid work environment allows associates living within 30 miles of an office location to work remotely for part of the week, while also fostering collaboration and team connection through in-office presence three days per week.

Please note that we are unable to provide visa sponsorship for this position. To be considered, candidates must already be authorized to work in the United States without the need for current or future sponsorship.

Job Responsibilities
  • Lead the design, development, and continuous improvement of the organization's vulnerability management strategy, aligning with business objectives and security requirements.
  • Stay up to date on emerging security threats and vulnerabilities, and ensure the program adapts accordingly.
  • Oversee the configuration and maintenance of vulnerability scanning tools.
  • Analyze vulnerability data to assess risk and recommend appropriate mitigation strategies.
  • Develop and implement vulnerability remediation plans, working collaboratively with all technology teams and the business.
  • Collaborate with cross-functional teams to assess vulnerability risks, prioritize remediation efforts, and ensure timely resolution of critical vulnerabilities to minimize security risks and operational impact.
  • Knowledge of CIS benchmarks, DISA STIGs, NSA Hardening Guides, and other industry security frameworks.
  • Demonstrated passion for continuous learning.
Education

Bachelor's degree in cyber security or information systems OR relevant work experience.

Experience

• 2+ years of experience in vulnerability management and/or security operations.

• Experience with Vulnerability management solutions (Rapid 7, Qualys, Tenable, etc.)

• Experience with patching tools like Microsoft MECM.

• Experience with EDR administration (Microsoft Windows Defender, Crowd Strike Falcon, VMware Carbon Black, Palo Alto Network Cortex XDR, Tanium etc.)

• Solid understanding of cloud-based hosting platforms, with background on security threats deriving from Azure, AWS and GCP hosted services being preferred.

• Partner with the SOC, Cyber Threat Intel, Offensive Security Team, and other stakeholders to refine prioritization, to validate impact of suspected vulnerabilities, to advise owners on mitigation strategies or compensating controls, and to provide accurate & timely reporting that informs remediation progress.

• Knowledge of python programming language is required.

Pay range for this role is $75,000-$125,000 annually, depending on experience.

Nelnet is committed to providing a welcoming and respectful workplace where all associates have the opportunity to succeed. As an Equal Opportunity Employer, we ensure that all qualified applicants are considered for employment. Employment decisions are made without regard to race, color, religion/creed, national origin, gender, sex, marital status, age, disability, use of a guide dog or service animal, sexual orientation, military/veteran status, or any other status protected by federal, state, or local law.

We value the unique contributions of every team member and believe that a positive work environment benefits everyone.

Qualified individuals with disabilities who require reasonable accommodations in order to apply or compete for positions at Nelnet may request such accommodations by contacting Corporate Recruiting at  or c

Nelnet is a Drug Free and Tobacco Free Workplace.

To View & Apply for jobs on this site that accept applications from your location or country, tap the button below to make a Search.
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
 
 
 
Search for further Jobs Here:
(Try combinations for better Results! Or enter less keywords for broader Results)
Location
Increase/decrease your Search Radius (miles)
0
200
Filters
Education Level
Experience Level (years)
Posted in last:
Salary