Senior Systems Engineer, Vulnerability Operations
Listed on 2026-07-18
-
IT/Tech
Cybersecurity, Systems Engineer
Apply now Job no: 664872
Work type: Regular (Full-Time)
Location: Orlando
Categories: Information Technology, UDX - Professional Generic, Digital Technology
The Senior Systems Engineer, Vulnerability Operations is responsible for driving operational remediation of vulnerabilities across Universal Destinations & Experiences (UDX) technology environments. This role works closely with NBCUniversal and UDX asset teams, Cyber, infrastructure teams, endpoint teams, and application owners to translate vulnerability findings into actionable remediation plans, coordinate closure activities, validate progress, and improve the processes, tooling, reporting, and automation used to reduce enterprise risk.
The role is focused on vulnerability actioning and closure rather than cyber governance ownership, ensuring vulnerable assets, applications, endpoints, and platforms are remediated in alignment with enterprise standards and agreed service levels.
- Coordinate and drive vulnerability remediation activities across UDX technology environments, including endpoints, servers, applications, databases, network devices, and other managed assets. Review vulnerability findings, determine ownership, assess operational impact, prioritize remediation work, and partner with NBCUniversal and UDX asset teams, Cyber, and application owners to develop clear action plans through closure. Track remediation progress, validate completion, and communicate status, blockers, risks, and escalations to stakeholders.
- Operate and improve Vulnerability Operations processes, tooling, workflows, and reporting. Build and leverage relationships with asset owners, application teams, endpoint operations, infrastructure teams, Cyber, and vendors to increase vulnerability awareness, improve remediation throughput, and reduce mean time to patch. Support integration of vulnerability data with ticketing, asset inventory, endpoint management, patching, and orchestration platforms to create repeatable and measurable closure processes.
- Develop automation and operational reporting that identifies remediation owners, prioritizes work by severity and business risk, monitors SLA performance, and highlights aging or blocked vulnerabilities. Partner with Cyber on standards, risk acceptance, exception handling, and threat context while maintaining operational accountability for coordinating remediation activities with the teams responsible for implementing fixes.
- Serve as a technical subject matter expert for Vulnerability Operations by interpreting scan results, validating vulnerability applicability, coordinating patching and mitigation plans, and helping teams resolve technical blockers. Assist with vulnerability and patch management efforts, including tool administration, asset scanning coordination, remediation prioritization, exception documentation, stakeholder communications, and recurring operational reviews with Cyber and technology owners.
- Partner with Cyber teams, application owners, endpoint operations, infrastructure teams, and asset owners to reduce vulnerability exposure and prevent recurring issues. Analyze vulnerability and patching trends, identify root causes, recommend durable operational controls, support change and release planning, and provide consultative guidance so teams understand remediation requirements, available tooling, and expected closure timelines. Escalate risks and unresolved blockers in a timely and effective manner.
- Understands and actively participates in Environmental, Health & Safety responsibilities by following established UO policy, procedures, training and team member involvement activities.
- Performs other duties as assigned.
- Bachelor’s degree in Computer Science or equivalent.
- Technical network (e.g. CCNA, CCNP Security) and security certifications highly desirable (e.g. CISA, CISSP, GCIH)
- 5+ years of experience in IT security, compliance, operations, endpoint management, systems engineering, application support, infrastructure support, vulnerability remediation, patch management, or related technical operations…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).