Qualifications
Key Responsibilities:
Monitor and triage vulnerabilities identified by Wiz, Tenable, GHAS, and other scanning tools, ensuring proper routing to responsible parties with sufficient context and prioritization.
Oversee a centralized vulnerability management platform that consolidates findings from various sources, ensuring accurate normalization, deduplication, and ownership mapping (using AWS tags, teams, or services) for a reliable risk assessment.
Manage risk scoring and SLA models (High/Critical, ‘Most Wanted’ assets, etc.) within the VM platform, tracking overdue findings and compliance with SLAs, as well as identifying trends in backlogs and high-risk assets/teams.
Collaborate directly with code, cloud, and endpoint teams to clarify vulnerabilities, group related issues, and convert scanner output into actionable remediation plans aligned with their development roadmaps.
Work with engineering teams to ensure timely fixes are implemented; participate in regular triage and review sessions to prioritize backlog items and validate the resolution of high-risk issues in source tools.
Contribute to improving VM processes and tools, enhancing connectors, data quality checks, scorecards, runbooks, and guides to make vulnerability management practices more efficient and easier to onboard.
About the job
CLEAR builds secure identity solutions used by over 38 million members worldwide. From airports to stadiums and beyond, CLEAR’s technology helps people move through daily life with added safety and convenience.
Role Overview
The Senior Vulnerability Management Security Engineer joins the Product Security team to strengthen and oversee CLEAR’s vulnerability management program. This role covers cloud, infrastructure, endpoints, and application environments.
What You Will Do
- Manage and improve the vulnerability management program across multiple technical environments
- Use tools like Wiz, Tenable, and GitHub to identify and assess security risks
- Translate vulnerability findings into clear, actionable tasks
- Work closely with engineering teams to address and reduce real-world security risks
Location
This position is based in New York, New York, United States.
About CLEAR
At CLEAR, we are dedicated to building a secure identity company that prioritizes the safety and ease of our members' experiences. Our innovative platform is designed to redefine how individuals interact with the world around them, ensuring that they can navigate their daily lives with confidence and convenience.