Cloudflare

Vulnerability Management Engineer

Cloudflare · Hybrid

Posted about 2 months ago

or apply directly on Cloudflare's site. We never take the application ourselves.

Is this posting real?

This role has been open
66 days
Cloudflare's roles stay open a median of 66 days
Reposted
No
Salary listed
No
28% of Cloudflare's roles list one
Ghost-job risk at Cloudflare
high
252 stale, 12 reposted of 342 open
Hiring momentum
494 roles opened in the last 90 days
↑ up vs. the prior 90 days
Last confirmed on the employer's board
2026-10-08

Measured from postings appearing on and disappearing from Cloudflare's own greenhouse board since 2026-08-03. Full hiring picture for Cloudflare.

About this role

The Vulnerability Management Engineer at Cloudflare will focus on identifying, analyzing, and supporting the remediation of vulnerabilities across the company's infrastructure and cloud environments. This role involves collaborating with various teams to ensure timely remediation of security vulnerabilities, particularly in alignment with regulatory requirements like DOD IL4 and FedRAMP. The engineer will also leverage AI-driven tools to enhance scanning efficiency and automate remediation processes.

Our read on this posting3.0out of 5
benefits
5/5
freshness
1/5
career value
4/5
role clarity
5/5
pay transparency
0/5

Scored from the posting itself — how clearly the role is described, how much it says about pay and benefits, and how recently it was listed. Not a judgement of Cloudflare as an employer.

What you need

  • Solid understanding of DoD Impact level IL4, FedRAMP, SOC-2, and PCI frameworks.
  • 3+ years Vulnerability Management experience in a heavily regulated environment.
  • Bachelor's degree in Computer Science, Information Security, or security certifications in a related field.
  • Strong communication (written and verbal) and interpersonal skills, with the ability to effectively collaborate with technical and non-technical teams.
  • A strong understanding of CVSS (Common Vulnerability Scoring System) and how to apply risk assessment methodologies in a business context to support remediation.
  • Hands-on experience with vulnerability scanning platforms (e.g., Qualys, Nessus, Rapid7 InsightVM).

Nice to have

  • Experience with scripting languages (e.g., Python) for automation.
  • Proficiency in using ticketing tools like JIRA for managing tickets and tasks.
  • Experience integrating LLMs or AI APIs into cybersecurity workflows and automation pipelines.
  • Hands on experience with Infrastructure pentesting tools.

What you get

  • Medical/Rx Insurance
  • Dental Insurance
  • Vision Insurance
  • Flexible Spending Accounts
  • Commuter Spending Accounts
  • Fertility & Family Forming Benefits

Worth weighing

  • No salary listed.
  • The role involves working in a heavily regulated environment, which may entail strict compliance requirements.
  • The focus on AI-driven tools suggests a modern approach, but reliance on specific platforms may limit exposure to a broader tech stack.

Summarised from Cloudflare's posting. Read the full original.

Listed by Cloudflare on their greenhouse job board, last confirmed open on 2026-10-08. PitchMeAI is not the employer.

More roles at Cloudflare

All 342 open roles at Cloudflare →