Call Quest Solution is seeking a Senior Security Engineer with leadership experience to support vulnerability management and enterprise security initiatives. The role involves stabilizing vulnerability management processes, automating remediation workflows, and contributing to broader security engineering projects while collaborating with internal teams to improve security posture and operational efficiency.
Responsibilities:
- Design and deploy Tenable scanning templates, credentialed scans, and custom plugins to improve asset coverage
- Optimize vulnerability detection and reduce false positives
- Implement automated remediation workflows using Tenable One integrated with ServiceNow and patch orchestration tools (SCCM / Intune)
- Develop executive-level vulnerability dashboards and reporting including risk reduction metrics and remediation timelines
- Lead root-cause analysis and remediation of Purview DLP and sensitivity labeling issues
- Design and implement Microsoft Purview Information Protection solutions including auto-labeling, endpoint DLP, and encryption strategies
- Support data classification and compliance initiatives
- Develop and tune Trellix SIEM detection rules, correlation use cases, and automation playbooks
- Integrate Tenable, Microsoft Purview, and Trellix SIEM platforms through API-based integrations
- Collaborate with engineering teams to ensure closed-loop vulnerability remediation processes
- Develop operational documentation, runbooks, and best practices
- Conduct knowledge transfer sessions and workshops to support internal security teams
Requirements:
- Strong hands-on expertise with Tenable One / Tenable.io vulnerability management
- Microsoft Purview (DLP and Information Protection)
- Experience integrating security platforms with ServiceNow, SIEM, and automation tools
- Ability to automate workflows using PowerShell or Python
- Strong hands-on experience with Tenable One / Tenable.io vulnerability management platform
- Experience with Nessus scanners and agent deployments across cloud and on-prem environments
- Experience with Trellix SIEM / Helix for rule creation, dashboards, and log management
- Automation experience using PowerShell or Python
- Experience with Microsoft Entra ID security features including Conditional Access and Privileged Identity Management
- Hands-on experience with REST API integrations across security platforms
- Experience integrating vulnerability workflows with ServiceNow
- Strong knowledge of risk scoring frameworks (CVSS, EPSS, CISA KEV) and vulnerability prioritization methodologies
- Experience with Microsoft Purview Compliance and Risk Suite
- Knowledge of DLP policies, sensitivity labeling, and auto-labeling strategies
- Experience with data protection and regulatory compliance frameworks
- Prior experience supporting healthcare security environments