HamburgerMenu
hirist

Job Description

Rapid7 Architect - Vulnerability Management & Remediation:

Experience: 10+ Years

Role Level: Architect / SME

Focus Area: Vulnerability Management, Remediation, Security Architecture & Automation

Role Overview:

We are looking for an experienced Rapid7 Architect / Vulnerability Management Architect with strong hands-on expertise in Rapid7 and enterprise vulnerability management.

The role will focus on strengthening the organization's overall security posture by improving vulnerability ownership, remediation workflows, governance, automation, and integration across security and device management platforms.

The ideal candidate should be an architect-level resource who can assess the current vulnerability management ecosystem, identify process and ownership gaps, define scalable remediation models, and drive automation to reduce manual effort and improve remediation timelines.

Key Responsibilities:

- Provide architecture and SME-level expertise for Rapid7 Vulnerability Management.

- Review and assess the current vulnerability discovery, ownership, prioritization, remediation, and closure processes.

- Analyze vulnerability queues and identify gaps in ownership, accountability, and remediation workflows.

- Define clear vulnerability ownership models across endpoint, server, application, infrastructure, and other technology teams.

- Design and implement streamlined vulnerability remediation workflows and governance processes.

- Establish effective mechanisms for vulnerability prioritization based on severity, exploitability, asset criticality, business impact, and risk.

- Work closely with Endpoint Management, Infrastructure, Server, Security, Application, and other technology teams to establish clear remediation responsibilities.

- Identify opportunities to reduce unnecessary incidents being routed to teams that do not own the affected assets.

- Develop architecture and technical solutions for integrating Rapid7 with device management and endpoint management platforms.

- Drive automation of vulnerability remediation wherever technically and operationally feasible.

- Design workflows for automatically identifying affected assets, determining ownership, initiating remediation, and validating remediation status.

- Reduce manual intervention and improve remediation SLAs, turnaround time, and closure rates.

- Define and improve vulnerability management KPIs, metrics, dashboards, reporting, and governance mechanisms.

- Provide technical leadership for vulnerability remediation initiatives and enterprise security transformation programs.

- Conduct architecture reviews and recommend improvements to existing security and vulnerability management solutions.

- Evaluate Rapid7 capabilities, APIs, integrations, automation options, and supporting technologies.

- Develop technical approaches, POCs, and integration architectures for vulnerability remediation automation.

- Ensure solutions align with enterprise security, compliance, operational, and architecture standards.

Rapid7 Expertise:

- Strong hands-on experience with Rapid7 InsightVM / Nexpose.

- Strong understanding of vulnerability discovery, assessment, prioritization, remediation, and reporting.

- Experience working with Rapid7 APIs and integrations.

- Ability to interpret vulnerability data and translate findings into actionable remediation workflows.

- Experience configuring and optimizing vulnerability management processes within Rapid7.

- Strong understanding of asset discovery, asset groups, vulnerability risk scoring, remediation projects, and reporting.

- Experience integrating Rapid7 with enterprise security and IT management platforms.

Vulnerability Management & Remediation:

- Strong understanding of end-to-end Vulnerability Management Lifecycle.

- Vulnerability identification and assessment.

- Risk-based vulnerability prioritization.

- Asset ownership and accountability.

- Remediation planning and tracking.

- Exception and risk acceptance processes.

- Remediation validation and closure.

- SLA management and escalation.

- Vulnerability reporting and governance.

- Continuous improvement of remediation processes.

Integration & Automation:

- Experience integrating Rapid7 with Endpoint/Device Management platforms and other enterprise tools.

- Strong understanding of REST APIs, web services, automation frameworks, and orchestration.

- Ability to design automated workflows for vulnerability detection, asset identification, ownership mapping, remediation initiation, patch/remediation deployment, remediation validation, and ticket creation/closure.

- Experience with scripting/automation using technologies such as Python, PowerShell, or similar is preferred.

- Experience integrating security platforms with ITSM/ticketing platforms is desirable.

Architecture & Governance:

- Define enterprise architecture patterns for vulnerability management and remediation.

- Establish governance models covering ownership, accountability, remediation SLAs, exceptions, and escalation.

- Identify gaps between vulnerability detection and actual remediation ownership.

- Define processes to ensure vulnerabilities are routed to the correct technical owners.

- Develop scalable operating models that can support large enterprise environments.

- Provide architecture recommendations to improve security posture and operational efficiency.

Ideal Candidate:

The ideal candidate will be a Rapid7 Architect / Vulnerability Management SME with strong hands-on experience in enterprise vulnerability management and remediation.

The candidate should be capable of operating at both architecture and implementation levels, with the ability to understand the current environment, identify process and technology gaps, design improved workflows, and drive integration and automation initiatives.

Strong experience in Rapid7, vulnerability remediation, API-based integrations, automation, governance, asset ownership, and enterprise security architecture is essential.

info-icon

Did you find something suspicious?

Similar jobs that you might be interested in

Loading chat...