Compare your current skills to what this opportunity needs—we'll show you what you already have and what could strengthen your application.
Job Description
Job Title:
Lead API Vulnerability Data Engineer Location:
Charlotte, NC or Mount Laurel Township, NJ Work Model:
Hybrid (3 days onsite per week)
Duration:
12+ Months Position Summary We are seeking an experienced Lead API Vulnerability Data Engineer to join our Threat and Vulnerability Management (TVM) team. This role will be responsible for leading the end-to-end lifecycle of API vulnerability management, including vulnerability discovery, risk assessment, remediation coordination, reporting, and enterprise-wide security insights. The ideal candidate will have a strong background in API security, vulnerability management, data engineering, and automation. This individual will partner closely with security teams, application owners, Lines of Business (LOBs), and engineering teams to identify, track, and remediate API security vulnerabilities while developing scalable reporting and analytics solutions. Key Responsibilities API Vulnerability Management Lead the end-to-end lifecycle management of API vulnerabilities from discovery through remediation and closure. Partner with application teams and Lines of Business (LOBs) to develop and execute vulnerability remediation plans. Assess API security risks and provide actionable recommendations to stakeholders. Track remediation progress and ensure timely resolution of identified vulnerabilities. Develop and maintain governance processes for API vulnerability management. Data Engineering & Analytics Curate, manage, and analyze vulnerability data for enterprise-wide reporting and decision-making. Develop and maintain security metrics, dashboards, and executive-level reporting. Identify vulnerability trends and provide actionable insights to improve security posture. Support data-driven risk management initiatives across the organization. Technical Implementation & Automation Implement, configure, and maintain API security tools such as Akamai or similar API security platforms. Integrate API security solutions with existing security infrastructure and enterprise systems. Design and develop automation solutions for vulnerability tracking, reporting, and remediation workflows. Support continuous improvement of API security monitoring and detection capabilities. Cross-Functional Collaboration Work closely with Security Operations, Engineering, Application Development, Infrastructure, and Business teams. Communicate security risks, remediation priorities, and program status to technical and non-technical stakeholders. Provide guidance and best practices related to API security and vulnerability management. Required Qualifications 8+ years of experience in API Security, Application Security, Vulnerability Management, or related cybersecurity disciplines. Hands-on experience managing the full lifecycle of API vulnerabilities, including identification, prioritization, remediation, and reporting. Experience working with API security platforms such as Akamai or similar tools. Strong understanding of API security principles, OWASP API Security Top 10, and vulnerability management practices. Hands-on programming experience with Python and JavaScript. Experience building automation solutions for security operations, reporting, or vulnerability management. Strong analytical and problem-solving skills. Excellent written and verbal communication skills. Preferred Qualifications Experience with enterprise vulnerability management and risk management programs. Experience integrating security tools with SIEM, ticketing, reporting, or governance platforms. Knowledge of API architectures, RESTful services, authentication mechanisms, and modern application security practices. Experience creating executive dashboards, metrics, and security reporting frameworks. Familiarity with data engineering concepts and large-scale security data analysis.