Docusign · 21 hours ago
Security Engineer - Vulnerability & Config Management
Docusign is a leading company in e-signature and contract lifecycle management, dedicated to simplifying business processes for over 1.5 million customers globally. They are seeking a Security Engineer focused on Vulnerability & Config Management to enhance their digital security posture by managing vulnerability scans, analyzing findings, and collaborating with various teams to mitigate risks.
Business Process Automation (BPA)Cloud ManagementComputerE-SignatureInformation TechnologySaaSSoftware
Responsibilities
Execute vulnerability and configuration management scans and manage the health of scanning infrastructure, ensuring scope accuracy and data freshness
Investigate, triage, and prioritize discovered issues, assessing the technical details and potential impact on Docusign’s infrastructure
Develop and maintain scripts and code (Python, Go, etc.) for ETL, enrichment, evidence capture, and automation of scanning processes
Analyze results to identify false positives and drive valid findings to remediation, collaborating with engineering teams to ensure timely closure
Maintain and improve dashboards for tracking unknown assets, exposure MTTR, and high-risk issues
Contribute to and maintain runbooks, playbooks, and technical documentation
Participate in surge response for high-risk exposures and assist in maintaining a continuous security posture
Mentor junior team members and assist in their technical development
Qualification
Required
Bachelor's degree in Computer Science, Information Security, or a related field, or equivalent practical experience
5+ years of industry experience in cybersecurity, with a focus on vulnerability and configuration management, or related areas
Experience in scripting and programming (Python, Go, or TypeScript) and SQL
Experience with cloud platforms (Azure, AWS, GCP), specifically regarding public endpoints and security groups
Experience with asset inventory and vulnerability management tools (e.g., ServiceNow, Qualys, Tenable)
Experience with security controls as it pertains to infrastructure assets, i.e. configuration hardening standards
Knowledge of internet protocols (DNS, HTTP, TLS), IP/ports, and cloud security concepts
Ability to work with technical partners and stakeholders
Preferred
Experience with External Surface Coverage or EASM tools (e.g., Microsoft Defender EASM, VirusTotal, Wiz EASM)
Experience with data aggregation and visualization platforms (e.g., PowerBI) to visualize metrics and trends
Strong problem-solving skills and the ability to work independently in a fast-paced environment
Relevant certifications such as CISSP, CISM, or equivalent
Benefits
Paid Time Off: earned time off, as well as paid company holidays based on region
Paid Parental Leave: take up to six months off with your child after birth, adoption or foster care placement
Full Health Benefits Plans: options for 100% employer paid and minimum employee contribution health plans from day one of employment
Retirement Plans: select retirement and pension programs with potential for employer contributions
Learning and Development: options for coaching, online courses and education reimbursements
Compassionate Care Leave: paid time off following the loss of a loved one and other life-changing events
Company
Docusign
DocuSign helps small- and medium-sized businesses collect information, automate data workflows, and sign on various devices.
H1B Sponsorship
Docusign has a track record of offering H1B sponsorships. Please note that this does not
guarantee sponsorship for this specific role. Below presents additional info for your
reference. (Data Powered by US Department of Labor)
Distribution of Different Job Fields Receiving Sponsorship
Represents job field similar to this job
Trends of Total Sponsorships
2025 (361)
2024 (337)
2023 (236)
2022 (249)
2021 (236)
2020 (115)
Funding
Current Stage
Public CompanyTotal Funding
$1.29BKey Investors
Bank of AmericaFounders Circle CapitalGreenspring Associates
2025-05-27Post Ipo Debt· $750M
2018-04-27IPO
2016-10-12Secondary Market
Recent News
2026-01-22
Company data provided by crunchbase