Rapid7 SME
Job Description
Key Skills: Rapid7, InsightVM, Nexpose, Insight Connect, Cybersecurity
Experience: 15+
Location: San Deigo CA-Remote
Shift: General
Mode: On-Site
We at Coforge are seeking “Rapid7 SME” with the following skill set:
Role Overview
We are seeking an experienced Rapid7 Lead Architect with 8–10 years of experience in Vulnerability Management, Security Operations, Security Engineering, and Remediation Automation. The ideal candidate should possess deep expertise in Rapid7 solutions and be capable of leading enterprise-scale vulnerability management programs.
This role will be responsible for strengthening the organization's security posture by establishing robust vulnerability governance, streamlining remediation processes, defining ownership models, and driving automation initiatives. The candidate will work closely with Security, Infrastructure, Endpoint Management, Server, Cloud, and Application teams to reduce risk exposure and improve remediation effectiveness.
Key Responsibilities
Vulnerability Management Leadership
• Lead enterprise-wide vulnerability management and remediation initiatives.
• Design and implement risk-based vulnerability management frameworks.
• Establish remediation SLAs, KPIs, and governance processes across technology towers.
• Drive reduction of critical and high-risk vulnerabilities through proactive remediation programs.
• Provide strategic recommendations to improve overall security posture and cyber resilience.
Rapid7 Architecture & Engineering
• Architect, deploy, optimize, and manage Rapid7 InsightVM, Nexpose, and InsightConnect platforms.
• Develop scalable vulnerability scanning, asset discovery, and remediation programs.
• Configure vulnerability assessment policies, dashboards, reporting, and executive scorecards.
• Ensure accuracy of asset inventory, vulnerability categorization, and risk prioritization.
Remediation Governance & Ownership
• Define and streamline vulnerability ownership across Endpoint, Server, Infrastructure, Cloud, and Application teams.
• Review existing remediation workflows and identify process bottlenecks.
• Establish governance mechanisms for vulnerability tracking, escalation, and compliance.
• Drive accountability across teams to improve vulnerability closure rates.
Automation & Platform Integration
• Design and implement integrations between Rapid7 and enterprise platforms including:
• Microsoft Intune
• SCCM/MECM
• ServiceNow
• Ivanti
• BigFix
• Tanium
• Jamf
• Leverage Rapid7 APIs and InsightConnect to automate vulnerability detection, ticket creation, remediation, and validation workflows.
• Drive adoption of automated remediation capabilities to minimize manual effort and accelerate vulnerability closure.
Stakeholder & Program Management
• Partner with Security Leadership, Infrastructure Teams, Endpoint Teams, and Business Stakeholders.
• Present vulnerability trends, remediation effectiveness, and risk exposure metrics to senior leadership.
• Conduct remediation review meetings and vulnerability governance forums.
• Act as a trusted advisor for vulnerability management strategy and transformation initiatives.
Required Technical Skills
Rapid7 Expertise
• 5+ years of hands-on experience with:
• Rapid7 InsightVM
• Nexpose
• InsightConnect
• Rapid7 APIs
• Experience designing enterprise-scale vulnerability management programs.
• Strong knowledge of vulnerability lifecycle management.
Security & Risk Management
• Vulnerability Assessment & Management
• Vulnerability Prioritization
• CVE/CVSS Analysis
• Threat Exposure Management
• Security Risk Management
• Patch Management
• Security Compliance & Governance
Automation & Scripting
• PowerShell
• Python
• REST APIs
• Workflow Automation
• ServiceNow Integrations
• Remediation Orchestration
Infrastructure Knowledge
• Windows Server Administration
• Linux Administration
• Active Directory
• Cloud Security (Azure, AWS, GCP)
• Networking & Security Fundamentals
Required Experience
• 8–10 years of overall IT/Security experience.
• 5+ years of dedicated experience in Vulnerability Management.
• Proven experience managing large-scale remediation programs involving thousands of assets and vulnerabilities.
• Experience driving cross-functional remediation initiatives across infrastructure, server, endpoint, and cloud teams.
• Strong understanding of enterprise security operations and governance frameworks.
• Experience in vulnerability remediation automation and orchestration.
Preferred Certifications
• Rapid7 Certified Administrator/Professional
• CISSP
• CISM
• CEH
• CompTIA Security+
• Microsoft Security Certifications
• ITIL Foundation
Key Deliverables
• Improve overall security posture through risk reduction initiatives.
• Reduce vulnerability remediation timelines and SLA breaches.
• Drive automation of vulnerability remediation workflows.
• Establish effective ownership and governance models.
• Improve visibility through executive dashboards and reporting.
• Enhance integration between Rapid7, ServiceNow, and Device Management platforms.
• Reduce operational overhead through automated remediation processes.
Interested in this role?
Don't miss out! Click below to view the full application on the company's website.
Apply on Company Website