
Vulnerability Management Engineer
- Vulnerability Management
- Qualys
- Tenable
- NIST
- FedRAMP
- HIPAA
- AWS
- Azure Cloud
- HITRUST
- SOC2
Â
At Solventum, we improve lives by helping healthcare professionals do their best work. Join a team using innovation and insight to make a real impact on the future of healthcare. All roles listed are with Solventum, and we’re committed to protecting your personal information—learn more in our Privacy Policy: https://www.solventum.com/en-us/home/legal/website-privacy-statement/applicant-privacy/Job Description:
Vulnerability Management Engineer
3M Health Care is now Solventum
At Solventum, we enable better, smarter, safer healthcare to improve lives. As a new company with a long legacy of creating breakthrough solutions for our customers’ toughest challenges, we pioneer game-changing innovations at the intersection of health, material and data science that change patients' lives for the better while enabling healthcare professionals to perform at their best. Because people, and their wellbeing, are at the heart of every scientific advancement we pursue.
We partner closely with the brightest minds in healthcare to ensure that every solution we create melds the latest technology with compassion and empathy. Because at Solventum, we never stop solving for you.
The Impact You’ll Make in this Role
The Vulnerability Management Engineer is a technical contributor responsible for operating, scaling, and maturing the enterprise vulnerability management program across infrastructure, cloud, and application environments. This role drives risk‑based prioritization, partners closely with engineering teams to remediate vulnerabilities, and supports audit and compliance requirements across regulated environments.
The role combines hands‑on technical expertise with tool knowledge, automation, and stakeholder engagement.
Â
- Joining a team of cybersecurity professionals motivated to secure Solventum's healthcare information systems and the personal health information of our clients and their patients.
- Operate enterprise vulnerability management platforms (e.g., Qualys, Tenable or equivalent)
- Ensure accurate, consistent, and scalable scanning coverage across on-prem and various cloud environments.
- Ensure accurate asset coverage, scanning integrity, and risk-based vulnerability prioritization.
- Analyze findings, validate exploitability, and provide clear, actionable remediation guidance to engineering teams.
- Drive continuous improvement of vulnerability SLAs, metrics, and reporting.
- Partner with application, platform, and cloud teams to validate that systems meet security and compliance requirements (e.g., NIST 800‑53, FedRAMP, StateRAMP, SOC, HIPAA).
- Design and implement automation and integrations to improve vulnerability intake, tracking, reporting, and operational efficiency.
- Develop and maintain documentation, runbooks, and operational processes to improve consistency, resiliency, and cross‑team support.
- Provide technical leadership and mentorship to junior engineers and contribute to reducing single‑point dependencies across security tooling and workflows.
- Produce executive‑level reporting and metrics that clearly communicate risk posture, trends, and remediation progress to leadership.
- Mentor junior engineers and help reduce single points of failure across security tooling and processes.
Your skills & expertise (Minimum qualifications):
- Bachelor’s Degree or higher
- 3-6 years of vulnerability management experience
- Experience administering vulnerability management platforms (Qualys, Tenable or similar)
- Experienced in working across multiple teams and disciplines
- Knowledgeable with AWS or Azure cloud environments
- Familiarity with best practice software security requirements in industry standard compliance programs (NIST, HITRUST, SOC2, etc.)
- Strong communication skills, ability to work independently or collaborate with application teams
Additional qualifications (Nice to have):
Work location:
- Hybrid – India Only
Travel:May include up to 10%Â Â
Relocation Assistance: Is not authorized.Â
Supporting Your Well-beingÂ
Solventum offers many programs to help you live your best life – both physically and financially. To ensure competitive pay and benefits, Solventum regularly benchmarks with other companies that are comparable in size and scope.Â
Diversity & Inclusion Â
(*) We are an equal opportunity employer and value diversity at our company. We do not discriminate on the basis of race, religion, gender, sexual orientation, age, civil status, disability, family status, or membership of the travelling community. Â
  Â
Solventum is committed to maintaining the highest standards of integrity and professionalism in our recruitment process. Applicants must remain alert to fraudulent job postings and recruitment schemes that falsely claim to represent Solventum and seek to exploit job seekers.
Please note that all email communications from Solventum regarding job opportunities with the company will be from an email with a domain of@solventum.com. Be wary of unsolicited emails or messages regarding Solventum job opportunities from emails with other email domains.
Please note: your application may not be considered if you do not provide your education and work history, either by: 1) uploading a resume, or 2) entering the information into the application fields directly.
Solventum Global Terms of Use and Privacy Statement
Carefully read these Terms of Use before using this website. Your access to and use of this website and application for a job at Solventum are conditioned on your acceptance and compliance with these terms.
Please access the linked document by clickinghere. Before submitting your application you will be asked to confirm your agreement with the
terms.
Vulnerability Management Engineer · USA 3M Healthcare US Opco LLC