HimalayasHimalayas logo
Lumin DigitalLD

Vulnerability Automation Engineer

Lumin Digital is a cloud-native fintech company specializing in digital banking solutions, helping banks and credit unions build and deploy next-gen digital experiences. Founded in 2016, they offer a platform designed for innovation, data-driven insights, and speed to meet evolving user expectations.

Lumin Digital

Employee count: 201-500

Salary: 170k-190k USD

United States only

Stay safe on Himalayas

Never send money to companies. Jobs on Himalayas will never require payment from applicants.

Basic Function

Lumin Digital is building a Vulnerability Automation Engineering team that eliminates the traditional vulnerability management ticket queue entirely. As a Vulnerability Automation Engineer, you will design, build, and operate lights-off pipelines that continuously discover assets, assess posture, scan for vulnerabilities, harden configurations, and auto-remediate findings across cloud-native and infrastructure-as-code environments. You will leverage AI-assisted engineering tools, including agentic coding assistants like Claude Code, to build secure, autonomous workflows that replace manual coordination with engineered solutions. This role exists for engineers who teach organizations how to operate, not the other way around. Success means vulnerabilities are resolved before a human ever needs to read about them.


Essential Functions and Responsibilities:

  • Design and implement end-to-end vulnerability automation pipelines that continuously discover assets, assess configurations, identify vulnerabilities, and execute or orchestrate remediation, without manual ticketing or human-in-the-loop coordination.

  • Build and maintain agentic AI workflows using tools such as Claude Code and MCP-based integrations to automate security engineering tasks, including code review for vulnerability patterns, configuration drift detection, and patch deployment across cloud-native environments.

  • Engineer new and enhance existing automated asset discovery and inventory systems that maintain a real-time, authoritative view of all infrastructure, services, and endpoints across environments, including ephemeral and containerized workloads.

  • Develop and operationalize automated configuration hardening pipelines that enforce security baselines (CIS Benchmarks, internal standards) as code, with drift detection and auto-remediation capabilities.

  • Create and maintain infrastructure-as-code templates, policy-as-code rules, and automated playbooks that embed security controls directly into deployment pipelines, preventing or resolving vulnerabilities at build time rather than discovering them post-deployment.

  • Build self-service remediation tooling and agentic support systems that empower development and infrastructure teams to resolve security findings autonomously, reducing cross-team dependencies and accelerating mean time to remediation.

  • Integrate vulnerability data sources (scanners, SCA tools, cloud-native security services, threat intelligence feeds) into unified automation platforms, normalizing and enriching findings to drive intelligent prioritization and automated response.

  • Develop metrics, dashboards, and automated reporting that provide real-time visibility into vulnerability posture, remediation velocity, and automation coverage, enabling leadership to measure program effectiveness without manual evidence gathering.

  • Collaborate with product, engineering, operations, and other risk teams to embed vulnerability automation into CI/CD pipelines, infrastructure provisioning workflows, and operational runbooks.

  • Perform other duties as assigned.

Physical Demands:

  • While performing the duties of this Job, the employee is regularly required to sit; use hands to type, handle, or feel and talk or hear

  • Specific vision abilities required by this job include close vision

  • Ability to occasionally lift/move up to 25 pounds

  • Individuals with a disability who are otherwise able to perform the essential functions of the job may request reasonable accommodation through the Human Resources department.

Supervisory Responsibility:

  • None.


Position Specifications

Education:

  • Bachelor’s degree in Computer Science, Cybersecurity, Software Engineering, or a related field; or equivalent combination of education and demonstrated engineering experience in vulnerability lifecycle management and security automation.

  • Industry certifications that demonstrate hands-on technical depth are valued but not required. Relevant examples include: GPYC, GPEN, GXPN, AWS Security Specialty, GCP Professional Cloud Security Engineer, CKS (Certified Kubernetes Security Specialist), or HashiCorp Terraform Associate.

Experience:

  • 5+ years of hands-on experience in security engineering, DevSecOps, vulnerability management, or infrastructure automation, with a strong emphasis on building automated systems rather than operating manual processes.

  • Demonstrated experience building and shipping automation pipelines in production environments using Python, Go, Bash, or similar languages, with infrastructure-as-code tools such as Terraform.

  • Proven track record of working in cloud-native environments with deep familiarity in containerized workloads, Kubernetes, serverless architectures, and CI/CD pipeline integration.

  • Experience with vulnerability scanning and security assessment platforms (e.g., Tenable, Qualys, Wiz, Snyk, Trivy, Grype, or cloud-native equivalents) and the ability to integrate them programmatically into automated workflows.

Knowledge, Skills, & Abilities:

  • Deep understanding of vulnerability classes (OWASP Top 10, CWE, CVE/CVSS, EPSS) and modern prioritization frameworks that go beyond raw CVSS scores to factor exploitability, asset criticality, and business context.

  • Proficiency with AI-assisted development tools (Claude Code, GitHub Copilot, or similar agentic coding assistants) and the ability to design, prompt-engineer, and orchestrate AI agents for security automation workflows.

  • Strong software engineering fundamentals: version control (Git), code review, testing, CI/CD, API design, and the ability to write production-quality, maintainable code—not just scripts.

  • Hands-on experience with cloud security tooling and APIs (AWS Config, GuardDuty, Inspector, Security Hub), container security.

  • Familiarity with security data engineering concepts: API and database integration, data normalization, and building automated evidence-collection pipelines for compliance and audit support.

  • Excellent written and verbal communication skills, with the ability to translate complex automation architectures into clear documentation, runbooks, and knowledge-transfer materials for cross-functional teams.

  • Self-directed engineering mindset with a bias toward action, a low tolerance for manual toil, and a drive to eliminate recurring work through automation. You see a repeated manual process as a bug, not a task.

  • Nice to have: Experience with MCP (Model Context Protocol) integrations, building custom AI tool-use pipelines, or contributing to open-source security automation projects.

Travel:

  • Minimal, generally 12 days or less per year, ~2X team get-togethers a year

LIFE AT LUMIN DIGITAL

Lumin Digital is a trailblazer in digital banking solutions, driven by a unique approach to technology, service, and people. We empower credit unions and banks by creating cutting-edge digital experiences that continuously serve, engage, and grow their membership base. Lumin is 100% cloud-native, purpose-built to unlock the full advantages of the cloud for financial institutions and their users.
At Lumin, we thrive on curiosity and innovation. Our culture fosters trust - in our expertise and decisions, respect - for diverse perspectives and talents, and boldness - in pursuing innovative paths. These values guide us, shaping a workplace where collaboration thrives, ideas flourish, and new possibilities are discovered. Focused on continuous improvement and innovation, we encourage our team to explore, experiment, and put new ideas into action, challenging the usual way of doing things.
Lumin Digital is an equal opportunity employer. We consider all qualified applicants without regard to race, color, religion, sex, national origin, disability, protected veteran status, sexual orientation, gender identity, or any other legally protected basis, in accordance with applicable law.
For more information, visit lumindigital.com.

About the job

Apply before

Posted on

Job type

Full Time

Experience level

Salary

Salary: 170k-190k USD

Education

Bachelor degree

Experience

5 years minimum

Experience accepted in place of education

Location requirements

Hiring timezones

United States +/- 0 hours

About Lumin Digital

Learn more about Lumin Digital and their company culture.

View company profile

We are Lumin Digital, a fintech company laser-focused on providing cutting-edge digital banking solutions. Our journey began in 2016, driven by a vision to empower financial institutions—banks and credit unions alike—to not just compete, but to thrive in the rapidly evolving digital landscape. We saw the challenges faced by these institutions in keeping pace with the technological demands and user expectations, and we set out to build a platform that would enable them to offer exceptional, next-generation digital experiences. Our core belief is that by combining innovation, robust data analytics, and speed, we can deliver a 'disruption-proof' platform. This platform is born in the cloud, designed for agility and scalability, ensuring our clients can stay ahead of the curve and meet the ever-changing needs of their retail and business banking users.

At Lumin, we pride ourselves on our client-centric approach. We don't just provide software; we build partnerships. Our team, a collective of like-minded visionaries, innovators, and builders with deep industry and SaaS expertise, works closely with each financial institution to understand their unique goals and challenges. This collaborative spirit is ingrained in our DNA, from our product development, which incorporates over 200 enhancements annually with zero downtime, to our 100% on-time client launches. We're committed to helping our clients optimize their digital banking ROI, foster strong digital relationships with their customers, and ultimately, drive growth. Our platform offers a comprehensive suite of tools, including solutions for retail and commercial banking, digital account opening, user engagement, administrative support, risk management, digital marketing, and data analytics. We are dedicated to reimagining the future of digital banking, creating a future unhindered by legacy technology and limited partnerships, where collective growth and success are exponentially realized for our clients, their employees, and the communities they serve.

Employee benefits

Learn about the employee benefits and perks provided at Lumin Digital.

View benefits

Free Food

Lumin Digital Benefits include Free Food.

Performance Bonus

Lumin Digital Benefits include Performance Bonus.

401k Matching

A robust benefits package that includes 401k matching.

Life Insurance

Lumin Digital Perks & Benefits include Life Insurance.

View Lumin Digital's employee benefits
Claim this profileLumin Digital logoLD

Lumin Digital

Company size

201-500 employees

Founded in

2016

Chief executive officer

Jeff Chambers

Employees live in

View company profile

Similar remote jobs

Here are other jobs you might want to apply for.

View all remote jobs

22 remote jobs at Lumin Digital

Explore the variety of open remote roles at Lumin Digital, offering flexible work options across multiple disciplines and skill levels.

View all jobs at Lumin Digital

Remote companies like Lumin Digital

Find your next opportunity by exploring profiles of companies that are similar to Lumin Digital. Compare culture, benefits, and job openings on Himalayas.

View all companies

Find your dream job

Sign up now and join over 100,000 remote workers who receive personalized job alerts, curated job matches, and more for free!

Sign up
Himalayas profile for an example user named Frankie Sullivan