• Skip to primary navigation
  • Skip to main content
  • Skip to footer

Side Hustles

Side Hustles

Side Hustles For All

  • Best Side Hustles
    • Woman sitting on a pile of coins and working on a laptop surrounded by icons representing different side hustle ideas

      31 Best Side Hustles to Earn Extra Money in 2026

    • Bicycle courier delivering food for their side hustle.

      What Is a Side Hustle?

    • Remote worker sitting at his desk making money from home

      18 Ways to Make Money from Home (Online and Offline Jobs)

    • By Category
      • Arts & Crafts
      • Business Services
      • Caregiving
      • Creative Services
      • Digital Freelance Services
      • View All
    • By Lifestyle
      • I’m introverted
      • I’m a man
      • I’m a woman
      • I’m a stay-at-home mom
      • I’m unique
      • View All
    • By Profession
      • Artists & Creatives
      • Musicians
      • Nurses
      • Physicians
      • Teachers
      • View All
    • By Age Group
      • College Students
      • Teens
      • Age 50+
      • Seniors
      • View All
    • By Skills & Interests
      • Get Paid to Lose Weight
      • Get Paid to Play Games
      • Get Paid to Read
      • Get Paid to Sleep
      • Get Paid to Travel
      • View All
  • Best Gig Apps
    • Freelance worker popping out of a phone screen and considering gig apps on the App Store and Google Play

      Top 6 Gig Apps to Make Real Cash in 2026

    • Smartphone surrounded by the icons of different money-making apps

      Top 10 Best Money-Making Apps to Try in 2026

    • two teenagers using job apps on a phone and laptop

      19 Job Apps for Teens to Find Jobs and Make Money

    • By Gig Type
      • Cashback
      • Data Entry
      • Delivery
      • Games
      • Product Testing
      • View All
    • By Payment Method
      • Bingo Games that Pay to Cash App
      • Games that Pay Real Money
      • Games that Pay to Cash App
      • Games that Pay via PayPal
      • Surveys that Pay to Cash App
      • View All
    • By Benefits
      • $20 Signup Bonuses
      • $25 Signup Bonuses
      • $50 Signup Bonuses
      • Best Signup Bonuses
      • Instant Signup Bonuses
      • View All
    • By Skills & Interests
      • Driving
      • Losing Weight
      • Playing Games
      • Product Testing
      • Watching Ads
      • View All
  • Job Hunting
    • Freelance worker browsing a job post on a freelance job board.

      23 Job Boards You Can Use to Find Remote Work

    • Freelance writer sitting at her laptop working on a project

      15 Best Remote Jobs That Require No Paid Work Experience

    • Teenager sitting at laptop working an online job

      14 Online Jobs for Teens (With No Experience)

    • Freelancing
      • Freelance Writing Sites
      • Freelance Writing Job Boards
      • Freelance Writing Platforms
      • View More
    • Gig & Shift Work
      • Gig Work Apps
      • On-Demand Work Apps
      • Shift Work Apps
      • View More
    • GPT (Get Paid To)
      • Microtasking
      • Product Testing
      • Survey Taking
      • View More
    • Remote Working
      • Best Remote Job Boards
      • Top 15 Remote Jobs
      • View More
  • Job Board
    • Work Schedule
      • Part-Time Jobs
      • Per-Diem Jobs
      • Go Search
    • Work Environment
      • Hybrid Jobs
      • Remote Jobs
      • Go Search
    • Employment Type
      • Contractor Jobs
      • Internship Jobs
      • Temporary Jobs
      • Go Search
    • Job Title
      • Accounting Jobs
      • Data Entry Jobs
      • Nursing Jobs
      • Online Teaching Jobs
      • Software Engineer Jobs
      • Go Search
    • State
      • California Jobs
      • Florida Jobs
      • New York Jobs
      • Pennsylvania Jobs
      • Texas Jobs
      • Go Search
    • City
      • Chicago, IL
      • Houston, TX
      • Los Angeles, CA
      • New York City, NY
      • Phoenix, AZ
      • Go Search

Home Flexible Job Board Security Specialist, Vulnerability Management (US - Remote)

$120,000–175,000/yr 14d ago

Security Specialist, Vulnerability Management (US - Remote)

Boost your chances before you apply.

  • ✨ Apply 10x Faster Free

    It takes 30+ tailored applications to land jobs like this one. We'll help you get that done in 1 hour.

    No Credit Card Required

  • Proceed to Application Go directly to the company's job page to apply.
Logo

AXON-Networks

Irvine, CA, US

Full-time Permanent Remote

✨ Apply 10x Faster

Analyze your resume for missing keywords, then one-click optimize it. Don't be anything less than a 100% match candidate.

Free

No Credit Card Required

Summary

The Security Specialist will establish and operate a risk-based vulnerability management program across cloud, application, container, and network infrastructure. They will analyze CVEs, prioritize remediation based on actual environmental risk, and partner with engineering teams to reduce exposure.

Job Description

AXON Networks delivers a robust AI-driven, analytics-based orchestration platform and a wide portfolio of next-gen high-speed routers that leverage the newest Wi-Fi technologies. Together, these technologies give ISPs the ability to manage and troubleshoot their networks in real time, and to deliver an outstanding customer experience.

AXON Networks is a trusted strategic partner for its customers, helping them evaluate their current technologies and business models, and creating and executing strategies that enable them to innovate faster, accelerate their digital transformations, and strengthen their relationships with consumers.

AXON Networks is headquartered in Irvine, CA USA with Asia HQ in Singapore and also operating in Denmark, Spain and Vietnam.

The Security Specialist, Vulnerability Management will establish and operate a risk-based vulnerability management capability across the company’s cloud platform, applications, Kubernetes and container environments, network infrastructure, software supply chain, and cloud-managed customer-premises equipment (CPE), including broadband gateways, routers, ONTs and connected-home devices. This is a hands-on security engineering role for someone who can distinguish a scanner finding from a vulnerability that is relevant and exploitable in the company’s actual environment. 

The engineer will select and configure scanning approaches, validate findings, analyze CVEs, prioritize risk, coordinate remediation, verify closure and create the dashboards, evidence and operating standards needed for a repeatable program. The engineer will explain risk clearly to operational and engineering leaders and will not rely on severity scores alone. 

Role mandate 

  • Establish authoritative visibility into vulnerabilities across cloud, application, container, Kubernetes, network, endpoint, dependency, firmware and CPE asset classes. 

  • Determine whether findings and CVEs apply to the versions, configurations, exposure paths and controls actually present in the environment. 

  • Prioritize remediation using technical severity, known exploitation, likelihood, reachability, asset criticality, customer impact and compensating controls. 

  • Create a durable operating model for intake, validation, assignment, service levels, exceptions, rescanning, closure and executive reporting. 

  • Partner with Engineering, DevOps, NOC, Support, Product and Compliance to reduce measurable exposure without disrupting reliable customer service. 

What you will own 

Scanning strategy and coverage 
  • Inventory the attack surface and define coverage for internet-facing and internal assets, cloud services, hosts, network devices, containers, Kubernetes clusters, applications, APIs, source code, third-party dependencies, images, infrastructure as code and supported CPE/firmware. 

  • Design, configure and maintain authenticated and unauthenticated scans, agent-based assessments, cloud-native configuration checks, container and dependency scans, external attack-surface discovery and targeted validation tests. 

  • Establish safe scan windows, credentials, rate limits, exclusions and testing procedures so scans do not destabilize production, customer environments or large CPE fleets. 

  • Evaluate, select and administer appropriate capabilities from platforms such as Tenable Nessus, Qualys, Rapid7, Wiz, Orca, Prisma Cloud, Snyk, Veracode, Checkmarx, Trivy, Grype, Nuclei or equivalent tools; integrate results rather than requiring one product to solve every use case. 

  • Measure coverage, scan health, credential success, stale assets and blind spots; continuously improve asset-to-owner mapping and data quality. 

Finding validation and CVE analysis 
  • Review new and existing scan findings and determine whether each is a true positive, false positive, duplicate, accepted risk, mitigated condition or actionable vulnerability. 

  • Analyze CVE applicability using affected component and version, package provenance, CPE or firmware bill of materials, runtime reachability, configuration, network exposure, privileges, exploit prerequisites and existing controls. 

  • Reproduce or safely validate material findings when needed using vendor advisories, proof-of-concept analysis, logs, configuration evidence, package inspection and non-production testing. 

  • Document defensible disposition evidence and prevent unsupported suppression of findings or indefinite exception status. 

  • Monitor vulnerability intelligence and vendor advisories for cloud, Kubernetes, Linux, networking, broadband/CPE, open-source and commercial technologies used by the company. 

Risk-based prioritization and response 
  • Use CVSS as a severity input, not a standalone risk decision, and enrich prioritization with CISA Known Exploited Vulnerabilities, EPSS, exploit availability, exposure, reachability, asset criticality, tenant/customer impact and compensating controls. 

  • Define remediation and mitigation targets by risk tier; rapidly escalate actively exploited or internet-reachable vulnerabilities and coordinate emergency response when required. 

  • Create clear remediation records with affected assets, evidence, owners, due dates, recommended actions, validation criteria and customer or operational considerations. 

  • Partner with Engineering and DevOps on patches, upgrades, configuration changes, image rebuilds, dependency updates, firmware releases and compensating controls; verify closure through rescans or equivalent evidence. 

  • Manage risk exceptions with documented rationale, accountable approval, compensating controls, expiration dates and scheduled reassessment. 

Cloud-to-CPE security context 
  • Understand the end-to-end service path from cloud control plane and APIs through messaging, device-management protocols and access networks to broadband gateways, routers, ONTs and connected-home devices. 

  • Assess vulnerabilities in the context of multi-tenant cloud services, remote device management, certificates and secrets, provisioning, telemetry, firmware delivery, administrative interfaces and fleet-scale exposure. 

  • Work with Engineering to identify affected device models, hardware revisions, firmware branches, software components and deployed cohorts; support safe remediation planning and rollout validation. 

  • Recognize the different evidence and remediation paths required for cloud software, third-party dependencies, network appliances, embedded Linux and customer-deployed CPE. 

Program operations, automation and reporting 
  • Build integrations and automation for asset enrichment, deduplication, risk scoring, ticket creation, ownership routing, SLA tracking, notifications, rescans, exception expiry and evidence collection. 

  • Maintain dashboards for coverage, exploitable exposure, aging, remediation performance, repeat findings, exceptions, asset ownership and risk trends by service, customer, product and device cohort. 

  • Develop playbooks, standards and procedures for routine vulnerability handling, critical CVEs, zero-day response, scanner administration and tool outages. 

  • Provide concise reporting to technical owners and leaders, separating raw finding volume from material risk and clearly identifying decisions or overdue actions. 

  • Support audits and customer security inquiries with traceable evidence while protecting sensitive vulnerability and customer information. 

Required qualifications 

  • 5+ years of hands-on experience in vulnerability management, vulnerability assessment, security engineering, product security, cloud security or a closely related discipline. 

  • Demonstrated ownership of enterprise scanning and vulnerability-management workflows, including scanner configuration, authenticated scanning, coverage analysis, finding validation, false-positive handling, remediation tracking and rescanning. 

  • Strong CVE analysis skills and the ability to determine applicability and exploitability using versions, configurations, exposure, reachability, privileges, controls and business context. 

  • Experience with one or more enterprise vulnerability platforms and practical familiarity with complementary cloud, container, dependency, application and open-source scanning tools. 

  • Working knowledge of CVE/CWE, NVD, CVSS, CISA KEV, EPSS, vendor advisories, software bills of materials and risk-based prioritization. 

  • Hands-on knowledge of Linux, TCP/IP, DNS, TLS/PKI, identity and access controls, APIs, cloud infrastructure, containers and Kubernetes. 

  • Ability to read code, package manifests, container images, configurations, logs and network evidence sufficiently to validate findings and guide remediation. 

  • Scripting or programming ability in Python, Go, PowerShell, Bash or a comparable language, plus experience integrating security platforms with APIs, ticketing and dashboards. 

  • Strong written and verbal communication, including the ability to explain technical risk, uncertainty, tradeoffs and required decisions to engineers and operational leaders. 

  • Bachelor’s degree in cybersecurity, computer science, engineering or equivalent practical experience. 

Preferred qualifications 
  • Security experience with service providers, broadband operators, telecom equipment/software vendors, managed-network providers or large distributed device fleets. 

  • Experience assessing embedded Linux, firmware, broadband gateways, routers, ONTs, Wi-Fi/mesh systems or other CPE/IoT products. 

  • Familiarity with TR-069/CWMP, TR-369/USP, TR-181, ACS/USP controllers, device provisioning, telemetry, certificates and remote firmware lifecycle management. 

  • Experience with Google Cloud Platform, Kubernetes, Terraform, Helm, CI/CD and cloud-native security posture or workload-protection platforms. 

  • Experience with software composition analysis, SBOM/VEX, container/image scanning, secret scanning, SAST/DAST/API security testing and infrastructure-as-code scanning. 

  • Experience with coordinated vulnerability disclosure, penetration-test finding intake, zero-day response or product security incident response. 

  • Familiarity with NIST Cybersecurity Framework, NIST SP 800-40, CIS Controls, OWASP guidance, PCI DSS, SOC 2 or ISO 27001 control expectations. 

  • Relevant certifications such as Security+, CySA+, GSEC, GCIH, GPEN, CISSP, CCSP or vendor-specific vulnerability-management credentials; practical expertise is valued more than certification alone. 

Working expectations 

  • Work primarily during normal business hours with escalation availability for critical, actively exploited or zero-day vulnerabilities. 

  • Handle sensitive vulnerability, exploit and customer information with strict need-to-know access and evidence controls. 

  • Coordinate intrusive scans, validation tests and production-impacting work through approved change and maintenance processes. 

  • Challenge scanner results and remediation claims constructively while maintaining clear evidence, ownership and deadlines. 

This position is fully remote within North America. Please note that we are unable to offer visa sponsorship for this role.

Annual salary range: $120,000 - $175,000

Join AXON Networks!

At AXON Networks, we promote equal opportunities in all our recruitment processes, ensuring non-discrimination on the basis of gender, age, origin, disability, or any other personal circumstances. We assess talent based on objective criteria and foster an inclusive and diverse working environment.

axon-networks.com

axon-networks.hire.trakstar.com

About the company

AXON-Networks

AXON Networks is redefining how service providers operate, grow, and compete in the AI-driven era of connectivity.

We enable ISPs and telecom operators to move beyond traditional, reactive models toward fully autonomous, real-time network operations. Through our Operator-as-a-Service (OaaS) platform, AXON brings together orchestration, digital twins, and agentic AI to transform network management into a continuous, intelligent, and customer-centric experience.

Our platform provides a 360° view of the network—combining real-time data, predictive insights, and automated actions across service assurance, provisioning, customer experience, and revenue optimization. This allows operators to reduce complexity, lower operational costs, and unlock new growth opportunities.

Trusted by leading service providers worldwide and supporting over 90 million users, AXON Networks helps transform networks into adaptive, self-optimizing systems that deliver measurable business outcomes.

From infrastructure to experience. From operations to intelligence. From connectivity to growth.

AXON Neura is a multi-agent AI layer that brings intelligence into every part of network operations.
It enables autonomous decision-making across service assurance, customer experience, and orchestration—helping service providers move from reactive workflows to real-time, self-optimizing networks.

AXON Networks Enterprise combines intelligent software with purpose-built hardware to deliver fully optimized enterprise connectivity.

End-to-end connectivity portfolio
• Full range of routers and CPEs supporting XGS-PON, GPON, Fiber, DSL, Bonded DSL, LTE, and 5G
• Advanced Wi-Fi solutions including Mesh networking and band steering

Intelligent device & network management
• CPE Management Platform with ACS (TR-069) and TR-369 / USP support
• Real-time Support Dashboard for operations and customer care
•Consumer self-service app for visibility and control

Founded

2021

Company size

201-500 employees

Industry

IT Services and IT Consulting

Org type

Privately Held

Headquarters

Irvine, California

Apply Now

About the company

AXON-Networks

AXON Networks is redefining how service providers operate, grow, and compete in the AI-driven era of connectivity.

We enable ISPs and telecom operators to move beyond traditional, reactive models toward fully autonomous, real-time network operations. Through our Operator-as-a-Service (OaaS) platform, AXON brings together orchestration, digital twins, and agentic AI to transform network management into a continuous, intelligent, and customer-centric experience.

Our platform provides a 360° view of the network—combining real-time data, predictive insights, and automated actions across service assurance, provisioning, customer experience, and revenue optimization. This allows operators to reduce complexity, lower operational costs, and unlock new growth opportunities.

Trusted by leading service providers worldwide and supporting over 90 million users, AXON Networks helps transform networks into adaptive, self-optimizing systems that deliver measurable business outcomes.

From infrastructure to experience. From operations to intelligence. From connectivity to growth.

AXON Neura is a multi-agent AI layer that brings intelligence into every part of network operations.
It enables autonomous decision-making across service assurance, customer experience, and orchestration—helping service providers move from reactive workflows to real-time, self-optimizing networks.

AXON Networks Enterprise combines intelligent software with purpose-built hardware to deliver fully optimized enterprise connectivity.

End-to-end connectivity portfolio
• Full range of routers and CPEs supporting XGS-PON, GPON, Fiber, DSL, Bonded DSL, LTE, and 5G
• Advanced Wi-Fi solutions including Mesh networking and band steering

Intelligent device & network management
• CPE Management Platform with ACS (TR-069) and TR-369 / USP support
• Real-time Support Dashboard for operations and customer care
•Consumer self-service app for visibility and control

Founded

2021

Company size

201-500 employees

Industry

IT Services and IT Consulting

Org type

Privately Held

Headquarters

Irvine, California

Footer

sidehustles.com
Facebook Twitter Instagram LinkedIn Reddit TikTok YouTube

Show Me The Money

  • Side Hustle Basics
  • Side Hustle Job Board (Remote & Part-Time Jobs)
  • Gig App Reviews
  • Job Hunting
  • Manage Your Money
  • The Gig Apple: News & Events

Company

  • About Us
  • Contact Us
  • Become a Contributor
  • Advertising & Sponsorships
  • Partner With Us
  • Editorial Guidelines

Side Hustles © All rights reserved

  • Privacy Policy
  • Terms of Service

Thanks for using our free job board

Your review would mean a lot to us.

If you love that we're just giving away remote jobs for free with no paywall, please spread the word. (You will need to create an account on Trustpilot, for which we'll be eternally grateful.) Good luck out there!

Leave a Review Not yet. Send me to the job post.