Job Opportunities API

The Public Ledger of Openings

← Back to the ledger

Senior Security Vulnerability Engineer

Rockstar Games
CompanyRockstar Games
CategoryEngineering
LocationBengaluru
RemoteOn-site (inferred)
EmploymentNot stated
LevelSenior
SalaryNot stated by the employer
Posted5 Aug 2026
Last verified8 Aug 2026
SourceEmployer ATS (greenhouse)
Applications are handled by the employer, not by us.Apply on the employer's site →
Description
At Rockstar Games, we create world-class entertainment experiences.  Become part of a team working on some of the most rewarding, large-scale creative projects to be found in any entertainment medium - all within an inclusive, highly-motivated environment where you can learn and collaborate with some of the most talented people in the industry. Rockstar is on the lookout for a passionate Senior Security Vulnerability Engineer to own the health, reliability, and performance of the tooling that drives our vulnerability management program. This is a hands-on platform engineering role focused on keeping vulnerability scanning, asset inventory, and reporting systems running reliably and producing accurate data. You will serve as the technical backbone of the Vulnerability Management team by ensuring scans run on schedule, data accurately reflects our network, and the tools our analysts depend on are configured, patched, tuned, and operating effectively. This role centers on administering and troubleshooting platforms that support vulnerability management across on-prem, cloud, and hybrid environments. This is a full-time, in-office position based out of Rockstar’s large game development studio in Bangalore, India. WHAT WE DO The Rockstar Games Security team is responsible for advancing the state of information security across the company globally in collaboration with numerous partners and stakeholders by prioritizing and executing security initiatives that drive down risk. We strive to understand the threat landscape affecting our development studios, the gaming industry, and the world at large to define information security policies, standards, and procedures to safeguard our business and protect our players. We lead efforts to build enterprise security controls ranging from endpoint protection technologies to security incidents and event monitoring solutions. We have a passion for identifying threats and vulnerabilities and coming up with clever solutions to mitigate or remediate those risks. RESPONSIBILITIES Administer, maintain, and troubleshoot Tenable Nessus and Tenable Security Center, including scanner deployment, upgrades, plugin updates, scan policy configuration, and credentialed scan tuning. Own the lifecycle of vulnerability management tooling infrastructure, including provisioning, patching, capacity planning, and decommissioning aging scan infrastructure. Maintain and troubleshoot integrations across the vulnerability management tool ecosystem, including asset inventory, endpoint telemetry, cloud posture, and related security platforms. Pull, compile, and present monthly patch compliance data by translating raw findings into clear metrics and reporting for stakeholders and leadership. Diagnose and resolve scan failures, credential issues, coverage gaps, false positives or negatives, and data-quality problems affecting reporting accuracy. Tune scan configurations to balance coverage, performance, and impact on production systems. Develop scripts and lightweight automation using Python, APIs, or similar technologies to reduce manual effort and improve data consistency. Document tool configurations, runbooks, and standard operating procedures.  Partner with infrastructure, cloud, and application teams to ensure scan coverage across on-prem, cloud, and hybrid environments.  REQUIREMENTS 5+ years of experience in security engineering, infrastructure, or vulnerability management role with direct, hands-on ownership of vulnerability scanning tools. Demonstrated administration experience with Tenable Nessus and/or Tenable Security Center, including scanner deployment, policy management, and troubleshooting. Strong understanding of vulnerability management concepts, including CVEs, CVSS, authenticated and unauthenticated scan types, and asset coverage. Working knowledge of networking, including TCP/IP, firewalls, ports, and protocols, sufficient to diagno