Demo

Baseline Hardening Engineer - w2

SIDRAM TECHNOLOGIES
Oakland, CA Contractor
POSTED ON 12/13/2025
AVAILABLE BEFORE 6/10/2026
Position - Expert Vulnerability & Baseline Hardening Engineer

Location - Oakland, CA.

Job Description

Expert Vulnerability & Baseline Hardening Engineer

The Expert Vulnerability & Baseline Hardening Engineer will support the

Secure Technology Solutions Sustainability (STS) service by operating

core vulnerability scanning platforms and implementing the enterprise

hardening baseline and CSPM (Cloud Security Posture Management)

architecture. This role is divided approximately 50/50 between (1)

administering and optimizing existing scanning solutions, and (2)

deploying baseline-hardening and CSPM tooling and processes across the

enterprise.

Key Responsibilities

Vulnerability Scanning Operations

Maintain and operate enterprise vulnerability scanning platforms, with

an emphasis on network-based scanning tools such as Rapid7

Nexpose/InsightVM and Qualys VM.

Support automation across on-prem and SaaS scanning tools (e.g., Rapid7,

Qualys, Nucleus), including integration into workflow platforms such as

Jira/Ivanti and credential stores such as CyberArk/Azure Key Vault.

Ensure stability, coverage completeness, and accurate configuration of

all vulnerability scanning solutions, including authenticated scanning

of network appliances.

Analyze improvement opportunities and implement platform enhancements in

partnership with STS engineers and vendors (e.g., improved coverage,

tuning, reporting, and configuration updates).

Document operational procedures, automation workflows, configuration

standards, and changes to scanning coverage or performance.

Hardening Baseline & CSPM Architecture Implementation

Deploy and operationalize tools supporting hardening baseline scanning

and CSPM, including Qualys Policy Compliance, Rapid7 Policy/Benchmark

Scanning, Microsoft Defender for Cloud, Aqua, and CrowdStrike.

Build and maintain hardening baseline and CSPM scan templates; ensure

Comprehensive Asset Onboarding And Subscription To All Required Scans.

Operate the recurring compliance and posture-management cycle: generate

reports, distribute findings to stakeholders, support prioritization,

and provide remediation assistance or consultation.

Establish and maintain documentation for scanning standards, operational

workflows, asset onboarding procedures, reporting processes, and

remediation guidance.

Stakeholder Support & Ticket Management

Respond to vulnerability-related inquiries and tickets using established

STS processes and service workflows.

Assist stakeholders in interpreting scan results, identifying false

positives, and resolving configuration or remediation challenges.

Skills/Experience

Minimum Qualifications

2 w/Bachelors degree

Additional Experience

7 year of experience in information security solution implementation or

security service delivery.

Knowledge, Skills, Abilities

Experience with vulnerability scanning platforms (Rapid7, Qualys, Aqua,

or similar).

Experience Implementing Compliance, Configuration Baseline, Or CSPM

solutions.

Experience With Designing And Implementing Automation For Repetitive

processes and workflows.

Familiarity with cloud environments and CSPM technologies (e.g.,

Microsoft Defender for Cloud).

Strong Documentation Skills And Ability To Operationalize Repeatable

processes.

Ability to collaborate with engineers, application teams, and vendors to

drive improvements.

Hourly Wage Estimation for Baseline Hardening Engineer - w2 in Oakland, CA
$84.00 to $99.00
If your compensation planning software is too rigid to deploy winning incentive strategies, it’s time to find an adaptable solution. Compensation Planning
Enhance your organization's compensation strategy with salary data sets that HR and team managers can use to pay your staff right. Surveys & Data Sets

What is the career path for a Baseline Hardening Engineer - w2?

Sign up to receive alerts about other jobs on the Baseline Hardening Engineer - w2 career path by checking the boxes next to the positions that interest you.
Income Estimation: 
$103,228 - $139,671
Income Estimation: 
$116,726 - $151,072
Income Estimation: 
$124,724 - $161,246
Income Estimation: 
$147,836 - $182,130
Income Estimation: 
$172,688 - $210,712
Income Estimation: 
$170,589 - $211,671
Income Estimation: 
$178,619 - $225,190
Income Estimation: 
$86,891 - $130,303
View Core, Job Family, and Industry Job Skills and Competency Data for more than 15,000 Job Titles Skills Library

Job openings at SIDRAM TECHNOLOGIES

  • SIDRAM TECHNOLOGIES Richmond, VA
  • Role: Full Stack Developer – Angular/Java/AWS (fullstack, heavier on angular) Location: Richmond or Mclean, VA(hybrid 2-3 days a week) Duration: 6 months t... more
  • 13 Days Ago

  • SIDRAM TECHNOLOGIES Cleveland, OH
  • Job Title: Tech Lead (Java, API & Integration, Web Services, Node.js, GCP) Location: Cleveland, OH (Onsite) Duration: 12-24 Months Mode of Interview: 1 Hac... more
  • 3 Days Ago

  • SIDRAM TECHNOLOGIES Dallas, TX
  • Hello, Good Morning! Hope you are doing well. This is Steve from Sidram Technologies. We have an immediate requirement for .NET Architect , and I have foun... more
  • 3 Days Ago

  • SIDRAM TECHNOLOGIES Santa Clara, CA
  • Hello, Good Morning! Hope you are doing well. This is Steve from Sidram Technologies. We have an immediate requirement for Senior Wireless Network Engineer... more
  • 3 Days Ago


Not the job you're looking for? Here are some other Baseline Hardening Engineer - w2 jobs in the Oakland, CA area that may be a better fit.

  • SIDRAM TECHNOLOGIES Oakland, CA
  • Hello, Good Morning! Hope you are doing well. This is Steve from Sidram Technologies. We have an immediate requirement for Expert Vulnerability & Baseline ... more
  • 1 Month Ago

  • Techlink Systems Walnut, CA
  • About the Role:We are on the lookout for a proficient Messaging Engineer to enhance our SSOC Messaging team’s capabilities. You will play a pivotal role in... more
  • 25 Days Ago

AI Assistant is available now!

Feel free to start your new journey!