Cybersecurity Engineer
Job Description
Moody’s Cybersecurity team is responsible for helping the organization balance risk by aligning security policies and procedures with business and regulatory requirements. In this onsite role in Golden, CO, you will support enterprise security operations by proactively identifying vulnerabilities, managing remediation priorities, and improving how the platform security function operates across teams.
About the role
The Cybersecurity Engineer position for Platform Security centers on proactively identifying, managing, and resolving security vulnerabilities. The role emphasizes vulnerability management practices, structured security frameworks, and independent proficiency with Qualys and WIZ, along with ongoing improvement to security operations.
Responsibilities
- Proactively identify and resolve risks to the organization while continuously strengthening and improving the security environment
- Use vulnerability frameworks to assess and prioritize remediation efforts, including NIST, CVSS scoring, CWE, MITRE, OWASP, and CIS Benchmarks
- Maintain a consistent ticket closure rate above average, completing work within a four-day average and updating tickets with relevant information at least twice per week
- Prioritize security above other tasks, avoiding escalations and ensuring assigned work does not require follow-up
- Collaborate across technical and non-technical teams by providing clear, plain-language responses and maintaining visibility into work and its organizational impact
- Challenge existing processes, propose alternative solutions, and share knowledge to support business enablement through critical thinking and innovation
- Maintain independent-level proficiency in at least two supported technologies, with Qualys and WIZ required, and obtain at least one certification per year
- Complete minimum 50 hours of training annually to support professional development
Requirements
- 3–5 years of cybersecurity engineering experience within an enterprise environment, preferably in vulnerability management
- Hands-on experience with SQL and relational/database warehouse technologies
- Hands-on experience with Power BI, including creation and maintenance of dashboards; experience with Qualys, WIZ, and other relevant vulnerability management platforms
- Proficiency in Python and/or JavaScript for pipeline development, automation, and tooling
- Strong written and oral communication skills, including the ability to interact directly with non-technical internal customers
- Preferred certifications including CISSP, CISA, CEH, GSEC, or CRISC
- Prior experience in a global organization working within a team environment
- Basic understanding of artificial intelligence concepts, with curiosity and enthusiasm for using AI tools to improve processes and drive efficiency, including awareness of responsible AI practices covering risk management and ethical use
- Bachelor of Science or Bachelor of Arts degree (or relevant certifications), preferably in Information Systems, Computer Science, Computer Engineering, or equivalent
Technologies
- SQL, Power BI, Qualys, WIZ, Python, JavaScript
- NIST, CVSS scoring, CWE, MITRE, OWASP, CIS Benchmarks
Location and compensation
Golden, CO (onsite). Salary range: USD 95,500 - 138,550 per year. For US-based roles, the anticipated hiring base salary range is the same, depending on experience, education, level, skills, and location. This role is also eligible for incentive compensation.
Benefits
- Incentive compensation
- Medical, dental, vision
- Parental leave
- Paid time off
- 401(k) plan with employee and company contribution opportunities
- Life, disability, and accident insurance
- Discounted employee stock purchase plan
- Tuition reimbursement
Team context
The Cybersecurity team develops, enforces, and monitors security controls, policies and procedures, and disaster recovery programs. It also supports Governance Risk and Compliance reporting and delivers security services including the company’s Cybersecurity program. This mission-critical function protects and enables the business, with team members leveraging innovative technologies, including artificial intelligence, to stay ahead of an evolving threat landscape.
Equal opportunity and accommodations
Moody’s is an equal opportunity employer. All qualified applicants receive consideration without regard to protected characteristics under applicable law. Reasonable accommodation is available for qualified individuals with disabilities or based on sincerely held religious belief in accordance with applicable laws. If you need to inquire about a reasonable accommodation or assistance with completing the application process, email [email protected].
For San Francisco positions, qualified applicants with criminal histories will be considered consistent with the San Francisco Fair Chance Ordinance.
This position may be considered a promotional opportunity pursuant to the Colorado Equal Pay for Equal Work Act. Candidates for Moody’s Corporation may be asked to disclose securities holdings, and employment is contingent upon compliance with the Policy, including remediation of positions in those holdings as necessary.