Staff Security Engineer
Job Summary
Please Note:
1. If you are a first time user please create your candidatelogin account before you apply for a job. (Click Sign In > Create Account)
2. If you already have a Candidate Account please Sign-In before you apply.
The Elevator Pitch: Why will you enjoy this new opportunity
Broadcom VMware Cloud Foundation (VCF) products and services are trusted by various organizations for their mission critical systems. Many of these systems demand the highest confidentiality and are of extreme interest to nation state actors. The SCOPE team within the VCF Division at Broadcom is responsible for defending these products services and their supply chains.
If helping find and fix security holes in these systems is your idea of a fun career then you should come join this team. Working alongside other highly motivated and capable security engineers you will get first-hand experience in modern threats attack and defense techniques.
Success in the Role: What are the performance outcomes over the first 6-12 months you will work toward completing
Security Engineers on the team are responsible for triage investigation management and communication of security vulnerabilities reported by external researchers. You will be responsible for assessing threats analyzing externally reported vulnerabilities supporting teams in providing vulnerability mitigations virtual patches workarounds and fix recommendations. You will maintain the highest quality of work while driving programs to completion prioritizing incoming requests contending priorities and managing high profile communications. You will work closely with a variety of teams across Broadcom to achieve our goal of protecting our customers. The role will focus on the growth and management of VCF products from a security perspective and will require involvement in the authoring of VMware Security Response Center (vSRC) communications including security advisories blogs and knowledge base articles.
The Work: What type of work will you be doing What assignments requirements or skills will you be performing on a regular basis
Oversee all aspects of the security response process from triage to remediation and communication of high profile externally reported vulnerabilities
Reproduce externally reported vulnerabilities assess for lateral impact and develop proof of concepts for those vulnerabilities
Use Claude Code or similar AI agentic coding tools to be effective at scale
Design AI agentic workflows to triage and assess incoming reports
Build multi-step reasoning AI agents capable of autonomous static analysis dynamic scanning and automated patch generation
Work with tools such as Blackduck Burp Nessus and Coverity for security defect discovery. Be familiar with OSS vulnerability discovery platforms like vulnhub GHSA openwall etc.
Assess OSS vulnerabilities for potential impact to VCF products
Proficient in Python and at least one of C/C or Java
Monitor and develop intelligence sources to maintain situational awareness of the cyber threat landscape
Work with a diverse group of stakeholders from technical to executive level
Bachelors degree in Computer Science or related field and 8 years of related experience or Masters degree in Computer Science or related field and 6 years of related experience
Broadcom is proud to be an equal opportunity employer. We will consider qualified applicants without regard to race color creed religion sex sexual orientation national origin citizenship disability status medical condition pregnancy protected veteran status or any other characteristic protected by federal state or local law. We will also consider qualified applicants with arrest and conviction records consistent with local law.
If you are located outside USA please be sure to fill out a home address as this will be used for future correspondence.
Required Experience:
Staff IC
About Company
Broadcom Inc. is a global technology leader that designs, develops and supplies a broad range of semiconductor, enterprise software and security solutions.