background_image
  • IMAGE: Return to Main
  • IMAGE: Show All Jobs


Position Details: Sr. Vulnerability Analyst-945089SE

Location: Hillsboro, OR
Openings: 1
Job Number:

Share

Description:

Sr. Vulnerability Management Analyst

The Sr. Vulnerability Management Analyst is part of the CIS Security Operations Vulnerability Management Team, that participates in the attack surface reduction of global computing assets through the identification and assessment of vulnerabilities. The Sr. Analyst is responsible for analysis of the data generated by the vulnerability management solutions, coordination with external stakeholders regarding their patching program effectiveness and completion of day to day tasks associated with vulnerability management program.

Job Responsibilities

  • Review security vulnerabilities across a variety of technologies and environments to determine high risk vulnerabilities to business assets
  • Provide technical vulnerability analysis and remediation options
  • Lead meetings with business stakeholders to ensure remediation efforts adhere to corporate standards and policies
  • Provides analysis/validation of remediation actions taken, opportunities for improvements and out of the box thinking for optimizations and solving road blocks
  • Schedule and perform reoccurring scanning activities of both corporate and cloud environments utilizing enterprise platform
  • Configure vulnerability platform reporting, asset tagging and exception tracking to enable accurate business line reporting for metrics program
  • Validate and confirm accuracy and scope of scanning infrastructure with other Technology teams through both manual and automated processes
  • Identify attack surface reduction opportunities via vulnerability data analysis, trends and asset meta data review
  • Perform vulnerability risk analysis on submissions from responsible disclosure program
  • Interface with other CIS organizations such as Governance, Risk and Threat Intelligence to report on program status and coordinate risk tracking
  • Maintain and compose operational process documentation regarding program execution
  • Provide mentorship and training to junior members to the team on vulnerability analysis & risk ratings

What We're Looking For:

To make it clear, we're not looking for just anyone. We're looking for someone special, someone who has in-depth experience and clearly demonstrates these skills:

  • Bachelor's degree in Computer Science, Information Technology, Cyber Security, or related discipline
  • 5+ years of IT professional experience, with 2 in an Information Security Role
  • Vulnerability Assessment solutions such as Tenable Nessus, Rapid7 Nexpose, Qualys, WhiteHat, HP Fortify, Veracode, AppSpider
  • Strong technical understanding of CVSS, OWASP Top 10 and Vulnerability Exploitability ratings
  • Intermediate to Proficient in a scripting language such as Python, PowerShell
  • Previous experience working in large scale environments with diverse technologies
  • Understanding of a variety of technical concepts such as: Networking, systems administration, application development, cloud computing and information security best practices
  • Experience with data analytics with the ability to provide qualitative analysis and recommendations
  • Strong verbal and written communication skills
  • Strong organizational and/or Agile project management skills
  • Ability to develop strong working relationships with a variety of other enabling teams
  • Strong attention to detail, data accuracy, and data analysis
  • Self-motivated and operates with a high sense of urgency and a high level of integrity

Required

  • APPLICATION DEVELOPMENT
  • DATA ANALYSIS
  • DATA ANALYTICS
  • INFORMATION SECURITY
  • NESSUS

Additional

  • NETWORKING
  • NEXPOSE
  • PROJECT MANAGEMENT
  • QUALITATIVE ANALYSIS
  • QUALYS
  • SECURITY
  • SYSTEMS ADMINISTRATION
  • VULNERABILITY ASSESSMENT
  • CYBER SECURITY
  • DOCUMENTATION
  • GOVERNANCE
  • MARKETING ANALYSIS
  • META DATA
  • METRICS
  • OPERATIONS
  • PROCESS DOCUMENTATION
  • PYTHON
  • QUANTITATIVE
  • REMEDIATION
  • RISK ANALYSIS
  • SCANNING
  • SCRIPTING
  • TRAINING

Perform an action:

IMAGE: Apply to Position
mautic is open source marketing automation




Powered by: CATS - Applicant Tracking System