Responsibilities*
- Responsible for the development and execution of the vulnerability identification technology strategy
- Hands on proof-of-concept testing of next generation Vulnerability identification technologies
- Deliver routine Project progress updates to Senior Executive Leadership
- Responsible for vulnerability scanning platforms optimization and resiliency
- Responsible for the mapping of vulnerability identification gaps with remedial technology solutions
- Maintain relationships with Vulnerability Management Solutions Providers and Technology implementation partners
- Responsible for Technology-based thematic issue tracking, resolution, and reporting
- Key participants to Vulnerability Identification Incident Management & Response.
- Provide technical guidance and mentorship to team members
Requirements*
Education* : Bachelor’s and/or master’s degree in computer science, Information Technology or related field
Certifications (If Any) : Qualys VMDR preferred, Relevant certifications such as CISSP, CISM, ISO 27001, NIST is a plus
Experience Range* : 8+ Years
Foundational Skills:
- Hands-on technical experience deploying an Industry-leading Vulnerability Identification Scanning Solution(s) (Qualys and Tenable)
- Working knowledge of Network architecture and Engineering concepts
- Experience with deploying and managing cloud-based Vulnerability scanning solutions
- Superior sense of urgency and ability to accurately prioritize deliverables
- Good written and verbal communication Skills
Desired Skills:
- BS or MS in Information technology/security or related areas of study
- Experience with establishing and maintaining integration between Vulnerability identification tools and Vulnerability Management Workflows (e.g. ServiceNow)
- Familiarity with mainstream attacker techniques, tactics, and procedures (i.e. MITRE ATT&CK Framework)
- Experience with deploying and managing Cloud-based Vulnerability scanning solutions
- Familiarity with compliance regulations, frameworks, and certifications (e.g., NIST, FFIEC.)
- Experience with Vulnerability ratings methodologies
- Background in Windows & UNIX platform Administration
- Experience with a scripting language(s)
Official notification