NI
Senior Vulnerability Management Analyst
NetGO Inc.
- đ Worldwide
- Remote
- Senior
- 8 hours ago
- Vulnerability Management
- Nessus
- Burp Suite
- Metasploit
- Kali Linux
- Nmap
- DevSecOps
- FISMA
- FedRAMP
- CISSP
- CySA+
8 hours ago
100% Fully Remote Position
Responsibilities:
- Monitoring vulnerability scans and the status of scanning appliances in enterprise datacentersÂ
- Participating in deployment meetings, reviewing network topologies to place scanners in proper areas of networks to gain visibility to assess security postureÂ
- Running scheduled and ad hoc security reports detailing enterprise security postureÂ
- Researching and troubleshooting networking issues and events to find root-cause analysisÂ
- Develops risk-based mitigation strategies for networks, operating systems, and applicationsÂ
- Conduct continuous monitoring and evaluate the effectiveness of the enterprise's cybersecurity safeguards
- Review security vulnerabilities across a variety of technologies and environments to resolve high risk vulnerabilities to business assets.
- Review and define requirements for information security solutionsÂ
- Provide recommendations and guidance to the customer enabling program improvements and reducing risk across the enterprise.Â
Qualifications:
- Strong analytical and verbal communication skillsÂ
- Demonstrated ability to interact effectively with senior management and leadershipÂ
- 7-10 years of successful network and cloud-based troubleshooting experienceÂ
- Experience managing a large and complex networkÂ
- Maintain knowledge of applicable cyber defense policies, regulations, and compliance documents specifically related to vulnerability management.Â
- Expertise with tools such as Nessus, Burp Suite, Metasploit, Kali Linux, NMAP, Nikto, WPScan, SQLmap
- Ability to craft enterprise-specific implementation guidance for system owners who are attempting to satisfy NIST SP 800-53 controls.Â
- Experience with an ISCM tool and leading ISCM tactics, tools, and proceduresÂ
- Experience and specialized training in DoDâs ACAS and HBSS systems, including Information Security Continuous Monitoring (ISCM) and Insider Threat (InT);Â
- Planning, execution, and assessment of threatsÂ
- Ability to conduct research on new and emerging information technologies and develop vulnerability assessment capabilitiesÂ
Preferred Qualifications:
- DevSecOps experience
- Experience with governance, risk assessment, and compliance for FISMA, FedRAMP, and NIST SP 800 series including NIST SP 800-37 and NIST SP 800-53, system security plans, security and privacy controls, POA&M management, assessment and authorization (A&A), Authority To Operate (ATO) and continuous monitoring processes
- Experience compiling and tracking vulnerabilities and mitigation results to quantify program effectiveness
- Experience creating and maintaining vulnerability management policies, procedures, and training
Education/Certifications/Licenses:
- Bachelor's degree in Computer Science, Information Technology, Cyber Security or related field, or equivalent combination of education and experience and training
- 10+ yearsâ of Vulnerability Assessment experience
- One or more of the following certifications:
- CISSP
- Security+Â
- Network+Â
- CySA+Â
- CompTIA
- The GIAC Security Essentials CertificationÂ
- Active Public Trust 6c clearance or higher or eligible for Public Trust 6c clearance
- Experience with governance, risk assessment and compliance for FISMA, FedRAMP, and NIST SP 800 series including NIST SP 800-37 and NIST SP 800-53, system
Senior Vulnerability Management Analyst · NetGO Inc.