Security Analyst managing third-party vulnerability data sources and executing scans with Sompo tools. Collaborating with IT teams to prioritize remediation efforts and generate metrics.
Responsibilities
Analyze vulnerabilities from various sources and input them into the vulnerability management tool using approved methods to ensure a complete overview of exposures.
Evaluate existing vulnerabilities to find problem areas or opportunities for mass-mitigation.
Communicate with other teams to explain the opportunities or needs.
Escalate vulnerabilities that have breached our time to resolve limits.
Configure scanning tools and manage scan schedules.
Collect a set of metrics and KPIs for our departmental use.
Consider opportunities for AI to improve all of the above.
Requirements
Strong familiarity and prior experience with HTTP, PKI and signatures encryption, SMTP, DNS, CWEs, CVEs, and other frameworks.
Nessus, NMAP, ZAP, BurpSuite, Invicti, Nuclei or other scanning tools.
Web application scanning and web application firewalls.
Containers.
CIS benchmarks, STIGs, or other security hardening standards.
SAML, Kerberos, OAuth, OIDC, LDAP.
Powershell and Python.
Jenkins.
Splunk data onboarding indexes, sourcetypes, data models, forwarders, apps, HECs.
Senior penetration tester responsible for advanced security testing in various sectors at Combitech. Collaborating with a team of experts, focusing on real threat simulations and enhancing security measures.
Physical Security Specialist managing corporate security operations for a global media company in South Korea. Leading security projects, vendor management, and cross - functional collaboration.
Security Engineer enhancing security capabilities for organizations through automation and collaboration. Building secure services and infrastructure in a dynamic engineering environment.
Senior Cloud Security Architect designing and implementing secure architectures across hybrid and multi - cloud environments. Collaborating with teams to drive security strategies aligned with business objectives.
Drive implementation of security controls across all organization including client facing environments. Senior role working cross - functionally with teams to promote security best practices.
Network Security Engineer securing cloud and AI technologies at Marvell, designing robust security strategies and managing security operations in a global environment.
IT Security/System Administrator maintaining and optimizing IT infrastructure for health care organization. Responsible for security controls, system performance, and user support.
Senior Auditor focusing on digital technology and cybersecurity at GE Vernova. Transforming internal audit capabilities and ensuring effective cybersecurity audit practices.
Audit Manager at GE Vernova managing Digital Technology & Cybersecurity audits. Leading risk - based audits and enhancing audit effectiveness through data analytics tools and team collaboration.
Vice President, Concierge Security at Arctic Wolf transforming cybersecurity concierge services using AI and operational excellence. Strategic role focusing on customer engagement, operational excellence, and team leadership.