Enterprise Security Posture Management Analyst overseeing vulnerabilities and configurations across environments for Black & Veatch. Collaborating with IT on remediation efforts and security enhancements.
Responsibilities
Oversee the identification, assessment, and mitigation governance of vulnerabilities and configuration weaknesses
Conduct continuous vulnerability assessments and verify appropriate coverage is maintained across on premises and cloud environments
Perform configuration reviews to detect and prioritize risks in networks, systems, applications, and cloud infrastructures
Enrich vulnerability data with threat intelligence, perform risk assessments, and manage escalations for critical issues
Continually improve vulnerability and configuration management programs, including policies, procedures, and tools for continuous monitoring and remediation capabilities
Coordinate remediation efforts with cross-functional teams, ensuring timely patching, configuration hardening, and mitigation strategies
Create and maintain metrics, dashboards, and reports on trends, remediation progress, and program effectiveness for senior leadership
Drive automation initiatives for scanning, reporting, and compliance checks to enhance efficiency and scalability
Requirements
Bachelor’s degree in Computer Science, Information Security, Cybersecurity, or a related field or equivalent experience
6+ years of experience in cybersecurity, with at least 3-5 years focused on vulnerability and configuration management
Proven experience managing vulnerability programs in on-premises, cloud (e.g., AWS, Azure, GCP), and hybrid environments
Relevant certifications such as CISSP, CISM, CEH, GIAC, or equivalent are highly desirable
Proficiency with vulnerability scanning and management tools like Qualys, Nessus, Tenable, Rapid7, or similar platforms
Strong knowledge of configuration management standards and Cloud Security Posture Management (CSPM)
Analytical skills for risk assessment, data enrichment, and trend analysis
Experience with scripting and automation languages (e.g., Python, PowerShell) for process optimization and integration
Security Officer II ensuring safe environment for patients and visitors at Sutter Health. Responsibilities include patrolling and monitoring, access control, and incident investigation.
Security Business Partner working in a hybrid model coordinating cybersecurity strategies for Liebherr Hotels. Leading projects and ensuring risk - based decision - making in hospitality technology.
Senior Cyber Security Engineer responsible for designing scalable security solutions and mentoring team members at Sonepar. Involved in cloud migration and ensuring protection against evolving threats.
Consultant for Cyber Security at UNITY, advising clients on effective security strategies and implementations to build trust in digital futures. Engage in client transformation for sustainable security programs.
Cyber Security Specialist responsible for monitoring and defending against cyberattacks for an international bank in Zurich. Focus on threat intelligence, incident response, and cyber security compliance.
IT Security Specialist managing security processes and responding to incidents for a technical service company. Collaborating on internal audits and enhancing IT security strategies.
Head of IT Infrastructure and Security managing strategy and operations for banking IT service. Leading expert teams in IT security, infrastructure, and modernization with a focus on high availability.
Cybersecurity Governance expert managing cybersecurity efforts for international logistics and services company. Enhancing frameworks, reporting, and conducting gap analyses and pen tests.
Activity Security Representative providing multi - disciplined security support for Collateral and Special Access Programs. Responsibilities include document control, inbound and outbound mail processing, and personnel security maintenance.