Information Security Engineer - Vulnerability Management III
New
H
Hudson ManpowerInformation Security
United StatesFull-TimeSenior
Salary not disclosed
Apply NowOpens the employer's application page
Job Details
- Required Skills
- AWSPythonServiceNow
Requirements
- Proven consistent experience in vulnerability management, security engineering, and security consulting.
- Proven experience with proactive threat management, research, escalation, and discovery.
- Solid understanding of popular security tooling and security architecture/interconnectedness.
- Excellent communication and presentation skills with a background of presenting to senior leaders and large groups.
- Lead and implementation experience for security projects.
- Proficiency with Brinqa is required.
- Experience with Qualys, Archer, ServiceNow, Checkmarx, and Prisma preferred.
- Scripting and automation experience, specifically Python, is preferred.
- Knowledge of AWS solutions and architecture is preferred.
- CISSP, CISA, CISM, or AWS Solutions Architect certifications are preferred.
- Experience with GRC/audit management is preferred.
Responsibilities
- Define, deliver, and support enterprise security tools and architecture in collaboration with other teams.
- Enhance the Bank's network vulnerability management program for in-scope subsidiaries and affiliates.
- Define security environments and lead the implementation and onboarding of new applications, programs, processes, projects, and initiatives into the Enterprise Vulnerability Management Program.
- Communicate, escalate, support, and guide the resolution of open vulnerabilities, including infrastructure, application security, and configuration management vulnerabilities.
- Conduct security research on threats and remediation techniques, make recommendations to IS/IT teams, and oversee their implementation.
- Proactively monitor and investigate security alerts from managed security service providers and in-house security tools.
- Conduct risk assessments to evaluate the effectiveness of existing controls and determine the impact of proposed changes.
- Perform threat analysis and incident response by interpreting events.
- Serve as a security engineer/consultant on projects and share knowledge of industry best practices.
View Full Description & ApplyYou'll be redirected to the employer's site