Information Security Engineer - Vulnerability Management III

New
H
Hudson ManpowerInformation Security
United StatesFull-TimeSenior
Salary not disclosed
Apply NowOpens the employer's application page

Job Details

Required Skills
AWSPythonServiceNow

Requirements

  • Proven consistent experience in vulnerability management, security engineering, and security consulting.
  • Proven experience with proactive threat management, research, escalation, and discovery.
  • Solid understanding of popular security tooling and security architecture/interconnectedness.
  • Excellent communication and presentation skills with a background of presenting to senior leaders and large groups.
  • Lead and implementation experience for security projects.
  • Proficiency with Brinqa is required.
  • Experience with Qualys, Archer, ServiceNow, Checkmarx, and Prisma preferred.
  • Scripting and automation experience, specifically Python, is preferred.
  • Knowledge of AWS solutions and architecture is preferred.
  • CISSP, CISA, CISM, or AWS Solutions Architect certifications are preferred.
  • Experience with GRC/audit management is preferred.

Responsibilities

  • Define, deliver, and support enterprise security tools and architecture in collaboration with other teams.
  • Enhance the Bank's network vulnerability management program for in-scope subsidiaries and affiliates.
  • Define security environments and lead the implementation and onboarding of new applications, programs, processes, projects, and initiatives into the Enterprise Vulnerability Management Program.
  • Communicate, escalate, support, and guide the resolution of open vulnerabilities, including infrastructure, application security, and configuration management vulnerabilities.
  • Conduct security research on threats and remediation techniques, make recommendations to IS/IT teams, and oversee their implementation.
  • Proactively monitor and investigate security alerts from managed security service providers and in-house security tools.
  • Conduct risk assessments to evaluate the effectiveness of existing controls and determine the impact of proposed changes.
  • Perform threat analysis and incident response by interpreting events.
  • Serve as a security engineer/consultant on projects and share knowledge of industry best practices.
View Full Description & ApplyYou'll be redirected to the employer's site
View details
Apply Now