
Vulnerability Management Analyst
Posted Aug 27

Posted Aug 27
This is a fully remote position, open to applicants in United States.
• Operate, maintain, and assist in the configuration of Wiz and Tenable scanning platforms across cloud assets, containers, data centers, network infrastructure, and endpoints.
• Analyze vulnerability data, minimize false positives, and prioritize risks by leveraging business context, CVSS scores, threat intelligence, and factors relevant to the payment industry.
• Collaborate with engineering, IT, and operations teams to advocate for patching initiatives, clarify technical risks, and monitor overdue SLAs.
• Track remediation efforts and report on risk posture to leadership.
• Maintain dashboards, reports, and key performance indicators (KPIs).
• Aid in PCI-DSS and other security audit and compliance initiatives by providing documentation of regular vulnerability scanning and remediation activities.
• Enhance vulnerability management processes, playbooks, and automated workflows to minimize exposure windows.
• Bachelor's degree in Cybersecurity, Computer Science, Information Technology, or a related technical discipline (or equivalent practical experience).
• A minimum of 3 years of hands-on experience in cybersecurity, IT, system administration, or risk management.
• Practical experience with enterprise scanning platforms, particularly Wiz and Tenable.
• Strong understanding of the vulnerability management lifecycle, CVEs, CVSS scoring, common attack vectors, and vulnerability exploitation.
• Familiarity with Tenable enterprise scanner technologies and Wiz cloud security/exposure management tools.
• Capability to analyze extensive vulnerability-scan datasets, identify trends, and generate actionable reports.
• Exceptional verbal and written communication abilities.
• Knowledge of Windows and Linux operating systems, cloud security fundamentals (AWS, Azure, or GCP), and enterprise networking.
• No sponsorship available; candidates must be eligible to work in the United States.
• Preferred: 5 years of relevant or hands-on experience.
• Preferred: experience in fintech, payment processing, or another highly regulated, fast-paced environment.
• Preferred: familiarity with PCI-DSS, NIST Cybersecurity Framework, and CIS Benchmarks.
• Preferred: experience using Jira.
• Preferred: basic scripting skills in Python, PowerShell, Bash, or API queries.
• CompTIA Security+, Network+, or eJPT certifications are advantageous but not mandatory.
• Comprehensive total rewards offerings.
• Benefits aimed at enhancing overall well-being.
• Unique initiatives that are personally and professionally rewarding.
• A diverse and inclusive work environment.
ICF
David Kennedy Recruitment Ltd.
Intel Corporation
Revolution Space
Get handpicked remote jobs straight to your inbox weekly.