Vulnerability Management Specialist
3 weeks ago
A financial firm is looking for a Vulnerability Management Specialist in Iselin, NJ or NYC. Compensation: $105-110kResponsibilities: As part of the IT Security team, develop and implement firm IT Strategy in consultation with the IT teams, ensuring that all initiatives are mirrored in respective strategies including the overall firm Strategy Research new security related products and services to ensure that firm is equipped with appropriate industry best tools and solutions Operate controls related to SIEM, DLP, Vulnerability Management, Cyber Threat Intelligence, Endpoint Protection, etc with an emphasis on cloud deployments and implementations. Conduct IT Security risk assessments for all high impact projects, defining security mitigating controls that impact the technology architectures of firm, service providers, and business partners Review and update IT Security procedures to reflect best practice and mitigate current and emerging threats Assigned ownership of IT Security Monitoring and Response related FRB and Internal Audit finding(s) and effective /timely resolution with IT Security Maintain relationships with third-party IT security vendors and strategic partnersVulnerability Identification: Scanning Systems: Use automated tools to perform regular scans on all systems including Networks, Application and endpoints. Threat Client: Stay updated with the latest vulnerability databases (e.g CVE – Common Vulnerability and Exposure) and emerging threats to identify new vulnerabilities that could affect the organization.Vulnerability Identification: Risk Rating: Assign severity ratings to vulnerabilities (e.g. Critical, High, Medium, low) using risk assessment frameworks like CVSS (Common Vulnerability Scoring System) Business Impact: Access the potential impact of each vulnerability on the business including the like hood of exploitation, potential data loss and possible operational disruptions.Vulnerability Remediation: Patch Management: Work with IT and development teams to ensure that patches or updates are applied to systems and applications to fix vulnerabilities. Configuration Changes: Where applicable, make configuration changes to systems or applications to reduce exposure to VulnerabilitiesQualifications: Virtualized and Cloud platforms experience such as Amazon Web Services, Microsoft Azure or Office 365 S. in a technology discipline (Computer Science, Computer Engineering, Cybersecurity or equivalent); Conduct regular vulnerability scans and assessments across the organization's IT environment using tools like Nessus, Qualys, or Rapid7. These platforms are essential for identifying and prioritizing security weaknesses, providing detailed insights that enable proactive risk reduction. Analyze vulnerabilities and threats, determine their potential impact, and recommend strategies for risk prevention. Coordinate with IT and security teams to prioritize and apply security patches and updates, including managing patch deployments using WSUS, SCCM, or Ansible which are critical for automating and streamlining the update process across large networks, reducing the risk of security breaches, and ensuring compliance with industry standards. Assist in investigating and resolving security incidents, providing expertise on vulnerability exploitation and mitigation. Generate detailed reports on vulnerabilities, their impact, and the status of remediation efforts. Communicate findings to stakeholders. Ensure compliance with relevant security standards, policies, and regulations. Develop and maintain vulnerability management documentation, including policies, procedures, and playbooks, including creating response plans for critical vulnerabilities or emerging threats. Engage in vulnerability management program reviews and continuous improvement initiatives, providing input on enhancements to scanning and reporting processes. Virtualized and Cloud platforms experience such as Amazon Web Services, Microsoft Azure or Office 365 S. in a technology discipline (Computer Science, Computer Engineering, Cybersecurity or equivalent); Security certifications such as CISSP and at least one GIAC GSEC, GCED, GCIA, GCIH, GREM, GCFR or equivalent is preferred Knowledge of incident handling life cycle based on an established framework: ISO 27035, SANS, NIST SP 800-61, CERT, ENISA Experience with security and automation: Python, Powershell, Windows OS, Linux OS, VMware, Puppet, Chef / Ansible desirable
-
Vulnerability Management and Cyber Controls Lead
2 weeks ago
New York, United States Apollo Global Management, Inc. Full timePosition OverviewAt Apollo, we’re a global team of alternative investment managers passionate about delivering uncommon value to our investors and shareholders. With over 30 years of proven expertise across Private Equity, Credit, and Real Estate, we’re known for our integrated businesses, strong investment performance, and value-oriented philosophy —...
-
Vulnerability Management
2 weeks ago
New York, United States The Dignify Solutions LLC Full timeDesign, implement, and manage a comprehensive vulnerability management program aligned with industry best practices (e.g., NIST CSF). 8-12 years of experience in vulnerability management and security operations. Proven experience in designing, implementing, and managing vulnerability management programs. Strong understanding of vulnerability assessment tools...
-
Vulnerability Management Analyst
1 week ago
New York, New York, United States Jobs via Dice Full timeSoftware Guidance & Assistance, Inc., (SGA), is searching for aVulnerability Management Analystfor aCONTRACT assignmentwith one of our premierFinancial Services clientsin lower Manhattan, NYC. He or she will need to be onsite for 3 days/week (most likely 5 days/week for 1 st few weeks) and be able to work alternating shifts on occasion - 7:00 am-3:30 pm or...
-
Vulnerability Management and Cyber Controls Lead
4 weeks ago
New York, United States Apollo Inc Full timePosition Overview At Apollo, we're a global team of alternative investment managers passionate about delivering uncommon value to our investors and shareholders. With over 30 years of proven expertise across Private Equity, Credit, and Real Estate, we're known for our integrated businesses, strong investment performance, and value-oriented philosophy - all...
-
New York, United States S&P Global Full timeAbout the Role :Grade Level (for internal use):12S&P Global CorporateThe Role: Associate Director – Vulnerability ManagementThe Team: You will be part of the Corporate Cyber Security team that develops and oversees the company's security program, ensuring the company is protected from existing and emerging threats. This team operates at the forefront of...
-
Vulnerabilities, Patch
1 week ago
New York, United States Natixis Full timeJob DescriptionNatixis is seeking a Vulnerabilities, Patch & Obsolescence Management Engineer to join our User Infrastructure team. In this pivotal role, you will lead the patch management activities for workstations and printers, proactively identify and remediate vulnerabilities reported by our Head Office or vendors, and manage the lifecycle of both...
-
New York, United States Google Full timeSecurity Consultant, Application and Vulnerability Management, Public Sector Minimum qualifications Bachelor's degree in Computer Science, Information Systems, Cybersecurity, a related technical field, or equivalent practical experience. 5 years of experience in delivering cyber outcomes, identifying mission risks, and devising solutions. Experience with...
-
New York, New York, United States Google Full time $132,000 - $194,000Minimum qualifications:Bachelor's degree in Computer Science, Information Systems, Cybersecurity, a related technical field, or equivalent practical experience.5 years of experience in delivering cyber outcomes, identifying mission risks, and devising solutions.Experience with evaluating infrastructure and web application security vulnerabilities, assessing...
-
Vulnerability Management Analyst
1 week ago
New Bedford, Massachusetts, United States Centuria Full time $60,000 - $120,000 per yearJob Title: Vulnerability Management AnalystLocation: Hanscom AFB, MAClearance: SecretProgram: BLITS 3.0Company/ Program Description: Centuria, a Service-Disabled Veteran-Owned Small Business (SDVOSB), has been delivering IT, Engineering, and Scientific solutions to the Federal Government since 2002. During our two decades of service, we have earned the trust...
-
New York, New York, United States Google Full time $132,000 - $194,000 per yearMinimum qualifications:Bachelor's degree in Computer Science, Information Systems, Cybersecurity, a related technical field, or equivalent practical experience.5 years of experience in delivering cyber outcomes, identifying mission risks, and devising solutions.Experience with evaluating infrastructure and web application security vulnerabilities, assessing...