Current jobs related to Associate Vulnerability Analyst - Rome NY United States - NYSTEC

  • Vulnerability Analyst

    1 month ago


    Rome, United States GENESYS Consulting Services, Inc. Full time

    Required QualificationsKnowledge of general cybersecurity concepts and methods, including but not limited to secure configuration management, data protection and privacy, security monitoring, incident response, governance, risk and compliance, patch management, enterprise security strategies, and architecture.Understanding of various operating systems...

  • Vulnerability Analyst

    2 months ago


    Rome, United States GENESYS Consulting Services, Inc. Full time

    Required QualificationsKnowledge of general cybersecurity concepts and methods, including but not limited to secure configuration management, data protection and privacy, security monitoring, incident response, governance, risk and compliance, patch management, enterprise security strategies, and architecture.Understanding of various operating systems...


  • Marysville, OH, United States Honda Development and Manufacturing of America Full time

    What Makes a Honda, is Who makes a Honda Honda has a clear vision for the future, and it's a joyful one. -We are looking for individuals with the skills, courage, persistence, and dreams that will help us reach our future-focused goals. At our core is innovation. Honda is constantly innovating and developing solutions to drive our business with record...


  • Alexandria, VA, United States Tyto Athene, LLC Full time

    Tyto Athene is searching for a Senior Vulnerability Management Analyst to assist our law enforcement customer in the development and maintenance of the full lifecycle of vulnerability management services from discovery, triage, advising, remediation, and validation. This is an on-site role with expectations of being on the client site in Alexandria, VA five...


  • Marysville, OH, United States Honda Development and Manufacturing of America Full time

    What Makes a Honda, is Who makes a HondaHonda has a clear vision for the future, and it’s a joyful one.  We are looking for individuals with the skills, courage, persistence, and dreams that will help us reach our future-focused goals. At our core is innovation. Honda is constantly innovating and developing solutions to drive our business with record...


  • Marysville, OH, United States Honda Development and Manufacturing of America Full time

    What Makes a Honda, is Who makes a HondaHonda has a clear vision for the future, and it's a joyful one. We are looking for individuals with the skills, courage, persistence, and dreams that will help us reach our future-focused goals. At our core is innovation. Honda is constantly innovating and developing solutions to drive our business with record...


  • Marysville, OH, United States Honda Development and Manufacturing of America Full time

    What Makes a Honda, is Who makes a HondaHonda has a clear vision for the future, and it's a joyful one. We are looking for individuals with the skills, courage, persistence, and dreams that will help us reach our future-focused goals. At our core is innovation. Honda is constantly innovating and developing solutions to drive our business with record...


  • Marysville, OH, United States Honda Development and Manufacturing of America Full time

    What Makes a Honda, is Who makes a HondaHonda has a clear vision for the future, and it’s a joyful one.  We are looking for individuals with the skills, courage, persistence, and dreams that will help us reach our future-focused goals. At our core is innovation. Honda is constantly innovating and developing solutions to drive our business with record...

  • Cybersecurity Analyst

    1 month ago


    Rome, New York, United States M.A. Polce Full time

    Job OverviewM.A. Polce is seeking a highly skilled Cybersecurity Analyst to join our team. As a key member of our security team, you will be responsible for configuring and utilizing various security tools to provide compliance reporting, alerting, and incident analysis.The ideal candidate will have a strong understanding of security frameworks, including...


  • Fort Lauderdale, FL, United States TSR Consulting Services, Inc. Full time

    Our client, a leading finance company, is hiring a Vulnerability Assessments Contractor on a contract basis.Job ID #: 80879Work Location: Fort Lauderdale, FL Summary: The Vulnerability Assessments Analyst - Red Team Contractor role will participate in the Adversary Emulation program by assisting with our Special Projects Tiger Team. This team will be...


  • Rome, New York, United States GENESYS Consulting Services, Inc. Full time

    Job Title: Vulnerability AnalystAt GENESYS Consulting Services, Inc., we are seeking a highly skilled Vulnerability Analyst to join our team. As a key member of our security team, you will be responsible for identifying and mitigating vulnerabilities in our systems and infrastructure.Key Responsibilities:Conduct thorough vulnerability assessments and risk...


  • New York, NY, United States Selby Jennings Full time

    A leading global investment firm with >$100bn AUM is looking to add a Private Credit Analyst or Associate to join the private credit team in New York, NY. The private credit strategy provides flexibility to invest across the debt capital structure, ranging from senior secured loans to junior, mezzanine and preferred equity solutions. The Private Credit...


  • Panama City, FL, United States The Computer Merchant, LTD (TCM) Full time

    JOB TITLE: Secret Cleared Information Security AnalystJOB LOCATION: Tyndall Airforce BaseWAGE RANGE*: $55hr to $60hrJOB NUMBER: RQ189424REQUIRED EXPERIENCE:Skills: Information Security, Information Systems, Risk ManagementCertifications: Security+, CE - CompTIA - Security+ CE - CompTIA, CompTIAExperience: 3 + years of related experienceJOB...

  • Network Analyst

    2 weeks ago


    Linthicum, MD, United States Links Technology Solutions Full time

    Links Technology Solutions is currently seeking an experienced Digital Network Analyst to fill an opening with an IT Services and IT Consulting company.Responsibilities of the Digital Network AnalystThis exciting role is part of a large team researching vulnerabilities of large-scale systems and developing assessments which are briefed to high level...


  • Panama City, FL, United States The Computer Merchant, LTD. Full time

    JOB TITLE: Secret Cleared Information Security Analyst While professional experience and qualifications are key for this role, make sure to check you have the preferable soft skills before applying if required. JOB LOCATION: Tyndall Airforce Base WAGE RANGE*: $55hr to $60hr JOB NUMBER: RQ189424 REQUIRED EXPERIENCE:Skills: Information Security, Information...


  • Solon, OH, United States Apolis Full time

    Job Title: Finance Analyst AssociateIf you want to know about the requirements for this role, read on for all the relevant information.Location : Solon, OH (Hybrid)Job Duration : 12+ Months ContractDescription:THIS IS A 12 MONTH+ CONTRACT ROLE. ONLY CANDIDATES LOCAL TO SOLON, OH AREA WILL BE CONSIDERED. MUST WORK ONSITE TUESDAYS, WEDNESDAYS AND THURSDAYS;...

  • Threat Analyst

    1 week ago


    Orlando, FL, United States ThreatLocker Full time

    ThreatLocker is a global leader in Zero Trust endpoint security. The ThreatLocker Zero Trust Endpoint Protection Platform combines Application Allowlisting, Ringfencing, Network Control, Storage Control, Elevation Control, and Endpoint Detection and Response solutions in ways that make security simple for the IT professional. ThreatLocker utilizes a deny by...


  • Tampa, FL, United States FEDITC - Federal IT Consulting Full time

    FEDITC, LLC is a fast-growing business supporting DoD and other intelligence agencies worldwide. FEDITC develops mission critical national security systems throughout the world directly supporting the Warfighter, DoD Leadership, & the country. We are proud & honored to provide these services. Overview of position:FEDITC is seeking a Cybersecurity Systems...


  • Rome, NY, United States BARTELL MACHINERY SYSTEMS, LLC Full time

    The PositionThis position is a member of the Distribution Center Department. The Global Logistics Analyst will report directly to the Production Control Manager. Job DescriptionPrimary ResponsibilitiesManage daily business and commercial activities between suppliers, customers, key logistic service providers, including inbound and outbound shipment...


  • , MA, United States General Dynamics Information Technology Full time

    Job SummaryWe are seeking a skilled Counterintelligence Analyst to join our team at General Dynamics Information Technology. As a Counterintelligence Analyst, you will play a critical role in ensuring the safety and security of our nation by providing day-to-day multi-discipline analysis to support sensitive activities and special access programs.Key...

Associate Vulnerability Analyst

1 month ago


Rome NY United States NYSTEC Full time
About Us:
NYSTEC is a nonprofit technology consulting company, advising agencies, organizations, institutions, and businesses since 1996. We're independent and vendor-neutral, so we have our clients' best interests at heart. At NYSTEC, we know that we succeed when individuals and teams flourish personally and professionally, so our benefits and perks support that mindset.
About the Role:
As an associate vulnerability analyst, you will assist the deputy chief information security officer (CISO) in orchestrating all phases of the vulnerability management cycle to support NYSTEC's information security initiatives. You will interface with staff and management across all levels of NYSTEC, as well as with external business partners, to ensure that NYSTEC's business critical functions and systems are secure and in accordance with best practices.
You will also lead the development of standards, processes, and technical solutions to enhance the maturity of NYSTEC's vulnerability program, with a focus on prioritizing vulnerabilities - using information about attack vectors - and establishing a vulnerability management program for both on-premises and cloud environments.
Key Responsibilities:


  • Lead the orchestration of all phases of the vulnerability management cycle, including asset identification and classification, vulnerability detection, remediation, verification, and reporting.


  • Implement mechanisms to detect vulnerabilities and determine how they may lead to corporate incidents, to enhance compliance with and support of security standards and procedures.


  • Work closely with members of the Information Systems Security Team and the IT Team to enhance and automate the prioritization and remediation of vulnerabilities.


  • Detect, analyze, interpret, evaluate, and integrate vulnerability data from multiple sources and formats for relevance to NYSTEC's environment; monitor and provide metrics on the threat level of vulnerabilities to the systems, software, and networks.


  • Actively investigate and validate the latest security vulnerabilities, advisories (e.g., Microsoft, Oracle, VMWare), and incidents and provide insights into relevance and threats to NYSTEC.


  • Plan, develop, configure, and execute vulnerability scans using tools such as Tenable-Nessus, Rapid7, and Qualys on a variety of corporate and business information systems, both on-premises and cloud based.


  • Assess potential threats and risks to systems and technologies, driving remediation with internal and external partners.


  • Identify attack surface reduction opportunities through vulnerability data analysis and threat models.


  • Work to build and scale security controls around vulnerability management as NYSTEC's security program expands in a rapidly growing portfolio of new applications and products.


  • Assist in scaling and automating NYSTEC's security infrastructure and developing technical standards and practices, such as integration with third-party systems, to automate workflows related to asset management, prioritization, and scanning coverage.


  • Proactively keep applicable members of management and leadership updated on risks, with relevant metrics articulating the progress on addressing.


  • Supervise the approval, tracking, and reporting of any security exceptions as the need arises.


  • Maintain knowledge of the threat landscape.


  • Exercise a high degree of confidentiality.


  • Demonstrate the NYSTEC Core Values and Behaviors.


  • All other duties as assigned.

    About you:
    Required Qualifications


    • Knowledge of general cybersecurity concepts and methods, including but not limited to secure configuration management, data protection and privacy, security monitoring, incident response, governance, risk and compliance, patch management, enterprise security strategies, and architecture.


    • Understanding of various operating systems (Windows, Unix, MacOS, etc.), cloud concepts (secure build images, cloud patching, etc.), and knowledge of networking fundamentals.


    • Hands-on experience with vulnerability management tools (e.g., Qualys, Tenable, Rapid7), including the ability to architect, deploy, configure, and operate.


    • Ability to conduct root cause analyses against vulnerabilities and to determine feasible technical solutions.


    • Knowledge of vulnerability scoring systems (Common Vulnerability Scoring System/Common Misuse Scoring System [CVSS/CMSS]).


    • Exceptional project management skills.


    • Effective written and verbal communication skills, time-management skills, and the ability to prioritize tasks efficiently.


    • Understands NYSTEC's mission, brand mindsets, and core values and can put the behaviors into practice.


    • To be considered for this role, candidates must be permanent residents of the state of New York.


    • Onsite work will be performed in Rome, NY.

      Preferred/Desired Qualifications


      • CompTIA cybersecurity analyst certification (CySA+) or similar certification in information security, or the ability to obtain such within one year.

        Education and Experience


        • Bachelor's degree in cybersecurity or a similar discipline and two years of experience with security management frameworks (e.g., National Institute of Standards and Technology [NIST], SysAdmin, Audit, Network, and Security [SANS], Secure Controls Framework [SCS]).


        • An equivalent combination of education, training, and experience will be considered.

          It is NYSTEC's policy to provide equal employment opportunity (EEO) to all individuals, regardless of actual or perceived race, color, creed, religion, sex, or gender (including pregnancy, childbirth, and related medical conditions), gender identity or gender expression (including transgender status), age, national origin, ancestry, citizenship status, physical or mental disability, protected medical condition as defined by applicable state or local law, genetic information, military service and veteran status, sexual orientation, marital status, or any other characteristic protected by local, state, or federal laws and ordinances. NYSTEC is strongly committed to this policy and believes in the concept and spirit of the law.
          Federal law requires employers to provide reasonable accommodation to qualified individuals with disabilities. Please contact recruitment@nystec.com if you require a reasonable accommodation to apply for or to perform this job. Examples of reasonable accommodation include making a change to the application process or work procedures, providing documents in an alternate format, using a sign language interpreter, or using specialized equipment.
          Applicants must be authorized to work in the United States without the need for visa sponsorship now or in the future.
          Learn more about NYSTEC by visiting www.nystec.com.