Vulnerability Management Analyst

2 months ago


Hatfield, United States Core BTS Full time
Job DescriptionJob Description

Penetration Tester

Core BTS, Inc. Remote Contract to Hire


Through Core BTS Resource Management Services (RMS), we offer custom talent solutions to help our clients meet their evolving technology and business needs. We help effectively match the right technology professional to their organization, recruiting for contract, contract-to-hire, and direct roles. Our client in (area/region) has an immediate need for a (job title).Please note that this is a (contract/contract to hire/direct hire) opportunity with our client and NOT with Core BTS.


Location: Remote Full Time


Summary

Core BTS is looking for a Penetration Tester to join our growing and dynamic Red Team within our security practice. As a member of the security services consulting team, focused on Red Teaming, Penetration Testing, Vulnerability Assessments and Management, you will work in a collaborative environment to assist clients in the evaluation and remediation of security risks.


Essential Duties

Perform Red Team, Penetration Testing, and Social Engineering activities within Offensive Security Assessment projects.

Draft detailed vulnerability and risk remediation recommendations, reports, and plans for clients and the security findings of their vulnerability management processes.

Provide both technical-level and business-level reports, including presentations to articulate cybersecurity risks and recommendations.

Perform advanced technical cyber security assessments, including Penetration Testing and Red Team engagements, as required.

Monitor trending security vulnerabilities and risks within the industry, including weaponization of vulnerabilities and zero-day vulnerabilities.

Track high-severity vendor security updates and patches.


Technical Skills

Required

Penetration Testing Tools (such as, Metasploit, Cobalt Strike, etc.)

Tenable Vulnerability Product Suite (including, Tenable.sc,

Nessus Manager, and/or Nessus Professional)

Network Scanning Tools (including, NMAP and/or equivalent port/protocol scanning tools)

Microsoft Azure and/or Windows Security Policy Administration

Microsoft Active Directory Attacking Experience

Microsoft Windows and GNU/Linux Proficiencies (including, Command Line Interface access)

Application Vulnerability Scanning (such as, VeraCode, Snyk, SonarQube BurpSuite Professional, and/or equivalent web development security tools)

Web Application Security Testing (such as, BurpSuite, OWASP ZAP, Nikto, and/or equivalent web application testing tools)

Knowledge of the MITRE ATT&CK Framework


Preferred

Additional Vulnerability Scanning and Analysis Platforms (such as, Qualys, Nexpose, OpenVAS, etc.)

Scripting and/or Coding (such as, Perl, Python, Ruby, C/C++, Go, etc.)

Microsoft Windows System Administration

GNU/Linux System Administration (including, Debian and Red Hat derivative distributions)


Professional Experience

Required

Penetration Testing and/or Red Teaming

Vulnerability Assessments and/or Vulnerability Management

Technical and/or Offensive Security Assessment Report drafting and delivery

Technical Vulnerability Risking, Ranking, and Prioritization

Three or more (3+) years of experience in Cybersecurity (Vulnerability Management, Penetration Testing, Red Teaming, etc.)


Preferred

Vulnerability Research and/or Exploit Development

Cybersecurity Risk Management Lifecycle

Security Guidance and Consulting

Five or more (5+) years of experience in Cybersecurity (Vulnerability Management, Penetration Testing, Red Teaming etc.)


Education and Certifications

Required

Degree or equivalent professional experience in Cybersecurity or Information Technology

CompTIA Security+, or other entry-level cybersecurity knowledge certification

Practical Network Penetration Tester (PNPT)

OR Offensive Security Certified Professional (OSCP) and Offensive Security Wireless Professional (OSWP)


Preferred

Bachelors Degree in Cybersecurity, Information Technology, or Network Technology, or another related technical field.

One of the Following:

GIAC Certified Penetration Tester (GPEN, GXPN)

Certified Red Team Operator (CRTO)

Certified Red Team Professional (CRTP)


  • Finance Analyst

    1 week ago


    Hatfield, United States Ocado Group Full time

    Location: Hatfield; Hybrid (At least 2 days in the office)Explore New Challenges at Ocado Logistics!We're Hiring: Finance AnalystWe are seeking a Finance Analyst for a high-profile role in Logistics Finance, supporting one of our external retailers. This position offers a blend of financial planning, including budgeting, forecasting, and month-end reporting,...

  • IT Penetration Tester

    2 months ago


    Hatfield, United States Core BTS Full time

    Job DescriptionJob DescriptionThrough Core BTS Resource Management Services (RMS), we offer custom talent solutions to help our clients meet their evolving technology and business needs. We help effectively match the right technology professional to their organization, recruiting for contract, contract-to-hire, and direct roles.Job...

  • Finance Analyst

    6 days ago


    Hatfield, United States Ocado Group Full time

    Ocado Group is an equal opportunities employer and as such makes every effort to ensure that all potential employees are treated fairly and equally, regardless of their sex, sexual orientation, marital status, race, colour, nationality, ethnic or national origin, religion or belief, age, or disability or union membership status. About Us Our teams are...

  • Finance Analyst

    3 weeks ago


    Hatfield, United States Ocado Group Full time

    Ocado Group is an equal opportunities employer and as such makes every effort to ensure that all potential employees are treated fairly and equally, regardless of their sex, sexual orientation, marital status, race, colour, nationality, ethnic or national origin, religion or belief, age, or disability or union membership status. About Us Our teams are...

  • Accounting Analyst

    2 weeks ago


    Hatfield, Massachusetts, United States ITW Electrostatics Full time

    Company OverviewITW Electrostatics has established itself as a leader in the static control sector for over 80 years, delivering cutting-edge solutions that enhance safety, efficiency, and cost-effectiveness for clients globally. The organization prides itself on its extensive intellectual resources and international reach, promoting a culture of open...


  • Hatfield, Massachusetts, United States Softworld, a Kelly Company Full time

    Company Overview:Softworld, A KELLY company is looking for a Junior to Mid-Level IT Analyst / Production Support Analyst / Business Analyst with 1-2 years of experience in Oracle EBS, specifically within Manufacturing or Supply Chain modules.Position Title: Junior Oracle EBS Manufacturing Analyst - Direct HireIndustry: Chemicals/ManufacturingEmployment Type:...


  • Hatfield, Massachusetts, United States Zephyr Behavioral Healthcare Full time

    About the RoleZephyr Behavioral Healthcare is seeking a highly skilled and passionate Behavioral Therapist Supervisor to join our team. As a key member of our organization, you will play a vital role in shaping the lives of children with autism and their families.Key ResponsibilitiesConduct comprehensive assessments using VB-MAPP, Vineland, and other...


  • Hatfield, Massachusetts, United States Laboratory Testing Inc Full time

    Are you prepared to elevate your career in metallurgy? Look no further than Laboratory Testing Inc. We are at the cutting edge of essential materials analysis, where your work will contribute significantly to advancements in aerospace, marine engineering, and nuclear safety.We are seeking a Metallurgical Engineer to become an integral part of our team. This...


  • Hatfield, Massachusetts, United States Laboratory Testing Inc Full time

    Embark on a rewarding career as a Metallurgical EngineerAre you prepared to elevate your professional journey? At Laboratory Testing Inc., we are at the forefront of critical materials analysis, contributing to significant advancements in aerospace, marine engineering, and nuclear safety.We are seeking a dedicated Metallurgical Engineer to become an integral...


  • Hatfield, United States Biolyst Scientific Full time

    Salesforce AdministratorHatfield, PAPosition supports two sites and candidates must be able to travel to our sites as neededCOMPANY SUMMARYAt Biolyst Scientific, we understand the evolving needs of clinicians and scientists in a world of supply chain disruptions and the demand for scientific advancements. We offer more than just order fulfillment, we provide...

  • Scheduling Rep 1

    3 weeks ago


    West Hatfield, United States C&S Wholesale Grocers Inc Full time

    **Position Overview** The Scheduling Representative will be part of that ensures the coordination of all scheduling activities with the Scheduling Team. The position will be actively involved in the daily coordination of balancing the inbound service level needs of the Procurement Buying Teams, manufacturers and transportation carriers to schedule and...