Associate Vulnerability Analyst

4 weeks ago


Rome, New York, United States NYSTEC Full time
About Us

NYSTEC is a nonprofit technology consulting company, advising agencies, organizations, institutions, and businesses since 1996. We're independent and vendor-neutral, so we have our clients' best interests at heart. At NYSTEC, we know that we succeed when individuals and teams flourish personally and professionally, so our benefits and perks support that mindset.

About the Role

As a vulnerability management specialist, you will assist the deputy chief information security officer (CISO) in orchestrating all phases of the vulnerability management cycle to support NYSTEC's information security initiatives. You will interface with staff and management across all levels of NYSTEC, as well as with external business partners, to ensure that NYSTEC's business critical functions and systems are secure and in accordance with best practices.

Key Responsibilities
  • Lead the orchestration of all phases of the vulnerability management cycle, including asset identification and classification, vulnerability detection, remediation, verification, and reporting.
  • Implement mechanisms to detect vulnerabilities and determine how they may lead to corporate incidents, to enhance compliance with and support of security standards and procedures.
  • Work closely with members of the Information Systems Security Team and the IT Team to enhance and automate the prioritization and remediation of vulnerabilities.
  • Detect, analyze, interpret, evaluate, and integrate vulnerability data from multiple sources and formats for relevance to NYSTEC's environment; monitor and provide metrics on the threat level of vulnerabilities to the systems, software, and networks.
  • Actively investigate and validate the latest security vulnerabilities, advisories (e.g., Microsoft, Oracle, VMWare), and incidents and provide insights into relevance and threats to NYSTEC.
  • Plan, develop, configure, and execute vulnerability scans using tools such as Tenable-Nessus, Rapid7, and Qualys on a variety of corporate and business information systems, both on-premises and cloud based.
  • Assess potential threats and risks to systems and technologies, driving remediation with internal and external partners.
  • Identify attack surface reduction opportunities through vulnerability data analysis and threat models.
  • Work to build and scale security controls around vulnerability management as NYSTEC's security program expands in a rapidly growing portfolio of new applications and products.
  • Assist in scaling and automating NYSTEC's security infrastructure and developing technical standards and practices, such as integration with third-party systems, to automate workflows related to asset management, prioritization, and scanning coverage.
  • Proactively keep applicable members of management and leadership updated on risks, with relevant metrics articulating the progress on addressing.
  • Supervise the approval, tracking, and reporting of any security exceptions as the need arises.
  • Maintain knowledge of the threat landscape.
  • Exercise a high degree of confidentiality.
  • Demonstrate the NYSTEC Core Values and Behaviors.
  • All other duties as assigned.
About You

Required Qualifications

  • Knowledge of general cybersecurity concepts and methods, including but not limited to secure configuration management, data protection and privacy, security monitoring, incident response, governance, risk and compliance, patch management, enterprise security strategies, and architecture.
  • Understanding of various operating systems (Windows, Unix, MacOS, etc.), cloud concepts (secure build images, cloud patching, etc.), and knowledge of networking fundamentals.
  • Hands-on experience with vulnerability management tools (e.g., Qualys, Tenable, Rapid7), including the ability to architect, deploy, configure, and operate.
  • Ability to conduct root cause analyses against vulnerabilities and to determine feasible technical solutions.
  • Knowledge of vulnerability scoring systems (Common Vulnerability Scoring System/Common Misuse Scoring System [CVSS/CMSS]).
  • Exceptional project management skills.
  • Effective written and verbal communication skills, time-management skills, and the ability to prioritize tasks efficiently.
  • Understands NYSTEC's mission, brand mindsets, and core values and can put the behaviors into practice.
  • To be considered for this role, candidates must be permanent residents of the state of New York.
  • Onsite work will be performed in Rome, NY.

Preferred/Desired Qualifications

  • CompTIA cybersecurity analyst certification (CySA+) or similar certification in information security, or the ability to obtain such within one year.

Education and Experience

  • Bachelor's degree in cybersecurity or a similar discipline and two years of experience with security management frameworks (e.g., National Institute of Standards and Technology [NIST], SysAdmin, Audit, Network, and Security [SANS], Secure Controls Framework [SCS]).
  • An equivalent combination of education, training, and experience will be considered.

NYSTEC is an equal opportunity employer and welcomes applications from diverse candidates. We are committed to creating an inclusive work environment that values diversity and promotes equal opportunities for all employees. If you require a reasonable accommodation to apply for or to perform this job, please contact recruitment@nystec.com.


  • Cybersecurity Analyst

    4 weeks ago


    Rome, New York, United States M.A. Polce Full time

    Job OverviewM.A. Polce is seeking a highly skilled Cybersecurity Analyst to join our team. As a key member of our security team, you will be responsible for configuring and utilizing various security tools to provide compliance reporting, alerting, and incident analysis.The ideal candidate will have a strong understanding of security frameworks, including...


  • Rome, New York, United States GENESYS Consulting Services, Inc. Full time

    Job Title: Vulnerability AnalystAt GENESYS Consulting Services, Inc., we are seeking a highly skilled Vulnerability Analyst to join our team. As a key member of our security team, you will be responsible for identifying and mitigating vulnerabilities in our systems and infrastructure.Key Responsibilities:Conduct thorough vulnerability assessments and risk...

  • Signals Analyst

    4 weeks ago


    Rome, New York, United States North Point Defense, Inc Full time

    Job Title: Signals AnalystJob Summary: We are seeking a skilled Signals Analyst to join our team at North Point Defense, Inc. The ideal candidate will have a strong background in radio frequency (RF) analysis, signal processing, and communication systems.Key Responsibilities:Perform traditional signals analysis functions, including RF survey, waveform...


  • Rome, New York, United States GENESYS Consulting Services Full time

    Job SummaryWe are seeking a highly skilled Cybersecurity Specialist to join our team at GENESYS Consulting Services, Inc. The ideal candidate will have a strong background in cybersecurity concepts and methods, including secure configuration management, data protection and privacy, security monitoring, incident response, governance, risk and compliance,...

  • Vulnerability Analyst

    1 month ago


    Rome, United States GENESYS Consulting Services, Inc. Full time

    Required QualificationsKnowledge of general cybersecurity concepts and methods, including but not limited to secure configuration management, data protection and privacy, security monitoring, incident response, governance, risk and compliance, patch management, enterprise security strategies, and architecture.Understanding of various operating systems...

  • Vulnerability Analyst

    2 months ago


    Rome, United States GENESYS Consulting Services, Inc. Full time

    Required QualificationsKnowledge of general cybersecurity concepts and methods, including but not limited to secure configuration management, data protection and privacy, security monitoring, incident response, governance, risk and compliance, patch management, enterprise security strategies, and architecture.Understanding of various operating systems...


  • Rome, NY, United States NYSTEC Full time

    About Us: NYSTEC is a nonprofit technology consulting company, advising agencies, organizations, institutions, and businesses since 1996. We're independent and vendor-neutral, so we have our clients' best interests at heart. At NYSTEC, we know that we succeed when individuals and teams flourish personally and professionally, so our benefits and perks...


  • Rome, Georgia, United States Harbin Clinic Full time

    Job Summary:Harbin Clinic is seeking a skilled Systems Analyst 2 to join our Information Technology Services department. The ideal candidate will have a strong background in computer systems maintenance, troubleshooting, and repair. This is a full-time position that requires a high level of technical expertise and excellent communication skills.Key...


  • Rome, Georgia, United States The Heico Companies Full time

    Job SummaryWe are seeking a highly skilled Global Logistics Analyst to join our team at The Heico Companies. The successful candidate will be responsible for managing daily business and commercial activities between suppliers, customers, and key logistic service providers.The ideal candidate will have a strong understanding of import/export laws and...


  • Rome, Georgia, United States Aba Squad Inc Full time

    Job SummaryAba Squad Inc is seeking a passionate and enthusiastic Behavior Therapist to join our team. This part-time position offers a unique opportunity to work with children with autism and other developmental disabilities, providing high-quality ABA services.ResponsibilitiesImplement clinical programs as assigned by the behavior analystCreate program...

  • Systems Analyst 2

    4 months ago


    Rome, United States Harbin Clinic Full time

    Job DescriptionJob Description Maintains, analyzes, troubleshoots, and repairs computer systems, hardware and computer peripherals. Documents, maintains, upgrades or replaces hardware and software systems. Supports and maintains user account information including rights, security and systems groups. Associate's degree or its equivalent and 2-5 years of...


  • Rome, United States HEALTH CONNECT AMERICA, INC Full time

    Join Our Impactful Team at Health Connect America!  Scroll down to find the complete details of the job offer, including experience required and associated duties and tasks.  Health Connect America and its brands are leaders in providing mental and behavioral health services to children, families, and adults across the nation. We provide our services...


  • Rome, United States Arcfield Full time

    OverviewArcfield is a leading provider of full lifecycle, mission-focused systems engineering and integration capabilities to the U.S. government and its allies. The company has more than 60 years of proven experience providing advanced engineering and analysis, IT and C5ISR capabilities to support our nation’s most critical national security missions....


  • Rome, United States Arcfield Full time

    OverviewArcfield was purpose-built to protect the nation and its allies through innovations in digital transformation, space mission engineering and launch assurance, miniaturized sensors and satellites, advanced modeling and simulation, cybersecurity, and conventional and hypersonic missile support. Headquartered in Chantilly, VA with 16 global offices,...


  • Rome, United States HEALTH CONNECT AMERICA, INC Full time

    Join Our Impactful Team at Health Connect America!     Health Connect America and its brands are leaders in providing mental and behavioral health services to children, families, and adults across the nation. We provide our services directly to those in need whether that be within a person's home, their community, or in one of our office settings. HCA is...

  • Behavior Therapist

    3 weeks ago


    Rome, Georgia, United States Aba Squad Inc Full time

    About the Role:We are seeking a passionate and enthusiastic Behavior Therapist to join our team at Aba Squad Inc. This part-time position offers a unique opportunity to work with children with autism and other developmental disabilities, providing high-quality ABA services in a supportive and collaborative environment.Responsibilities:Implement all clinical...


  • Rome, Georgia, United States Aba Squad Inc Full time

    Job OverviewAba Squad Inc is seeking a passionate and enthusiastic Behavior Therapist to join our team. This part-time position offers a competitive rate/salary and the opportunity to earn quarterly bonuses based on hours worked and positive performance reviews.The ideal candidate will have a current Registered Behavior Technician (RBT) certificate in good...


  • Rome, NY, United States BARTELL MACHINERY SYSTEMS, LLC Full time

    The PositionThis position is a member of the Distribution Center Department. The Global Logistics Analyst will report directly to the Production Control Manager. Job DescriptionPrimary ResponsibilitiesManage daily business and commercial activities between suppliers, customers, key logistic service providers, including inbound and outbound shipment...


  • Rome, United States HEALTH CONNECT AMERICA, INC Full time

    Join Our Impactful Team at Health Connect America!  Want to apply Read all the information about this position below, then hit the apply button.  Before you get started on your journey, take some time to learn more about us.  Health Connect America and its brands are leaders in providing mental and behavioral health services to children, families, and...


  • Rome, Georgia, United States Bartell Machinery Systems Full time

    Job SummaryThe Global Logistics Analyst will be responsible for managing daily business and commercial activities between suppliers, customers, and key logistic service providers. This includes inbound and outbound shipment tracking, booking confirmations, arrangement of container pick up/drop off, expediting cargo, and coordinating delivery of finished...


  • Rome, United States Arcfield Full time

    OverviewArcfield is a leading provider of full lifecycle, mission-focused systems engineering and integration capabilities to the U.S. government and its allies. The company has more than 60 years of proven experience providing advanced engineering and analysis, IT and C5ISR capabilities to support our nation’s most critical national security missions....

  • Network Engineer II

    6 days ago


    Rome, United States Technergetics Full time

    Job DescriptionJob DescriptionPosition:  Network Engineer II    Beware of fraudulent job offers and postings!  Technergetics will never extend an offer of employment without a thorough interview process involving face to face interviews either in-person or a virtual Teams meeting from an official Technergetics email address (@techngs.com). If...


  • Rome, GA, United States HEALTH CONNECT AMERICA, INC Full time

    Join Our Impactful Team at Health Connect America!     Health Connect America and its brands are leaders in providing mental and behavioral health services to children, families, and adults across the nation. We provide our services directly to those in need whether that be within a person's home, their community, or in one of our office settings. HCA is...


  • Rome, United States Arcfield Full time

    OverviewArcfield was purpose-built to protect the nation and its allies through innovations in digital transformation, space mission engineering and launch assurance, miniaturized sensors and satellites, advanced modeling and simulation, cybersecurity, and conventional and hypersonic missile support. Headquartered in Chantilly, VA with 16 global offices,...