Lead Information Security Specialist (Threat & Vulnerability Management)

McKesson’s Corporate
Irving, Texas, US
$139K-$231.6K a year
Full-time
We are sorry. The job offer you are looking for is no longer available.

Lead Information Security Specialist (Threat & Vulnerability Management)

McKesson is looking for a Lead Information Security Analyst, Threat & Vulnerability Management to help support McKesson's information security capabilities and compliance across Business units and Enterprise IT organizations.

As a Lead Information Security Analyst, you will be a key member of our Cybersecurity team, with a background in Threat & Vulnerability Management.

You will represent the Cybersecurity team on various projects and boards, playing a critical role in safeguarding the organization’s information and systems by identifying and addressing vulnerabilities.

This position involves monitoring, analyzing, and advising on vulnerability-related risks.

Read on to find out what you will need to succeed in this position, including skills, qualifications, and experience.

Responsibilities :

  • Vulnerability Monitoring : Continuously monitor relevant sources (CVE databases, security bulletins, etc.) for newly identified vulnerabilities and assess their impact and severity.
  • Risk Evaluation : Evaluate the risks posed by identified vulnerabilities and collaborate with cross-functional teams to prioritize them based on business impact.
  • Advisory Role : Provide actionable recommendations to management regarding vulnerability remediation and advise on measures to reduce risk exposure.
  • Trend Analysis : Analyze vulnerability data to identify trends and stay informed about industry best practices.
  • Stakeholder Communication : Regularly communicate vulnerability status and risk mitigation efforts to relevant stakeholders.
  • Key Results : Achieve high patch compliance rates, continuously reduce critical vulnerabilities, minimize remediation time, and improve overall risk scores.

Qualifications (Education, Experience, Skills / Competencies) :

  • 4-year degree in IT Security, Information Systems, Computer Science, Engineering, or a related field, or equivalent experience.
  • 5+ years of experience in systems and / or applications security, including maintenance and use of security products.
  • Knowledge of investigative methodologies and risk management.
  • Ability to manage security vulnerabilities and risks across the organization.
  • Knowledge of Security and Control Frameworks such as NIST, ISO, etc.
  • Security-related qualifications such as CISSP, GPEN, CEH, etc.

Additional Knowledge & Skills (Optional) :

  • Knowledge of healthcare, privacy, and financial compliance regulations.
  • Experience with secure deployment of applications in cloud environments.
  • Strong analytical and troubleshooting skills.

We are proud to offer a competitive compensation package at McKesson, determined by factors including performance and geographical markets.

Our Base Pay Range for this position is $139,000 - $231,600.

McKesson is an Equal Opportunity Employer.

Join us at McKesson!

J-18808-Ljbffr

4 days ago
Related jobs
Promoted
Gainwell Technologies LLC
TX, US
Remote

Gainwell is seeking an experienced Information Security Architecture and Engineering Lead who can provide technical leadership and be accountable for all security-related compliance and delivery for the customers assigned. Information Security Architecture and Engineering Lead. Defines and enforces ...

Promoted
Triumph Financial
Dallas, Texas

Supports Treasury Management Product Managers and leads project management phases including planning, execution, and result monitoring as requested. Prepare Treasury Management Board Reports and monthly reporting and ensure timely delivery to executive and management teams. Five to six years' experi...

Promoted
Mitchell Martin Inc.
Plano, Texas

The knowledge/experience/exposure with information security topics or governance of information security practices and solutions, will be very helpful in this role. As an Enablement Services Analyst you would be an individual contributor responsible for providing onboarding assistance to application...

00002 Citibank, N.A.
Irving, Texas

Requirements: Requires a Bachelor’s degree or its foreign equivalent in Information Technology, Information Security, Computer Engineering or related field and 8 years of progressively responsible, post-baccalaureate experience as an Information Security Engineer, Information Security Analyst or rel...

Service Partners
Arlington, Texas

Train and become proficient using the Service Partners lead management tools to identify, sort and pre-qualify a variety of lead types; Cold call leads, make notes and track qualification activities with an objective of assigning warm opportunities to Service Partners branches. Become comfortable an...

Philips
Dallas, Texas

Sales Support, Clinical Specialist - Lead Management Image Guided Therapy Devices (Dallas/Fort Worth)). As a Clinical Specialist with our Lead Management team you will provide clinical expertise and organic revenue generation and growth to drive customer engagement and accelerate the sales process. ...

WELLS FARGO BANK
Westlake, Texas

Wells Fargo is seeking a IAM Triage Lead Analyst (Lead Information Security Analyst) in Cybersecurity as part of Identity Access Management. Provide advanced information security consultation for all aspects of information security compliance policy, risk management, and remediation. Evaluate and in...

Administrative Office of the U.S. Courts
Washington, TX, US

Job Details for Information Technology Specialist (Security). ...

WELLS FARGO BANK
Westlake, Texas

Utilize subject matter knowledge in industry leading security solutions and best practices to implement one or more components of information security such as availability, integrity, confidentiality, risk management, threat identification, modeling, monitoring, incident response, access management,...

HARMAN International
Richardson, Texas

The Vulnerability Management team identifies and prioritizes all threats and vulnerabilities in our Product environment and provides respective reports to key stakeholders. Experiences in improving a vulnerability management process, incident response process handling, and/or vulnerability-scanning ...