Engineer, IT Vulnerability Management

Connections IT Services LLC
Fort Worth, Texas
Temporary

Job Description

  • Performs discovery scanning via the Vulnerability Management Platform (scheduled and ad-hoc)
  • Provides gap analysis to compare the list of known resources so gaps can be investigated and owners identified
  • Identifies resource types (e.g. router, desktop computer, server, network switch, firewall, etc.), operating systems, and whether active services are "Enterprise" level
  • Tracks via remediation management system and provides a wiki-style format to capture recommendation, analysis and facts, and links to other research
  • Populates data visualization tool (such as Tableau, Brinqa, and Hygieia) for reporting vulnerability metrics by system and owner
  • Researches vulnerabilities to determine attack vectors and possible vulnerable targets and launches specific scans and reports for that vulnerability in VM scanning tool(s).
  • Coordinates with business, IT teams, and Technology Risk Management (TRM) to remediate compliance findings in a timely manner while addressing risk reduction objectives
  • Defines, manages, and measures security configuration baselines in line with internal policies / standards and CIS benchmarks
  • Defines and manages cloud specific technical security policies (CSA security guidance)

Qualifications

Required Qualifications

  • Bachelor’s degree in Computer Science, Computer Engineering, Technology, Information Systems (CIS / MIS), Engineering or related technical discipline, or equivalent experience / training
  • 3 years of hands-on technical security engineering experience
  • Certifications : CISSP, CISM, CISA, CEH, GCIH, GSEC, GCFA, GREM, CCENT
  • Ability to install, configure, troubleshoot, and administer VM Platform(s). (Ex.Tanium, Tenable, Coverity, Brinqa, etc.)
  • Experience with Tanium programming or creating custom configurations within Tanium
  • Experience with dynamic and static code analysis experience (e.g. QualysWAS, SAST tools, Tenable)
  • Experience with security configuration checklists (e.g. CIS Benchmarks and CSA security guidance)
  • Familiarity with NIST Special Publications (e.g. -,-53, CSF)
  • Familiarity with PCI DSS Compliance standards and scanning practices
  • Ability to code and script Python, SQL, BASH, or PowerShell
  • Ability to configure and use technical assessment tools such as Tanium Comply and Tenable Nessus
  • Deep understanding of the technical architecture of IT systems built using Windows, UNIX, Linux, Solaris, VMware, Citrix, Oracle, and MySQL platforms
  • Experience and knowledge in cloud and Kubernetes environments. (Azure Kubernetes Service, IBM Kubernetes service, Oracle Cloud Infrastructure, etc..)
  • Experience in DevOps Toolchain methodologies, including Continuous Integration and Continuous Deployment

Preferred Qualifications

  • 5+ years of hands-on technical security engineering experience
  • Ability to explain technical concepts and adjust messaging based on the audience, including non-technical groups; strong
  • presentation and technical documentation skills
  • Ability to influence through outstanding interpersonal skills, collaboration, and negotiation skills
  • Ability to work well within a team environment, as well as independently
  • 30+ days ago
Related jobs
Promoted
VirtualVocations
Arlington, Texas

A company is looking for a Software Engineer focused on Vulnerability Management. ...

Connections IT Services LLC
Fort Worth, Texas

Coordinates with business, IT teams, and Technology Risk Management (TRM) to remediate compliance findings in a timely manner while addressing risk reduction objectives. Deep understanding of the technical architecture of IT systems built using Windows, UNIX, Linux, Solaris, VMware, Citrix, Oracle, ...

RingCentral
Fort Worth, Texas
Remote

First, a little about us, we’re a $2 Billion annual revenue company with double digit Annual Recurring Revenue (ARR) and a $93 Billion market opportunity in UCaaS, Contact Center and AI-powered adjacencies. Security Engineer, Vulnerability Management. Security Engineer, Vulnerability Management. Rin...

Connections IT Services LLC
Fort Worth, Texas

Provide guidance and recommendation to engineers and developers on how to correct baseline configuration related security vulnerabilities. Security Engineer or Cloud Engineer. Analyst, Vulnerability Management. Defines and manages cloud specific technical security policies (CSA security guidance). ...

Charles Schwab
Southlake, Texas

Asses, triage, and prioritize vulnerabilities and associated remediation and mitigation activity using multiple sources of vulnerability, threat, and asset data. Support the development and implementation of strategies to enhance and mature Enterprise Vulnerability Management processes for vulnerabi...

Connections IT Services LLC
Fort Worth, Texas

The Web Application Security team collaborates with application owners, architects, and developers in order to integrate security tools such as web application firewalls and bot mitigation to protect our client’s websites and mobile apps. Connections IT Services is in search of an IT Security Platfo...

Connections IT Services LLC
Fort Worth, Texas

Work closely with DevOps and cloud infrastructure architects and engineers to design, implement and manage secure, scalable, and reliable cloud infrastructure environments. Ability to support operations for Vault Enterprise and Terraform Enterprise including tasks like backup, monitoring, and adopti...

Promoted
VirtualVocations
Arlington, Texas

Key Responsibilities:Facilitate communication and collaboration between IT and business teamsConduct thorough business analysis to gather requirements and develop solutionsTranslate business requirements into technical specifications and monitor IT projectsRequired Qualifications:7+ years of experie...

Promoted
Charles Schwab
Colleyville, Texas

The Endpoint Security Engineer is an individual contributor supporting endpoint security technologies, threat monitoring and management in Schwab Cybersecurity Services. What you haveRequiredMore than 7 years of progressive experience in cybersecurity engineering with multiple security controls with...

Gainwell Technologies
TX, US

Collaborate with a team of business analysts making client recommendations that can improve business processes. Translate your clients business needs from the requirements generated for our technical teams into simpler non-tech language. Help your team analyze and document systems requirements and b...