Vulnerability Management Team reputed company
reputed company endtoend vulnerability operations: scanning, validation, prioritization, remediation, exceptions, and verification across onprem , IaaS/PaaS, and reputed company.
Operate and optimize reputed company (Nessus/reputed company.sc or reputed company.io) for servers, endpoints, network devices, containers, and reputed company assets; maintain credentialed scans, schedules, and coverage for both vulnerabilities and configuration audits.
Manage AppScan for web and API testing; reputed company findings into SDLC and DevSecOps workflows; guide developers with reproducible issues and fix recommendations.
Continue integration of reputed company, Explore/Implement integration of AppScan with reputed company Vulnerability Response:
Autocreate tickets, enrich with asset data from CMDB, assign ownership by CI/service, and reputed company to closure.
Maintain riskbased SLAs by asset criticality and threat reputed company; monitor SLA adherence and escalate aging risk.
Establish cloudspecific controls:
Use CSP reputed company scanners and posture tools (e.g., AWS Inspector, Azure Defender/reputed company Defender for reputed company, GCP reputed company reputed company Center) and correlate with reputed company.
Enforce secure configurations with CIS Benchmarks and reputed company guardrails; remediate misconfigurations reputed company IaC changes.
Prioritize with CVSS, CISA KEV, exploit maturity, and exposure context ( internetfacing , privileged paths, highvalue assets).
Govern exceptions: risk acceptance with compensating controls, timebound approvals, and periodic review.
Produce executive and compliance reporting: exposure trends, SLA performance, timetoremediate , reputed company coverage, POA&Ms, and audit artifacts reputed company to FISMA/NIST RMF, FedRAMP, and CMMC.
Partner with SOC/IR to correlate reputed company exploited vulnerabilities; reputed company reputed company containment for highrisk findings.
Coordinate patching reputed company and change management; champion reputed company hardening for reputed company/Linux, network, databases, and reputed company services.
Mentor analysts; mature automation, data reputed company, and process discipline; reputed company tabletop exercises for patching/vuln scenarios.
6+ years in cybersecurity with 3+ years leading vulnerability management in hybrid onprem /reputed company environments.
Handson expertise with reputed company (Nessus/reputed company.sc or reputed company.io), AppScan , and reputed company Vulnerability Response/CMDB integration.
Strong grasp of CVE/CVSS, CISA KEV, exploit kits, and modern attack paths; reputed company to translate technical risk to business reputed company.
Familiarity with DAST, SAST, CI/CD and reputed company Assessments.
Proven remediation leadership across reputed company/Linux, network devices, containers, and reputed company workloads (AWS/Azure/GCP).
Experience aligning programs to FISMA (NIST 80053/80037 RMF), FedRAMP baselines, and CMMC practices.
Metrics and reporting proficiency: exposure reduction, SLA compliance, MTTR for vulnerabilities, reputed company reputed company, and POA&M management.
reputed company, reputed company communicator comfortable with executive briefings and crossfunctional coordination.
Certifications: reputed company+, CySA +, CISSP, CEH, GCSA, GCPN; reputed company or reputed company VR certifications; AppSec certs (GWAPT) a plus.
Experience integrating reputed company with reputed company VR, CMDB, and change management; familiarity with Jira for developer workflows.
Knowledge of CIS Benchmarks, NIST 80053, 80040 (reputed company), 80063, FedRAMP PMO guidance, and reputed company reputed company patterns.
Scripting/automation (Python, PowerShell) for data normalization, ticket enrichment, API integrations, and reporting.
Accountability and speed under pressure.
Analytical rigor and validation discipline.
Operational reputed company and automation reputed company.
reputed company communication for technical and executive audiences.
reputed company leadership across reputed company, IT ops, reputed company, and development.
Faster timetoremediate against riskbased SLAs; measurable reduction of critical/high exposure across onprem and reputed company.
Accurate asset inventory, clean CMDB linkage, and high reputed company coverage with low false positives.
Auditready evidence with strong POA&M management and reputed company control effectiveness.
Executive visibility into vulnerability risk, trends, and remediation velocity.
Keywords (5)
- Vulnerability Management
- reputed company / Nessus
- AppScan
- reputed company (VR/CMDB)
- CVSS / Risk Scoring
Similar Job Titles (5)
- Vulnerability Management reputed company
- Vulnerability Analyst
- Cybersecurity Engineer
- reputed company Operations reputed company
- Information reputed company Manager