Overview
Skills
Job Details
Role: Vulnerability Manager
Expected Duration: 18 months
Location: Hybrid, candidates should be local to the Austin area
Responsibilities include (but are not limited to):
Review vulnerability and configuration compliance dashboards and scan results provided by DCS and assess and prioritize findings based on security risk.
Communicate findings and coordinate with client's subject matter experts to ensure remediation.
Act as liaison between client's teams and DCS service providers to facilitate remediation on servers fully managed by DCS and for assistance, as needed, with remediation on semi-managed servers.
Minimum Candidate Characteristics:
4+ years of experience working with both Linux and Windows OS
2+ years of experience in Vulnerability Management, Networking, and Cybersecurity
MITRE ATT&CK, NIST, ISO, PCI
Exceptional Candidate Characteristics:
Experience with a Texas State Agency
RHEL Administration and MS AD
Vulnerability Management for Cloud Platforms (AWS/Azure)
ServiceNow Dashboards, Tenable, JS, and/or PowerShell experience
Summary:
Review vulnerability and configuration compliance dashboards and scan results provided by DCS and assess and prioritize findings based on security risk. Communicate findings and coordinate with the client subject matter experts to ensure remediation. Act as liaison between the client teams and DCS service providers to facilitate remediation on servers fully managed by DCS and for assistance, as needed, with remediation on semi-managed servers. Assist teams as needed with performing changes required for remediation. Develop and maintain operational documentation for vulnerability management processes and ensure compliance with agency security policies.
Required Skills:
- 4 Years of Required Experience with Linux and Windows operating systems
- 2 Years of Required Experience of Vulnerability Management and Proficiency with Vulnerability Management tools
- 2 Years of Required Understanding of networking concepts
- 2 Years of Required Knowledge of Cybersecurity Frameworks such as NIST, ISO, or PCI.
- 2 Years of Required Understanding of the MITRE ATT&CK framework
- 2 Years of Required Ability to comprehend technical infrastructure, cloud computing, third-party dependencies and managed services
Preferred Skills:
- 3 Years of Preferred Degree in cybersecurity, computer science or related field
- 3 Years of Preferred Experience with Red Hat Enterprise Linux (RHEI) administration, and Microsoft Active Directory and Group Policy
- 3 Years of Preferred Experience with vulnerability management in cloud platforms such as AWS or Azure
- 3 Years of Preferred Experience with Tenable/Qualys; JavaScript or PowerShell
- 3 Years of Preferred Experience with ServiceNow dashboards
- 3 Years of Preferred Ability to make actionable recommendations for discovered vulnerabilities
- 3 Years of Preferred Ability to convey technical concepts clearly to both technical and non-technical audiences
- 3 Years of Preferred Strong written skill for creating documentation and executive summaries