Cyber Threat Remediation Analyst
Remote
Position Type: Contract
Experience Level: Mid-Level (3–5 Years)
Openings: 2
Ideal Candidate Backgrounds: Security Operations, Vulnerability Management, Security Program Management, Technology Risk, GRC, Incident Response Coordination, Threat Intelligence Operations, Security Governance, or Cybersecurity PMO.
Years Experience: 3-5 years. Hiring leader wants to keep the role at Level III, candidates with 3-5 years experience if possible.
Skills:
Endpoint Security
Firewall
Incident Management
Kubernetes
ServiceNow
Threat Vulneability
Role: Cyber Threat Remediation (CTR) Analyst - Information Security III
This is a highly visible role that works directly with Cyber Threat Intelligence, Incident Response, Red Team, Security Engineering, Technology Risk, and ServiceNow teams. You''''ll gain exposure to emerging threats, enterprise security operations, remediation governance, and program development while helping shape and mature a strategic Threat Remediation Program.
If you enjoy collaborating across teams, solving operational challenges, improving processes, and helping reduce cyber risk across a large enterprise, we''''d love to hear from you.
Ideal Candidate Backgrounds: Security Operations, Vulnerability Management, Security Program Management, Technology Risk, GRC, Incident Response Coordination, Threat Intelligence Operations, Security Governance, or Cybersecurity PMO.
Details
Cyber Threat Remediation Analyst (Contract)
Help Reduce Cyber Risk Across the Enterprise
We are seeking a motivated and highly organized Cyber Threat Remediation Analyst (Contract) to join our Cyber Threat Management team. This role is responsible for driving the day-to-day operations of the Threat Remediation Program by coordinating cyber threat remediation efforts, engaging technical stakeholders, managing governance activities, and helping mature remediation processes across the enterprise.
This position is ideal for someone who enjoys combining cybersecurity knowledge, stakeholder engagement, process improvement, and program execution to drive meaningful risk reduction. You will work closely with Cyber Threat Intelligence (CTI), Incident Response, Red Team, Security Engineering, Technology Risk, application teams, infrastructure teams, and ServiceNow stakeholders to ensure cyber threats are effectively assessed, tracked, and remediated.
Position Summary
The Cyber Threat Remediation Analyst serves as the operational coordinator for enterprise threat remediation activities. This role focuses on managing remediation processes, tracking cyber threat findings, facilitating stakeholder engagement, supporting threat applicability assessments, and improving remediation workflows.
Unlike traditional Vulnerability Management roles focused primarily on patching activities, this position supports a broader Threat Remediation Program that incorporates insights from Cyber Threat Intelligence, Incident Response, Red Team assessments, penetration testing, security assessments, and other cybersecurity initiatives.
This role is ideal for someone who enjoys combining cybersecurity knowledge, stakeholder engagement, process improvement, and program execution to help drive meaningful risk reduction across the enterprise. It goes beyond program tracking by helping evaluate threat applicability, assess organizational exposure, and influence remediation decisions in partnership with cybersecurity subject matter experts.
Key Responsibilities
Threat Remediation Coordination
· Manage the end-to-end lifecycle of cyber threat findings from intake through closure.
· Coordinate remediation efforts with application, infrastructure, cloud, IAM, and security teams.
· Track ownership, remediation milestones, evidence, exceptions, and risk acceptance requests.
· Identify blockers, facilitate resolution discussions, and escalate issues as needed.
· Prepare status updates and remediation reporting for leadership.
Threat Assessment Support
· Support reviews of emerging cyber threats and security findings to determine organizational applicability and exposure.
· Facilitate threat applicability assessments with technology teams.
· Maintain remediation questionnaires, assessment templates, and supporting documentation.
· Document remediation plans, compensating controls, and risk decisions.
Process & Workflow Development
· Create and maintain process maps, workflow diagrams, playbooks, and operational procedures.
· Partner with ServiceNow teams to improve remediation tracking, workflows, reporting, and intake processes.
· Assist with business requirements gathering and process improvement initiatives.
· Support workflow automation and operational efficiency efforts.
Governance & Reporting
· Maintain remediation dashboards, metrics, scorecards, and executive reporting.
· Support governance reviews, audits, and compliance activities.
· Monitor remediation aging, SLA performance, and overall program health.
· Contribute to the ongoing maturation of the Threat Remediation Program.
Required Qualifications
· 3–5 years of experience in Cybersecurity, Security Operations, Technology Risk, Governance, Risk & Compliance (GRC), Vulnerability Management, Incident Response, Security Program Management, or a related field.
· Experience coordinating remediation efforts, security findings, or risk management activities.
· Strong organizational, project coordination, and stakeholder management skills.
· Experience working with both technical teams and business partners.
· Strong written and verbal communication skills.
· Experience preparing presentations, reports, and executive updates.
· Ability to understand cybersecurity concepts and translate technical information into actionable business outcomes.
Preferred Qualifications
· Experience working with findings generated from Cyber Threat Intelligence, Incident Response, Red Team assessments, penetration testing, or security assessments.
· Familiarity with MITRE ATT&CK, NIST Cybersecurity Framework (CSF), NIST SP 800-53, or CIS Controls.
· Experience creating process documentation, workflow diagrams, playbooks, questionnaires, or operational procedures.
· Experience with ServiceNow, Jira, Archer, or similar workflow and governance platforms.
· Experience developing dashboards and reporting using Power BI, Excel, Tableau, or similar tools.
· Understanding of enterprise technologies, including networking, cloud platforms, operating systems, identity and access management, and endpoint security.
· Experience with automation, low-code workflows, scripting, or AI-enabled solutions is a plus.
Preferred Certifications
· Security+
· CySA+
· SSCP
· GSEC
· Similar cybersecurity certifications