Logo for Hudson IT and Manpower

Job Title: Information Security Engineer - Vulnerability Management III

Key Facts

Remote From: 
Full time
Mid-level (2-5 years)
English

Other Skills

  • Consulting
  • Collaboration
  • Communication
  • Leadership
  • Presentations
  • Problem Solving

Roles & Responsibilities

  • Proven experience in vulnerability management, security engineering, or security consulting with proactive threat management, research, escalation, and discovery
  • Excellent communication and presentation skills with experience presenting to senior leaders and large groups
  • Lead and implementation experience in security tooling and architecture; defining security environments and onboarding new applications into the Enterprise Vulnerability Management Program
  • Solid understanding of security tooling and architecture; hands-on experience with tools such as Qualys, Brinqa, Archer, ServiceNow, Checkmarx, Prisma; AWS experience preferred

Requirements:

  • Define, deliver, and support enterprise security tools and architecture in collaboration with other teams; enhance the organization's vulnerability management program for in-scope subsidiaries and affiliates
  • Communicate, escalate, support, and guide the resolution of open vulnerabilities across infrastructure, application security, and configuration management
  • Conduct security research on threats and remediation techniques; perform risk assessments; oversee implementation of remediation and changes
  • Monitor alerts from managed security services and in-house tools; perform threat analysis and incident response; develop and maintain standards and guidelines for the vulnerability management program; share knowledge with the team and serve as a security engineer/consultant on projects

Job description

Job Title: Information Security Engineer - Vulnerability Management III

Location: Remote

TOP SKILLS:

Must Have

Brinq

Excellent communication and presentation skills, and a proven background of presenting to senior leaders, large groups, etc. on relevant matters pertaining to large projects and impacting key functionality.

Lead and Implementation Experience

Performing referral to principle

proven consistent experience in vulnerability management, security engineering, security consulting etc

Proven experience with proactive threat management, research, escalation, discovery etc.

Security

Solid understanding of popular security tooling and understanding of security architecture/interconnectedness of processes and tooling.

Nice To Have

CISSP, CISA, CISM, AWS Solutions Architect certifications

GRC/audit management experience

Scripting/automation experience – python preferred

Solid proven experience with tooling such as Qualys, Brinqa, Archer, ServiceNOW, Checkmarx, Prisma (and any AWS experience is great as well)

What You’ll Do

Responsible for performing all functions required to support day-to-day data security operations and accountable for security and networking infrastructure component availability and integrity, monitoring compliance with IT security policy, and coordinating investigation and reporting of security incidents.

Primary Responsibilities:

Define, deliver, and support enterprise security tools and architecture in collaboration with other teams.

Enhance the Bank's network vulnerability management program for in-scope subsidiaries and affiliates.

Define security environments and lead the implementation and onboarding of new applications, programs, processes, projects, and initiatives into the Enterprise Vulnerability Management Program.

Communicate, escalate, support, and guide the resolution of open vulnerabilities, including infrastructure, application security, and configuration management vulnerabilities.

Conduct security research on threats and remediation techniques/technology, make recommendations to IS/IT teams, and oversee their implementation.

Proactively monitor and investigate security alerts from managed security service providers and in-house security tools.

Conduct risk assessments to evaluate the effectiveness of existing controls and determine the impact of proposed changes to business processes, applications, and systems.

Support ad hoc requests for reporting and control evidence, as needed.

Perform threat analysis and incident response by interpreting events.

Support the Bank's operational information security responsibilities, including developing and maintaining standards, procedures, and guidelines for the Enterprise Vulnerability Management Program.

Share knowledge and industry best practices with team members.

Serve as a security engineer/consultant on projects.

What You’ll Get

Competitive base salary

Medical, dental, and vision insurance coverage

Optional life and disability insurance provided

401(k) with a company match and optional profit sharing

Paid vacation time

Paid Bench time

Training allowance offering

You’ll be eligible to earn referral bonuses!

Information Security Analyst Related jobs

Other jobs at Hudson IT and Manpower

We help you get seen. Not ignored.

We help you get seen faster — by the right people.

🚀

Auto-Apply

We apply for you — automatically and instantly.

Save time, skip forms, and stay on top of every opportunity. Because you can't get seen if you're not in the race.

AI Match Feedback

Know your real match before you apply.

Get a detailed AI assessment of your profile against each job posting. Because getting seen starts with passing the filters.

Upgrade to Premium. Apply smarter and get noticed.

Upgrade to Premium

Join thousands of professionals who got noticed and hired faster.