Demo

Vulnerability Management Analyst II

America First Credit Union
America First Credit Union Salary
Hiring in AZ, ID Full Time
POSTED ON 3/3/2025
AVAILABLE BEFORE 2/28/2026

Overview

Oversees and coordinates the vulnerability management process.  Performs vulnerability scans on all systems that connect to the Credit Union’s network.  Works closely with the necessary business, system, and IT owners responsible for protecting the assets of the Credit Union to resolve vulnerabilities in a timely manner.  Provides real-time reports on the status of patching of all systems connected to the Credit Union’s network.  Escalates unresolved vulnerabilities to the appropriate level of management based on risk and responsiveness.  Helps identify false positives and remove them from regular scans.  Sets up authenticated scanning wherever possible on systems.  Evaluates requested exceptions based on risk and makes recommendations for appropriate exclusion from scanning.  Oversees the review of exceptions on a periodic basis.

Responsibilities

  • Vulnerability Scanning
      • Partners with System Owners, Server Admins, and IT Managers in identifying vulnerabilities on their systems primarily through the use of vulnerability management software.
      • Ensures that the Vulnerability Management software is scanning all available hosts on AFCU’s network.
      • Ensures that all scans are completed as scheduled following a risk-based approach for type and frequency of scans.
      • Sets up authenticated scans as often as possible.
      • Works with the Asset Tracking Admin to ensure each host on the network with a vulnerability has an owner.
      • Follows up on any incomplete scans.
      • Troubleshoots and fixes problems related to vulnerability scans.
      • Partners with System Owners and Server Admins with the verification of false positives and adjusts the vulnerability management software scans to omit those.
      • Updates the vulnerability management standards as needed to align with industry best practices.

     

  • Monitoring
      • Runs regular reports to determine AFCU’s status in their patching efforts and communicates those findings to the appropriate personnel. For example…
        • Uses outstanding patch trending reports to monitor for anomalies in the vulnerability management effort.
        • Follows up with the appropriate personnel when anomalies are detected; documents the reason for the anomalies and facilitates their resolution.
        • Reports outstanding patch trending reports to Security Engineering Department Manager, System Owners, Server Admins, and IT Managers on a regular basis to keep them informed on patching status.
        • Escalates vulnerabilities that are not resolved in a timely manner as per AFCU’s vulnerability management standard.

     

  • Managing Exceptions
      • Carefully reviews and documents requests for exceptions to the vulnerability management software scans and obtain the necessary approvals for exceptions as per the vulnerability management standard.
      • Updates the vulnerability management software to omit approved exceptions for the regular scans.
      • Periodically reviews exceptions as per the vulnerability management standard.

     

  • Responsible for related duties as required or assigned.
      • Creates other means for measuring, monitoring, and controlling vulnerabilities and the patching of those vulnerabilities, such as identifies Key Performance (KPI) & Key Risk Indicators (KRIs).
      • Completes special projects as assigned.
      • Assists with security assessments of credit union systems.
      • Assists with the security assessment of various software purchases, external vendors and technology service providers.
      • Supports other IT Department and Security Engineering Department staff as needed.
      • Performs ad-hoc scans as needed.
  • Mentor Vulnerability Assessment Analysts I
  • Qualifications

    Training/Education/Certification:

    • Bachelor’s degree in Information Systems, Computer Science, Cybersecurity, or related field.
    • Two of the following preferred: GEVA, CEH, CISSP, GPEN, GXPN, OSCP, Security , and/or PenTest .

     

    Required Knowledge:

    • In-Depth, working knowledge of Microsoft platform (e.g.; Server, Workstation), multiple Linux distros, virtual machines, Java, Adobe, Web Applications, WebSphere, networking concepts (Firewalls, Switches, Load Balancers), and Databases (e.g.; Oracle, SQL Server, DB2, etc.).
    • In-Depth, working knowledge of IT security/hardening best practices; including but not limited to operating systems (e.g., Windows, Linux), virtual machines, web applications, network devices, and databases.
    • In-Depth ,working knowledge of industry standard security best practices and vulnerability management processes.
    • In-Depth , working knowledge of scripting languages (python, perl, etc.) and/or programming languages (java, .net, etc.) preferred.
    • In-Depth, working knowledge of security standards such as NIST, FFIEC, CIS, PCI, and other control frameworks.

     

     Experience Required:

    • Ten years using vulnerability scanning tools (Qualys preferred).
    • Ten years in information security.
    • Ten years in information technology.

     

    Skills/Abilities:

    • Champion for vulnerability management and information security, including broadening awareness and education of security best practices.
    • Strong analytical and problem-solving skills.
    • Strong curiosity, initiative, willingness to experiment, and persistence in providing solutions to tough technical challenges.
    • Well organized with good verbal and written communications skills.
    • Ability to prioritize and plan projects effectively.
    • Ability to assist others and share knowledge with other team members.
    • Ability to work effectively with cross-functional teams.
    • Able to use PC, terminal keyboards, and various computer hardware.
    • Self-directed and works with minimal guidance.

    If your compensation planning software is too rigid to deploy winning incentive strategies, it’s time to find an adaptable solution. Compensation Planning
    Enhance your organization's compensation strategy with salary data sets that HR and team managers can use to pay your staff right. Surveys & Data Sets

    What is the career path for a Vulnerability Management Analyst II?

    Sign up to receive alerts about other jobs on the Vulnerability Management Analyst II career path by checking the boxes next to the positions that interest you.
    Income Estimation: 
    $91,971 - $119,923
    Income Estimation: 
    $114,980 - $148,259
    Income Estimation: 
    $87,093 - $107,335
    Income Estimation: 
    $111,725 - $147,313
    Income Estimation: 
    $112,673 - $137,290
    Income Estimation: 
    $140,233 - $181,029
    Income Estimation: 
    $161,209 - $233,553
    Income Estimation: 
    $152,549 - $188,894
    Income Estimation: 
    $194,072 - $240,547
    Income Estimation: 
    $135,994 - $168,063
    Income Estimation: 
    $161,209 - $233,553
    Income Estimation: 
    $194,072 - $240,547
    Income Estimation: 
    $220,784 - $286,649
    Income Estimation: 
    $139,945 - $168,577
    Income Estimation: 
    $164,835 - $201,088
    Income Estimation: 
    $135,994 - $168,063
    Income Estimation: 
    $161,209 - $233,553
    View Core, Job Family, and Industry Job Skills and Competency Data for more than 15,000 Job Titles Skills Library

    Job openings at America First Credit Union

    America First Credit Union
    Hired Organization Address North Salt Lake, UT Temporary
    Schedule Mon – Sat Flex Overview Starting Pay: $15-$17.15 per hour DOE Offering Part-time 20 hours per week What will yo...
    America First Credit Union
    Hired Organization Address Heber, UT Other
    Schedule Mon – Sat Flex Overview Responsible for providing a variety of paying and receiving functions for members in pe...
    America First Credit Union
    Hired Organization Address Riverdale, UT Full Time
    Overview Responsible to maintain continuity of design and layout standards throughout all facilities in the Credit Union...
    America First Credit Union
    Hired Organization Address West Valley, UT Full Time
    Schedule Mon – Sat Flex Overview Starting pay 15.00-18.65 depending on experience! Offering full time, 40 hours per week...

    Not the job you're looking for? Here are some other Vulnerability Management Analyst II jobs in the Hiring in AZ, ID area that may be a better fit.

    Vulnerability Management II

    Pinnacle Bank/Bank of Colorado, Pinnacle, NC

    AI Assistant is available now!

    Feel free to start your new journey!