What are the responsibilities and job description for the Vulnerability Management SME - Mclean VA/ San Antonio TX position at Ventures Unlimited?
Job Details
Job Title: Vulnerability Management Subject Matter Expert (SME)
Location: Mclean VA/ San Antonio TX
Type: Full Time Position
Job Description:
Experience Required: 6 years
Key Responsibilities/Experience Required:
Vulnerability Assessment:
Conduct comprehensive assessments of infrastructure and application vulnerabilities.
Utilize tools such as Tenable and Rapid7 for scanning and identifying vulnerabilities across various environments.
Prioritize and manage remediation efforts for zero-day and potential zero-day vulnerabilities..
Threat Hunting:
Engage in proactive threat hunting to identify emerging threats and vulnerabilities.
Analyze threat intelligence to uncover indicators of compromise and potential security risks.
Tool Utilization:
Leverage CrowdStrike for assets detection and remediation. Utilize ServiceNow for asset management and tracking vulnerabilities within the organization.
Implement and manage Red Seal for network modeling and vulnerability assessment..
Collaboration and Reporting:
Work closely with cross-functional teams to develop and implement security policies and procedures.
Prepare detailed reports on vulnerability findings, remediation status, and overall security posture.
Continuous Improvement:
Educate staff on vulnerability management best practices and promote a culture of security awareness within the organization.
Detailed Responsibilities:
Vulnerability Management program setup.
Analyze the present backlog vulnerabilities, prioritize & contextualize existing vulnerabilities.
Coordination with asset owners for remediation tracking.
Tenable platform support and management for Vulnerability management.
Continuous tracking and remediation of vulnerabilities month on month and status reporting to CISO.
Due diligence and discovery to list assets and application.
Exception management and approval tracking.
Recommendations and best practices sharing for vulnerability remediation and prepare documentations.
Vulnerability governance and risk management.
Weekly Status Reporting and review meetings.