Security Analyst - Vulnerability Management

TriNet Group, Inc
Posted on
TriNet Group, Inc logo

Experience
5 - 10 yrs
Job Location
Hyderabad, India
Vacancy
1
Designation
Security Analyst
Job Type
Not specified

Job Description

A Brief Overview :
The Security Analyst, Vulnerability Management position is responsible for ensuring the overall effectiveness of the Vulnerability Management program.
  • Design, execute, and troubleshoot discovery scanning of endpoints, optimizing asset management, scan schedules, and scanner health within Microsoft Defender for Vulnerability Management
  • Design, execute, and troubleshoot vulnerability scanning on endpoints, optimizing and troubleshooting scan policies within Microsoft Defender for Vulnerability Management
  • Develop, deploy, and maintain vulnerability scanning architecture, including but not limited to Microsoft Defender for Vulnerability Management sensors, scanners, licensing, and hardware/VM requirements
  • Filter and read through vulnerability scan results in Microsoft Defender for Vulnerability Management, resolve incomplete scan results, and manage false positive vulnerabilities
  • Create tags in Microsoft Defender for Vulnerability Management to add business context to assets/endpoints
  • Develop template and/or custom dashboards within ServiceNow to help build statistics; For example, the most vulnerable assets, vulnerability affecting most endpoints, and/or risk posture improvement
  • Configure and operate network vulnerability scanning tools and create reports that communicate scan results and recommended remediation actions
  • Leverage metrics terminology to understand EPSS, CVSS 2.0, CVSS 3.0, NIST and other framework methodologies
  • Thorough usage of Python and KQL (Kusto Query Language) utilizing data science methodologies for exporting and manipulating vulnerability data
  • High-level understanding of the threats that vulnerabilities have to their network environment, including analysis and impact
  • Coordinate with other teams to validate and make sure patches took effect on managed endpoints
  • Recast severity of and/or accept the risk of a vulnerability within Microsoft Defender for Vulnerability Management, as needed
  • Use cybersecurity expertise to deliver accurate, complex security reports that can be understood by business system owners, executives, and other stakeholders
Required for All Jobs
  • Performs other duties as assigned
  • Complies with all policies and standards
QUALIFICATIONS
Education
  • HS Diploma or GED or equivalent experience
  • BS or equivalent experience
Work Experience
  • 5+ years for HS, 2+ years for BS
  • Vulnerability management, cybersecurity operations
Licenses and Certifications
  • Security+ preferred
  • CISSP preferred
  • GEVA preferred
  • CEH Certification preferred
Knowledge, Skills and Abilities
  • Experience with vulnerability management and network scanning tools such as, ServiceNow Vulnerability Response (integrated with Microsoft Defender for Vulnerability Management), ServiceNow CMDB, NMAP
  • Leverage Microsoft Office applications, creating reports from data, including Excel, PowerPoint, and Word
  • Knowledge of TCP/IP and other common networking concepts and protocols
  • Knowledge of Python programming and data science methodologies
  • Knowledgeable in basic security configuration (BSC) hardening methodologies from U.S. Defense Information Systems (DISA STIG), Center for Internet Security (CIS Benchmarks), and/or Microsoft Guidance
Disclaimer : This job posting has been aggregated from external source. Role details, content, and availability are subject to change. Applicants are advised to confirm the latest information directly on the company website before applying.

No Referrers Available

There are currently no referrers available for this job. You can still apply, will let you know once there is any referrer available.