Experience
5 - 10 yrs
Job Location
Hyderabad, India
Vacancy
1
Designation
Security Analyst
Job Type
Not specified
Job Description
A Brief Overview :
The Security Analyst, Vulnerability Management position is responsible for ensuring the overall effectiveness of the Vulnerability Management program.
- Design, execute, and troubleshoot discovery scanning of endpoints, optimizing asset management, scan schedules, and scanner health within Microsoft Defender for Vulnerability Management
- Design, execute, and troubleshoot vulnerability scanning on endpoints, optimizing and troubleshooting scan policies within Microsoft Defender for Vulnerability Management
- Develop, deploy, and maintain vulnerability scanning architecture, including but not limited to Microsoft Defender for Vulnerability Management sensors, scanners, licensing, and hardware/VM requirements
- Filter and read through vulnerability scan results in Microsoft Defender for Vulnerability Management, resolve incomplete scan results, and manage false positive vulnerabilities
- Create tags in Microsoft Defender for Vulnerability Management to add business context to assets/endpoints
- Develop template and/or custom dashboards within ServiceNow to help build statistics; For example, the most vulnerable assets, vulnerability affecting most endpoints, and/or risk posture improvement
- Configure and operate network vulnerability scanning tools and create reports that communicate scan results and recommended remediation actions
- Leverage metrics terminology to understand EPSS, CVSS 2.0, CVSS 3.0, NIST and other framework methodologies
- Thorough usage of Python and KQL (Kusto Query Language) utilizing data science methodologies for exporting and manipulating vulnerability data
- High-level understanding of the threats that vulnerabilities have to their network environment, including analysis and impact
- Coordinate with other teams to validate and make sure patches took effect on managed endpoints
- Recast severity of and/or accept the risk of a vulnerability within Microsoft Defender for Vulnerability Management, as needed
- Use cybersecurity expertise to deliver accurate, complex security reports that can be understood by business system owners, executives, and other stakeholders
Required for All Jobs
- Performs other duties as assigned
- Complies with all policies and standards
QUALIFICATIONS
Education
- HS Diploma or GED or equivalent experience
- BS or equivalent experience
Work Experience
- 5+ years for HS, 2+ years for BS
- Vulnerability management, cybersecurity operations
Licenses and Certifications
- Security+ preferred
- CISSP preferred
- GEVA preferred
- CEH Certification preferred
Knowledge, Skills and Abilities
- Experience with vulnerability management and network scanning tools such as, ServiceNow Vulnerability Response (integrated with Microsoft Defender for Vulnerability Management), ServiceNow CMDB, NMAP
- Leverage Microsoft Office applications, creating reports from data, including Excel, PowerPoint, and Word
- Knowledge of TCP/IP and other common networking concepts and protocols
- Knowledge of Python programming and data science methodologies
- Knowledgeable in basic security configuration (BSC) hardening methodologies from U.S. Defense Information Systems (DISA STIG), Center for Internet Security (CIS Benchmarks), and/or Microsoft Guidance
No Referrers Available
There are currently no referrers available for this job. You can still apply, will let you know once there is any referrer available.
