Hi
Position - Automated Security Scanning – Business Analyst.
Experienced Automated Security Scanning Business Analyst to join our Cybersecurity team as a Consultant Specialist. The ideal candidate will play a critical role in executing and managing automated vulnerability scanning, assessment, and reporting across large-scale enterprise and cloud environments.
Key Responsibilities
- Perform scheduled and on-demand infrastructure vulnerability scanning, assessments, and reporting.
- Manage agent-based vulnerability scanning, including large-scale agent deployment and maintenance.
- Triage, analyze, and address issues identified during vulnerability scans and security assessments.
- Validate scan results and communicate findings clearly to technical and business stakeholders.
- Configure, operate, and maintain industry-standard vulnerability management tools.
- Identify and implement new or innovative security scanning solutions.
- Collaborate with global cybersecurity teams and third-party service providers.
- Mandatory Skills & Requirements
Security & Vulnerability Management
- Hands-on experience with vulnerability scanning and security testing tools such as:
- Tenable (Nessus)
- Qualys
- Cloud-native scanning tools (or equivalent)
- Strong experience in agent-based scanning and deploying agents across large enterprise environments.
- Solid understanding of malware, emerging threats, attacks, and vulnerability management.
Cloud Security
- Practical experience with cloud platforms and cloud vulnerability assessment:
- AWS, Azure, GCP, or Alibaba Cloud
Frameworks & Standards
- Strong knowledge of industry security frameworks and best practices, including:
- CIS Critical Security Controls
- OWASP
- NIST 800 Series
- Threat Modeling
Technical Knowledge
- Good understanding of operating systems, network protocols, and application development concepts.
- Exposure to scripting or programming such as Python, PowerShell, or C/C++.
Communication & Collaboration
- Ability to articulate vulnerability risks to both technical and non-technical stakeholders.
- Excellent analytical, problem-solving, and critical thinking skills.
- Strong written and verbal communication abilities.
- Proven team player with a collaborative mindset.
Education & Experience
- 5–8 years of experience in Cybersecurity, Information Security, or Security Engineering.
- Strong background in DevSecOps and Software Security.
- Bachelor’s or Master’s degree in Computer Science, Information Technology, Cybersecurity, or equivalent.
Desirable Certifications
CISSP, CISM, CRISC, OSCP or equivalent cybersecurity certifications
Job Type: Full-time
Work Location: In person