The Senior Security Analyst will be responsible for guiding and handling the Vulnerability Management (VM) Plan, ensuring the coordination, monitoring, and support of activities related to VM, Cloud Security, Penetration Testing, security patching, and remediation management. This role requires a strategic problem solver with deep technical skills and the ability to collaborate across various teams to improve the organisation's security posture.
Key Responsibilities: Vulnerability Management: Tactically guide the VM Plan, coordinating and supporting activities in VM, Cloud Security, Pen Testing, security patching, and remediation management.Roadmap Development: Provide input, prepare, and update the VM roadmap. Develop, maintain, and publish project plans and operation schedules.Reporting: Provide status reports to Cyber Security leadership on VM metrics, key risk indicators, trends, and compliance.Solution Proposals: Propose VM concepts and solutions, prepare presentations, and coordinate vendor demonstrations.Standard Operating Procedures (SOPs): Create and maintain SOPs for VM, providing technical knowledge to operations and production support teams.Collaboration: Work closely with Vulnerability Assessment & Pentesting teams to analyse results and threat feeds, reacting appropriately to security weaknesses or vulnerabilities.Technical Documentation: Prepare and maintain technical documentation of the VM programme, including requirements, architecture designs, network topology, applications, and application security designs.Policy Collaboration: Collaborate on Information Security policies, standards, and baselines, contributing to compliance measurement efforts.Governance Reporting: Collaborate on and provide VM results and metrics for consistent reporting for governance purposes. Coordinate remediation plans and activities.Qualifications: Bachelor's degree in Computer Science, Information Security, or a related field.Proven track record in cybersecurity, with a focus on vulnerability management and cloud security.Solid grasp of VM tools and technologies.Experience with security patching and remediation management.Excellent analytical and problem-solving skills.Good communication and presentation skills.Ability to work cross-functionally with multi-functional teams.Preferred Qualifications: Relevant certifications such as CISSP, CISM, or CEH.Experience with cloud security platforms (e.g., AWS, Azure).Knowledge of regulatory compliance requirements (e.g., GDPR, HIPAA).
#J-18808-Ljbffr