21 ago
|
W3Global
|
México
Location: 2-3 days work from office
Minimum Qualifications
- Total of 7 to 10 years in IT technical role with at least 5 years' experience in vulnerability management and compliance monitoring.
Type Of Experience
- Demonstrated experience in cybersecurity vulnerability management and analysis.
- Good understanding of a range of IT technical concepts with focus on cloud computing, networking, systems administration, automation, IT application, and information security best practices
- Knowledge of IT control monitoring for regulatory and compliance requirements like (SOX, PCI DSS, DPA, HIPAA, NERC CIP), Standards (ISO 27001, BS 17799) and frameworks (ITIL, NIST, COBIT).
- Holds experience in delivering Risk and Compliance management services for a client based delivery environment.
Certifications
- Any CISM / CISSP / CISA / ISO 27001 is preferred, along with other technical certification like CCNA, CCNP, CCSA etc.
Areas of Responsibility
- Assist within the responsibility for analyzing the vulnerabilities' data from multiple sources (i.e. external/internal penetration testing, internal/external vulnerability scanning, etc.) across multiple technologies and dynamic surroundings together with infrastructure and applications to determine risk factors.
- Perform reoccurring and on demand scanning activities enterprise environments
- Assist in working with the Business to effectively communicate the risks of identified vulnerabilities and make recommendations regarding the selection of cost-effective security controls to mitigate identified risks
- Provides analysis of vulnerabilities to other team members to assist in support and resolution with overall vulnerability remediation efforts
- Provides analysis and validation post remediation, opportunities for improvements
- Assist in ensuring scan results are presented in appropriate dashboards, reports, and forwarded to other data systems as necessary
- Recommend approaches for addressing vulnerabilities include system patching, deployment of specialized controls, code or infrastructure changes, and changes in development processes
- Execute the vulnerability lifecycle management strategy across the organization
- Assist in interfacing with third-party vendors in improving the vulnerability management process
- Monitor news and intelligence feeds on a daily basis to proactively identify vulnerabilities that may impact the organization
- Continue self-development of knowledge, skills and abilities to better support execution of the Cybersecurity capability
Soft Skills Required
- Good problem solving capability, team player, good communication and documentation skills.
- Handle multiple tasks with different group in a team in a wider domain.
- Ability to prepare Informative Presentation & MIS documentation.
- Ready to work in shifts (24x7 in rotation)
- Should be working as per policies & procedures in compliance with Information Security recommendations.
- Self-driven to take individual initiatives and able to work with minimal guidance
📌 Risk and Compliance - Vulnerability Manager (México)
🏢 W3Global
📍 México