Your browser does not support javascript! Please enable it, otherwise web will not work for you.

Vulnerability Analyst III @ UST Global Singapore

Home > IT

 Vulnerability Analyst III

Job Description


Role Proficiency:
Under Manager's supervision lead a small team / shift of VM analysts to detect evaluate communicate and track security vulnerabilities. Leverage the available security scanning and assessment tools preventing emerging threats.
Outcomes:
  1. Under Manager's supervision lead a small team / shift to perform vulnerability assessment scans using the VM tools like Qualys. Identify vulnerabilities evaluate the reports and monitor or oversee the mitigation efforts.
  2. Configure the scheduled scans and interpret the assessment results along with the management of the asset configuration. Assess the vulnerability of databases
  3. Leverage the available security scanning and assessment tools to detect evaluate and prioritize critical security flaws
  4. Perform asset discovery scans and configure scheduled scans on the assets. Monitor and ensure unerring scans.
  5. Mentor junior team members in performance of day to day operations.
  6. Communicate and escalate identified vulnerabilities etc. per defined process. Supervise / mentor junior members in this regard
  7. Adhere to defined processes including housekeeping tasks.
  8. Adhere to the Information Security policies as defined by the company and customer.

Measures of Outcomes:
  1. On-time delivery of scan reports
  2. Accuracy of risk assessment and prioritisation
  3. Customer satisfaction with service
  4. Quality of service (percent of major vulnerabilities missed; incorrectly classified)
  5. Adherence to process

Outputs Expected:
Vulnerability Scanning :
  1. Perform asset discovery and vulnerability scans and categorize by tagging the assets.
  2. Cater to the ad-hoc scan requests for the various assets in the infrastructure.
  3. Perform network scans on endpoints using tools like Qualys Nessus etc
  4. Configure and manage various asset groups asset tags and scanning profiles
  5. Perform the post scan verification test and maintain the checklist

Vulnerability Assessment:
  1. Analyse the scan results by correlating the data with a set of known vulnerabilities; providing clear concise interpretations
  2. Assess and prioritize risks related to vulnerabilities
  3. Remediate the security vulnerabilities within scope

Reporting and Communication:
  1. Provide timely and accurate information to senior analysts in both written and verbal communications. Ensure that reports are accurate and complete. Work with internal threat intel team to prioritize the vulnerability scan results and provide customized reports to the customers.
  2. Track all vulnerabilities using ticketing systems through closure. Document the remediation tasks. Coordinate with relevant teams to ensure the mitigation of vulnerabilities
  3. Communication and escalation per defined process

Transition:
  1. Work with the customer's point of contact and other stake holders to lead transition of VM assignments.

Continuous Learning
Innovation and optimization:
  1. Ensure completion of learning program suggested by Managers
  2. Suggest ideas that will help innovation and optimization of processes
  3. Mentor junior team members.

Skill Examples:
  1. Proficient in use of VM scanners / tools like Qualys Nessus etc. and their administration. Implementation of tools under supervision of lead.
  2. Excellent logical problem-solving ability and analytical skills to assess vulnerabilities prioritizing etc.
  3. Ability to adapt to new technologies and tools especially in the Vulnerability Management and Assessment space.
  4. Ability to work with the customer point of contact and other stake holders during the project transition phase on arranging KT sessions preparing KT documents and managing reverse KT sessions.
  5. Good written and verbal communication skills.
  6. Continually learn new technology and stay updated on vulnerabilities / cyber threats etc.
  7. Ability to work in rotating shifts and be on-call outside of shift hours on a regular and recurring basis.
  8. Possess unimpeachable personal and professional integrity. Individuals will be required to submit to a background check

Knowledge Examples:
Knowledge Examples
  1. 3 to 5 Years experience as VM Analyst in a global organization. Additional IT Infrastructure experience in Networks Servers and Firewall; SOC Experience.
  2. University Degree in Cyber Security (no back papers) / Bachelors in Engineering or Science. Training with demonstrable knowledge in the basics of Cyber Security
  3. In-depth knowledge of vulnerability scanning process. Sound understanding of Security Vulnerabilities Vulnerability Management Assessment Scanning
  4. Sound comprehension of enterprise IT Infrastructure including Networks OS Databases and Web Applications etc. Basic knowledge of TCP/IP and Network Security Protocols.
  5. Awareness of ISMS principles and guidelines. Relevant frameworks (e.g. ISO27001)
  6. Desirable Training / Certification in relevant areas like Vulnerability Management VM tools like Qualys Nessus; Ethical Hacking Network Security etc

Employement Category:

Employement Type: Full time
Industry: Full time
Functional Area: IT
Role Category: IT
Role/Responsibilies: Vulnerability Analyst III

Contact Details:

Company: UST Global Singapore
Location(s): Thiruvananthapuram / Trivandrum

+ View Contactajax loader


 Job seems aged, it may have been expired!
 Fraud Alert to job seekers!

₹ Not Specified

UST Global Singapore