Job Summary
The Vulnerability Assessment Analyst is responsible for identifying, analyzing, and managing security vulnerabilities across the organization's networks, systems, and applications. The role focuses on conducting vulnerability scans, assessing risks, and collaborating with IT teams to ensure timely remediation and compliance with cybersecurity standards.
Key Responsibilities
- Conduct regular vulnerability assessments and security scans across networks, servers, and applications.
- Identify, analyze, and prioritize security vulnerabilities based on risk level and potential impact.
- Use vulnerability scanning tools such as Nessus, Qualys, OpenVAS, or similar platforms.
- Work closely with IT and system administrators to remediate identified vulnerabilities.
- Prepare detailed security reports and provide recommendations for risk mitigation.
- Track remediation activities and validate that vulnerabilities have been resolved.
- Support patch management processes and ensure security updates are applied.
- Monitor emerging threats and vulnerabilities and recommend preventive measures.
- Ensure compliance with security standards and frameworks such as ISO 27001, NIST, or CIS.
- Assist in security audits, risk assessments, and penetration testing activities when required.
Requirements
- Bachelor's degree in Computer Science, Information Technology, Information Security, or a related field.
- 35 years of experience in Cybersecurity, Information Security, or Vulnerability Management.
- Hands-on experience with vulnerability scanning tools (e.g., Nessus, Qualys, OpenVAS).
- Good understanding of network security, operating systems (Windows & Linux), and security best practices.
- Experience with vulnerability remediation and patch management processes.
- Knowledge of security frameworks and standards such as ISO 27001, NIST, or CIS benchmarks.
- Basic understanding of penetration testing and risk assessment methodologies.
- Strong analytical and problem-solving skills.
- Good communication and reporting skills