Team Leadership: Manage and mentor a team of skilled analysts, overseeing performance, career development, and daily operational priorities.
Remediation Leadership: Partner with internal stakeholders to drive completion on complex remediation efforts, negotiate priorities and timelines, escalate blocked remediations, and maintain a risk-based approach to remediation prioritization.
Continuous Improvement: Identify opportunities for improvement, benchmark program maturity against industry frameworks, solicit feedback from internal stakeholders to improve remediation procedures, and incorporate lessons learned into policies and procedures.
Audit and Compliance Support: Serve as subject matter expert in internal and external audits, providing remediation evidence and policy attestations, and translate audit findings into actionable remediation plans.
Vulnerability Management Oversight: Serve as the primary vulnerability management authority during security incidents and security operational engagements.
Requirements
Experience: Minimally 5 years of experience in cybersecurity with 3+ years focused on vulnerability management, preferably within an IaaS CSP or technology provider.
Vulnerability Management: Comprehensive understanding of the vulnerability lifecycle, vulnerability scoring (CVSS, EPSS), remediation procedures and tracking, and common scanning tools (Qualys, Tenable, Rapid7).
Technical Understanding: General understanding of a wide variety of software and technologies, including Linux distros, hypervisors, container orchestration tooling, network hardware and communications, etc.
Compliance Frameworks: An understanding of enterprise security standards such as SOC 2, ISO 27001, NIST 800-53, FedRAMP, and GDPR.
Communication: Ability to translate complex technical security concepts into clear narratives for a variety of technical stakeholders.
Education: Bachelor’s degree or equivalent experience in Computer Science, Cybersecurity, or a related field.
Operational Mindset: Methodical, detail-oriented self-starter capable of managing multiple priorities under pressure in a fast-paced environment.
Tech Stack
Cyber Security
Linux
Benefits
100% company-paid insurance premiums for employee medical, dental and vision plans.
401(k) plan that matches 100% up to 4%, with immediate vesting
Professional Development Reimbursement of $2,500 each year
11 Holidays + Paid Time Off Accrual + Rollover Plan
Commitment matters to Vultr! Increased PTO at 3 year and 10 year anniversary + 1 month paid sabbatical every 5 years + Anniversary Bonus each year
$500 stipend for remote office setup in first year + $400 each following year