What are the responsibilities and job description for the Cybersecurity Analyst position at innovitusa?
• Review, triage, and manage vulnerability remediation assignments within ServiceNow IT Remediation Workspace.
• Coordinate remediation efforts for vulnerabilities that cannot be addressed through normal patch cycles (e.g., emergency, high-risk CVEs, exceptions, or special remediation scenarios).
• Serve as the central point of coordination between Server Operations, Security (CSOC), and other impacted teams throughout the remediation lifecycle.
• Track remediation status, dependencies, and outstanding actions to ensure vulnerabilities progress to closure in accordance with policy and risk priorities.
• Ensure remediation activities align with the Vulnerability Remediation Process and supporting work instructions.
ServiceNow & IT Remediation Workspace
• Create, manage, and update:
• Vulnerability Remediation Tasks (VUL)
• Associated Change Requests
• Related Configuration Items (CIs)
• Ensure accurate documentation of remediation plans, implementation steps, validation outcomes, and rollback plans within ServiceNow records.
• Validate that vulnerability remediation tasks meet ServiceNow process requirements and audit expectations before change submission.
• Coordinate remediation sequencing across multiple server platforms and support teams using ServiceNow workflows and assignment rules.
Change Management & CAB Presentation
• Prepare and submit Normal and Standard Change Requests for vulnerability remediation activities.
• Present vulnerability remediation changes to CAB, clearly articulating:
• Security risk and urgency
• Scope and impacted systems
• Remediation approach
• Testing and validation plans
• Rollback and risk mitigation measures
• Address CAB questions and coordinate follow up actions as needed to secure approval.
• Ensure approved changes are scheduled, communicated, and implemented in alignment with change windows and operational constraints.
Cross Platform Server Support
• Coordinate vulnerability remediation across:
• Windows Server environments
• Linux Server environments (RHEL)
• Citrix server platforms
• Work with platform SMEs to understand remediation requirements and constraints without directly executing patching activities.
• Ensure consistent remediation tracking and reporting across heterogeneous server platforms.
Organization, Tracking & Reporting
• Maintain detailed tracking of:
• Outstanding vulnerabilities
• Change approvals
• Implementation status
• Validation and closure evidence
• Support audit, compliance, and leadership reporting with accurate, up to date remediation metrics and status summaries.
• Identify process gaps, bottlenecks, or recurring issues and recommend improvements to remediation and change workflows.
CANDIDATE SKILLS AND QUALIFICATIONS
Years
Required/Preferred
Experience
9
Required
Proven experience coordinating server vulnerability remediation in an enterprise environment.
8
Required
Strong hands on experience with ServiceNow, including Change Management and IT Remediation Workspace.
5
Required
Solid understanding of change management processes and presenting changes to a CAB.
3
Required
Practical knowledge of server platforms: Windows Server, Linux Server, Citrix Infrastructure
3
Required
Exceptional organizational skills with the ability to manage multiple parallel remediation efforts.
3
Required
Strong written and verbal communication skills, especially for CAB and cross team coordination.
1
Preferred
Experience supporting vulnerability remediation in a government, regulated, or large enterprise environment.
1
Preferred
Familiarity with vulnerability management workflows involving CSOC, Infrastructure, and Application teams.
1
Preferred
Experience coordinating remediation outside of standard patching schedules (emergency or out of band remediation).
1
Preferred
Prior exposure to audit, compliance, or security evidence collection related to vulnerability remediation.
1
Preferred
Timely remediation of high risk and exception-based vulnerabilities.
1
Preferred
High quality, CAB approved change records with complete and accurate documentation.
1
Preferred
Clear, auditable tracking of vulnerability remediation status from assignment through closure.
1
Preferred
Improved coordination and reduced remediation delays across server platforms.