What are the responsibilities and job description for the Vulnerability Management/Remediation Lead position at Neos Consulting Group?
Neos is Seeking a Vulnerability Management/Remediation Lead for a contract role with our client in Austin, TX.
Description Of Services
Vulnerability Inventory and Baseline Establishment
8 years Required Experience in Vulnerability Inventory and Baseline Establishment
8 Years Required Experience In Risk Classification And Prioritization
8 years Required Experience in tracking vulnerability remediation
8 Years Required Experience In Producing Status Reports
8 years Required Experience in validating remediation actions through available evidence, including vulnerability scan results
#DICE
- REMOTE (TEXAS) – ONLY CANDIDATES CURRENTLY RESIDING IN TEXAS WILL BE CONSIDERED***
Description Of Services
Vulnerability Inventory and Baseline Establishment
- Review the Agency’s existing vulnerability data, including vulnerabilities identified through scanning, assessments, or other security tools.
- Establish and maintain a consolidated vulnerability baseline.
- Develop and document a remediation timeline for all identified vulnerabilities, reflecting current risk posture and aging.
- Ensure that vulnerabilities are categorized and prioritized based on risk, severity, exploitability, and potential impact to Agency operations.
- Align vulnerability classification and prioritization to applicable NIST guidance.
- Validate that remediation timeframes align with Agency established expectations for different vulnerability risk levels.
- Coordinate remediation activities with system, server, and application owners.
- Communicate clear remediation expectations, risk context, and required timelines to responsible parties.
- Track remediation progress and identify blockers, dependencies, or delays impacting closure.
- Escalate overdue, high risk, or critical vulnerabilities to appropriate Agency governance or oversight bodies, in accordance with Agency processes.
- Maintain ongoing tracking of vulnerability remediation status.
- Produce periodic status reports summarizing.
- Validate remediation actions through available evidence, including vulnerability scan results or other supporting artifacts.
- Confirm closure of vulnerabilities in tracking systems once remediation is completed and validated.
- Ensure vulnerabilities that cannot be remediated within required timeframes are formally documented and supported by approved risk acceptance or exception documentation, in accordance with Agency policy.
- Identify process gaps, systemic issues, or control weaknesses affecting vulnerability remediation effectiveness.
- Provide recommendations for improving vulnerability remediation processes and accountability, aligned with NIST standards and Agency governance requirements.
8 years Required Experience in Vulnerability Inventory and Baseline Establishment
8 Years Required Experience In Risk Classification And Prioritization
8 years Required Experience in tracking vulnerability remediation
8 Years Required Experience In Producing Status Reports
8 years Required Experience in validating remediation actions through available evidence, including vulnerability scan results
#DICE