What are the responsibilities and job description for the Vulnerability Patch Management Analyst position at New Millenium Consulting?
Job title: Vulnerability Patch Management Analyst
Job type: Contract W-2
Job location: New York, New York
A global bank is seeking a Vulnerability Patch Management analyst for their New York, New York. The duties of the analyst includes managing and optimizing our vulnerability and patch management process. Your mandate will include the proactive identification and efficient monitoring and remediation of security vulnerabilities across our entire IT landscape. As Vulnerability Patch Management Analyst, you will drive daily operations, lead initiatives to enhance our Americas CIB Vulnerability Patch Management program and provide expert guidance. Your strategic recommendations and execution will be crucial in focusing remediation efforts and providing clear insights to key stakeholders.
The Vulnerability Patch Management analyst will
- Drive the full vulnerability patch management lifecycle: identification, prioritization, and remediation for all infrastructure, systems, applications, and SDLC.
- Deliver consistent, high-quality VPM reporting to leadership and relevant teams.
- Collaborate extensively with IT stakeholders across the Americas, Head Office, and international platforms.
- Assess vulnerability impact and risk levels to inform strategic remediation.
- Prioritize patch deployments and manage SLA breaches, developing and executing follow-up plans.
- Design and enhance VPM procedures and processes.
- Participate in vulnerability assessments and track software/system updates.
- Strengthen compliance and adherence to security best practices and approved tools.
- Liaise with Second Line of Defense and auditors.
- Coordinate the development and maintenance of a comprehensive patch management strategy.
- Assist IT teams with timely vendor patch acquisition and deployment.
- Monitor and report on patch management effectiveness, implementing improvements.
- Provide backup support for cybersecurity projects, incidents, and audit remediation.
- Be available for off-hours support as needed to address emergent threats.
Skills
- Proven experience in vulnerability management, patch management, or related security roles with oversight
- Strong understanding of common security vulnerabilities and the ability to assess their impact on systems and infrastructure.
- Experience with vulnerability management and SIEM tools.
- Familiarity with security, IT Audit frameworks and standards (NIST. FFIEC handbooks etc.)
- Excellent communication and collaboration skills for management presentation materials and ability to work effectively with cross-functional teams.
- Experience on reporting and analysis tools is required - PowerBl, Advanced Excel/PowerQuery.
Education
- Bachelor’s degree in computer science, Information Security, Cyber Security, or related field.
- Relevant certifications such as CISSP, CRISC, CISM, SECURITY or equivalent are a plus