What are the responsibilities and job description for the Cyber Security Analyst position at Quantum World Technologies Inc.?
Role : Cyber Security Remediation Analyst
Location :Remote
Duration : Long Term
3-5 years' experience
We are seeking a motivated and highly organized Cyber Threat Remediation Analyst (Contract) to join our Cyber Threat Management team.
This role is responsible for driving the day-to-day operations of the Threat Remediation Program by coordinating cyber threat remediation efforts, engaging technical stakeholders, managing governance activities, and helping mature remediation processes across the enterprise.
This position is ideal for someone who enjoys combining cybersecurity knowledge, stakeholder engagement, process improvement, and program execution to drive meaningful risk reduction. You will work closely with Cyber Threat Intelligence (CTI), Incident Response, Red Team, Security Engineering, Technology Risk, application teams, infrastructure teams, and ServiceNow stakeholders to ensure cyber threats are effectively assessed, tracked, and remediated.
Position Summary:
The Cyber Threat Remediation Analyst serves as the operational coordinator for enterprise threat remediation activities. This role focuses on managing remediation processes, tracking cyber threat findings, facilitating stakeholder engagement, supporting threat applicability assessments, and improving remediation workflows.
Unlike traditional Vulnerability Management roles focused primarily on patching activities, this position supports a broader Threat Remediation Program that incorporates insights from Cyber Threat Intelligence, Incident Response, Red Team assessments, penetration testing, security assessments, and other cybersecurity initiatives.
This role is ideal for someone who enjoys combining cybersecurity knowledge, stakeholder engagement, process improvement, and program execution to help drive meaningful risk reduction across the enterprise. It goes beyond program tracking by helping evaluate threat applicability, assess organizational exposure, and influence remediation decisions in partnership with cybersecurity subject matter experts.
Key Responsibilities
Threat Remediation Coordination:
- Manage the end-to-end lifecycle of cyber threat findings from intake through closure.
- Coordinate remediation efforts with application, infrastructure, cloud, IAM, and security teams.
- Track ownership, remediation milestones, evidence, exceptions, and risk acceptance requests.
- Identify blockers, facilitate resolution discussions, and escalate issues as needed.
- Prepare status updates and remediation reporting for leadership.
Threat Assessment Support
- Support reviews of emerging cyber threats and security findings to determine organizational applicability and exposure.
- Facilitate threat applicability assessments with technology teams.
- Maintain remediation questionnaires, assessment templates, and supporting documentation.
- Document remediation plans, compensating controls, and risk decisions.
Process & Workflow Development
- Create and maintain process maps, workflow diagrams, playbooks, and operational procedures.
- Partner with ServiceNow teams to improve remediation tracking, workflows, reporting, and intake processes.
- Assist with business requirements gathering and process improvement initiatives.
- Support workflow automation and operational efficiency efforts.
Governance & Reporting
- Maintain remediation dashboards, metrics, scorecards, and executive reporting.
- Support governance reviews, audits, and compliance activities.
- Monitor remediation aging, SLA performance, and overall program health.
- Contribute to the ongoing maturation of the Threat Remediation Program.
Required Qualifications
- 3–5 years of experience in Cybersecurity, Security Operations, Technology Risk, Governance, Risk & Compliance (GRC), Vulnerability Management, Incident Response, Security Program Management, or a related field.
- Experience coordinating remediation efforts, security findings, or risk management activities.
- Strong organizational, project coordination, and stakeholder management skills.
- Experience working with both technical teams and business partners.
- Strong written and verbal communication skills.
- Experience preparing presentations, reports, and executive updates.
- Ability to understand cybersecurity concepts and translate technical information into actionable business outcomes.
Preferred Qualifications
- Experience working with findings generated from Cyber Threat Intelligence, Incident Response, Red Team assessments, penetration testing, or security assessments.
- Familiarity with MITRE ATT&CK, NIST Cybersecurity Framework (CSF), NIST SP 800-53, or CIS Controls.
- Experience creating process documentation, workflow diagrams, playbooks, questionnaires, or operational procedures.
- Experience with ServiceNow, Jira, Archer, or similar workflow and governance platforms.
- Experience developing dashboards and reporting using Power BI, Excel, Tableau, or similar tools.
- Understanding of enterprise technologies, including networking, cloud platforms, operating systems, identity and access management, and endpoint security.
- Experience with automation, low-code workflows, scripting, or AI-enabled solutions is a plus.
Preferred Certifications
- Security
- CySA
- SSCP
- GSEC
- Similar cybersecurity certifications