What are the responsibilities and job description for the Vulnerability Management Analyst position at Trinus Corporation?
Position Details:
- Position Type: W2 (sponsorship is not available).
Position Description:
We are seeking an experienced Vulnerability Management Analyst to support the continued development and execution of our Vulnerability Management program. This contractor will initially focus on reducing the current backlog of overdue vulnerability remediation items while also helping improve the overall process for assigning, tracking, validating, and reporting vulnerabilities across the organization.
- The successful candidate will work closely with Vulnerability Management, infrastructure, application, security, service management, and technology ownership teams. This role requires someone who can quickly understand a complex technology environment, work independently, coordinate across multiple teams, and bring structure and accountability to a high-volume backlog.
- This is a hands-on operational and process-focused role. The contractor will not necessarily perform all technical remediation directly but will be responsible for helping ensure vulnerabilities are assigned to the correct owners, remediation plans are established, progress is accurately documented, and overdue items are appropriately escalated.
Required Qualifications:
- 3 or more years of experience in Vulnerability Management, cybersecurity operations, IT risk, infrastructure security, IT service management, or a related technology operations role.
- Experience managing or coordinating the remediation of vulnerabilities across multiple technical teams.
- Strong working knowledge of vulnerability-management concepts, including severity ratings, risk prioritization, remediation timelines, exceptions, compensating controls, and validation.
- Experience working with enterprise vulnerability-scanning platforms such as Tenable, Qualys, Rapid7, CrowdStrike or a comparable tool.
- Experience using ServiceNow or another enterprise IT service-management platform to manage tickets, assignments, workflows, and reporting.
- Ability to interpret vulnerability findings and communicate remediation requirements to technical and nontechnical stakeholders.
- Strong organizational skills and the ability to manage a large volume of open actions, owners, dependencies, and deadlines.
- Demonstrated ability to follow up with stakeholders, remove blockers, and escalate issues appropriately.
- Strong written and verbal communication skills.
- Experience creating operational reports, dashboards, metrics, and executive-level summaries.
- Ability to work independently, establish priorities, and deliver results with limited oversight.
- Strong proficiency with Microsoft Excel and other Microsoft 365 tools.