cover image
New Millenium Consulting

Vulnerability Analyst (Software Lifecycle)

Hybrid

New york, United states

$ 93 /hour

Junior

Freelance

12-12-2025

Share this job:

Skills

Communication Jira Splunk ServiceNow Monitoring Oral and Written Communication Agile

Job Specifications

Job Title: Vulnerability Analyst ( Software Lifecycle)

Job location: New York, New York (3 days onsite)

Job Type: Contract W-2

A global bank is seeking a Software Lifecycle Vulnerability Analyst. The Software Lifecycle Vulnerability Analyst will be responsible for the obsolescence and vulnerability management of software, including business applications and SaaS. The Software Lifecycle Vulnerability Analyst will monitor the end-of-life status and vulnerabilities of software, define target software versions, communicate with IT teams, track remediation plans, perform controls, and maintain the Software Referential. They will be responsible for reporting and escalating alerts to senior management and will work closely with IT teams in the Americas and the Head Office

Key Responsibilities:

Monitor and manage obsolete and deprecated software and software components, as well as software vulnerabilities (Qualys CSAM, Qualys VPM, etc.).
Perform in-depth analysis of data provided by Splunk and Qualys.
Define target software versions.
Communicate obsolescence and vulnerabilities to IT teams (IT Development, IT Infrastructure, etc.).
Coordinate and track remediation plans.
Escalate and manage alerts to senior management.
Member of the AMER Vulnerability Patch Management Committee and Obsolescence Committee.
Maintain software referential and perform reconciliations and controls to ensure data integrity and quality.
Prepare KPIs and reporting for the Obsolescence and Vulnerabilities committees.
Maintain up-to-date documentation.
Work with internal and external IT auditors to provide necessary audit evidence and documentation.
Enforce and follow policies and procedures for VPM projects in the Americas, exercising best practices in system patching/installation, configuration, and system monitoring.

Requirements:

Bachelor’s degree in Cybersecurity, Information Technology or related field
Minimum of 3 years of experience in obsolescence and vulnerability management for software within the finance industry.
Experience with Splunk, ServiceNow, Jira, Qualys data, or equivalent.
Knowledge on Development and Software area.
Effective oral and written communication and documentation skills.
Familiarity with Agile practices and methodologies.

About the Company

New Millenium Consulting (NMC group) is a minority certified company offering IT services and staffing solutions. Headquartered in New Jersey with offices across the globe, we are redefining the expectations companies and candidates have in acquiring a search partner. As a trusted partner to some of the premier enterprises, our goal is to align world-class talent with our clients' workforce needs, enabling them to accomplish their evolving business objectives and improve their bottom line. NMC combines the best of both world... Know more