Job Specifications
Job Summary
A vulnerability analyst identifies, assesses, and mitigates security weaknesses in an organization's IT systems and applications. Their duties include performing vulnerability scans, analyzing threats, prioritizing risks, and collaborating with IT and security teams to implement fixes and report on findings. The role is crucial for improving overall cybersecurity posture by safeguarding sensitive data from cyber threats.
As with any position, additional expectations exist. Some of these include, but are not limited to, adhering to normal working hours, meeting deadlines, following company policies as outlined by the Employee Handbook, communicating regularly with assigned supervisor(s), staying focused on the assigned tasks, and completing other tasks as assigned.
Responsibilities
Technical Skills
Expertise ingesting and analyzing logs from multiple systems and sources
Demonstrated proficiency with Splunk or similar SIEM platforms
Experience creating and maintaining Splunk or similar SIEM dashboards and alerts
Knowledge of operating systems (Windows, Linux, macOS) and their logging mechanisms
Understanding of network protocols, infrastructure, and associated log patterns
Experience with regular expressions and search queries for efficient log parsing
Vulnerability Management Skills
Experience with Nessus vulnerability scanning configuration and analysis
Ability to interpret vulnerability scan results and prioritize remediation efforts
Experience validating vulnerabilities and eliminating false positives
Knowledge of vulnerability lifecycle management processes
Understanding of risk scoring methodologies (CVSS, etc.)
Communication & Collaboration Skills
Strong ability to communicate effectively with system owners about vulnerabilities and log issues
Excellent teamwork skills for collaborating across IT departments
Experience explaining technical findings to non-security professionals
Skills in documentation for reporting vulnerabilities and log analysis findings
Ability to develop and maintain productive working relationships with stakeholders
Training & Knowledge Transfer
Ability to train backup personnel on vulnerability assessment and log analysis procedures
Experience creating documentation for knowledge transfer purposes
Skill in mentoring junior team members
Capacity to develop standard operating procedures for consistent operations
Qualifications
Basic:
U.S. Citizenship required
CSWF certification: CompTIA Security+ or higher
5+ years of experience in vulnerability assessment, security monitoring, and log analysis
Strong organizational and planning skills
Excellent time management skills and ability to multitask and prioritize work
Attention to detail and problem solving skills
Experience with patch management processes and tools
Familiarity with compliance frameworks (NIST, ISO 27001, etc.)
Background in security incident response based on log analysis
Understanding of DevSecOps principles
Experience with multiple vulnerability scanning platforms beyond Nessus
If applicable: If you are or have been recently employed by the U.S. government, a post-employment ethics letter will be required if employment with VSolvit is offered
Preferred:
Splunk or similar SIEM platforms certification
CISSP or GSLC certification
Server and System Administration Certificates
Experience working with the military and/or government
Company Summary
Join the VSolvit Team! Founded in 2006, VSolvit (pronounced 'We Solve It') is a technology services provider that specializes in cybersecurity, cloud computing, geographic information systems (GIS), business intelligence (BI) systems, data warehousing, engineering services, and custom database and application development. VSolvit is an award winning WOSB, CA CDB, MBE, WBE, and CMMI Level 3 certified company. We offer a customizable health benefits program that best meets the needs of its employees. Offering may include: medical, dental, and vision insurance, life insurance, long and short-term disability and other insurance products, Health Savings Account, Flexible Spending Account, 401K Retirement Plan options, Tuition Reimbursement, and assorted voluntary benefits. Our goal is to grow together and enjoy the work that we do as a team.
VSolvit LLC is an Equal Opportunity/Affirmative Action employer and will consider all qualified applicants for employment without regard to race, color, religion, sex, national origin, protected veteran status, or disability status.
About the Company
VSolvit (pronounced: "We.Solve.it") is an award-winning Woman owned, technology services provider that specializes in cybersecurity, cloud computing, geographic information systems (GIS), business intelligence (BI) systems, data warehousing, geographic information systems (GIS), engineering services, custom database and application development, administrative services, project/program management, and predictive analytics. VSolvit serves clients such as the Department of Defense (DOD), the U.S. Department of Agriculture (USDA...
Know more