Senior Vulnerability Analyst, University Information Services Georgetown University
Georgetown University
Application
Details
Posted: 10-Aug-22
Location: Washington, D.C.
Type: Full-time
Salary: Open
Internal Number: 3324363
Senior Vulnerability Analyst, University Information Services Georgetown University
Located in a historic neighborhood in the nation's capital, Georgetown offers rigorous academic programs, a global perspective, exciting ways to take advantage of Washington, D.C., and a commitment to social justice. Our community is a tight knit group of remarkable individuals interested in intellectual inquiry and making a difference in the world.
Requirements
Senior Vulnerability Analyst, University Information Services - Georgetown University
Job Overview
The Senior Vulnerability Analyst is a technical security expert responsible for conducting scheduled and ad-hoc vulnerability scanning, coordinating with matrix staff and stakeholders to explain findings, provide recommendations on mitigations, and advocate for mitigation of vulnerabilities.
They assist with strategic initiatives for both short- and long-term plans to identify and reduce the attack surface across applications, websites, and systems; and use automated tools to identify, assess and report vulnerabilities, with emphasis placed on effective communication to constituents relying on applications, websites and systems that support their business.
The Senior Vulnerability Analyst takes an active lead to perform vulnerability scanning - informing, advising, and partnering with business units to help better vulnerabilities, remediation options, and how to best secure their operations - employing their high understanding of applications, operating systems, networking, cloud infrastructure and basic attacker tactics, techniques and procedures (TTPs).
Work Interactions
Reporting directly to the Director for Cybersecurity Risk Management, the Senior Vulnerability Analyst is a senior member of the University cybersecurity team.
They coordinate with all UIS divisions and campus stakeholders on matters related to cyber risk management, projects, initiatives, and governance; are involved in day-to-day cybersecurity operations; and coordinate work with various University technical project managers and system owners.
As well, they are responsible for assessing cybersecurity risk for physical and virtual assets, and for identifying and facilitating the timely and effective remediation of vulnerabilities and implementation of compensating controls.
Qualifications
Bachelor's degree in computer science (preferred), information assurance, MIS or related field or equivalent combination of education and work experience
At least 5 to 8 years of experience in vulnerability management, security operations or information security administration
At least 3 years of hands-on experience with Tenable Nessus Vulnerability Scanner or CrowdStrike Falcon
At least 5 years of experience with Windows, macOS and *nix operating systems, endpoint applications, networking protocols and devices
Experience conducting organization-wide vulnerability scanning and remediation processes for a large, geographically dispersed environment
Experience supporting regulated industries - e.g., financial, education, healthcare, etc.
Experience researching the latest security vulnerabilities and threats, and proposing countermeasures
Knowledge of one or more compliance standards, including Payment Card Industry (PCI), Health Information Portability and Accountability Act (HIPAA), Gramm-Leach-Bliley Act (GLBA), National Institute of Standards (NIST) or International Standards Organization (ISO)
Preferred qualifications
Some experience with vulnerability management across Amazon Web Services (AWS), Microsoft Azure or Google Cloud Platform (GCP)
One or more of the following: Security+, GSEC, CISM, or CISSP
Work Mode: Telework. Please note that work mode designations are regularly reviewed in order to meet the evolving needs of the University. Such review may necessitate a change to a position's mode of work designation. Complete details about Georgetown University's mode of work designations for staff and AAP positions can be found on the Department of Human Resources Mode of Work Designation.
Current Georgetown Employees:
If you currently work at Georgetown University, please exit this website and login to GMS (gms.georgetown.edu) using your Net ID and password. Then select the Career worklet on your GMS Home dashboard to view Jobs at Georgetown.
Submission Guidelines:
Please note that in order to be considered an applicant for any position at Georgetown University you must submit a cover letter and resume for each position of interest for which you believe you are qualified. These documents are not kept on file for future positions.
Need Assistance:
If you are a qualified individual with a disability and need a reasonable accommodation for any part of the application and hiring process, please click here for more information, or contact the Office of Institutional Diversity, Equity, and Affirmative Action (IDEAA) at 202-687-4798 or ideaa@georgetown.edu.
Need some assistance with the application process? Please call 202-687-2500. For more information about the suite of benefits, professional development and community involvement opportunities that make up Georgetown's commitment to its employees, please visit the Georgetown Works website.
EEO Statement:
Georgetown University is an Equal Opportunity/Affirmative Action Employer fully dedicated to achieving a diverse faculty and staff. All qualified applicants are encouraged to apply and will receive consideration for employment without regard to race, color, religion, national origin, age, sex (including pregnancy, gender identity and expression, and sexual orientation), disability status, protected veteran status, or any other characteristic protected by law.
Benefits:
Georgetown University offers a comprehensive and competitive benefit package that includes medical, dental, vision, disability and life insurance, retirement savings, tuition assistance, work-life balance benefits, employee discounts and an array of voluntary insurance options. You can learn more about benefits and eligibility on the Department of Human Resources website.
Established in 1789, Georgetown is the nation's oldest Catholic and Jesuit University. Georgetown is one of the world's leading academic and research institutions, offering a unique educational experience that prepares the next generation of global citizens to lead and make a difference in the world.