Vulnerability Management Consultant
CurrentResponsibilities • Manage Qualys and Tenable.io vulnerability scanning responsibilities including configuring and running bi-weekly scans, compiling results, installing VM agents on servers, and leading remediation efforts.• Delegate vulnerability patching tasks/tickets to the network, server, and end-user teams for remediation • Writes vulnerability management processes, procedures, and policies around various vulnerability management programs.• Leads security incident remediation and investigation efforts as critical situations arise. • Organize weekly calls with various towers to inform them about the latest vulnerabilities in the environment. • Review risk management items with the client security director for compliance, audit, and remediation• Work with end-users, system admins, network staff, and application owners to help understand patches and upgrades; respond to questions and issues when needed.• Create ServiceNow tickets and assigned them to various team members for remediation.• Review existing VM documentation to validate that the information is correct and up to date.• Configure and run WAS scans (Web Application Scans) and report on the findings.• Daily review of threat advisory threads in the cyber-security world to have a more proactive vs. a reactive security stance. (i.e. CISA, Hacker News, Sans, NIST.gov, CVE.org, security week, etc)