• Share :

Job Number 24103262

Job Category Information Technology

Location Marriott International HQ, 7750 Wisconsin Avenue, Bethesda, Maryland, United States

Schedule Full-Time

Located Remotely? Y

Relocation? N

Position Type Management

JOB SUMMARY

The Manager, Vulnerability Management functions as a technical expert in the areas of vulnerability scanning and remediation tracking focused on vulnerabilities within containers and containerized applications. The role will be responsible for identifying vulnerabilities through vulnerability scanning, and ensuring remediation through assessment and reporting. The role will also design, roll out and maintain the evaluation process, identify areas for process improvement to assure the inclusion of appropriate elements of quality and compliance with security policy and regulations. The role will provide assistance with enterprise vulnerability scanning and will be able to create and manage integrated assessments. This role is for a individual contributor who can monitor and assess vulnerability scanning data, prioritize and address vulnerabilities within containers involving collaboration among development, operations and security teams. It requires the ability to communicate with technical and non-technical stakeholders, relay the importance of the vulnerability management activities, the risks presented by findings, and potential remediation actions. This role requires a working knowledge of security and network protocols, system and network administration, and configuration management.

CANDIDATE PROFILE

Education and Experience

Required:

Bachelors degree in Computer Sciences or related field or equivalent experience/certification

5+ years of information security experience that also includes background and knowledge of general security concepts such as defense in-depth, least privilege, etc.

2+ years experience with:

Vulnerability scanning and assessment using Tenable.io.

Containerization technologies in cloud environments with a focus on vulnerability management and remediation.

Vulnerability assessment and reporting including comprehensive understanding of Vulnerability Management methodologies and procedures, threat assessment, and remediation management.

Managing or using enterprise vulnerability assessment technologies, including Tenable.io, Tenable Security Center, or similar vulnerability solutions, is required.

Preferred:

Experience with using and configuring Aqua Security

Working knowledge of container security concepts, threats, and mitigations

Current information security certification, including Certified Information Systems Security Professional (CISSP), GIAC certification, or Certified Information Security Manager (CISM).

Technical leadership experience in both, sourced and contractor, environments.

Experience managing or operating enterprise vulnerability management in a large commercial enterprise.

Experience working in a multi-cloud enterprise environment.

Ability to understand and manipulate large data sets to provide analysis and reporting.

Experience working on medium to large projects involving multiple teams in a technical lead role within an enterprise environment.

Experience with managing technical aspects of various controls frameworks, such as NIST Security and Privacy Controls and PCI-DSS.

Experience managing or operating enterprise vulnerability management in a large commercial enterprise.

Familiarity with attack and exploitation techniques involving operating systems, applications, and devices commonly seen in an enterprise environment.

Excellent communication skills and problem solving ability.

Demonstrated ability to work independently and with others.

Technical infrastructure operations, administration, or engineering background.

CORE WORK ACTIVITIES

Identify, prioritize, and drive remediate of vulnerabilities across our containerized infrastructure

Provide technical expertise to vulnerability scanning and assessment on containers and containerized applications.

Develop and implement strategies for remediating vulnerabilities in containerized assets

Collaborate with DevOps and IT teams to drive vulnerability remediation

Support the development and implementation of strategies to enhance and mature the Vulnerability Management processes in containers and containerized applications.

Provide technical leadership to the information vulnerability management process, including developing and managing remediation activities.

Identify, triage, and prioritize vulnerabilities and associated remediation and mitigation activity using multiple sources of vulnerability, threat, and asset data.

Develop remediation and mitigation guidance to include vendor-supplied remediations, mitigating actions to reduce risk, and actions to address vulnerabilities within containers for which complete remediation does not exist, on both individual assets and on multi-asset solutions and environments.

Use internal solutions to report on open vulnerabilities, remediation progress, remediation compliance, and vulnerability metrics for use by technical, management, and executive stakeholders.

Perform planned and ad-hoc vulnerability scanning, determine remediation options and track remediation to completion.

Evaluate and test hardware, firmware and software for possible impact on system security, and the investigation and resolution of security risk and incidents.

Assist in the direction of third-party vendors activities to include prioritizing work, developing processes to govern such activities, and reporting on the status, type, and effectiveness of those activities.

Create, maintain, and mature vulnerability management processes and associated documentation.

Maintain documentation repositories related to vulnerability management for use by internal staff and technical stakeholders

Work proactively with IT Infrastructure partners with respect to strategic and tactical plans for information security.

Educates internal and external users of security technologies to continually improve the knowledge and skill-base of the organization on how best to manage security configuration, patch management and vulnerability management within the infrastructure services.

Participates in the evaluation and selection of security services products.

Promotes the benefits of security services to the organization and educates the team on security concepts.

Technical Leadership

Trains and/or mentors other team members, and peers as appropriate

Provides financial input on department or project budgets, capital expenditures or other cost/resource estimates as requested

Identifies opportunities to enhance the service delivery processes

IT Governance

Follows all defined IT standards and processes (i.e. IT Governance, SM&G, Architecture, etc.), and provides input for improvements to the appropriate process owners as needed

Maintains a proper balance between business and operational risk

Follows the defined projec.

Read the full job description and apply online on the recuiter's web-site

Find Jobs Hiring Now Near You!

Get Jobilize Mobile App

Get Jobilize Job Search Mobile App Now

Receive real-time job alerts and never miss the right job again

Get it on Google Play Download on the App Store
Travel Nurse RN - Med Surg 2 105 per week

Aureus Medical Group Nursing

  • United States - MO - MO - st. louis

  • June 19, 2024


Aureus Medical Group - Nursing is seeking a travel nurse RN Med Surg for a travel nursing job in Saint Louis, Missouri. & Requirements • Specialty: Med Surg • Discipline: RN • Start Date: ASAP • Duration: 14 weeks • 36 hours per week • Shift: 12 hours, nights • Employment Type: Travel Estimated...


12N Horizontal Construction Engineers

National Guard

  • United States - MO - MO - Carthage

  • June 18, 2024


• Before a road, airfield, or a building can be constructed, all obstacles must be removed from the site. As a Horizontal Construction Engineer in the Army National Guard, you'll handle the heavy lifting to help your crew succeed. You'll operate bulldozers, roadgraders, and other massive equipment...


Diesel Technician/Mechanic III - Entry Level

Penske Logistics


Address: 1111 Century Avenue, Kansas City, MOWhat's the Job? • Ready to accelerate your career while helping our customers move forward? As a Technician at Penske, you'll do exactly that. Here, you'll do preventative maintenance and minor repairs on the newest and best maintained fleet of vehicles...


31B Military Police - Police Officer

National Guard


• Have you ever dreamed of making an impact? How about serving your community, State, and Nation? As a Military Police Officer for the Army National Guard, you'll do all of these things by protecting, defending, and upholding the law. • MPs support battlefield operations through circulation control,...


25S Satellite Communication Systems Operator-Maintainer

National Guard


• Communication is a vital part of the military's ability to run successful missions. It's the role of the Satellite Communication Systems Operator-Maintainers to ensure the lines of communication are always open, by installing, operating, and maintaining strategic and tactical multi-channel...


Diesel Mechanic/Technician I - Experienced

Penske Logistics


What's the Job? • Ready to move your career forward? As an experienced Technician at Penske, you'll do exactly that. Here, you'll perform preventative maintenance and repairs of all levels on the newest and best maintained fleet of vehicles in the industry. You will help our customers keep their...


15F Aircraft Electrician

National Guard


• If you enjoy working with electrical and electronic equipment and problem-solving, join the Army National Guard as an Aircraft Electrician. You will inspect, service, and repair electrical systems on Army aircraft, ranging from airplanes to helicopters to ensure that they remain operational and...


Registered Nurse RN - PRN/ Per Diem

SSM Health Rehabilitation Hospital

  • United States - MO - MO - St. Louis

  • July 3, 2024


Overview: • SSM Rehabilitation Hospital • A joint venture with Select Medical & Hospital* • Location: Bridgeton, MO • Registered Nurse (RN) - $3,500 Sign-on Bonus • Pay: $42 / hour • Competitive Shift Differentials for Nights and Weekends • 4 shifts per 6 weeks...


42A Human Resources Specialist

National Guard


• When a Soldier has a question about benefits, policy, or needs help with a sensitive issue, the Army National Guard's Human Resources Specialist is the primary go-to person. As an HR Specialist, you will help Soldiers develop their Guard careers and provide personnel support and assistance to all...


Registered Nurse

ShiftMed

  • United States - MO - MO - St Peters

  • July 3, 2024


This vacancy is for an RN at a facility in St Peters, MO.Job DetailsAre you over mandatory overtime, weekends, and holidays? If so, get ready to say goodbye to feeling overworked and undervalued and hello to the job flexibility and work-life balance you deserve.ShiftMed® redefines what it means to...


25U Signal Support Systems Specialist

National Guard

  • United States - MO - MO - Maryville

  • June 18, 2024


• Communication is the pulse of Army National Guard units, and it's up to the Signal Support Systems Specialist to ensure the information keeps flowing so the military doesn't miss a beat. • Signal Support Systems Specialists are responsible for integrating signal systems and networks; performing...


Travel Nurse RN - PCU - Progressive Care Unit 1 857 per week

Medical Solutions

  • United States - MO - MO - branson

  • July 3, 2024


Medical Solutions is seeking a travel nurse RN PCU - Progressive Care Unit for a travel nursing job in Branson, Missouri. & Requirements • Specialty: PCU - Progressive Care Unit • Discipline: RN • Duration: 13 weeks • 36 hours per week • Shift: 12 hours, nights • Employment Type: Travel We're...


Senior Corporate Accountant - St. Louis MO

Watlow

  • United States - MO - MO - St Louis

  • July 3, 2024


Working at Watlow Are you looking for an opportunity to make a great living and be part of a thriving cross functional community? Watlow is a global technology and manufacturing leader who provides world class engineering expertise through innovative thermal products and systems, enabling our...