Retour aux emplois
XX
Vulnerability Management EngineerUniversity of MinnesotaMinneapolis, Minnesota, United States

Cette offre d'emploi n'est plus disponible

XX

Vulnerability Management Engineer

University of Minnesota
  • US
    Minneapolis, Minnesota, United States
  • US
    Minneapolis, Minnesota, United States

À propos

About the Job At the University of Minnesota, we are dedicated to changing lives through education, research, and outreach. The University Information Security department (UIS) offers an environment of trust, collaboration, and mission‑focused work. We seek an individual who will be responsible for providing guidance and support to the broader University IT community in detecting and addressing security vulnerabilities. This position will manage University vulnerability management tools and provide risk‑based prioritization and consultative support to IT staff detecting and remediating security vulnerabilities to maintain compliance with information security policy.
The University of Minnesota is committed to fostering local talent through employment opportunities. While this position utilizes a predominantly remote work modality, prospective applicants must be located either in the state of Minnesota or near the Wisconsin border or otherwise open to relocation.
Please note, this position is not eligible for H‑1B or Green Card sponsorship.
Job Responsibilities
Engineer solutions and maintain the University‑wide vulnerability management program.
Develop and manage remediation activities by ensuring departments mitigate vulnerabilities in a timely manner based on risk.
Build integration and automation for vulnerability management tasks.
Define vulnerability analysis, resolution strategy, and provide input to mitigation proposals.
Initiate scans and other testing mechanisms as needed.
Engineer technical solutions to manage exposure to vulnerabilities.
Collaborate with distributed IT staff and system owners to help them interpret results, validate false‑positives, and apply patches and remediations.
Consult with system administrators to understand the operational impact and effort associated with mitigations.
Prioritize and design various vulnerability management tool functions and features.
Develop metrics to measure the effectiveness of the vulnerability management program and mitigation strategies.
Evaluate and implement technical options for enhanced visibility and decision‑making by stakeholders at multiple levels.
Interface, influence, and engage the University’s IT community to promote vulnerability management across various levels of the organization.
Provide guidance to comply with University policy and other relevant frameworks.
Document, manage, and perform auditable procedures.
Maintain strong knowledge of vulnerability management best practices and familiarity with relevant frameworks (CVSS, OWASP Top 10).
Escalate security issues where appropriate.
Qualifications Required Qualifications:
Bachelor’s degree and 4 years of relevant work experience or a Master’s degree plus at least two years of experience.
At least 2 years of experience in one or more of the following: Vulnerability Management, Systems Administration.
Experience providing consultative guidance to diverse teams.
Current technical knowledge and understanding of threats, emerging threats, and vulnerabilities.
Proficiency in STIGs, CIS benchmarks, and NIST frameworks for system hardening.
Demonstrated ability to manage projects and/or programs, including prioritization of efforts.
Excellent communication (oral, written, presentation), interpersonal, and consultative skills.
Preferred Qualifications:
Strong understanding of vulnerability management best practices and familiarity with relevant frameworks (CVSS, OWASP Top 10).
Experience with vulnerability management governance structures in a large/decentralized organization.
Knowledge or experience with relevant information security and regulatory frameworks such as CIS, PCI, HIPAA, NIST, CMMC.
One or more relevant security related certifications (e.g. GSEC, Security+).
Coding/scripting experience (e.g. python, powershell, etc.).
Experience with deployment, maintenance and use of vulnerability scanning and testing tools (Rapid7, Tenable, Qualys or others).
Demonstrated process improvement and/or process design experience, including supporting technical documentation.
Pay and Benefits Pay Range:
$107,000 - $117,000 (depending on education/qualifications/experience)
Time Appointment:
100% Appointment
Position Type:
Faculty and P&A Staff
Benefits:
Competitive wages, paid holidays, and generous time off.
Continuous learning opportunities through professional training and degree‑seeking programs supported by the Regents Tuition Benefit Program.
Low‑cost medical, dental, and pharmacy plans.
Health care and dependent care flexible spending accounts.
University HSA contributions.
Disability and employer‑paid life insurance.
Employee wellbeing program.
Excellent retirement plans with employer contribution.
Public Service Loan Forgiveness (PSLF) opportunity.
Financial counseling services.
Employee Assistance Program with eight sessions of counseling at no cost.
Employee Transit Pass with free or reduced rates in the Twin Cities metro area.
Employment Requirements Any offer of employment is contingent upon the successful completion of a background check. Our presumption is that prospective employees are eligible to work here. Criminal convictions do not automatically disqualify finalists from employment.
Diversity The University recognizes and values the importance of diversity and inclusion in enriching the employment experience of its employees and in supporting the academic mission. The University of Minnesota provides equal access to and opportunity in its programs, facilities, and employment without regard to race, color, creed, religion, national origin, gender, age, marital status, disability, public assistance status, veteran status, sexual orientation, gender identity, or gender expression. To learn more about diversity at the U: http://diversity.umn.edu
#J-18808-Ljbffr
  • Minneapolis, Minnesota, United States

Compétences linguistiques

  • English
Avis aux utilisateurs

Cette offre a été publiée par l’un de nos partenaires. Vous pouvez consulter l’offre originale ici.