Mediabistro logo
job logo

Data/Information Architect - Vulnerability Management

DP Professionals, New York, NY, United States


DPP

is seeking a

Data/Information Architect

to support a vulnerability management program in South Carolina.

Work location:

Onsite, hybrid, remote
Duration:

12 months with possibility of extension
Terms : W2 position
Candidate location : Preference will be given to candidates who can work onsite over hybrid and over full-time remote (on-site as needed).

Position summary:

The successful candidate will work as a

Vulnerability Management Systems Analyst

within Information Security and will assist in maturing the statewide vulnerability management program.
The Systems Analyst is responsible for the administration of vulnerability management platforms, agency coordination, risk documentation, and training.
The Analyst will help ensure agencies manage and reduce information security risks through effective patching and remediation.
Responsibilities:

Assist with the statewide vulnerability management program.
Administer vulnerability management platforms, configure policies, reporting, and services to support agencies.
Analyze vulnerabilities, prioritize remediation, and document residual risks for agency systems.
Provide training and guidance to agencies on vulnerability management practices.
Support procurement, configuration, and utilization of vulnerability management tools.
Develop POA&Ms with DIS staff and agencies to track remediation efforts against SLOs.
Perform system criticality validation reviews with agencies to align severity levels and risk exposure.
Provide regular reporting and communication to stakeholders regarding vulnerabilities and risks.
Required knowledge, skills, and abilities:

5+ years of experience with vulnerability management tools (Qualys, Tenable, Rapid7).
5+ years of experience with architecting, deploying, configuring, and operating vulnerability management platforms.
5+ years of experience with Windows and Linux operating systems.
5+ years of experience with interpreting and applying CVSS ratings, POA&M tracking, and risk mitigation strategies.
Preferred:

Familiarity with standards such as PCI Agency, NIST, ITIL, CVSS, and MITRE ATT&CK.
Experience in application security and automation/scripting (Python, PowerShell, Bash).
Prior experience leading statewide vulnerability programs.
CISSP, CISA, CISO or equivalent advanced security certification.
Additional relevant certifications (e.g., CEH, OSCP, GPEN).
Candidate is local to Columbia, SC or surrounding city in South Carolina
Interested? Learn more:
Click the apply button or contact our recruiter

Jason at Jason.Slabaugh@dppit.com

to learn more about this position (# 26-00353 ).

Authorized US Worker

- US Citizens and those authorized to work in the US are encouraged to apply. We are unable to sponsor at this time.

EOE/AA/V/D

DPP

offers a range of compensation and benefits packages to our employees and their eligible dependents. Call today to learn more about working with

DPP .