Insight Global logo

Vulnerability Engineer - Cybersecurity

Insight Global

Milwaukee, WIJobSeen 1 day agoSeen in employer's feed 1 day ago

Most applications go out cold — see where you stand first. No sign-up to start.

Watch jobs like this.

At a glance

Compensation
No compensation found
Location
Milwaukee, WI
Work Authorization
Not specified

Olive lists jobs from US employers, including remote roles you can work from the United States.

Job overview

Insight Global seeks an IT Cybersecurity Analyst – Vulnerability Engineer for a large utility client, responsible for identifying, evaluating, prioritizing, communicating and driving remediation of vulnerabilities across a broad enterprise environment, while collaborating with infrastructure, networking and security teams and improving the vulnerability management program.

Skills & qualifications

RequiredNice to have

Skills

Tenable/NessusQualysRapid7 InsightVMPowerShellPythonWindows ServersLinux ServersNetwork DevicesAppliancesRoutersFirewallsCloud InfrastructureSecurity FrameworksVulnerability Classification Methodologies

Qualifications

3+ Years Professional Experience in Cybersecurity or Related Field2+ Years Hands-on Vulnerability Management ExperienceSecurity+ CertificationCySA+ CertificationCISSP CertificationGIAC Certification

Full job description

Job Description

Job Description Insight Global is seeking an IT Cybersecurity Analyst – Vulnerability Engineer to join one of our largest utility clients in the Midwest. This individual will join the Cybersecurity organization and play a critical role in identifying, evaluating, prioritizing, communicating, and driving the remediation of vulnerabilities across a large enterprise environment. This role goes beyond simply operating a vulnerability scanning tool. The Vulnerability Engineer will work closely with infrastructure, networking, cybersecurity, and other technical teams to identify vulnerabilities, evaluate their potential impact, determine appropriate priorities, and help coordinate remediation efforts. A major component of this position is communication and influence. The ideal candidate will be able to take complex technical vulnerabilities and clearly explain what the risk is, why it matters, and why certain vulnerabilities need to be addressed ahead of others. This individual will also proactively monitor zero-day vulnerabilities and emerging cyber threats while helping continuously improve and expand the organization's vulnerability management program across servers, endpoints, network infrastructure, appliances, and other connected technologies.

Day-to-Day Responsibilities

  • Identify, analyze, evaluate, and prioritize vulnerabilities across the enterprise environment.
  • Operate and support enterprise vulnerability scanning and vulnerability management technologies.
  • Analyze vulnerability findings to determine actual risk, severity, potential impact, and remediation priority.
  • Partner with infrastructure, networking, cybersecurity, and other technical teams to communicate vulnerability findings and coordinate remediation.
  • Clearly explain why a vulnerability is a priority, helping technical teams understand the associated risk and gain buy-in around remediation efforts.
  • Assist teams with identifying appropriate remediation or risk-reduction strategies for identified vulnerabilities.
  • Track vulnerabilities throughout the remediation lifecycle and validate remediation efforts as needed.
  • Proactively monitor zero-day vulnerabilities, emerging cybersecurity threats, security advisories, and newly disclosed vulnerabilities that could impact the organization.
  • Evaluate emerging vulnerability information and determine its relevance and potential impact to the enterprise.
  • Help continuously improve, mature, and expand the vulnerability management program by identifying opportunities for additional scanning and security coverage.
  • Expand vulnerability scanning across a broad range of assets, including Windows servers, Linux servers, workstations, network devices, appliances, routers, firewalls, and other network-connected technologies.
  • Apply networking knowledge to support vulnerability scanning across complex enterprise environments.
  • Work cross-functionally to gather information on technologies, assets, and environments that should be incorporated into the vulnerability management program.
  • Support continuous improvement of vulnerability management processes, procedures, reporting, and overall security posture.

Skills and Requirements

  • 3+ years of professional experience in cybersecurity, vulnerability management, security engineering, network security, or a closely related field.
  • 2+ years of hands-on vulnerability management experience, including vulnerability identification, evaluation, prioritization, remediation coordination, and validation.
  • Hands-on experience working with an enterprise vulnerability scanning or vulnerability management platform.
  • Strong understanding of the vulnerability management lifecycle, from initial discovery through remediation and validation.
  • Ability to analyze vulnerability findings and determine which vulnerabilities pose the greatest risk and should receive the highest remediation priority.
  • Experience partnering with infrastructure, networking, security, or other technical teams to drive vulnerability remediation.
  • Strong knowledge of enterprise networking concepts and network infrastructure.
  • Experience working across a variety of enterprise technologies, including Windows, Linux, network devices, appliances, routers, and firewalls.
  • Understanding of zero-day vulnerabilities and emerging cybersecurity threats and the ability to evaluate their relevance to an enterprise environment.
  • Strong analytical, troubleshooting, and problem-solving capabilities.
  • Excellent written and verbal communication skills, with the ability to clearly explain technical vulnerabilities, associated risks, and remediation priorities.
  • Strong interpersonal and influencing skills with the ability to gain buy-in from technical teams and stakeholders.
  • Experience helping build, mature, or expand an enterprise vulnerability management program.
  • Experience extending vulnerability scanning into new asset types, technologies, or environments.
  • Experience with vulnerability management platforms such as Tenable/Nessus, Qualys, Rapid7 InsightVM, or comparable technology.
  • Experience working within a large enterprise, regulated organization, utility, or critical infrastructure environment.
  • Exposure to cloud infrastructure and cloud vulnerability management.
  • Experience developing vulnerability management reports, metrics, dashboards, or KPIs.
  • Experience with scripting or automation technologies such as PowerShell or Python.
  • Knowledge of cybersecurity frameworks and vulnerability classification methodologies.
  • Relevant cybersecurity certifications such as Security+, CySA+, CISSP, GIAC, or similar.

We are a company committed to creating diverse and inclusive environments where people can bring their full, authentic selves to work every day. We are an equal employment opportunity/affirmative action employer that believes everyone matters. Qualified candidates will receive consideration for employment without regard to race, color, ethnicity, religion, sex (including pregnancy), sexual orientation, gender identity and expression, marital status, national origin, ancestry, genetic factors, age, disability, protected veteran status, military or uniformed service member status, or any other status or characteristic protected by applicable laws, regulations, and ordinances. If you need assistance and/or a reasonable accommodation due to a disability during the application or the recruiting process, please send a request to [email protected].

Similar jobs, posted recently

Open roles like this one, listed in the last 30 days.

You've read the whole posting — now see how you match it.