Principal Cybersecurity Vulnerability Remediation
Company | AT&T |
---|---|
Location | Bothell, WA, USA, Dallas, TX, USA, Plano, TX, USA, Bedminster, NJ, USA, Charlotte, NC, USA, Alpharetta, GA, USA, Middletown Township, NJ, USA, Atlanta, GA, USA |
Salary | $141300 – $237400 |
Type | Full-Time |
Degrees | Bachelor’s |
Experience Level | Senior, Expert or higher |
Requirements
- Preferred Bachelor’s degree in Information Systems, Engineering, Mathematics or Cyber Security or equivalent experience.
- 8-10 years minimum experience in a Cybersecurity position with at least 5 of that being directly involved in Vulnerability Management.
- CISSP, CCSP, GWAPT
- Expertise in identifying, analyzing, and remediating complex vulnerabilities, including zero-day exploits
- In-depth knowledge of application security principles, secure coding practices, and common vulnerabilities (e.g., OWASP Top Ten).
- Proficiency in threat modeling techniques to anticipate and mitigate potential attack vectors.
- Expertise in evaluating and adjusting risk ratings for vulnerabilities to ensure accurate prioritization.
- Advanced skills in configuring and optimizing security tools to improve detection accuracy and reduce false positives.
- Extensive experience with security tools like Tenable, Veracode, and Shodan.
- Experience in performing code reviews, penetration testing, and security assessments.
- Experience with industry-standard risk calculations and ratings.
- Proficiency in scripting and automation to streamline vulnerability management processes.
- Experience with programming languages such as Python, Go, or similar for developing custom security tools.
- Strong analytical skills for interpreting security data and identifying false positives.
Responsibilities
- Conducting in-depth assessments of vulnerabilities, particularly those that are immediately exploitable or present on critical assets. Implementing both immediate fixes and long-term mitigation strategies.
- Reviewing and refining risk rating methodologies to ensure accurate prioritization.
- Tuning and configuring security tools such as Tenable and Veracode to enhance detection accuracy and reduce false positives.
- Ensuring the accuracy and reliability of vulnerability data through rigorous validation and quality checks.
- Coordinating with business units to facilitate remediation efforts and providing detailed reports on vulnerability status and remediation progress.
Preferred Qualifications
-
No preferred qualifications provided.