Full-Time

Vulnerability Management Analyst

Confirmed live in the last 24 hours

AVEVA

AVEVA

5,001-10,000 employees

Data & Analytics
Industrial & Manufacturing
Energy

Mid

London, UK

Hybrid position requiring 3 days in the office.

Category
Cybersecurity
IT & Security
Required Skills
Microsoft Azure
AWS
Google Cloud Platform
Requirements
  • Minimum of 3 years information and cyber security experience, and experience in IT Vulnerability Management.
  • Experience using vulnerability scanning tools such as Qualys, Tenable, Rapid7 and vulnerability management platforms (RiskVision, Kenna Security).
  • Experience managing vulnerability management findings/services for cloud environments (Amazon Web Services, Microsoft Azure, Google Cloud Platform).
  • Strong understanding of vulnerability management practices and methodologies. Knowledge of common vulnerability frameworks (CVSS, OWASP Top 10).
  • Working knowledge of system, application, network and database hardening techniques and practices.
  • Working knowledge of one or more of the following - cloud technologies, internet security, networking protocols or experience with software development.
  • Strong analytical skills and ability to identify advanced vulnerability threats.
  • Knowledge and understanding of information risk concepts and principles, as a means of relating business needs to security controls.
  • Knowledge of and experience in developing and documenting security processes and plans.
  • Knowledge and experience with implementing common information security management frameworks, such as International Organization for Standardization (ISO) 2700x series, ITIL, COBIT and National Institute of Standards and Technology (NIST) or Centre for Internet Security (CIS) frameworks would be advantageous.
Responsibilities
  • Conduct vulnerability assessments to identify known vulnerabilities and configuration weaknesses and assess the effectiveness of existing controls and recommends remedial action.
  • Maintain current knowledge and understanding of the threat landscape and emerging security threats and vulnerabilities.
  • Analyse risks associated with vulnerabilities, provide detailed reporting, and recommend actionable remediation strategies.
  • Support compliance and risk management activities, recommending security controls and corrective actions to mitigate vulnerability risks.
  • Serve as an escalation point on issues, dependencies, and risks related to vulnerability scanning and security testing.
  • Collaborate with multiple stakeholders to prioritize vulnerabilities based on severity, impact, and exploitability.
  • Support the development of AVEVA’s Vulnerability management policy, process, and procedures.
  • Managing the end-to-end vulnerability lifecycle from discovery to closure ensuring the relevant resolver team put in place a plan and timely remediation working with both managed service providers and internal IT and Information Security staff.
  • Utilising information from external vulnerability reporting tools such as BitSight, RiskRecon, Security Scorecard and vendor vulnerability briefings determine the priority of remediations needed across the AVEVA estate.
  • Manage security assessment processes, including performing, tracking remediation, validating controls, measuring residual risk, and writing reports.
  • Coordinate and oversee remediation efforts to ensure timely and effective resolution of security vulnerabilities.

Company Stage

IPO

Total Funding

N/A

Headquarters

Cambridge, United Kingdom

Founded

N/A

Growth & Insights
Headcount

6 month growth

7%

1 year growth

7%

2 year growth

7%
Simplify Jobs

Simplify's Take

What believers are saying

  • AVEVA's expansion into key markets like Argentina and Brazil indicates strong growth potential and increased market penetration.
  • The integration of Newforma Konekt with AVEVA E3D Design offers users a comprehensive solution for managing complex projects, enhancing AVEVA's value proposition.
  • The launch of the Customer Experience Centre in Hyderabad reflects AVEVA's commitment to customer engagement and support, potentially leading to higher customer satisfaction and retention.

What critics are saying

  • AVEVA's reliance on strategic partnerships may expose it to risks if these collaborations do not yield the expected results.
  • The competitive landscape in industrial software is intense, with major players potentially challenging AVEVA's market position.

What makes AVEVA unique

  • AVEVA's strategic partnerships, such as with Seeq and AWS, enhance its capabilities in AI and data management, setting it apart from competitors in the industrial software sector.
  • The launch of the AVEVA Connect platform and MSP partner program demonstrates AVEVA's commitment to flexibility and choice, providing a competitive edge in the industrial software market.
  • AVEVA's focus on sustainability, as evidenced by its collaboration with the Green Software Foundation and the release of its Sustainability Progress Report, positions it as a leader in ethical and impact-driven AI.

Help us improve and share your feedback! Did you find this helpful?