×
Register Here to Apply for Jobs or Post Jobs. X
More jobs:

EASM Validation Analyst

Job in Malvern, Hot Spring County, Arkansas, 72104, USA
Listing for: 慨正橡扯
Full Time position
Listed on 2026-05-27
Job specializations:
  • IT/Tech
    Cybersecurity
Salary/Wage Range or Industry Benchmark: 80000 - 110000 USD Yearly USD 80000.00 110000.00 YEAR
Job Description & How to Apply Below

The External Attack Surface Management (EASM) Validation Analyst is responsible for triaging, validating, and operationalizing external security findings across EASM platforms, Vulnerability Disclosure Program (VDP), and GenAI-driven discovery capabilities. This role ensures that externally identified risks are accurate, prioritized appropriately, attributed to the correct owners, and driven toward remediation, enabling scalable risk reduction across the enterprise attack surface.

Key Responsibilities
  • Triage and validate findings from EASM tools, VDP submissions, and GenAI-driven detection capabilities
  • Perform technical validation to eliminate false positives and confirm exploitability risk
  • Assign severity based on risk frameworks (CVSS, EPSS, KEV, asset criticality)
  • Identify and attribute ownership to responsible application, infrastructure, or business teams
  • Enrich findings with evidence, proof-of-concept, and remediation guidance
  • Drive findings through remediation workflows, tracking SLA adherence and escalation
  • Correlate findings across multiple sources to identify systemic risks or duplicate exposures
  • Maintain and improve triage playbooks, workflows, and standard operating procedures
Platform & Operations Management
  • Administer and support EASM and VDP platforms (e.g., Censys, Defender EASM, Hacker One, Bug Crowd)
  • Manage integrations with enterprise systems
  • Ensure data quality, ingestion accuracy, and workflow integrity across platforms
  • Monitor platform performance, uptime, and SLA adherence
  • Support onboarding of new capabilities, including GenAI detection pipelines
Collaboration & Stakeholder Engagement
  • Partner with application owners, infrastructure teams, and security teams to drive remediation
  • Communicate risk in a clear, actionable manner for both technical and non-technical stakeholders
  • Work with VDP researchers when needed to clarify submissions and validate findings
  • Collaborate with broader vulnerability management and EASM/VDP leadership to improve processes
Required Qualifications
  • 2-5 years of experience in cybersecurity, vulnerability management, or application security
  • Strong understanding of web, API, cloud, and network security concepts
  • Experience with vulnerability triage, validation, and risk prioritization
  • Familiarity with EASM tools and vulnerability management platforms
  • Knowledge of VDP or bug bounty programs and triage methodologies
  • Strong analytical and problem‑solving skills
Preferred Qualifications
  • Experience with scripting (Python, Power Shell, Bash)
  • Familiarity with GenAI‑assisted security tooling
  • Experience working with Service Now VR/IRM, UVM platforms, or similar systems
  • Knowledge of SaaS, cloud environments (AWS, Azure), and internet‑exposed services
  • Industry certifications (Security+, CEH, OSCP, CISSP - Associate level)
Special Factors Sponsorship

Vanguard is not offering visa sponsorship for this position.

#J-18808-Ljbffr
To View & Apply for jobs on this site that accept applications from your location or country, tap the button below to make a Search.
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
 
 
 
Search for further Jobs Here:
(Try combinations for better Results! Or enter less keywords for broader Results)
Location
Increase/decrease your Search Radius (miles)
0
200
Filters
Education Level
Experience Level (years)
Posted in last:
Salary