Cybersecurity Specialist
Listed on 2025-12-25
-
IT/Tech
Cybersecurity
At Dow, we believe in putting people first and we’re passionate about delivering integrity, respect and safety to our customers, our employees, and the planet.
Our people are at the heart of our solutions. They reflect the communities we live in and the world where we do business. Their diversity is our strength. We’re a community of relentless problem solvers that offers the daily opportunity to contribute with your perspective, transform industries and shape the future. Our purpose is simple – to deliver a sustainable future for the world through science and collaboration.
If you’re looking for a challenge and meaningful role, you’re in the right place.
Dow (NYSE: DOW) is one of the world’s leading materials science companies, serving customers in high-growth markets such as packaging, infrastructure, mobility and consumer applications. Our global breadth, asset integration and scale, focused innovation, leading business positions and commitment to sustainability enable us to achieve profitable growth and help deliver a sustainable future. We operate manufacturing sites in 30 countries and employ approximately 36,000 people.
Dow delivered sales of approximately $43 billion in 2024. References to Dow or the Company mean Dow Inc. and its subsidiaries. Learn more about us and our ambition to be the most innovative, customer‑centric, inclusive and sustainable materials science company in the world by visiting
Dow has an exciting opportunity for a Cybersecurity Vulnerability Specialist located in Midland, MI or Houston, TX. This role is responsible for overseeing the identification, assessment, and driving remediation of security vulnerabilities across the Dow’s technology infrastructure. This role involves managing vulnerability scanning tools, coordinating with IT and security teams, and ensuring timely mitigation of risks to protect the organization’s digital assets.
Responsibilities- Vulnerability Program Execution & Improvement
- Assist in planning, implementing, and continuously improving the vulnerability management program.
- Support automation and optimization of the vulnerability lifecycle, including data ingestion, normalization, and compliance metrics.
- Assessment & Analysis
- Conduct regular vulnerability assessments using automated tools and manual techniques across infrastructure and applications.
- Review and analyze vulnerability data from various sources (e.g., internal/external scans, penetration tests) to determine risk ratings and business impact.
- Perform recurring and on-demand scanning of corporate and cloud environments.
- Remediation & Collaboration
- Prioritize vulnerabilities based on risk and coordinate remediation efforts with IT, Dev Ops, system owners, and application teams.
- Provide support and resolution for remediation issues and validate post-remediation effectiveness.
- Communicate risks and recommend cost‑effective security controls to business stakeholders.
- Monitoring, Reporting & Compliance
- Develop and maintain dashboards and metrics to track vulnerability trends and remediation progress.
- Ensure scan results are appropriately reported and integrated into relevant systems.
- Ensure compliance with regulatory and industry standards (e.g., NIST, ISO 27001, PCI‑DSS).
- Knowledge Sharing & Incident Response
- Stay current with emerging threats, vulnerabilities, and security technologies relevant to the environment.
- Provide guidance and training on secure configurations and best practices.
- Participate in incident response activities related to exploited vulnerabilities.
- A minimum of a bachelor’s degree or relevant military experience at or above a U.S. E5 ranking or Canadian Petty Officer 2nd Class or Sergeant or 5 years relevant experience in lieu of a Bachelor's degree.
- Strong understanding of vulnerability management frameworks and tools.
- Minimum of 2 years relevant experience required.
- Experience in cybersecurity, vulnerability management, or incident response required.
- Knowledge of common vulnerabilities and exposures (CVEs), CVSS scoring, temporal scoring and threat modeling.
- Experience with patch management processes and secure system configurations.
- Familiarity with…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).