Information Security Analyst; Vulnerability Management
Listed on 2026-07-17
-
IT/Tech
Cybersecurity
About the job
This role is responsible for the operation of vulnerability assessment tools used to identify, evaluate, and report vulnerabilities across the enterprise. This role performs assessments of systems and networks within the network environment and identifies where those systems/networks deviate from acceptable configurations, standards, or policy.
Responsibilities- Works independently to scope vulnerable bodies of technologies, identify weaknesses, severity, and impact, and recommend paths to remediation.
- Support treatment and remediation activities with identified points of contact and system owners.
- Learns advanced Cybersecurity concepts including new and modern threat exploitation techniques of inside and outside bad actors.
- Contributes to actionable intelligence in the form of reports, notifications, alerts, and briefings.
- Coordinate and communicate with cross‑functional teams throughout the system lifecycle.
- Highly motivated to gain knowledge of security techniques through formal and informal cybersecurity training opportunities (such as on‑the‑job training, mentorship, training courses, knowledge assessments). Contributes to development of relevant applications and systems.
- 2+ Years experience working as an information Security Analyst, Penetration Tester, or similar role.
- Security certifications desired: CEH, Security+, Pen Test+, GSEC.
- Microsoft certifications desired:
Microsoft Certified:
Azure Fundamentals, Microsoft Certified:
Azure Security Engineer Associate. - Hands‑on experience with Vulnerability Management platforms such as Rapid7 InsightVM (preferred), Tenable Nessus, or Qualys in an enterprise environment.
- Experience with multiple operating systems (Windows, macOS, Linux).
- Working knowledge/experience with Python, Power Shell, and REST APIs.
- Advanced knowledge and understanding of vulnerability scoring systems (e.g., CVSSv3, CVSSv4, EPSS).
- Knowledge of endpoint security tools such as EDR solutions like Crowd Strike or Microsoft Defender for Endpoint.
- SIEM Tools such as Microsoft Sentinel and other Advanced security capabilities (Defender for Office, Defender for Cloud Apps, SASE).
- Familiarity with Entra ‑in logs and audit logs as it relates to Incident Response.
- MISP or similar threat intelligence sharing platform.
- Strong understanding and knowledge of Cybersecurity principles and frameworks, such as NIST CSF and ISO
27001. - Experience with Third Party Risk Management, a plus.
- Ability to work collaboratively in a team environment.
- Detail oriented, organized, follow‑up skills with an analytical though.
This is a Contract position based out of Richardson, TX.
Pay and Benefits- Pay range: $43.00 - $48.00/hr.
- Medical, dental & vision.
- Critical Illness, Accident, and Hospital.
- 401(k) Retirement Plan – Pre‑tax and Roth post‑tax contributions available.
- Life Insurance (Voluntary Life & AD&D for the employee and dependents).
- Short and long‑term disability.
- Health Spending Account (HSA).
- Transportation benefits.
- Employee Assistance Program.
- Time Off/Leave (PTO, Vacation or Sick Leave).
This is a hybrid position in Richardson, TX.
Final date to receive applicationsThis position is anticipated to close on Jul 27, 2026.
Equal Opportunity Employer – The company is an equal opportunity employer and will consider all applications without regard to race, sex, age, color, religion, national origin, veteran status, disability, sexual orientation, gender identity, genetic information or any characteristic protected by law.
#J-18808-Ljbffr(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).