Jobs · OTHR · Michigan

Manager, Vulnerability Mgmt & Azure Access

Jackson · Lansing, MI · 3 wk ago
OTHRFull-time

Lead the vulnerability management function focused on finding, assessing, reporting, and supporting vulnerability remediation efforts within security operations. This role also leads the processes, procedures, and implementation of Azure Conditional Access and Single-Sign On, forming strong partnerships with technical teams and guiding team members with vision, strategy, and prioritization.

Responsibilities

  • Leads, identifies, and guides vulnerability management activities.
  • Provides recommendations based on best practices and experience to develop processes that enhance efficiencies for security-related responsibilities.
  • Leads activities related to Azure Conditional Access and Single Sign On.
  • Develops models for identifying incident-type activity, either malware or threat actors.
  • Understands the current threat landscape and provides input to the Information Security program on areas of focus.
  • Drives actionable metrics and reporting for operations and leadership transparency.
  • Serves as subject matter expert related to vulnerabilities management and patching.
  • Works with other security and IT professionals to assess potential impact from threats, determines and implements recommendations for monitoring and tracking threats.
  • Provides mentorship, coaching, performance management, career development, and support to team members regarding threats, vulnerability analysis, conditional access, and Single Sign On.
  • Performs other duties and/or projects as assigned.

Requirements

  • Bachelor's Degree and/or equivalent experience required.
  • 8+ years strong background in Information Security, IT, Cybersecurity, or some combination of both.
  • CISSP required.
  • CEH preferred.
  • OSCP preferred.

Skills

  • Ability to interface with teams across the Information Security program and guide them through threats and security risks.
  • Ability to design, evaluate, and document processes and lead teams in accomplishing process review and improvement.
  • Understanding of the relationship between threats, vulnerabilities, and information value in the context of risk management.
  • Knowledge of threat management related concepts, including attack vectors, threat actors, scope and modes of operation of known threats, and patterns related to cyber threats.
  • Understanding of attacker mindset, exploitation, and how vulnerabilities are leveraged.
  • Excellent written and verbal communication skills.
  • Ability to lead a team and manage resources.
  • Ability to think clearly and make decisions under pressure.
  • Familiarity with surface web, deep web, and dark web—specifically around forums, commodity malware, and malware as a service.
  • Experience guiding and coaching others in subject matter.
  • Ability to prioritize work and demands for self and team, including making risk-based decisions about remediation recommendations.
  • Ability to define, communicate, and execute on a vision and strategy.
  • Ability to effectively communicate with technical and non-technical resources.
  • Familiarity with Conditional Access and Single Sign On.

Similar jobs