Jobs · OTHR · Illinois

Sr. Associate, Threat and Vulnerability

Northern Trust · Chicago, IL · 2 days ago
OTHR$89k–$151k/yrFull-time

Vulnerability Management

Analyze vulnerability scanning results across infrastructure, cloud, endpoints, applications, and container environments.
Assess new vulnerabilities, CVEs, and security advisories to determine organizational exposure.
Prioritize remediation using CVSS, exploitability, threat intelligence, business criticality, and asset context.
Track remediation activities and provide reporting on vulnerability reduction initiatives.
Support validation and verification of remediation efforts.

Exposure Management

Identify and assess attack paths and security weaknesses across the enterprise environment.
Support Continuous Threat Exposure Management (CTEM) activities and exposure reduction programs.
Analyze internal and external attack surface risks.
Assist with developing and maintaining threat-informed vulnerability remediation strategies.
Monitor and assess emerging cyber threats, adversary activity, and industry trends relevant to the financial services sector.
Evaluate threat intelligence feeds, industry reports, and vulnerability disclosures.
Analyze threat actor tactics, techniques, and procedures (TTPs) and determine potential impact to Northern Trust.

Collaboration

Work closely with SOC, Threat Intelligence, Penetration Testing, Infrastructure, Cloud Engineering, Application Security, and Risk teams.
Support remediation discussions with technology owners and business stakeholders.
Participate in cyber security projects and continuous improvement initiatives.

Required Qualifications

  • Bachelor's degree in Cyber Security, Computer Science, Information Technology, or related discipline.
  • 3-5 years of experience in cyber security, vulnerability management, threat intelligence, security operations, or related fields.
  • Experience analyzing vulnerabilities and security risks within large enterprise environments.
  • Understanding of common attack methodologies and cyber threat actor behaviors.
  • Familiarity with vulnerability scoring methodologies such as CVSS.
  • Experience with vulnerability management platforms such as Zafran, Qualys, Microsoft Defender Vulnerability Management, or equivalent.
  • Understanding of cloud security principles across Azure, AWS, or Google Cloud.
  • Strong analytical, problem-solving, and communication skills.

Similar jobs

Sr. Vulnerability Analyst

Henry Ford HealthDetroit, MI· 4 mo ago
Business Developmentapply on henryford.referrals.selectminds.com