Epicareer Might not Working Properly
Learn More

Vulnerability Management and Security Compliance Engineer

Salary undisclosed

Apply on


Original
Simplified

Vulnerability and Compliance Engineer

The mission of the EGSO Engineering and Architecture Vulnerability and Endpoint Compliance team is to safeguard the organization’s digital assets by proactively identifying, assessing, and mitigating vulnerabilities. We strive to ensure compliance with industry standards and regulatory requirements, fostering a culture of security awareness and resilience. Through continuous improvement, collaboration, and innovation, we aim to protect our systems and data, enabling the organization to operate securely and efficiently.

The Vulnerability Management and Endpoint Security Compliance Team perform the following key functions:

  • Proactive Vulnerability Management: Regularly assess and address vulnerabilities to minimize security risks.
  • Endpoint Security: Ensure comprehensive security measures are in place to protect all endpoints from threats.
  • Data Analytics and Reporting: Utilize data analytics to interpret security data, identify trends, and generate actionable insights. Provide comprehensive reporting to support informed decision making.
  • Collaboration and Innovation: Work closely with cross-functional teams to ensure security is integrated into all aspects of the organization’s operations.
  • Continuous improvement: Stay ahead of emerging threats and technologies to enhance our security posture.

Vulnerability and Endpoint Security Compliance Engineer

The Vulnerability and Endpoint Security Compliance Engineer plays a crucial role in safeguarding Experian’s digital assets and is responsible for identifying and assessing security vulnerabilities across the network and endpoints. This engineer will conduct regular vulnerability assessments and leverage data analytics to interpret security data, identify trends, and generate actionable insights. By collaborating with cross functional teams, they integrate security best practices into enterprise operations.

The Vulnerability and Endpoint Security Compliance Engineer is responsible for the build-out of the vulnerability management scanning controls and ensuring comprehensive coverage across the estate. The engineer is an escalation point for questions on vulnerability remediation. Developing reports and providing insights to drive action to reduce risk is a key responsibility of the role.

Job Responsibilities:

  • Conduct regular vulnerability testing to identify security weaknesses.
  • Develop and implement strategies to mitigate identified vulnerabilities.
  • Monitor and analyze security incidents to identify trends and patterns.
  • Collaborate with IT and development teams to ensure security best practices are integrated into system designs.
  • Maintain and operate vulnerability management tools such as Defender VM, Qualys, Tenable, and Rapid7.
  • Generate detailed reports on vulnerability findings and remediation efforts.
  • Stay up to date with the latest security threats, vulnerabilities, and technology trends.
  • Provide training and guidance to staff on vulnerability management and security best practices.
  • Develop and maintain documentation for vulnerability management processes and procedures.
  • Utilize Tines for automation of security workflows.
  • Leverage Power BI for data analytics and visualization to interpret vulnerability data and provide actionable insights.

Knowledge and Skill Requirements:

  • Technical Skills:
    • Proficiency with vulnerability management tools (e.g., Defender VM, Qualys, Tenable, Rapid7).
    • Strong understanding of network protocols and architecture.
    • Knowledge of security frameworks such as NIST, ISO 27001/27002, and HIPAA.
    • Experience with scripting languages (e.g., Python, Perl) for automation.
    • Familiarity with cloud security and application security principles.
    • Experience with Tines for security automation and orchestration.
    • Proficiency with Power BI for data analytics and visualization.
  • Data Analytics Skills:
    • Ability to analyze large datasets to identify trends and patterns in vulnerability data.
    • Proficiency with data visualization tools (e.g., Power BI) to present findings.
    • Experience with statistical analysis and data modeling techniques.
    • Knowledge of SQL for querying databases and extracting relevant
    • information.
  • Soft Skills:
    • Strong analytical and problem-solving abilities.
    • Excellent communication and interpersonal skills.
    • Ability to work collaboratively in a team environment.
    • Attention to detail and a proactive approach to identifying and addressing security issues.
  • Education, Certifications, and Experience:
    • Bachelor’s degree in computer science, information security, or a related field.
    • Relevant certifications such as CISSP, CEH, CISM, or similar a plus.
    • 5 years’ experience in a related role.