ISH Tecnologia

Information Security Analyst – Vulnerability Management

ISH Tecnologia

full-time

Posted on:

Location Type: Remote

Location: Brazil

Visit company website

Explore more

AI Apply
Apply

About the role

  • Operate, monitor, and administer Vulnerability Management tools such as Tenable, Qualys, and other related solutions;
  • Perform regular vulnerability scans and review the results, proposing corrective and mitigating actions;
  • Implement and monitor security controls focused on Vulnerability Management, ensuring compliance with best practices and applicable standards;
  • Develop and review routines and procedures related to Vulnerability Management and Information Security;
  • Prepare technical and management reports on the status of vulnerabilities and the mitigation actions taken;
  • Collaborate with internal teams;
  • Participate in audits and compliance assessments, providing evidence and information related to Vulnerability Management.

Requirements

  • Experience with Vulnerability Management tools such as Tenable and Qualys;
  • Knowledge of vulnerability analysis and management methodologies (CVSS, frameworks such as OWASP, etc.);
  • Experience implementing and monitoring security controls related to Vulnerability Management;
  • Ability to draft and review technical documents, such as procedures and security policies;
  • Knowledge of standards and best practices such as ISO/IEC 27001, NIST, and LGPD (Brazilian General Data Protection Law).
Benefits
  • 📊 Check your resume score for this job Improve your chances of getting an interview by checking your resume score before you apply. Check Resume Score
Applicant Tracking System Keywords

Tip: use these terms in your resume and cover letter to boost ATS matches.

Hard Skills & Tools
vulnerability managementvulnerability analysissecurity controlstechnical documentationcompliance assessmentsvulnerability scanningmitigation actionssecurity policiesbest practicesmethodologies
Soft Skills
collaborationcommunication
Certifications
ISO/IEC 27001NISTLGPD