Senior IT Security Vulnerability Analyst
Job Overview
- Company Name TJX Companies
- Job Start Date Fri, 21 Jan 2022 23:42:55 GMT
- Job Type Full Time - Permanent
- Job Source Careerjet
Job title: Senior IT Security Vulnerability Analyst
Job description: What you’ll discover
- Inclusive culture and career growth opportunities
- Global IT Organization which collaborates across U.S., Canada, Europe and Australia, click here to learn more
- Challenging, collaborative, and team-based environment
What you’ll do
We are looking for an IT Security Analyst III to join and supplement our Vulnerability Management Team. A successful Analyst can work effectively with IT stakeholders to provide technical and process guidance expertise across a broad range of vulnerability management work efforts
- As a Security Analyst you will use vulnerability identification tools and application security testing solutions to identify security vulnerabilities.
- In this role you will work with other IT Product and platform teams to perform infrastructure vulnerability scans, provide in-depth technical expertise and generate appropriate metrics.
- You will be responsible for analyzing scan results, engaging stakeholders to resolve identified vulnerabilities and provide remediation guidance.
- You’ll get to perform deep-dive analysis of new vulnerabilities leveraging data from various public and internal sources; and provide recommendations on how mitigation must be done.
- You will review and prioritize vulnerabilities based on severity along with assessing impact to assets at TJX
- You will a trusted partner for other Enterprise teams to assist in maintaining asset, configuration management and vulnerability databases.
- In this role you will also work closely with other Cybersecurity and IT Risk teams to mature the overall Vulnerability Management program
What you’ll need
Our Vulnerability Management Team is looking for a passionate individual who can work independently in an organized manner and communicate highly technical details effectively. We are looking for someone with strong technical skills and experience, as well as the ability to work calmly under pressure. A person with intellectual curiosity and willingness to learn will be successful in this role. They must act with integrity and take pride in their work
Qualifications
- 5 years in an IT Security environment or equivalent
- 5+ years’ experience in an Enterprise vulnerability management program.
- Bachelor’s Degree in Computer Science, MIS, Information Security or related field, or equivalent experience
- Experience with applying Common Weakness Enumeration (CWE) and Common Vulnerability Scoring System (CVSS)
- Experience with technical vulnerability assessments and techniques
- Thorough hands-on experience with vulnerability scanning tools such as Qualys, Rapid7 -Nexpose, or Tenable – Nessus, etc. service discovery tools such as Nmap, Wireshark, etc.
- Experience evaluating threats and their impacts.
- Familiarity with multiple endpoint operating systems and network devices.
Desired:
- Exposure to Standards, Policies, and Legislation, e.g. ISO27001, NIST CSF, PCI DSS, FTC, etc.
- Familiarity with configuration baseline standards such as CIS Benchmarks or DISA STIGs
- Knowledge of automation and orchestration tools like the ServiceNow Vulnerability Response module will be an added advantage.
Preferred:
- Experience with Vulnerability Management and Configuration hardening in Cloud environments like Azure, AWS.
- Experience with scripting languages or pen-testing tools.
- Experience performing analytics and creating metrics from raw data
- Professional certification like CEH, GEVA, CISSP, OSCP, Security+ preferred
- Experience leading large remediation or transformation efforts involving multiple teams.
Posting details
- Application closing date: February 20, 2022
- Internal TJX Associates: please review this opportunity with your direct supervisor or manager prior to submitting an application. In order to be considered, please attach your completed Internal Candidate Endorsement Form to your application.
Every day is an opportunity to discover something new about our business, our partnerships and even something exciting about yourself. By becoming a member of our TJX Canada family, you’ll have the full support of a diverse, close-knit group of people across our Distributions Centres, Retail Stores (Winners, HomeSense, Marshalls) and our Office locations. Are you ready to Discover Different? Here at TJX Canada, we are an equal opportunity employer committed to the inclusion and accommodation of all individuals. For additional assistance please email
Source:
