Luxoft is a global leader in high-end software development.
Luxoft is looking for talents with a passion for technology & ready to create original solutions. Once on board, you are invited to expand your knowledge & skills, offering you a continuous learning experience helping you stretch your potential.
So if you’re enthusiastic by the idea of accessing cutting edge technology & innovation to make an impact, why don't you join us?
Reporting to the ASR Service Operations Lead, the Vulnerability Analyst will be responsible for:
- Analysis of vulnerability scan data to identify critical vulnerabilities and to determine gaps in patch / vulnerability management processes
- Compiling, disseminating and tracking security vulnerabilities with internal remediation teams
- Tracking publicly and privately released vulnerabilities and assists in the triage process including identification, criticality evaluation, remediation planning, communications and resolution
- Prepares reports on vulnerability testing and works with business units to develop remediation plans
- Keep up with the changing nature of security threats and researches and investigates new and emerging vulnerabilities and participate in external security communities
- Assisting Cyber Security project team to deliver incremental improvements across ASR
- Supporting Cyber Security Operations team during major security incidents and providing subject matter expertise
Essentials Skills and Qualifications:
- Degree in a related discipline or qualified by experience
- Experience in Information Security or Vulnerability Management processes
- Possess understanding of Cyber Security / Information Security Frameworks
- Experience with Qualys or Nessus would be beneficial
- Technical understanding of cyber-attacks, threat vectors ,in particular insider threats
- Strong communication skills, both verbal and written
- A team player with an ability to work collaboratively with others
- Ability to work in dynamic and matrix organization environment
Leading Bank has a well-defined security management program for addressing the information and cyber security requirements of the organization. Within this, Technology Security Services (TSS) is responsible for the definition, implementation and operation of technology controls to protect the organization from security risk.
TSS is organized and defines its products and services in four functional areas: Cyber, Network, IAM and Data Protection & Application Security. Within Cyber, a set of products and services has been defined under the heading Attack Surface Reduction (ASR), which cover Vulnerability Management Scanning (VMS) and Secure Configuration Management (SCM). The goal is to see a reduction in the attack surface from technical vulnerabilities and systems misconfigurations, supported by strong processes, technology and people.
