Texas Department of Transportation requires the services of 1 Network Security Analyst 1, hereafter referred to as Candidate(s), who meets the general qualifications of Network Security Analyst 1, Security and the specifications outlined in this document for the Texas Department of Transportation.
Primary Responsibilities
Vulnerability Remediation Coordination
• Review, triage, and manage vulnerability remediation assignments within ServiceNow IT Remediation Workspace.
• Coordinate remediation efforts for vulnerabilities that cannot be addressed through normal patch cycles (e.g., emergency, high-risk CVEs, exceptions, or special remediation scenarios).
• Serve as the central point of coordination between Server Operations, Security (CSOC), and other impacted teams throughout the remediation lifecycle.
• Track remediation status, dependencies, and outstanding actions to ensure vulnerabilities progress to closure in accordance with policy and risk priorities.
• Ensure remediation activities align with the Vulnerability Remediation Process and supporting work instructions.
ServiceNow & IT Remediation Workspace
• Create, manage, and update:
• Vulnerability Remediation Tasks (VUL)
• Associated Change Requests
• Related Configuration Items (CIs)
• Ensure accurate documentation of remediation plans, implementation steps, validation outcomes, and rollback plans within ServiceNow records.
• Validate that vulnerability remediation tasks meet ServiceNow process requirements and audit expectations before change submission.
• Coordinate remediation sequencing across multiple server platforms and support teams using ServiceNow workflows and assignment rules.
Change Management & CAB Presentation
• Prepare and submit Normal and Standard Change Requests for vulnerability remediation activities.
• Present vulnerability remediation changes to CAB, clearly articulating:
• Security risk and urgency
• Scope and impacted systems
• Remediation approach
• Testing and validation plans
• Rollback and risk mitigation measures
• Address CAB questions and coordinate follow up actions as needed to secure approval.
• Ensure approved changes are scheduled, communicated, and implemented in alignment with change windows and operational constraints.
Cross Platform Server Support
• Coordinate vulnerability remediation across:
• Windows Server environments
• Linux Server environments (RHEL)
• Citrix server platforms
• Work with platform SMEs to understand remediation requirements and constraints without directly executing patching activities.
• Ensure consistent remediation tracking and reporting across heterogeneous server platforms.
Organization, Tracking & Reporting
• Maintain detailed tracking of:
• Outstanding vulnerabilities
• Change approvals
• Implementation status
• Validation and closure evidence
• Support audit, compliance, and leadership reporting with accurate, up to date remediation metrics and status summaries.
• Identify process gaps, bottlenecks, or recurring issues and recommend improvements to remediation and change workflows.
Required Experience (3 years minimum each)- Proven experience coordinating server vulnerability remediation in an enterprise environment.
- Strong hands-on experience with ServiceNow, including Change Management and IT Remediation Workspace.
- Solid understanding of change management processes and experience presenting changes to a Change Advisory Board (CAB).
- Practical knowledge of server platforms, including Windows Server, Linux Server, and Citrix Infrastructure.
- Exceptional organizational skills with the ability to manage multiple parallel remediation efforts.
- Strong written and verbal communication skills, especially for CAB presentations and cross-team coordination.
Preferred Experience (1 year minimum each)- Experience supporting vulnerability remediation in a government, regulated, or large enterprise environment.
- Familiarity with vulnerability management workflows involving CSOC, Infrastructure, and Application teams.
- Experience coordinating remediation efforts outside standard patching schedules, including emergency or out-of-band remediation.
- Prior exposure to audit, compliance, or security evidence collection related to vulnerability remediation.
- Demonstrated ability to ensure timely remediation of high-risk and exception-based vulnerabilities.
- Proven track record of producing high-quality, CAB-approved change records with complete and accurate documentation.
- Clear, auditable tracking of vulnerability remediation status from assignment through closure.
- Experience improving coordination and reducing remediation delays across server platforms.