Henry Ford Health System

Sr. Vulnerability Analyst

Henry Ford Health System$90K — $120K *
Information Technology
5 - 7 years of experience
Job Overview by Ladders

Qualifications

  • Bachelor's degree in business administration, engineering, information systems, or information assurance required
  • 7+ years of IT or security experience, with 5+ years in information security
  • 1+ year of direct experience in offensive testing or threat assessment preferred
  • Strong knowledge of industry-leading vulnerability management tools
  • Certifications such as CISSP, CISM, CISA, OSCP, or CRTO recommended
  • Experience with security laws, standards, and best practices (e.g., HIPAA, PCI)
  • Familiarity with operational auditing, risk management, and incident management

Responsibilities

  • Lead vulnerability management efforts across the HFHS enterprise
  • Collaborate with IT to ensure policy compliance and vulnerability monitoring
  • Develop independent assessment plans and manage project activities
  • Support identification, assessment, and mitigation of vulnerabilities
  • Utilize security tools to monitor and report on potential threats
  • Provide mentorship and guidance to security personnel on vulnerability management
  • Interface with various organizational levels to facilitate security initiatives

Benefits

  • Opportunity to work at the forefront of vulnerability management
  • Collaborative environment that emphasizes teamwork and mentorship
  • Access to cutting-edge security tools and technologies
  • Involvement in compliance assurance with applicable laws and regulations
  • Potential for career advancement within an established healthcare organization
  • Professional development opportunities through training and certifications
Full Job Description
Senior Vulnerability Analyst is a key role in advancing vulnerability management throughout the HFHS enterprise through technical expertise with a focus on threat intelligence, vulnerability management, and offensive security. The Senior Vulnerability Analyst works collaboratively to support the identification, assessment, mitigation, and monitoring of vulnerabilities by utilizing various security tools and other techniques. The Senior Vulnerability Analyst independently develops assessment plans, supports, or leads projects, and may also manage the activities of security personnel that are focused on aspects of the Threat and Vulnerability Management program. The Senior Vulnerability Analyst reports to the Vulnerability Management Services Manager. In conjunction the Senior Vulnerability Analyst works in a collaborative effort with IT to assure vulnerability management and policy compliance security programs and technical controls are compliant with policies, applicable laws, and regulations.

EDUCATION AND EXPERIENCE:
  • Bachelor's degree in business administration, Engineering, and Information Systems, Information Assurance or closely related field, required
  • Minimum seven (7) years of related IT or security experience, which includes five (5) years of direct information security experience, and a minimum of one (1) year experience directly related to offensive testing and/or threat assessment.
  • Strong working experience and understanding of industry leading vulnerability management tools. CISSP, CISM, or CISA is recommended. OSCP, CRTO, or other offensive testing certification is recommended.
  • Experience providing working knowledge and skills in the following: Security laws, mandates, standards, and best practices (i.e., HIPAA, ISO, ACA, DFIS, NACHA, Payor customer group security requirements, PCI, HITECH, GLB, etc.).
  • Demonstratable relevant work experience within information security including the areas of operational / technology auditing & risk, offensive testing, threat assessment, and vulnerability management.
  • Experience or knowledge of technical and operational, business and healthcare environment preferably Payor related healthcare activities.
  • Familiarity with national security standards, business continuity, disaster recover, auditing, risk management, vulnerability assessments, regulatory compliance, and incident management.
  • Strong understanding of project management and information technology background. Good analytical, organizational, verbal, and written communication skills. Ability to solve problems in a dynamic team environment and handle multiple assignments in a timely manner.
  • Experience in conflict management skills necessary to resolve issues where corporate areas disagree.
  • Ability to effectively interface with various levels of management internally and as well as contacts outside the organization.
  • Must be able to travel to other HFHS and Subsidiary facilities and vendor sites to meet with operating or audit personnel.
  • A service focused team player who can lead and mentor team members. Excellent customer service and interpersonal skills demonstrated both over the phone and face-to-face to communicate technical information in non-technical terms.
  • Consensus building and collaborative interpersonal skills. Good presentation skills.
  • Ability to work under pressure, establish priorities and respond with urgency.
  • Self-motivated with excellent verbal and written skills.

About Henry Ford Health System

Henry Ford Health System is a non-profit healthcare organization based in Detroit, Michigan. The organization was founded in 1915 by automotive pioneer Henry Ford and has since grown to include hospitals, medical centers, and other healthcare facilities throughout Michigan. Henry Ford Health System provides a wide range of healthcare services, including primary care, specialty care, and emergency care. The organization is also involved in medical research and education, and operates the Henry Ford Health Sciences Center. In 2019, Henry Ford Health System was ranked as the 5th largest healthcare system in Michigan by Crain's Detroit Business.
Learn more about Henry Ford Health System
Size
33,000 employees
Industry
Founded
1915

Similar Jobs

More Jobs at Henry Ford Health System

More Information Technology Jobs

Find similar Sr. Vulnerability Analyst jobs: