Vulnerability Management - Vice President


New York City, NY

Industry: Security


Not Specified years

Posted 355 days ago

  by    Joanne Leavey

We are looking for an experienced, highly self-motivated candidate for our global Vulnerability Management team within TechnologyRisk Advisory to be based in New York. 

- Strong technical skills particularly in one, or more areas, of infrastructure or platform security 

- Experience operating, or running, a vulnerability management program in a complex and diverse global multi-technology environment 

- Experiencewith industry standard patch management and vulnerability management tools and techniques 

- The ability to clearly articulate technical vulnerabilities and associated risks to a diverse audience 

- The motivation to assist driving, enhancing and contributing to continual improvement of the firm's global vulnerability program 

Risk Advisory delivers best in class advisory support and technology solutions across the information securityrisk domain including scalable uplifts of common core security solutions for use across Goldman Sachs. Prevents the misuse, unauthorized disclosure, or loss of firm data across e-mail, file transfer, and the Internet. Ensures business continuity and technology resilience by safeguarding Goldman Sachs from major operational disruptions through preventative measures including business planning, capability design, and the testing of mitigants. HOW YOU WILL FULFILL YOUR POTENTIAL - Help develop, execute and enhance the firm's global vulnerability management program as part of the global Advisory team within TechnologyRisk - Help Ddrive vulnerability discovery requirements across the firm's technology environment using various automated and manual discovery tools and vendors - Work with vulnerability data from various sources to effectively identify and analyze the firm's security posture in relation to technical vulnerabilities to drive risk reduction - Develop scalable processes and procedures that enable an efficient vulnerability management lifecycle from identification, to reporting, and risk treatment - Collaborate with the firm's engineering teams to assess reported vulnerability applicability and impact to the firm to enable appropriate vulnerability management - Keep up to datewith industry patching and vulnerability trends - Support and help develop junior members of the global Vulnerability Management team SKILLS AND EXPERIENCE WE ARE LOOKING FOR

Basic Qualifications

- Knowledge of vulnerability discovery and remediation techniques, processes and methodologies - Knowledge and experience in the areas of security assessment, vulnerability scanning and risk based threat analysis - Strong understanding of one or more of application, infrastructure, or networking concepts and protocols to support the Vulnerability Management program - Experience using industry standard vulnerability assessment tools (such as nmap, nessus, Qualys) and interpreting, analyzing and assessing their data output - Experience developing repeatable processes, procedures and automation to support the Vulnerability Management program


- Bachelor's degree or higher preferred - Strong project and program management skills

- Clear communication skills, both verbal and in writing - Excellent organization and interpersonal skills - Strong analytic and problem solving ability - Experience working as part of a global team