Security Vuln Metrics

hace 6 días


San Francisco, Heredia, Costa Rica Experian A tiempo completo

Company Description
**About us, but we'll be brief**
Experian is the world's leading global information services company, unlocking the power of data to create more opportunities for consumers, businesses and society.
We are thrilled to share that FORTUNE has named Experian one of the 100 Best Companies to work for.
In addition, for the last five years we've been name in the 100 "World's Most Innovative Companies" by Forbes Magazine.
**Job Description**:
**What you'll be doing**

**Responsibilities**
- This is an independent role, responsible for driving the development of vulnerability management metrics, gathering feedback from senior leaders in the organization, and being able to articulate metrics to senior leaders
- Evaluate and define functional requirements for vulnerabilities, flaws, and misconfigurations metrics
- Understand the end-to-end Cloud and Attack Surface Management metrics process including metrics collection, tracking, and reporting.
- Develop, maintain, and run advanced reporting, dashboards, scorecards and analytical results
- Communicate metrics to system owners and business partners on outstanding vulnerabilities, issues, and concerns.
- Develop and automate vulnerability metrics with specific procedures for data collection, analysis, and charting, partnering with necessary teams as appropriate.
- Determines requirements for technical solutions and tools to effectively implement Vulnerability Metrics
- Maps metrics back to strategic objectives for providing insight into the effectiveness and efficiency of Cloud and Attack Surface Management
- Develops vulnerability KPIs/metrics to demonstrate coverage and remediation effectiveness
- Develops program efficacy metrics to support platform stability and improvements
- Review business and internal requests for new or vulnerability management reporting, design the solution, and develop metrics
- Work with stakeholders to identify risk-based vulnerability management metrics that align with the security program and security risk management.
- Develop procedures to structure the metrics and reporting framework as part of a long-term strategy
- Produce timely scoping documents outlining the requirements for business requests
- Provide actionable recommendations to critical stakeholders based on data analysis and findings related to vulnerability management processes requiring reporting
- Aggregating vulnerability data across technologies such as endpoints, servers, network equipment, and cloud and interpreting and presenting risk.
**Qualifications**:
**What your background looks like**
- Four-year college diploma or university degree in computer science or computer engineering, and/or 5 years equivalent work experience.
- 5+ related experience in Cyber Security/Information Security and Vulnerability Management reporting
- Experienced in tools like SQL, Tableau, MS Excel, etc.
- Experienced with collaboration tools such as JIRA, ServiceNow, Confluence, etc.
- Understanding of end-to-end security metrics process including metrics collection, tracking, and reporting, including ownership and responsibilities for each activity.
- Understanding of Common Vulnerability Scoring System (CVSS), including calculations and implications of base, temporal, and environmental scoring factors
- Experience with collecting, analyzing, and interpreting qualitative and quantitative data from various sources for the purposes of detailing results and analyzing findings to provide sophisticated threat intelligence.
- Familiarity with architecture, engineering, and operations of one or more vulnerability management tools, such as Wiz, Qualys, Rapid7, and ServiceNow.
- Ability to provide creative solutions to complex problems
- Ability to clearly communicate the risk of vulnerabilities to all levels within an organization.
- Knowledge of major cloud platforms (AWS, Azure, or GCP).
- Ability to manage, organize, analyze, and present substantial amounts of data
- Experience with large-scale and complex environments
- A broad and deep understanding of cybersecurity threats, vulnerabilities, controls, and remediation strategies
- Applied knowledge and experience in cybersecurity, technology infrastructure, vulnerability management, and security and controls
- An ability to communicate complex and technical issues to diverse audiences, orally and in writing, in an easily-understood and actionable manner

**Personal Attributes**
- Excellent interpersonal skills and strong verbal and written communication
- Proactive attitude, seeking improvement opportunities that can positively impact the security posture and the business
- Outstanding writing and documentation skills
- Strong organizational skills with proven ability to manage multiple high visibility issues simultaneously
- Able to communicate ideas in both technical and user-friendly language
- Highly self-motivated and directed, with keen attention to detail
- Able to prioritize and execute tasks in a high



  • San Francisco, Heredia, Costa Rica Experian A tiempo completo

    Company OverviewAt Experian, we're passionate about unlocking the power of data to create more opportunities for consumers, businesses, and society. Our mission is to help organizations make informed decisions by providing accurate and actionable insights.Job Description: Security Vulnerability Metrics RoleWe're seeking a highly skilled individual to join...


  • San Francisco, Heredia, Costa Rica Global Services Business A tiempo completo

    An important company is looking for a skilled expert to drive its application security efforts. As an Application Security Engineer with Global Services Business, you will play a key role in ensuring the security and integrity of our applications.**Responsibilities:**Conduct regular application security reviews using various tools and techniques (SAST, DAST,...


  • San Francisco, Heredia, Costa Rica Experian A tiempo completo

    Job DescriptionWe are seeking an experienced Data Engineer to join our team in the Experian Global Security Office.The successful candidate will be responsible for the timely and quality delivery of analytic data services, focusing on the development, automation, and build-out of transformation routines in support of our Security Metrics & Reporting...


  • San Francisco, Heredia, Costa Rica Moody'S A tiempo completo

    Cybersecurity Engineer Job SummaryThis role involves providing engineering and operational support for network security products and services, as well as evaluating security concerns with new and emerging technologies.Responsibilities:Design and implement network security solutions.Develop and maintain security metrics for IT Risk programs.Mentor and guide...

  • Security Lead Engineer

    hace 2 semanas


    San Francisco, Heredia, Costa Rica Auxis A tiempo completo

    Job Summary:Security Lead Engineer is responsible for the provisioning, deployment, configuration, and administration of many different pieces of network and security-related hardware and software.Security Lead Engineer is also responsible to mitigate any potential threats that become evident, but also to strategize and prepare before any security threat is...


  • San Francisco, Heredia, Costa Rica Stryker Corporation A tiempo completo

    Job DescriptionWe are seeking a highly skilled Information Security Analyst to join our team. As an Information Security Analyst, you will be responsible for analyzing and executing weekly scanning of our environment to discover misconfigurations in security toolsets.You will work to remediate any misconfigurations to align with Stryker standards that...


  • San Francisco, Heredia, Costa Rica Experian A tiempo completo

    Experian is the world's leading global information services company, empowering consumers and clients to manage data with confidence.We have 20,000 people operating across 44 countries, investing in new technologies, talented individuals, and innovation to help clients maximize opportunities.About the RoleThe Cybersecurity Risk Manager role involves...


  • San Francisco, Heredia, Costa Rica Global Services Business A tiempo completo

    We are seeking a seasoned professional to lead our application security efforts as an Application Security Engineer. In this critical role, you will be responsible for developing and implementing secure software development practices across our organization.**Key Responsibilities:**Schedule and conduct regular application security reviews to identify...

  • Lead Security Partner

    hace 2 semanas


    San Francisco, Heredia, Costa Rica Experian A tiempo completo

    Full-timeEmployee Status: RegularRole Type: HomeDepartment: Legal & ComplianceSchedule: Full Time**Company Description**:Experian is the world's leading global information services company.During life's big moments - from buying a home or a car, to sending a child to college, to growing a business by connecting with new customers - we empower consumers and...


  • San Francisco, Heredia, Costa Rica Experian A tiempo completo

    About the RoleWe're seeking an experienced Information Security Support Specialist to join our team and provide support for the maintenance, testing, and operational support of security reporting systems.As a member of the Experian Global Security Office, you'll be responsible for monitoring and ensuring system compliance with policy requirements, including...

  • Security Data Engineer Ii

    hace 2 semanas


    San Francisco, Heredia, Costa Rica Experian A tiempo completo

    Full-timeEmployee Status: RegularRole Type: HomeDepartment: AnalyticsSchedule: Full TimeShift: Day Shift**Company Description**:Experian is the world's leading global information services company.During life's big moments - from buying a home or a car, to sending a child to college, to growing a business by connecting with new customers - we empower...


  • San Francisco, Heredia, Costa Rica Stryker A tiempo completo

    **Why Choose a Career at Stryker?**Stryker is committed to delivering exceptional value to its customers through innovative medical technologies and solutions. As a Physical Security Senior Coordinator, you will play a vital role in ensuring the security of our facilities and assets.**Job Summary:**We are seeking an experienced Physical Security Senior...


  • San Francisco, Heredia, Costa Rica Experian A tiempo completo

    Job DescriptionSupport business as usual (BAU) activities by fulfilling multiple requests for internal users and external clients, adhering to security best practices, guidelines set by the Global Information Security Policy, and ISO 27001 principles.Investigate minor security breaches in accordance with established procedures.Assist users in defining their...


  • San Francisco, Heredia, Costa Rica Stryker A tiempo completo

    About This Position:We are looking for a highly motivated and experienced Information Security Management Specialist to join our team as a Cyber Security Assurance Associate Manager. In this role, you will be responsible for leading a team of security analysts in identifying and mitigating risks to our information technology systems.You will work closely...


  • San Francisco, Heredia, Costa Rica Moody'S A tiempo completo

    The Cybersecurity team is globally responsible for helping the organization balance risk by aligning policies and procedures with Moody's business and regulatory requirements.The team is responsible for the development, enforcement and monitoring of security controls, policies and procedures, disaster recovery programs, GRC (Governance, Risk and Compliance)...


  • San Francisco, Heredia, Costa Rica Moody'S A tiempo completo

    The Cybersecurity team is globally responsible for helping the organization balance risk by aligning policies and procedures with Moody's business and regulatory requirements.The team is responsible for the development, enforcement and monitoring of security controls, policies and procedures, disaster recovery programs, GRC (Governance, Risk and Compliance)...

  • IT Security Specialist

    hace 5 días


    San Francisco, Heredia, Costa Rica Stryker Corporation A tiempo completo

    **About the Role**We are seeking an experienced IT Security Specialist to join our team at Stryker Corporation. In this role, you will be responsible for analyzing and executing weekly scanning of our environment to discover misconfigurations in security toolsets.This position will then work to remediate any misconfigurations to align with Stryker standards...

  • Security Lead Mexico

    hace 13 horas


    San Francisco, Heredia, Costa Rica Uber A tiempo completo

    **About the Role**:We're looking for a new member of the Global Security team.The Security Lead Mexico & ACAC, will work closely with the Regional Security Manager, leading all aspects of the security of Uber's people, properties, and assets throughout the region.The Lead will work cross functionally with local and regional leadership to support and complete...


  • San Francisco, Heredia, Costa Rica Stryker Corporation A tiempo completo

    **Why join Stryker?**:Our total rewards package offering includes bonuses, healthcare, insurance benefits, retirement programs, wellness programs, as well as service and performance awards - not to mention various social and recreational activities, all of which are location specific.**Know someone at Stryker?**:As a Cyber Security Assurance Analyst at...


  • San Francisco, Heredia, Costa Rica Moody'S A tiempo completo

    About Moody's">Moody's is a global integrated risk assessment firm that empowers organizations to make better decisions.We are committed to helping our clients balance risk and opportunity by providing independent and objective credit ratings, research, and risk analysis.The Cybersecurity Team">The Cybersecurity team is responsible for helping the...