Job Description
Vulnerability Assessment/ Management Specialist
nABOUT THE ROLE
nThe Vulnerability Assessment Specialist will manage the end-to-end vulnerability lifecycle across the portfolio companies, from scanning and risk prioritization through to verified remediation. You will also plan and execute annual penetration tests, web application assessments, and cloud security reviews.
n
nKEY RESPONSIBILITIES
nDesign and manage vulnerability scanning program across all portfolio companies
nOperate and tune scanning platforms (Tenable, Qualys, Rapid7) for continuous coverage
nPrioritize findings using CVSS scoring and business risk context
nTrack remediation SLAs and escalate overdue critical vulnerabilities
nConduct annual internal and external penetration tests per company rotation
nPerform web application security assessments (OWASP Top 10)
nDeliver cloud configuration reviews and CSPM gap analysis
nProduce executive-level and technical vulnerability reports
nBuild and maintain vulnerability management KPIs and dashboards
n
nREQUIREMENTS & SKILLS
nBachelor's in Cybersecurity, CS, or equivalent experience
n4+ years invulnerability management or penetration testing roles
nProficiency with Tenable (Nessus), Qualys, or Rapid7 InsightVM
nHands-on penetration testing experience (network, web app, cloud)
nFamiliarity with OWASP Top 10, CVE/NVD, and CVSS scoring
nKnowledge of cloud security(AWS, Azure, GCP) configuration review
nScripting skills (Python, Bash) for automation of scanning workflows
nCertifications preferred: OSCP, CEH, CompTIA PenTest+, GPEN, GWAPT
nExcellent report writing skills for both technical and executive audiences