Monitor and analyze endpoint vulnerability findings using TenableNessus
Assess findings to determine business impact root cause and remediation requirements
Apply riskbased prioritization aligned to vulnerability severity exploitability asset criticality and remediation SLAs
Coordinate endpoint remediation activities including
Windows and macOS updates and configuration changes
Patch management activities OS and thirdparty applications
Application and browser updates and configuration changes
Driver firmware and UEFIBIOS updates
Removal upgrade or retirement of outdated applications
Develop test and troubleshoot PowerShell scripts to support remediation and automation
Partner with testing teams to validate remediation solutions prior to deployment
Create and manage ServiceNow incidentsrequests and change records support the change management process
Coordinate remediation execution with crossfunctional teams testing deployment operations policy and application owners
Provide endpoint troubleshooting support related to vulnerabilities and remediation deployments
Facilitate meetings with internal teams and business partners as needed to drive timely vulnerability resolution
Maintain remediation tracking data task lists status owners and timelines
Prepare regular status reporting on remediation progress exceptions and outstanding risk
Support remediation exceptions and risk acceptancewaiver workflows ensure documentation and approvals meet governance requirements
Produce and communicate vulnerability remediation metrics eg aging SLA attainment recurrence and provide insights to support decisionmaking
Prioritize and manage multiple concurrent remediation efforts in a deadlinedriven setting
Follow established security operational and documentation standards document work performed and outcomes
Build strong working relationships with partner teams to ensure consistent remediation outcomes
Identify recurring remediation gaps and contribute to process improvements standard operating procedures playbooks automation to reduce repeat vulnerabilities
Required Skills
5 years of experience in endpoint engineeringoperations vulnerability management patch management or a closely related discipline
Experience supporting Windows and macOS endpoints in an enterprise environment
Experience with vulnerability scanning and reporting tools eg TenableNessus
Experience with endpoint security patching or vulnerability remediation processes
PowerShell scripting skills writing testing troubleshooting or modifying scripts
Proficiency with Microsoft 365 tools Excel PowerPoint Word for tracking and communication
Experience using ServiceNow for ticketing and change management
Experience with remote support and troubleshooting tools BeyondTrust preferred
Working knowledge of Microsoft Intune device management and policy
Additional Required Qualifications
Demonstrated ability to influence crossfunctional partners and drive work to completion without direct authority
Demonstrated organization and timemanagement skills
Ability to manage multiple priorities and deliver results with minimal supervision
Strong written and verbal communication skills including status reporting
Ability to partner with technical and nontechnical stakeholders to drive outcomes
Growth mindset with a willingness to learn new tools technologies and security practices
Preferred Qualifications
Relevant certifications eg Security CISSP GIAC andor ITIL foundation
Experience with components of a vulnerability management program SLA tracking exception handling risk reporting
Exposure to Microsoft Azure andor cloud security concepts
Familiarity with enterprise endpoint deployment and software distribution processes