Source description
About the role
As a Vulnerability Management Operations professional at FIS, you will play a crucial role in identifying and assessing vulnerabilities, implementing countermeasures, and monitoring new vulnerabilities. Here is what your role will entail: - Identify and assess vulnerabilities, collaborating across teams to implement effective countermeasures - Monitor and respond to new vulnerabilities detected by internal and external scanners - Triage, troubleshoot, and validate scanner findings, coordinating with internal teams for resolution - Track and manage remediation efforts for identified vulnerabilities - Perform regular patching, maintenance, and system/application upkeep - Partner with compliance teams to meet regulatory and audit requirements - Develop and report meaningful metrics to strengthen the Vulnerability Management Program - Engage in rapid response activities to identify potential attack surfaces vulnerable to emerging threats and zero-day exploits To excel in this role, you should bring: - Experience of around 2+ years in Vulnerability Management Operations, including tools like Rapid7, Qualys, ASV coordination, and dynamic application scanning - Experience with open-source tools like Nuclei along with writing custom vulnerability signature templates - Hands-on experience with Burp Suite for web application security testing and vulnerability analysis - Strong understanding of OS platforms (Windows, RedHat, CentOS, etc.) - Familiarity with network devices (Cisco, AIX, Big5, Citrix, etc.) - Basic Python and Bash scripting skills - Working knowledge of ServiceNow Vulnerability Response Module - Working knowledge of SQL queries and PCI DSS compliance - Experience in enterprise-level InfoSec environments with multi-site setups - Strong passion for security and innovation - Strong problem-solving abilities and cross-functional collaboration skills - Excellent written and verbal communication; strong interpersonal skills - Ability to work in a 24/5 rotational shift Certifications such as CPTS, CRTP, EJPT, or other relevant certifications are preferred. At FIS, you can expect: - A multifaceted role with significant responsibility and growth opportunities - Access to professional education and personal development programs - Competitive salary and benefits - A wide range of career development tools, resources, and opportunities FIS is committed to protecting the privacy and security of all personal information. The recruitment at FIS primarily works on a direct sourcing model. We do not accept resumes from recruitment agencies not on the preferred supplier list. Join the dynamic team at FIS and be part of a leading global provider of financial technology solutions! As a Vulnerability Management Operations professional at FIS, you will play a crucial role in identifying and assessing vulnerabilities, implementing countermeasures, and monitoring new vulnerabilities. Here is what your role will entail: - Identify and assess vulnerabilities, collaborating across teams to implement effective countermeasures - Monitor and respond to new vulnerabilities detected by internal and external scanners - Triage, troubleshoot, and validate scanner findings, coordinating with internal teams for resolution - Track and manage remediation efforts for identified vulnerabilities - Perform regular patching, maintenance, and system/application upkeep - Partner with compliance teams to meet regulatory and audit requirements - Develop and report meaningful metrics to strengthen the Vulnerability Management Program - Engage in rapid response activities to identify potential attack surfaces vulnerable to emerging threats and zero-day exploits To excel in this role, you should bring: - Experience of around 2+ years in Vulnerability Management Operations, including tools like Rapid7, Qualys, ASV coordination, and dynamic application scanning - Experience with open-source tools like Nuclei along with writing custom vulnerability signature templates - Hands-on experience with Burp Suite for web application security testing and vulnerability analysis - Strong understanding of OS platforms (Windows, RedHat, CentOS, etc.) - Familiarity with network devices (Cisco, AIX, Big5, Citrix, etc.) - Basic Python and Bash scripting skills - Working knowledge of ServiceNow Vulnerability Response Module - Working knowledge of SQL queries and PCI DSS compliance - Experience in enterprise-level InfoSec environments with multi-site setups - Strong passion for security and innovation - Strong problem-solving abilities and cross-functional collaboration skills - Excellent written and verbal communication; strong interpersonal skills - Ability to work in a 24/5 rotational shift Certifications such as CPTS, CRTP, EJPT, or other relevant certifications are preferred. At FIS, you can expect: - A multifaceted role with significant responsibility and growth opportunities - Access to professional education and personal development programs - Competitive s
More at FIS