Senior Analyst - Vulnerability Management
Senior Analyst - Vulnerability Management
Societe Generale Global Solution Centre5-7 Years
Early Applicant
- Posted 12 days ago
- Be among the first 20 applicants
Job Description
Reference 26000HUB
Responsibilities
Profile required
We are committed to creating a diverse environment and are proud to be an equal opportunity employer. All qualified applicants receive consideration for employment without regard to race, color, religion, gender, gender identity or expression, sexual orientation, national origin, genetics, disability, age, or veteran status.
Business insight
At Société Générale, we are convinced that people are drivers of change, and that the world of
tomorrow will be shaped by all their initiatives, from the smallest to the most ambitious.
Whether you're joining us for a period of months, years or your entire career, together we can have
a positive impact on the future. Creating, daring, innovating and taking action are part of our DNA.
If you too want to be directly involved, grow in a stimulating and caring environment, feel useful on a
daily basis and develop or strengthen your expertise, you will feel right at home with us!
Still hesitating
You should know that our employees can dedicate several days per year to solidarity actions during
their working hours, including sponsoring people struggling with their orientation or professional
integration, participating in the financial education of young apprentices and sharing their skills with
charities. There are many ways to get involved.
Responsibilities
- Manage complex information systems to understand and prioritize actions on Cyber Security risks, audit requirements and data value, and provide guidance to vulnerability management team members
- Flexible to work in 24/7 support
- Drive prioritization of vulnerabilities through a group SVM standards approach, to meet common organizational objectives such as regulatory compliance and audit functions
- Manage and Lead Crisis for super critical and zero-day vulnerabilities, from invoking the crisis till the closure and regular updates to management, BISO and CIOs of the group
- Manage the triage of vulnerabilities, ensuring mitigation measures are implemented, follow -up till its closure
- strategies and provide advice on complex configuration changes in support of vulnerability remediation
- Proactively identify and leverage threat intelligence sources to inform strategic vulnerability mitigation measures
Profile required
- Minimum 5+ experience with Hands on any detection tool like Tenable, Nessus, Qualys etc..
- Vulnerability Management processes and standards
- Exploitation concepts
- Knowledge of vulnerability management frameworks and concepts such as CVE, and CVSS scoring systems and EPSS
- Automation Skills – For quick reporting, PowerBI, Python Scripting etc
- Hands on experience on Vulnerability Management, Policy Compliance, Web Application Scanning, Cloud Agent, Asset View
- Excellent verbal and written communication skills to effectively report findings and collaborate with cross-functional teams.
We are committed to creating a diverse environment and are proud to be an equal opportunity employer. All qualified applicants receive consideration for employment without regard to race, color, religion, gender, gender identity or expression, sexual orientation, national origin, genetics, disability, age, or veteran status.
Business insight
At Société Générale, we are convinced that people are drivers of change, and that the world of
tomorrow will be shaped by all their initiatives, from the smallest to the most ambitious.
Whether you're joining us for a period of months, years or your entire career, together we can have
a positive impact on the future. Creating, daring, innovating and taking action are part of our DNA.
If you too want to be directly involved, grow in a stimulating and caring environment, feel useful on a
daily basis and develop or strengthen your expertise, you will feel right at home with us!
Still hesitating
You should know that our employees can dedicate several days per year to solidarity actions during
their working hours, including sponsoring people struggling with their orientation or professional
integration, participating in the financial education of young apprentices and sharing their skills with
charities. There are many ways to get involved.
More Info
Key Skills
Vulnerability Management processes and standards
Cloud Agent Asset View
Vulnerability Management Policy Compliance
EPSS
Tenable
Web Application Scanning
Exploitation concepts
CVE and CVSS scoring systems
