Job was saved successfully.
Job was removed from Saved Jobs.

Job Details


Verizon Communications Inc

Vulnerability Security Engineer

Law Enforcement and Security

Diplomatic Security

No

Cary, North Carolina, United States

When you join Verizon

Verizon is one of the world’s leading providers of technology and communications services, transforming the way we connect across the globe. We’re a diverse network of people driven by our shared ambition to shape a better future. Here, we have the ability to learn and grow at the speed of technology, and the space to create within every role. Together, we are moving the world forward – and you can too. Dream it. Build it. Do it here.

What you’ll be doing...

The Verizon Corporate Information Security (CIS) organization securely enables the business by protecting assets and information across Verizon networks, infrastructure and applications. CIS integrates cybersecurity governance, policies, technologies and operations across Verizon, and works to incorporate security into the design of technology systems and services.

The Vulnerability Scanning Security Engineer will support VES Business unit and Public Sector Continuous Monitoring efforts and is responsible for Vulnerability assessment and compliance of Verizon public sector Information Technology (IT) system. This position is responsible to execute vulnerability scans using industry standard tools to support and ensure the implementation and maintenance of security controls in accordance with the Federal Information Security Management Act (FISMA), FedRAMP, CJIS, NIST Risk Management Framework, and Center for Information Security (CIS Security) and other relevant Government policies. The position will also be responsible for configuration and maintenance of the scanning infrastructure, ensure boundary security policies and procedures to meet compliance requirements from stakeholders supporting the environment.

  • Perform installation, configuration and execution of vulnerability and compliance assessments tools including Tenable products like Security Center, Nessus, Nessus Agents and other application assessment tools like Trustwave App detective and Fortify WebInspect dynamic and static code analysis.
  • Coordinate and execute vulnerability and compliance scans, perform assessments autonomously with little supervision.
  • Coordinate and troubleshoot to resolve authentication and scan failure issues with internal stakeholders.
  • Track software updates provided by the vendor and upgrade of all vulnerability assessment and compliance tools to ensure all systems managed by the team are secure.
  • Perform System administrative tasks including installation,configuration,patching,backup,remediation of vulnerabilities.
  • Document methods and procedures for each of the security boundaries and the scan infrastructure managed by the team.
  • Support as a participating member on Verizon’s internal security teams to influence CPI 810 and drive corporate security solutions into the business units and an understanding of external technical bodies and the ability to interpret and influence those entities.
  • Coordinate with peers to review and resolve any issues identified vulnerability status of security boundaries managed by the team.
  • Communicate with the third party vendors in regards to issues with the scanning tools to ensure issues identified during the scanning process are troubleshooted and resolved.

Where you'll be working:

In this hybrid role, you'll have a defined work location that includes work from home and assigned office days set by your manager

What we’re looking for...

  • Bachelor’s degree or four or more years of work experience.
  • Three or more years of relevant work experience.
  • Experience with at least two of the following tools: Tenable-Nessus, Nessus Agents and Tenable.SC, AppDetective, WebInspect. Fortify static code analysis and Blackduck.
  • Experience in information security.

Even better if you have:.

  • Master’s degree.
  • Two or more years of experience in system administration of Linux and Windows operating systems.
  • Two or more years of experience in developing or leading an automation project.
  • Two or more years of experience scripting and programming languages.
  • Two or more years of experience in penetration testing.
  • Strong knowledge and understanding of TCP/IP, subnetting, network concepts and troubleshooting.
  • Knowledge of scripting and programming languages.
  • Highly motivated and ability to work independently with little supervision.
  • Network and Information Security Degree/Certification.
  • Public Sector and Gov Cyber Security focused experience.
  • UNIX/Linux and Windows server administration skills.
  • Detail oriented and ability to recognize critical elements of successful operations.
  • CEH, CCNA.

22CyberOPS

Equal Employment Opportunity

We're proud to be an equal opportunity employer - and celebrate our employees' differences, including race, color, religion, sex, sexual orientation, gender identity, national origin, age, disability, and Veteran status. At Verizon, we know that diversity makes us stronger. We are committed to a collaborative, inclusive environment that encourages authenticity and fosters a sense of belonging. We strive for everyone to feel valued, connected, and empowered to reach their potential and contribute their best. Check out our diversity and inclusion page to learn more.

COVID-19 Vaccination Requirement

Verizon requires new hires to be fully vaccinated against COVID-19. Verizon provides reasonable accommodations consistent with legal requirements (e.g., for medical, religious, or state law recognized reasons).