Vulnerability Management Analyst

Crawford & Company


Date: 5 days ago
City: Manila
Contract type: Full time

The Vulnerability Management Analyst is responsible for identifying information security vulnerabilities that could potentially be exploited and creating a remediation strategy with the appropriate business partner that resolves the potential risks involved. This is a technical role and is critical to the successful delivery of the Information Security strategy. This role will need to balance business priorities, information security risks, emerging threats, and best security practices to ensure the confidentiality, integrity, and availability of critical information assets; recognize vulnerabilities, understand the associated risk, and develop achievable and effective remediation/mitigation strategies; measures potential risks against existing information security controls.


  • Maintain tools used to perform the ongoing assessments
  • Configure and coordinate network and application penetration tests as needed
  • Provide risk assessment of vulnerabilities identified and pen test results
  • Utilize threat and CERT advisories to evaluate potential impact to enterprise posed by various vulnerabilities
  • Develop and maintain remediation and mitigation processes with Security team to address or resolve risks associated with vulnerabilities
  • Assist with developing capabilities necessary to monitor and detect indicators of compromise using security scripts, tools and services
  • Assist with internal research and remediation efforts involving vulnerability exploits

  • Bachelor's degree in a technical engineering , Management Information Systems, Information Security, Computer Information Systems or related IT related field
  • At least 1 year progressively responsible information security experience.
  • Experience performing analysis of network security infrastructure components (e.g., network topography, firewalls, servers, IPS/IDS) and assessing the effectiveness of security implementation.
  • Experience in TCP/IP protocol stack and application protocols such as DHCP, SNMP, DNS, etc. IPSec and SSL VPNs along with SSL/TLS protocol understanding.
  • Foundational skills in vulnerability assessments of networks and operating systems with some pen testing experience is desired
  • Familiarity in using a variety of security network and application scanning tools such as Tenable, Rapid7, Qualys and others is PLUS.
  • Working knowledge of IT systems and functions, process development, change management, and software review processes.
  • Ability to conduct technical evaluations of security solutions and products.
  • Highly seasoned in organizational, time management, decision making and problem solving skills.
  • Strong interpersonal, verbal, presentation and written communication skills.
  • Strong analytical skills.
  • Networking certifications or background in systems and/or network administration desirable.
  • Must complete continuing education requirements as outlined by Crawford Educational Services

How to apply

To apply for this job you need to authorize on our website. If you don't have an account yet, please register.

Post a resume

Similar jobs

IAG Solutions - Business Analyst

JTI - Japan Tobacco International, Manila
7 hours ago
At JTI we celebrate differences, and everyone truly belongs. 46,000 people from all over the world are continuously building their unique success story with us. 83% of employees feel happy working at JTI. To make a difference with us, all you need to do is bring your human best. What will your story be? Apply now! Learn more: jti.com IAG...

FinOps Analyst

AOSP - Manila, Manila
1 day ago
Minimum of 2 years graduate certificate. Amicable to taking Inbound and Outbound calls and if necessary work overtime. Proficient in the German language. For non-native speakers - he/she must hold relevant certification in the language that is required to be used as a mode of communication with the customers. Or equivalent experience in using the language in a day-to-day manner....

Service Delivery Specialist - B

Capgemini, Manila
5 days ago
Job Description Leads the delivery of Client focused procurement services and continuously strives to improve them. Participates in meeting service KPIâ€s executing diverse and time-sensitive activities, considering compliance, quality and efficiency of delivery. Develops business intimacy with local Stakeholders.May lead and/or provides support to other team members in resolving operational issues within own process expertise. Job Description - Grade Specific...