EU remote
Cybersecurity Vulnerability Analyst
About this role
Receiving information and reports about hardware and software vulnerabilities; analysing the nature, mechanics, and effects of the vulnerabilities; and developing response strategies for detecting and repairing the vulnerabilities. Proactively managing vulnerabilities by performing vulnerability assessments, penetration tests and reviewing the technical security compliance (deviation from a baseline configuration) of systems and services.
Managing response to disclosed vulnerabilities for which no countermeasure is yet available. This service can involve communicating with vendors, other CSIRTs, technical experts, consultant members, and the individuals or groups who initially discovered or reported the vulnerability. Evaluates results of security audits and tests, security findings, priorities, plans, and implements remediation controls. Provides forensic analysis in response to information security incidents.
Assesses security controls of new applications to establish compliance level and appropriate configuration. Performing vulnerability watch. Processing of incoming vulnerability warnings, alerts and reports. Oversee the management of known vulnerabilities through established processes and procedures. Triage based on verification, level of exposure and impact assessment. Analysing and examining vulnerabilities in hardware or software.
Validating the existence of suspected vulnerabilities by determining where they are located and how they can be exploited. Reviewing source code, using a debugger to determine where the vulnerability occurs, or trying to reproduce the problem on a test system. Notifying the various parts of the Agency about the vulnerability and shares information about how to fix or mitigate the vulnerability. Verifying that the vulnerability response strategy has been successfully implemented.
Performing regular vulnerability scans of system and applications, writing reports including recommendations for improvements and following-up the remediation process for identified vulnerabilities. Providing regular reports and dashboards (based on KPIs) to monitor security improvements. Performing penetration tests and writing reports including recommendations for improvements. Reviewing the technical security compliance of systems against defined security baselines (gold configuration), writing reports and following-up the remediation process for identified non-compliance.