A Vulnerability Analyst or Penetration Tester probes for and exploits security vulnerabilities in web-based applications, networks and systems. Penetration Tests are designed to achieve a specific, attacker-simulated goal and should be requested by customers who are already at their desired security posture. A typical goal could be to access the contents of the prized customer database on the internal network, or to modify a record in an HR system. Vulnerability Assessments are designed to yield a prioritized list of vulnerabilities and are generally for clients who already understand they are not where they want to be in terms of security. The customer already knows they have issues and simply need help identifying and prioritizing them.
Vulnerability Remediation Engineer HCLTech - 3.7 Jersey City, NJ Job Details 3 hours ago Qualifications DevSecOps Practices Performance tuning Continuous Delivery (CD) implementation Tooling System performance optimization Configuration management Operating system updates Security compliance frameworks implementation Bash Server updates Information security compliance Patch management Release management System risk assessment (security system operation) Vulnerability scanning Operating system security Vulnerability management DevOps automation System tuning Information security auditing Python Full Job Description Jersey City, New Jersey Job Summary secure configuration, package/software management, auditing, performance tuning, kernel/module handling, patching, monitoring, and lifecycle management.
DevSecOps integration:
embed security into CI/CD and infrastructure pipelines (vulnerability scanning, secrets management, etc.).
Artifact management:
integrate artifact repositories (e.g., JFrog Artifactory) into release pipelines. Cross‑team coordination: work with Security, Application, OS, and Infra teams to assess, classify, and prioritize security risks by impact and severity. Automation & tooling: develop Ansible playbooks, Python/Bash tooling, and work with CI pipelines (Jenkins); Chef knowledge desirable. Secure baselines & hardening: implement, maintain, and review CIS (or equivalent) OS baselines and system‑level security controls, plus patch management.
Regulated environment experience:
proven track record in large, regulated environments with formal change control, compliance evidence, and lifecycle governance. Key Responsibilities secure configuration, package/software management, auditing, performance tuning, kernel/module handling, patching, monitoring, and lifecycle management.
DevSecOps integration:
embed security into CI/CD and infrastructure pipelines (vulnerability scanning, secrets management, etc.).
Artifact management:
integrate artifact repositories (e.g., JFrog Artifactory) into release pipelines. Cross‑team coordination: work with Security, Application, OS, and Infra teams to assess, classify, and prioritize security risks by impact and severity. Automation & tooling: develop Ansible playbooks, Python/Bash tooling, and work with CI pipelines (Jenkins); Chef knowledge desirable. Secure baselines & hardening: implement, maintain, and review CIS (or equivalent) OS baselines and system‑level security controls, plus patch management.
Regulated environment experience:
proven track record in large, regulated environments with formal change control, compliance evidence, and lifecycle governance. Skill Requirements secure configuration, package/software management, auditing, performance tuning, kernel/module handling, patching, monitoring, and lifecycle management.
DevSecOps integration:
embed security into CI/CD and infrastructure pipelines (vulnerability scanning, secrets management, etc.).
Artifact management:
integrate artifact repositories (e.g., JFrog Artifactory) into release pipelines. Cross‑team coordination: work with Security, Application, OS, and Infra teams to assess, classify, and prioritize security risks by impact and severity. Automation & tooling: develop Ansible playbooks, Python/Bash tooling, and work with CI pipelines (Jenkins); Chef knowledge desirable. Secure baselines & hardening: implement, maintain, and review CIS (or equivalent) OS baselines and system‑level security controls, plus patch management.
Regulated environment experience:
proven track record in large, regulated environments with formal change control, compliance evidence, and lifecycle governance. Other Requirements secure configuration, package/software management, auditing, performance tuning, kernel/module handling, patching, monitoring, and lifecycle management.
DevSecOps integration:
embed security into CI/CD and infrastructure pipelines (vulnerability scanning, secrets management, etc.).
Artifact management:
integrate artifact repositories (e.g., JFrog Artifactory) into release pipelines. Cross‑team coordination: work with Security, Application, OS, and Infra teams to assess, classify, and prioritize security risks by impact and severity. Automation & tooling: develop Ansible playbooks, Python/Bash tooling, and work with CI pipelines (Jenkins); Chef knowledge desirable. Secure baselines & hardening: implement, maintain, and review CIS (or equivalent) OS baselines and system‑level security controls, plus patch management.
Regulated environment experience:
proven track record in large, regulated environments with formal change control, compliance evidence, and lifecycle governance. Maximum Salary (US): Minimum Salary (US): #body.unify div.unify-button-container .