The Cervantes Group

Hardening Compliance Analyst

Role description

The Hardening Compliance Analyst will work with the team to help approve the process to measure hardening compliance across various US-based entities. This person will support the team to understand hardening compliance gaps by setting up the initial configurations of the compliance measurement tool, creating new compliance measurement profiles and setting up the reports templates needed. The ideal person is very comfortable assisting the Security teams in consolidating the way/tool used to measure hardening compliance.


Job Duties:

  • Assess hardening compliance gaps identified by the hardening compliance scans and evaluate, rate and perform risk assessments on assets by creating new report templates.
  • Prioritize remediation of gaps discovered along with remediation timeline(s) and work with associated teams to explain gaps and remediation steps as required.
  • Create reports and provide analysis on gaps for technical teams and leadership.
  • Collaborate with upper management and technical teams to help create strategy and technical design to configure and install Policy Compliance Qualys module.
  • Provide crucial insights into the most pressing issues and suggest how to prioritize security resources while monitoring for and detecting security events utilizing Qualys.
  • Evaluate, rate and perform risk assessments on assets in addition to reviewing alerts escalated by end users and perform initial triage of incoming issues.
  • Document, investigate and notify appropriate contact for security events and response while participating in the resolution of events, even after they are escalated.
  • Monitor health alerts and downstream dependencies in addition to providing limited response to end users for low complexity security events and reviewing false positive with the various Security teams to tune and provide feedback to improve accuracy of the alerts.


Required Qualifications & Experience:

  • Bachelor’s Degree is required
  • Bilingual in both English/Spanish (strong written & verbal skills) is a must
  • 2-3+ years’ experience of vulnerability management/hardening compliance is required
  • 2+ years’ experience using Vulnerability Management & analysis using tools such as Qualys, Nessus, Rapid7, QRadar, etc., is required
  • General network knowledge, TCP/IP, Internet Routing, UNIX / LINUX & Windows OS
  • Strong understanding of vulnerability scanning and reporting


Pluses (not required but preferred experience) include:

  • Previous experience as a Systems Admin hardening Windows/Linux systems


Empleos recomendados

The Cervantes Group

JIRA Adminsitrator

25 de Abril del 2024
Remoto
Otro

The Jira Administrator will be helping to implement Jira-to-Jira integration needs and provide ongoing Jira changes within Jira to Cloud and Confluence to Cloud migrations. This person will be installing new software releases and system upgrades, evaluating and installing patches, and resolving software related problems. Perform system backups and recovery while maintaining data files and monitoring system configuration to ensure data integrity. Support, troubleshoot and resolve incidents within operating systems, servers, networks, system security, hardware and other software applications and create system documentation, including configurations and backup procedures.


The Cervantes Group

Cloud Engineer

24 de Abril del 2024
Boston
Otro

The Cloud Engineer is responsible for leading the designing, deploying, and maintenance of cloud-based systems and infrastructure within a specific cloud platform (e.g., AWS, Azure, Google Cloud). This role focuses on building and optimizing the technical foundation that supports applications, services, and data in the cloud environment in addition to implementing IaC tools for deployments. 


The Cervantes Group

Cloud Engineer

24 de Abril del 2024
Miami
Otro

The Cloud Engineer is responsible for leading the designing, deploying, and maintenance of cloud-based systems and infrastructure within a specific cloud platform (e.g., AWS, Azure, Google Cloud). This role focuses on building and optimizing the technical foundation that supports applications, services, and data in the cloud environment in addition to implementing IaC tools for deployments. 


The Cervantes Group

Cloud Engineer

24 de Abril del 2024
Dallas
Otro

The Cloud Engineer is responsible for leading the designing, deploying, and maintenance of cloud-based systems and infrastructure within a specific cloud platform (e.g., AWS, Azure, Google Cloud). This role focuses on building and optimizing the technical foundation that supports applications, services, and data in the cloud environment in addition to implementing IaC tools for deployments.