
Senior Security Analyst, Vulnerability Management at Fullsteam. Location Information: US-GA-Remote, United States. . It's fun to work in a company where people truly BELIEVE in what they're doing!. Fullsteam is a leading provider of vertical software and embedded payments technology dedicated to helping businesses flourish by providing their customers with seamless experiences. With a dynamic and growing team of over 1,900 employees, we are committed to driving innovation and delivering best-in-class software and payment solutions that empower small and medium-sized businesses across numerous industries. Our purpose is to help our customers grow their businesses and delight their customers. Join us and be a part of a forward-thinking company that values growth, excellence, and the success of our clients.. This position is part of the Fullsteam InfoSec Team which is directly responsible for working with Business Units and Fullsteam Corporate on security initiatives and response.. At Fullsteam, we are committed to safeguarding our digital assets and ensuring the highest level of security for our clients. As we continue to build our security programs with seasoned security practitioners, we are looking for a passionate and experienced Senior . Vulnerability Management. Analyst to join our Proactive Security Team. If you thrive in a fast-paced dynamic environment and are eager to contribute to the development of our VM program, we want to hear from you!. Primary Responsibilities:. Develop and maintain a security vulnerability management program, ensuring identified risks and vulnerabilities are remediated according to SLAs across the Enterprise and Business Units.. Develop and maintain a secure configuration management program including baselines, secure hardening guides, and security best practices.. Collaborate with Security, IT, and BU Engineering teams to continuously develop and improve effective and measured vulnerability and risk exposure outcomes.. Ensure alignment of VM program goals with industry regulations and standards (PCI-DSS, SOC2, NIST CSF, ISO 27001).. Identify and develop VM automation process and reporting capabilities where needed.. Contribute to risk management and governance functions (e.g. manage risk register, gather key metrics).. Mentor, guide, and collaborate with other Proactive Security team members. Skills & Competencies:. 4+ years of experience in effective Vulnerability Management and/or Attack Surface Management responsibilities.. In-depth knowledge and experience with vulnerability management tools (Qualys, Nessus, Rapid7 Insight VM, Wiz, Orca, MS Defender, etc).. Experience with Application security testing models and tools (SAST, DAST, IAST).. Experience with basic scripting/programming skills in any language.. Experience developing and formalizing collaborative process documentation.. Ability to work independently in a fully remote environment while managing priorities across multiple concurrent projects.. Innate desire to be curious, learn, and grow.. Minimum Qualifications:. CISSP or equivalent certification (GIAC, CISM, CRISC). Bachelor’s degree in cybersecurity or equivalent work experience. Hands-on Defensive or Offensive security training or work experience. Project management knowledge, training and/or certifications. Fullsteam supports an inclusive workplace that values diversity of thought, experience, and background. Fullsteam is an Equal Opportunity/Affirmative Action employer. All qualified applicants will receive consideration for employment without regard to race, religion, color, national origin, ancestry, age, physical or mental disability, sex, sexual orientation, gender identity/expression, pregnancy, veteran status, marital status, creed, status with regard to public assistance, genetic status or any other status protected by federal, state, or local law.. .