North logo
North
Posted 38 days agoVerified live 2d ago

Vulnerability Management Analyst

Brief overview

Remote
UndergradOr in progress
$70k–$110k/yrStated range
3+ yrsMinimum
Vulnerability ManagementWizTenableCVSS ScoringCommon Vulnerabilities and Exposures (CVEs)Cloud SecurityWindowsLinuxEnterprise NetworkingPCI-DSSNIST Cybersecurity FrameworkCIS Benchmarks

About the company

North provides payment processing solutions such as credit, debit, check conversion, guarantee and loyalty card solutions.

Job description

Summary

North is an end-to-end payment solutions company that provides payment technology for businesses. North is seeking a Vulnerability Management Analyst to identify, analyze, prioritize, and track technical vulnerabilities across payment processing platforms, cloud environments, and internal infrastructure while supporting remediation, compliance, reporting, and process improvement.

Responsibilities

  • Vulnerability Identification & Scanning: Operate, maintain, and assist in configuring scanning platforms (Wiz, Tenable) across cloud assets, containers, data centers, network infrastructure, and endpoints
  • Analysis & Prioritization: Review vulnerability data, reduce false positives, and prioritize risks based on business context, CVSS scores, threat intelligence, and payment industry risk factors
  • Remediation Advocacy: Act as a liaison to engineering, IT, and operations teams to champion patching initiatives, explain technical risks, and follow up on overdue SLAs
  • Tracking & Metrics: Track remediation progress, communicate risk posture to leadership, and maintain dashboards, reports, and key performance indicators (KPIs)
  • Compliance Support: Support security audit and compliance efforts (such as PCI-DSS) by providing evidence of regular vulnerability scanning and remediation
  • Continuous Improvement: Refine vulnerability management processes, playbooks, and automated workflows to reduce exposure windows

Skills

  • • Bachelor's degree in Cybersecurity, Computer Science, Information Technology, or a related technical field (or equivalent practical experience)
  • • 3 years of hands-on experience in cybersecurity, IT, system administration, or risk management
  • • Hands-on experience operating enterprise scanning platforms, specifically Wiz and Tenable
  • • Core Vulnerability Concepts: Solid understanding of the vulnerability management lifecycle, Common Vulnerabilities and Exposures (CVEs), CVSS scoring, and common attack vectors and vulnerability exploitation
  • • Tooling Familiarity: Exposure to enterprise scanner technologies (Tenable) and cloud security/exposure management tools (Wiz)
  • • Analytical Mindset: Ability to analyze large datasets of vulnerability scans, identify trends, and translate raw data into clear, actionable reporting
  • • Interpersonal & Communication Skills: Excellent verbal and written communication skills while building relationships across teams and encouraging patch completion
  • • Technical Foundations: Understanding of core OS concepts (Windows, Linux), cloud security fundamentals (AWS, Azure, or GCP), and enterprise networking
  • • Please note: North is a US based company and no sponsorship is available for this position at this time
  • • 5 years of relevant or hands-on experience in cybersecurity, IT, system administration, or risk management
  • • Experience within fintech, payment processing, or another highly regulated, fast-paced environment
  • • Familiarity with payment industry standards and security frameworks (PCI-DSS, NIST Cybersecurity Framework, CIS Benchmarks)
  • • Experience using ticketing and project tracking tools such as Jira to track vulnerability work items
  • • Basic scripting knowledge (Python, PowerShell, Bash, or API queries) to automate reporting or routine tasks
  • Certifications such as CompTIA Security+, Network+, or eJPT are a plus, but not required

Qualifications

Must Haves

  • • Bachelor's degree in Cybersecurity, Computer Science, Information Technology, or a related technical field (or equivalent practical experience)
  • • 3 years of hands-on experience in cybersecurity, IT, system administration, or risk management
  • • Hands-on experience operating enterprise scanning platforms, specifically Wiz and Tenable
  • • Core Vulnerability Concepts: Solid understanding of the vulnerability management lifecycle, Common Vulnerabilities and Exposures (CVEs), CVSS scoring, and common attack vectors and vulnerability exploitation
  • • Tooling Familiarity: Exposure to enterprise scanner technologies (Tenable) and cloud security/exposure management tools (Wiz)
  • • Analytical Mindset: Ability to analyze large datasets of vulnerability scans, identify trends, and translate raw data into clear, actionable reporting
  • • Interpersonal & Communication Skills: Excellent verbal and written communication skills while building relationships across teams and encouraging patch completion
  • • Technical Foundations: Understanding of core OS concepts (Windows, Linux), cloud security fundamentals (AWS, Azure, or GCP), and enterprise networking
  • • Please note: North is a US based company and no sponsorship is available for this position at this time

Nice to Haves

  • • 5 years of relevant or hands-on experience in cybersecurity, IT, system administration, or risk management
  • • Experience within fintech, payment processing, or another highly regulated, fast-paced environment
  • • Familiarity with payment industry standards and security frameworks (PCI-DSS, NIST Cybersecurity Framework, CIS Benchmarks)
  • • Experience using ticketing and project tracking tools such as Jira to track vulnerability work items
  • • Basic scripting knowledge (Python, PowerShell, Bash, or API queries) to automate reporting or routine tasks
  • Certifications such as CompTIA Security+, Network+, or eJPT are a plus, but not required

Benefits

  • Benefits that help our team members further their overall well-being through unique initiatives that are both personally and professionally fulfilling.

More jobs like this