Attack Surface Reduction Analyst

Details of the offer

The OpportunityThe Attack Surface Reduction Analyst will play a critical role in enhancing our organization's cybersecurity posture by identifying, assessing, and mitigating vulnerabilities and threats across our digital environment. This role involves a combination of strategic analysis, hands-on implementation, and collaboration with various teams to reduce our attack surface and improve our overall security resilience.A Day in the LifeSpecific areas of responsibility may fall into any one of the following areas of Attack Surface Reduction:Vulnerability Assessment: Conduct thorough assessments to identify potential vulnerabilities and weaknesses in our systems, applications, and networks.Attack Surface Analysis: Analyze and map out the organization's attack surface, including endpoints, network components, applications, and cloud environments, to identify areas of risk.Mitigation Strategies: Develop and implement strategies and controls to reduce attack vectors and minimize potential entry points for malicious activities.Risk Evaluation: Continuously evaluate emerging threats and vulnerabilities and assess their impact on our attack surface.Incident Response Support: Collaborate with the Incident Response team to address and resolve security incidents related to identified vulnerabilities or attack vectors.Collaboration: Work closely with I&O, Risk, SOC, SecDevOps, and other relevant teams to integrate security practices into the development and deployment processes.Security Tools: Utilize and configure security tools and technologies for vulnerability scanning, threat intelligence, and attack surface monitoring.Documentation & Reporting: Maintain detailed documentation of vulnerabilities, risk assessments, and mitigation actions. Prepare and present reports to stakeholders on security posture and risk status.Continuous Improvement: Stay current with industry trends, threat intelligence, and emerging technologies to continually enhance our attack surface reduction strategies.Leadership and People ResponsibilitiesDevelop positive working relationships with other team members and business partners across teams to align with WSP's internal and external client demands.Provide feedback on the governance process for continued improvement.Finance/Budgetary ResponsibilitiesProvide feedback on tooling and identify additional needs.Plan for the expansion of security tools to cover ongoing needs.Evaluation of license usage and potential growth.What you'll bring to WSPRequired7+ years related experience in Security Operations, Network Security, Vulnerability Management or similar position.Bachelor's degree or equivalent in Information Technology, Computer Science, Engineering, Data Sciences, or related field.Strong knowledge of security assessment tools, vulnerability scanning, and penetration testing.Proficiency in security tools: Microsoft Defender, Microsoft Defender EASM, BitSight, Cybel Angel and others.Strong analytical skills with a keen eye for detail and accuracy.Effective communication skills, with the ability to clearly convey technical concepts to both technical and non-technical stakeholders.Experience with IT Governance frameworks such as COBIT, ITIL, NIST, and ISO 2700x.Experience with risk management, including risk analysis, mitigation, and monitoring.What sets you apartMaster's degree in information technology, Computer Science, Engineering, Data Sciences or related field.Security+, CISSP, or other related certifications.About WSPWSP is one of the world's leading engineering professional services firms, bringing together approximately 6,000 talented people across 15 offices in Australia. We are technical experts who design and provide strategic advice on sustainable solutions and engineer Future ReadyTM projects that will help societies grow for lifetimes to come.At WSP, we want you to embrace your curiosity and work in a culture celebrating different perspectives. With access to global scale and reach, you'll connect with the brightest minds in the field to make the best work of your life.We believe that in imagining a better future for us all, you'll imagine a better future for you.To find out more about our commitment to the health and wellbeing of our people, and the programs we've designed to help you thrive, go to our Benefits page.Think this could be the opportunity for you? Apply now to begin your journey with WSP.WSP. With us, you can.
#J-18808-Ljbffr


Nominal Salary: To be agreed

Source: Whatjobs_Ppc

Requirements

Data Quality Specialist Lead

TAFE NSW Life-Changing Careers Data Quality Specialist Lead Location negotiable (subject to campus availability) 2x temporary full time until November 2025 B...


From Tafe Nsw - New South Wales

Published 14 days ago

Business Analyst - Non-Financial Risk

Business/Systems Analysts (Information & Communication Technology) Are you passionate about driving meaningful change and delivering impactful solutions? A l...


From Morgan Mckinley - New South Wales

Published 14 days ago

Applications Specialist

At Varian, a Siemens Healthineers Company, we bring together the world's best talent to realize our vision of a world without fear of cancer. Together, we wo...


From 0460 Vms Australasia Pty Ltd. - New South Wales

Published 14 days ago

Security Operations Engineer

Salary: $900 to $1000 per day including super Location: Sydney CBD office Work Arrangement: Hybrid WFH 2 days a week Contract Duration: 6 to 12 month cont...


From Https:/Www.Energyjobline.Com/Sitemap.Xml - New South Wales

Published 14 days ago

Built at: 2024-11-07T05:37:04.347Z