MetroSys is seeking a skilled Information Security Engineer II to support and lead efforts around vulnerability management within a dynamic, enterprise-scale environment. This individual will be instrumental in identifying and addressing security vulnerabilities across systems, networks, and applications.
Requirements
- Lead the end-to-end vulnerability management lifecycle: scanning, analysis, prioritization, reporting, and remediation tracking.
- Perform regular vulnerability assessments and support remediation efforts in collaboration with infrastructure and application teams.
- Track and assess emerging threats and zero-day vulnerabilities using vendor bulletins and threat intelligence feeds.
- Generate reports and dashboards to communicate risk posture and mitigation progress to technical and executive stakeholders.
- Maintain and optimize vulnerability scanning tools to ensure full visibility and accurate detection across the environment.
- Assist in security incident response involving known or suspected exploited vulnerabilities.
- Support regulatory and compliance audits (e.g., PCI, NIST, HIPAA) by providing documentation and metrics.
- Continuously improve processes, documentation, and tooling in the vulnerability management program.
Benefits
- Opportunity to grow and make an impact in a dynamic environment
- Competitive compensation and benefits package
- Collaborative and fast-paced work environment