Network Vulnerability Manager - Sao Paulo, Brasil - Johnson & Johnson

Johnson & Johnson
Johnson & Johnson
Empresa verificada
Sao Paulo, Brasil

há 2 semanas

Ana Silva

Postado por:

Ana Silva

beBee Recruiter


Descrição

Network Vulnerability Manager


The Network Vulnerability Manager is responsible to keep the Network infrastructure patched according to the latest OS version across multiple platforms/OEMs, avoiding any potential cyber security exposure as part of the Release Management Process, working closely with Network Infrastructure Operations, Engineering, and Information Security & Risk Management teams, managing, and overseeing Network Vulnerabilities & Bugs.


The Network Vulnerability Manager is a technical role that has experience in all major network technologies such as switching / routing, WAN, WLAN, IPT, Firewalls, load balancers, Cloud exchange/CoLo, cloud-based network services, and SDN.

This role will be the responsible for overseeing and coordinate the Network Vulnerability Management Program. This role requires an understanding of current cybersecurity threats and strategic approaches to identify and remediate potential vulnerabilities.

This position will lead the vulnerability process from intake to remediation execution, working alongside with Information Security and OEMs for information regarding vulnerabilities, bugs, patches, software upgrades, and configuration changes.


A key aspect to the role is Continuous Improvement achieved through process improvements, automation opportunities, and other areas that increase the security over the network.


The Network Vulnerability Manager is responsible for leading a third partner team of 30+ people to plan and execute patching management globally, following existing procedures and partnering with different teams to deliver end-to-end.


Responsibilities

  • Lead a team of 30+ people responsible to keep 100% of the network devices patched according to the latest OS version across multiple platforms/OEMs.
  • Partnership with Information Security & Engineering teams to manage the network vulnerabilities from intake to remediation.
  • Generate reports from Release Management & Vulnerability management and run weekly governance calls.
  • Develop and maintain a roadmap for the Vulnerability & Release Management program, for both shortterm and longterm goals including processes, tools, automation, and reporting.
  • Familiarity with vulnerabilities notifications published by network device vendors.
  • Maintain uptodate documentation of all security assessments and remediation efforts.
  • Influence stakeholders through clear and effective communication and collaboration efforts.
  • Deep dive into crisis situations and be able to generate resolution reports.

Qualifications:


Required Knowledge, Skills, and Abilities:


  • Large / enterprise network operations expertise and experience.
  • Strong knowledge in these technologies: routing/switching, WAN technologies, EIRGP/BGP, VPN, SDWAN, Cloud connectivity, Cloudbased Networking technology & WLAN.
  • Analyze and prioritize identified vulnerabilities based on risk level.
  • Collaborate with various teams to develop and implement remediation plans.
  • Proven vendor management experience.
  • Strong experience utilizing network management and troubleshooting tools.
  • Proven experience leading virtual teams supporting a complex network environment.
  • Excellent written and oral communication skills.
  • Proven analytical, evaluative, and problemsolving abilities.
  • Ability to effectively prioritize and execute in a highpressure environment.
  • Exceptional customer service orientation.
  • Extensive experience working in a teamoriented, collaborative environment.
  • Vulnerability management.
  • Team leadership experience.
  • Automation / Scripting in Bash or Python.
  • Problem Solving, Strategic thinking.
  • Technical documentation.
  • Network Security.
  • Knowledge on NIST Framework.
  • CCNP Certification or equivalent knowledge.
  • ITIL certification or equivalent knowledge.
  • CISSP Certified Information Systems Security Professional.

Preferred Area of Study:

Computer Science, Telecommunications, Electrical Engineering.

Mais empregos da Johnson & Johnson