SailPoint's Cybersecurity organization is seeking a Cybersecurity Vulnerability Management Analyst with a passion for cybersecurity. This role ensures the continuous discovery, accurate assessment, risk-based prioritization, and successful remediation of vulnerabilities and misconfigurations across all IT assets, directly reducing the organization's exposure and maintaining regulatory compliance.
Requirements
- 3-5 years experience, preferably in vulnerability management.
- Strong engineering experience with cloud, containers, open-source code, deployment and misconfigurations.
- Intermediate experience with scripting languages (e.g., Python, PowerShell) for automating data ingestion, reporting, or integrating VM data into other security tools (SIEM/SOAR).
- Experience with regulatory frameworks (e.g., NIST, ISO 27001, SOC, GDPR) and providing evidence for compliance and audit needs.
- Experience tracking trends and configure systems as required to reduce false positives from true events.
- Process Improvement: Drive continuous improvement in the efficiency of vulnerability remediation through automation, ticketing system integration (e.g., Jira), and process streamlining.
- Influence & Collaboration – Demonstrable experience building strong partnerships in a matrixed organization.
- Technical – Intermediate understanding of product security issues (like XXE, SSRF, Injections, etc.), modern software development (fully automated CI/CD, REST, OAuth2) including multi-cloud (AWS, Azure, GCP, Containers, Kubernetes) architectures, particularly Amazon Web Services, Kubernetes, and Docker.
- Risk-Based Decision Making – Experience making informed decisions through balancing business priorities, technical constraints, and risk exposure.
- Certifications like CISSP, CISA, CySA+, AWS Certs, or CCNSE, or other relevant certifications are preferred.
Benefits
- Health Insurance
- Dental Insurance
- Vision Insurance
- 401k Matching
- Retirement Plan
- Tuition Reimbursement
- Relocation Assistance
