Security Manager

Jobs via Dice • United State
Remote
Apply
AI Summary

Abacus Service Corporation seeks a Security Manager to review vulnerability data, establish a consolidated baseline, and develop remediation timelines. The role involves risk classification, prioritization, and coordination of remediation activities. The ideal candidate has 8+ years of experience in vulnerability inventory and baseline establishment.

Key Highlights
Review vulnerability data and establish a consolidated baseline
Develop remediation timelines and coordinate remediation activities
Classify and prioritize vulnerabilities based on risk and severity
Key Responsibilities
Review the Agency's existing vulnerability data, including vulnerabilities identified through scanning, assessments, or other security tools.
Establish and maintain a consolidated vulnerability baseline.
Develop and document a remediation timeline for all identified vulnerabilities, reflecting current risk posture and aging.
Technical Skills Required
Vulnerability Inventory and Baseline Establishment Risk Classification and Prioritization Tracking vulnerability remediation Producing status reports Validating remediation actions through available evidence
Benefits & Perks
100% remote work
Contract position with extendable duration

Job Description


Dice is the leading career destination for tech experts at every stage of their careers. Our client, Abacus Service Corporation, is seeking the following. Apply via Dice today!

Position: Security Manager

Location: TX (100% REMOTE)

Contract: 3+ Months and Extendable

Client: State of TX (Texas Education Agency)

Description:

Vulnerability Inventory and Baseline Establishment

  • Review the Agency''s existing vulnerability data, including vulnerabilities identified through scanning, assessments, or other security tools.
  • Establish and maintain a consolidated vulnerability baseline.
  • Develop and document a remediation timeline for all identified vulnerabilities, reflecting current risk posture and aging.

Risk Classification and Prioritization

  • Ensure that vulnerabilities are categorized and prioritized based on risk, severity, exploitability, and potential impact to Agency operations.
  • Align vulnerability classification and prioritization to applicable NIST guidance.
  • Validate that remediation timeframes align with Agency established expectations for different vulnerability risk levels.

Remediation Coordination and Communication

  • Coordinate remediation activities with system, server, and application owners.
  • Communicate clear remediation expectations, risk context, and required timelines to responsible parties.
  • Track remediation progress and identify blockers, dependencies, or delays impacting closure.
  • Escalate overdue, high risk, or critical vulnerabilities to appropriate Agency governance or oversight bodies, in accordance with Agency processes.

Tracking, Metrics, and Reporting

  • Maintain ongoing tracking of vulnerability remediation status.
  • Produce periodic status reports summarizing.

Validation and Closure

  • Validate remediation actions through available evidence, including vulnerability scan results or other supporting artifacts.
  • Confirm closure of vulnerabilities in tracking systems once remediation is completed and validated.
  • Ensure vulnerabilities that cannot be remediated within required timeframes are formally documented and supported by approved risk acceptance or exception documentation, in accordance with Agency policy.

Program Improvement Support

  • Identify process gaps, systemic issues, or control weaknesses affecting vulnerability remediation effectiveness.
  • Provide recommendations for improving vulnerability remediation processes and accountability, aligned with NIST standards and Agency governance requirements.

II. CANDIDATE SKILLS AND QUALIFICATIONS

Minimum Requirements:

Candidates that do not meet or exceed the minimum stated requirements (skills/experience) will be displayed to customers but may not be chosen for this opportunity.

Years

Required/Preferred

Experience

8

Required

Experience in Vulnerability Inventory and Baseline Establishment

8

Required

Experience in Risk Classification and Prioritization

8

Required

Experience in tracking vulnerability remediation

8

Required

Experience in producing status reports

8

Required

Experience in validating remediation actions through available evidence, including vulnerability scan results

Similar Jobs

Explore other opportunities that match your interests

Senior Network Security Engineer

Cyber Security
•
5h ago
Visa Sponsorship Relocation Remote
Job Type Full-time
Experience Level Mid-Senior level

Jobgether

United State

Network Security Engineer

Cyber Security
•
22h ago
Visa Sponsorship Relocation Remote
Job Type Full-time
Experience Level Mid-Senior level

Jobs via Dice

United State

AI Security Operations Engineer

Cyber Security
•
1d ago
Visa Sponsorship Relocation Remote
Job Type Contract
Experience Level Mid-Senior level

TPI Global Solutions

United State

Subscribe our newsletter

New Things Will Always Update Regularly