Coalfire Systems
Coalfire is an EEO employer. We celebrate diversity and are committed to respecting one another, embracing individual differences, and creating an inclusive environment for all employees.
Associate, Vulnerability Assessment
About Coalfire Coalfire is on a mission to make the world a safer place by solving our clients’ hardest cybersecurity challenges. We work at the cutting edge of technology to advise, assess, automate, and ultimately help companies navigate the ever-changing cybersecurity landscape. We are headquartered in Chicago, Illinois with offices across the U.S. and U.K., and we support clients around the world. But that’s not who we are – that’s just what we do. We are thought leaders, consultants, and cybersecurity experts, but above all else, we are a team of passionate problem-solvers who are hungry to learn, grow, and make a difference.
POSITION SUMMARY: The Vulnerability Assessment Associate is responsible for identifying, analyzing, and reporting security vulnerabilities across systems, networks, and applications. This role supports the organization’s cybersecurity posture by conducting regular assessments, prioritizing risks, and collaborating with technical teams to remediate identified issues or determine mitigating controls to reduce security risk severities.What You'll Do
$86,000 - $96,000 a year
Bonus Points
Why you'll want to join us
Coalfire is an EEO employer. We celebrate diversity and are committed to respecting one another, embracing individual differences, and creating an inclusive environment for all employees.
Associate, Vulnerability Assessment
About Coalfire Coalfire is on a mission to make the world a safer place by solving our clients’ hardest cybersecurity challenges. We work at the cutting edge of technology to advise, assess, automate, and ultimately help companies navigate the ever-changing cybersecurity landscape. We are headquartered in Chicago, Illinois with offices across the U.S. and U.K., and we support clients around the world. But that’s not who we are – that’s just what we do. We are thought leaders, consultants, and cybersecurity experts, but above all else, we are a team of passionate problem-solvers who are hungry to learn, grow, and make a difference.
POSITION SUMMARY: The Vulnerability Assessment Associate is responsible for identifying, analyzing, and reporting security vulnerabilities across systems, networks, and applications. This role supports the organization’s cybersecurity posture by conducting regular assessments, prioritizing risks, and collaborating with technical teams to remediate identified issues or determine mitigating controls to reduce security risk severities.What You'll Do
- Operate, review, or assess implementations of vulnerability scanning tools (Tenable, Qualys, Nexpose, Prisma Cloud, Burp, etc.).
- Provide recommendations on remediating host-based and web application vulnerabilities.
- Conduct manual validation to confirm vulnerability closure.
- Analyze raw scan data to provide reports detailing credential success, inventory validation, and open vulnerabilities.
- Perform analysis to validate justifications provided by clients for vendor dependencies, false positives, operational requirements, and risk adjustments.
- Collaborate with other Coalfire personnel to drive customer satisfaction and ensure timely delivery of vulnerability scan findings, analysis results, and validated justifications.
- Less than 2 years of vulnerability assessment experience.
- Past experience with a leading vulnerability scan tool (Tenable, Qualys, Nexpose, Prisma Cloud, Burp, etc.).
- Bachelor’s degree in related Cybersecurity, Information Technology, Computer Science, or equivalent combination of education and experience.
- Understanding of policies, procedures, development, and implementation of vulnerability identification, scanning, analysis, remediation tactics, and reporting within an organization.
- In depth knowledge and experience of industry best practices for vulnerability management.
- Certification in Security+, CCSK, AWS Cloud Practitioner or something comparable
- Expertise in Security Frameworks (ISO, NIST, COBIT, HIPAA/HITECH, etc.) and regulatory requirements.
- Familiarity with 3 or more frameworks such as FedRAMP, FISMA, SOC, ISO, HIPAA, HITRUST, etc.
- Experience creating system inventories, boundary diagrams, and/or plans of actions and milestones (POA&M).
- Familiarity with Cloud services such as AWS, GCP, & Azure.
- Familiarity with configuration baseline standards such as CIS & STIG.
- Experience with scripting such as Python, Bash, PowerShell.
$86,000 - $96,000 a year
Bonus Points
Why you'll want to join us
PI284002475