Position Overview:
Takeda Pharmaceuticals is seeking a candidate to fill a role as a Senior Analyst, Cyber Security Threat Management focused on Vulnerability Management. The selected candidate will lead and manage a program for vulnerability management. Candidate should be comfortable leading the overall delivery of vulnerability management operations in a highly dynamic environment and capable of adjusting priorities of work based on changing operational needs and an evolving threat horizon.
Primary Responsibilities:
Lead vulnerability management activities supporting threat management
Provide expert subject matter expertise in best practices for vulnerability management
Mentor less senior cyber security operations resources
Ensure high quality and timely service delivery
Develop and maintain vulnerability management standards, processes, and guidelines
Support the collection and management of cyber security metrics
Support maintenance, administration, and break/fix remediation (including RCA) of threat management solutions
Collaborate with other business areas to effectively predict, prevent, detect, and respond to cyber threats
Assist with research and evaluation of new security technologies, processes, and methodologies
Basic Qualifications:
Required Skills (Essential)
5+ years of work experience leading vulnerability management supporting threat management
Experience working independently to manage and effectively respond to vulnerability management requests
Experience leading a team of vulnerability management analysts to effectively respond to large scale / complex requests
Experience developing and maintaining operations playbooks, run books, and performance measures
Experience maintaining and optimizing operations leveraging industry best practices
Expert knowledge of vulnerability management best practices, techniques, and how they are leveraged by malicious actors
Strong analytical skills and understanding of vulnerability detection methods
Good social, verbal, and written communication skills
Translates complex technical information into terms and products useful to upper-level management
Knowledge of proactive cyber defense and threat management / vulnerability management automation
Quickly adapts to changing events, reprioritizing efforts, and realign resources as needed
Willingness to be on-call, work non-standard hours, and travel (up to 15%) when required
Comfortable working in high stress and ambiguous environments
Desired Skills
Experience deploying & managing global industry-leading vulnerability management solutions
Experience conducting international vulnerability management activities (network, platform, device)
Experience conducting reverse engineering malware analysis
Experience working within a validated environment (21 CFR Part 11)
Experience with scripting and advanced content configuration supporting vulnerability management solutions
Strong knowledge of technology and security topics including network security, wireless security, application security, device security, infrastructure hardening, security baselines, and web server and database security
Strong knowledge of industry standards regarding vulnerability management, including Common Vulnerabilities and Exposures (CVE), Common Vulnerability Scoring System (CVSS) and Open Web Application Security Project (OWASP)
Strong knowledge of in-depth system operations, networking, and devices (i.e. Windows, Linux, Proxy, and Firewall)
Ability to capitalize on APIs to improve vulnerability management
Effective time, prioritization, and workload management skills
Programming or scripting experience in any of the following: Perl, Python, VB Script, or Power Shell
Experience with a global or multi-tiered organizations
Education:
Industry certification such as GCIH, GCIA, CISSP, CISM, CISA preferred
Bachelor’s degree in computer science, information systems, engineering or the equivalent combination of formal education, training and experience (Master’s degree considered a plus)