Nabancard

Vulnerability Management Analyst

US - RemoteFull time$70,000 - $110,000 / yearPosted about 15 hours ago
Apply on Nabancard →

Sign in to see who you know at Nabancard.

Vulnerability Management Analyst

North - Remote

North is seeking a detail-oriented Vulnerability Management Analyst to join our Cybersecurity team. In this role, you will help protect our payment processing platform, cloud environments, and internal infrastructure by identifying, analyzing, and prioritizing technical vulnerabilities.

Working closely with engineering, cloud infrastructure, and IT teams, you will leverage enterprise security tools (such as Wiz and Tenable) to track risk and diplomatically advocate for timely remediation. This role is ideal for an early-to-mid career cybersecurity professional with strong analytical and interpersonal skills who enjoys turning security data into actionable fixes.

What you'll do

Vulnerability Identification & Scanning: Operate, maintain, and assist in configuring scanning platforms (Wiz, Tenable) across cloud assets, containers, data centers, network infrastructure, and endpoints.

Analysis & Prioritization: Review vulnerability data, reduce false positives, and prioritize risks based on business context, CVSS scores, threat intelligence, and payment industry risk factors.

Remediation Advocacy: Act as a liaison to engineering, IT, and operations teams to champion patching initiatives, explain technical risks, and follow up on overdue SLAs.

Tracking & Metrics: Track remediation progress, communicate risk posture to leadership, and maintain dashboards, reports, and key performance indicators (KPIs).

Compliance Support: Support security audit and compliance efforts (such as PCI-DSS) by providing evidence of regular vulnerability scanning and remediation.

Continuous Improvement: Refine vulnerability management processes, playbooks, and automated workflows to reduce exposure windows.

What we need from you

Education and Experience

Bachelor’s degree in Cybersecurity, Computer Science, Information Technology, or a related technical field (or equivalent practical experience).

3 years of hands-on experience in cybersecurity, IT, system administration, or risk management.

Hands-on experience operating enterprise scanning platforms, specifically Wiz and Tenable.

Knowledge, Skills & Abilities

Core Vulnerability Concepts: Solid understanding of the vulnerability management lifecycle, Common Vulnerabilities and Exposures (CVEs), CVSS scoring, and common attack vectors and vulnerability exploitation.

Tooling Familiarity: Exposure to enterprise scanner technologies (Tenable) and cloud security/exposure management tools (Wiz).

Analytical Mindset: Ability to analyze large datasets of vulnerability scans, identify trends, and translate raw data into clear, actionable reporting.

Interpersonal & Communication Skills: Excellent verbal and written communication skills while building relationships across teams and encouraging patch completion.

Technical Foundations: Understanding of core OS concepts (Windows, Linux), cloud security fundamentals (AWS, Azure, or...