Vulnerability Engineer-Advisor
About the positionResponsibilities• Technically lead the team responsible for designing and developing data infrastructure and pipelines to capture, integrate, organize, and centralize vulnerability data while testing and maintaining to ensure data is readily accessible and in a usable state, including quality assurance. • Lead the team responsible for determining business areas that pose potential threats to the enterprise. • Manage information monitoring and processes to reduce risk using rigorous analysis.• Determine the needs of diverse and complex customer groups which requires applied understanding of important, strategic issues of importance to the function/initiative. • Plan and direct the work of the team as they design and develop technical solutions. • Ensure teams use a process-driven approach in designing solutions. • Oversee the effective and efficient maintenance of existing technical solutions. Requirements• 6 years of experience. • Strong understanding and ability to identify and prioritize vulnerabilities in an organization's systems and networks.• Experienced in planning and executing vulnerability management initiatives, coordinate with multiple teams and stakeholders, and track progress towards project goals. • Experienced in delivering quality solutions using automation to streamline processes, reduce workloads, and improve efficiency and reliability. • Experienced in leveraging data science and analytics to prioritize cyber risk reduction activities. • Understand and have led technology management projects that are cross functional and at the enterprise level.• Critical thinking and strong analytical skills to drive solutions, alternative plans, and conclusions. • Exceptional written and verbal communication skills, with an ability to explain complex plans/ideas clearly and concisely, and to engage senior audiences when presenting these issues broadly. • Strong executive presence and presentation skills. • Collaborates effectively and forms positive partnerships with team members in groups and levels across a matrixed organization. • Able to multi-task and provide effective people management skills.• Possess strong analytical and problem-solving skills. • Strong relationship management skills in influencing and being able to drive results. Nice-to-haves• Experience identifying measures, or indicators of system performance, and the actions needed to improve or correct performance to achieve desired outcomes. • Collective capabilities for leadership, including leading teams, giving feedback, facilitating meetings, and coaching and mentoring. • Experience gathering accurate information to explain concepts and answer critical questions.• Working with people with different functional expertise respectfully and cooperatively to work toward a common goal. • Monitoring and managing operation systems, ensuring they stay compliant. • Experience helping an organization to plan and manage change in effort to meet strategic objectives. • Adept at managing project plans, resources, and people to ensure successful project completion. • Risk Assessment and Management including evaluating and designing controls, conducting impact assessments, identifying control gaps, remediating risk, etc.• Graphical representation of information in the form of charts, diagrams, pictures, and dashboards with programs and tools such as Excel, Tableau, or Power BI. • Designing and evaluating security systems, identifying security threats, securing computers, assessing vulnerability, etc. • NIST Cybersecurity framework (CSF), NIST Risk Management Framework (RMF) are a plus. • Certifications: CISA, CRISC, CIA, CISM, and/or CISSP are a plus. Benefits• Broad range of Health, Life, Voluntary Lifestyle, and other benefits and perks that enhance an employee's physical, mental, emotional, and financial well-being.• Eligible to participate in a Fannie Mae incentive program (subject to the terms of the program). Apply tot his job