Centene Corporation Logo

Centene Corporation

Senior Vulnerability Management Analyst

Reposted Yesterday
Be an Early Applicant
Remote
5 Locations
Senior level
Remote
5 Locations
Senior level
Design and operate enterprise vulnerability management: continuous discovery and scanning across assets, analyze and prioritize vulnerabilities, perform risk assessments, partner with teams for remediation, report to stakeholders, and work with SAST/DAST and other security data sources to improve controls.
The summary above was generated by AI

You could be the one who changes everything for our 28 million members by using technology to improve health outcomes around the world.  As a diversified, national organization, Centene's technology professionals have access to competitive benefits including a fresh perspective on workplace flexibility.
 

Position Purpose:

Designs the organization's vulnerability management infrastructure and processes. Works with key stakeholders to create strategies and actionable reporting for the prioritization and timely remediation of vulnerabilities. Identifies systemic security issues based on the analysis of vulnerability and configuration data. Performs impact and risk assessments based on vulnerability data.

  • Assesses vulnerabilities across applications, endpoints, databases, networking, mobile and cloud assets
  • Conducts continuous discovery and vulnerability assessment of enterprise-wide assets
  • Prioritizes and reports asset and vulnerability state; recommend remediation and validation approaches
  • Partners with various IT and application teams in remediation efforts to ensure vulnerabilities have been appropriately remediated or managed in a timely manner
  • Communicates vulnerability results to technical and non-technical business units based on risk tolerance and threat to the business. Gain stakeholder support through influential messaging
  • Leverages vulnerability database sources to understand systems weaknesses, its probability and remediation options, including vendor-supplied fixes and workarounds
  • Researches new technologies and works with key stakeholders to assess risk and implement and/or validate controls as necessary
  • Reviews vulnerabilities data from multiple sources (i.e., external / internal penetration testing, internal / external vulnerability scanning, etc.) across multiple technologies and environment including infrastructure and applications to determine risk rating of vulnerabilities to business assets
  • Works with Technology teams in static (SAST) and dynamic (DAST) scanning analysis to understand application threats and vulnerabilities
  • Performs other duties as assigned
  • Complies with all policies and standards

Education/Experience:

A Bachelor's degree in a quantitative or business field (e.g., statistics, mathematics, engineering, computer science) and Requires 4 – 6 years of related experience.
Or equivalent experience acquired through accomplishments of applicable knowledge, duties, scope and skill reflective of the level of this position.
Technical Skills:

  • OWASP framework and the software development lifecycle
  • Familiar with the laws, regulations, industry standards and guidance pertaining to data protection and information security in the healthcare industry
  • Experience in vulnerability scanning, security information and event management (SIEM), penetration testing, and/or advanced malware protection
  • Experience with SAST and DAST tools and technologies
  • Knowledge of Health Insurance Portability and Accountability Act (HIPAA), Payment Card Industry Data Security Standard (PCI DSS), Service Organization Controls (SOC) 2, Sarbanes–Oxley Act (SOX), etc.

Soft Skills:

  • Intermediate - Seeks to acquire knowledge in area of specialty
  • Intermediate - Ability to identify basic problems and procedural irregularities, collect data, establish facts, and draw valid conclusions
  • Intermediate - Ability to work independently
  • Intermediate - Demonstrated analytical skills
  • Intermediate - Demonstrated project management skills
  • Intermediate - Demonstrates a high level of accuracy, even under pressure
  • Intermediate - Demonstrates excellent judgment and decision making skills

License/Certification:

  • CISSP Certified Information Systems Security Professional or Certified Information Security Manager (CISM) or GIAC Enterprise Vulnerability Assessor (GEVA) preferred

Pay Range: $87,000.00 - $161,300.00 per year

Centene offers a comprehensive benefits package including: competitive pay, health insurance, 401K and stock purchase plans, tuition reimbursement, paid time off plus holidays, and a flexible approach to work with remote, hybrid, field or office work schedules.  Actual pay will be adjusted based on an individual's skills, experience, education, and other job-related factors permitted by law, including full-time or part-time status.  Total compensation may also include additional forms of incentives. Benefits may be subject to program eligibility.

Centene is an equal opportunity employer that is committed to diversity, and values the ways in which we are different. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, veteran status, or other characteristic protected by applicable law.


Qualified applicants with arrest or conviction records will be considered in accordance with the LA County Ordinance and the California Fair Chance Act

Top Skills

Owasp,Sast,Dast,Siem,Penetration Testing,Vulnerability Scanning,Advanced Malware Protection

Similar Jobs

52 Minutes Ago
Remote or Hybrid
4 Locations
Senior level
Senior level
Cloud • Insurance • Payments • Software • Business Intelligence • App development • Big Data Analytics
Lead and optimize full-funnel paid media programs (search, social, CTV/video, retargeting). Own GA4/pixel tracking, UTMs, landing page tests, measurement, reporting, and cross-functional execution to drive MQLs and improve conversion quality.
Top Skills: Google Ads,Microsoft Advertising,Linkedin Ads,Meta Ads,Youtube,Mntn,Google Analytics 4 (Ga4),Excel,Utm Tracking,Pixel Tracking,Ctv,A/B Testing
An Hour Ago
Remote
Canada
Senior level
Senior level
Artificial Intelligence • Cloud • Consumer Web • Productivity • Software • App development • Data Privacy
As a Senior Data Scientist, you'll partner with cross-functional teams to drive AI/ML impact, influence product strategy, and execute data-driven analyses and experiments.
Top Skills: PythonSQL
5 Hours Ago
Remote or Hybrid
8 Locations
Senior level
Senior level
Blockchain • Fintech • Mobile • Payments • Software • Financial Services
Lead identity-focused data science efforts: analyze large datasets, build statistical and experimental analyses, design/measure A/B tests, create ETL and forecasts, partner with product, engineering, risk, and compliance to maintain high-quality identity data and inform policy/decisioning.
Top Skills: Sql,Snowflake,Python,Pandas,Numpy,R,Tableau,Looker,Airflow,Mode,Prefect

What you need to know about the Vancouver Tech Scene

Raincouver, Vancity, The Big Smoke — Vancouver is known by many names, and in recent years, it has gained a reputation as a growing hub for both tech and sustainability. Renowned for its natural beauty, the city has become a magnet for professionals eager to create environmental solutions, and with an emphasis on clean technology, renewable energy and environmental innovation, it's attracted companies across various industries, all working toward a shared goal: advancing clean technology.

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account