Description
Connecting People. Uniting the World. There’s never been a more exciting time to join United Airlines! As a global company that operates in hundreds of locations around the world — with millions of customers and tens of thousands of employees — we have a unique responsibility to uplift and provide opportunities in the places where we work, live and fly.
We’re on a path toward becoming the best airline in the history of aviation. Join our Cybersecurity and Digital Risk (CDR) team to help us also become the leading cyber-safe airline in the industry. United’s CDR team is tasked with keeping our customers’ and employees’ information safe and secure. Our primary mission is to embed cybersecurity into the DNA of United Airlines by reducing business risk through implementation of strong cybersecurity standard processes.
United offers a competitive benefits package aimed at keeping you happy, healthy and well-traveled. From employee-run "Business Resource Group" communities to world-class benefits like parental leave, 401k and privileges like space available travel, United is truly a one-of-a-kind place to work. Are you ready to travel the world and help us keep our airline cyber safe? Apply today!
Key Responsibilities
As a Vulnerability and Asset Management Analyst at United Airlines, you will protect our airline and its customers by identifying, analyzing, remediating, and reporting on vulnerabilities. Our goal is to keep United Airlines cyber-safe by taking a proactive and risk-based approach to identifying and addressing defects in order to protect United’s systems, networks, and data.
- Support the entire vulnerability and asset lifecycles, from discovery to assessment, reporting, remediation, and validation
- Drive analysis across different datasets including but not limited to: vulnerability and asset management data (from various source tools)
- Generate vulnerability and asset management metric and remediation-related dashboards and reports
- Coordinate with infrastructure and application teams to enable remediation of vulnerabilities and findings within proper timeframes and track remediation
- Understands and advises on enterprise policies and technical standards with specific regard to vulnerability and asset management and secure configuration
- Deliver training and guidance to stakeholders on vulnerability management processes and standards
- Assist in integrating source tools and validating data for the centralized vulnerability management tool
- Publish documentation surrounding data analysis trends, processes, and techniques
United values diverse experiences, perspectives, and we encourage everyone who meets the minimum qualifications to apply. While having the “desired” qualifications make for a stronger candidate, we encourage applicants who may not feel they check ALL of those boxes. We are always looking for individuals who will bring something new to the table.
Qualifications
What’s needed to succeed (Minimum Qualifications):
- Bachelor's degree or equivalent experience
- At least three years of hands-on experience within vulnerability management, security operations, or equivalent experience
- Basic data analysis skills
- Basic experience writing technical reports and developing presentations for a broad spectrum of technical and non-technical audiences
- Previous experience with vulnerability management solutions (e.g., ServiceNow Vulnerability Response)
- Basic knowledge of various scanning technologies, on premise infrastructure, SAST, DAST, cloud infrastructure
- Basic understanding of security fundamentals and common vulnerabilities
- Familiarity with common security frameworks (SOX, NIST, FISMA, etc.)
- Exposure to the full stack of information technologies and associated security models - including server/OS, database, hardware, network devices, user compute, application/SDLC, etc.
- Demonstrate strong analytical and problem-solving skills, detail oriented & organized approach, superb communication, developed interpersonal skills
- Must be legally authorized to work in the United States for any employer without sponsorship
- Successful completion of interview required to meet job qualification
- Reliable, punctual attendance is an essential function of the position
What will help you propel from the pack (Preferred Qualifications):
- Security+, Network+, or vendor-specific certifications in Vulnerability & Asset Management
- Previous experience working with cyber security and vulnerability and asset management
- Previous experience with credentialed, host-based and application layer scan technologies
- Previous experience with data analytics technologies (e.g., Quicksight, other business analytics tools)
- Understanding and experience with network architectures, technical resolutions, and operations
- Self-starter
United Airlines is an equal opportunity employer. United Airlines recruits, employs, trains, compensates and promotes regardless of race, religion, color, national origin, gender identity, sexual orientation, physical ability, age, veteran status, and other protected status as required by applicable law. We will ensure that individuals with disabilities are provided reasonable accommodation to participate in the job application or interview process, to perform crucial job functions. Please contact JobAccommodations@united.com to request accommodation.
The salary for this position is 80,775 to 118,470, dependent on job-related, non-discriminatory factors such as experience, education, and skills. This range is based on a full-time schedule.
Bonus eligible: yes
Post expiration date: 9/1/2024
At United, we offer a competitive compensation package, with benefits including: medical, dental, vision, life, accident and disability, parental leave, employee assistance program, commuter, paid holidays, paid time off, 401(k) plan with employee and company contribution opportunities, and flight privileges.
Salary and benefits information is being included in this job posting in accordance with Colorado state law.
Equal Opportunity Employer - Minorities/Women/Veterans/Disabled/LGBT
WHQ00024009