Datto Jobs Jobs
There is 1 Web3 Job at Datto Jobs
Job Position | Company | Posted | Location | Salary | Tags |
---|---|---|---|---|---|
Datto Jobs | Boston, MA, United States | $85k - $100k |
This job is closed
As the world’s leading provider of cloud-based software and technology solutions delivered by managed service providers (MSPs), Datto believes there is no limit to what small and medium businesses can achieve with the right technology. Datto offers Unified Continuity, Networking, and Business Management solutions and has created a one-of-a-kind ecosystem of MSP partners. These partners provide Datto solutions to over one million businesses across the globe. Since its founding in 2007, Datto continues to win awards each year for its rapid growth, product excellence, superior technical support, and for fostering an outstanding workplace. With headquarters in Norwalk, Connecticut, Datto has global offices in the United Kingdom, Netherlands, Denmark, Germany, Canada, Australia, China, and Singapore. Learn more at datto.com.
As a trusted member of the CISOs staff, you will go out into the organization and identify opportunities for security improvement and organize change. You will empower stakeholders in efforts that push the enhancement of organizational and engineering security controls and processes. You will assure the achievement of important outcomes through these efforts.
Reporting to the Director of Information Security, the Manager of Vulnerability Management will be responsible for cultivating relationships, maturing processes and ensuring continuous vulnerability lifecycle management across the Datto environment. This role works across all product lines to consult and provide design recommendations that address gaps found in the review process. Fundamentals of the role include:
- Serve as subject matter expert related to vulnerability management and secure configuration across broad technology stacks
- Own and execute the complete vulnerability management strategy across Datto
- Establish actionable metrics and reporting for operations and leadership transparency
- Implement effective continuous monitoring for vulnerabilities to assure prompt attention and visibility to issues that may require emergent vulnerability or incident response
- Provide support and collaboration on security incidents as necessary to enable effectiveness of the team and its operations
- Have the ability to develop and maintain policy and technical standards with specific regard to vulnerability management and secure configuration
- Able to partner with cross-functional technical and non-technical teams to assess exposure to, and potential impact from vulnerabilities
- Utilize a threat-informed, risk-based approach to establish a prioritization process that most effectively maximizes engineering time and minimizes risk exposure
- Identify and recommend appropriate mitigation strategies to manage and remediate vulnerabilities, and reduce potential impacts on information resources to a level acceptable to the senior leadership
- Build strong partnerships with technical teams to promote best practices for managing vulnerabilities within multiple environments and across multiple tech stacks
Required Skills and Experience:
- Demonstrated experience as a vulnerability manager, encompassing application layer and system level vulnerabilities, in programs and contracts of similar scope, type, and complexity
- Ability to independently define, communicate and execute on a vision and strategy for program buildout and maturation
- Hands-on experience with vulnerability scanning tools, and other security testing tools, including the ability to test, deploy, configure, and run these tools (ie. Rapid7, Burpsuite, Nessus, Qualys, Snyk, etc.)
- Understanding of attacker mindset, exploitation, and how vulnerabilities are leveraged
- Demonstrated ability to stay current on securing diverse and rapidly evolving technologies such as cloud, mobile computing, wifi 7, web3, etc.
- Familiar with industry standard security best practices (CVE, CVSS, MITRE) and vulnerability management processes including compliance reporting
- Strong interpersonal skills with the ability to facilitate diverse groups, help negotiate priorities, and resolve conflicts among stakeholders in a fast-paced environment
- Driven to influence security posture improvement across an entire organization
Desired Skills and Experience:
- Bachelor's degree or equivalent work experience
- One or more certifications: GEVA, GCIH, CISA, CISSP, GPEN, or other relevant industry certification
- Superior knowledge of vulnerability management processes and tools to include scanning patching, hardening, configuration, and risk management
- Experience with creating or procuring advanced vulnerability prioritization algorithms
Bonus Skills:
- Security related blog posts
- Teaching and/or public speaking experience
Note: We are looking only for candidates willing to join us directly as W2 employees (No 3rd party candidates)
- “Datto University” virtual on-boarding program
- Employee Assistance Program
- LinkedIn Learning
- Headspace App
- Generous paid paternal leave
- A dynamic and socially active work culture, including Employee Resource Groups
- Networking and career development opportunities
By submitting an application, you acknowledge we will process your data in order to consider you for the position you apply for and for other open positions within our company for which you may be suited. We collect and store your data in accordance with our Recruiting Privacy Practices.
Datto is an equal opportunity employer.