Cyber Security Analyst & Vulnerability Management Engineer
Indexed description
Company: Loenbro , LLC
Business Unit/Department: Information Technology (IT)
Location: Remote
Reports to: Senior Director of Information Security
Employment Type: Full-Time
FLSA Classification: Exempt
About Loenbro
Loenbro is a trusted, long-term construction lifecycle partner to thousands of customers across the U.S. Our market spans all industries, and our service offerings include Critical Electrical, Mechanical & Structural, Soft Crafts, Inspection, Underground Maintenance and Installation, and Fabrication. Our expertise lies in simplifying the complex and establishing long-standing relationships with our partners. We have a national presence but a local approachevery customer benefits from our capabilities and our care.
At Loenbro , we dont just offer jobswe build careers grounded in integrity, teamwork, excellence, and purpose. Join a team where your expertise is valued, your growth is supported, and your work helps maintain and enhance the critical infrastructure that powers communities across the nation.
Job Summary The Cyber Security Analyst & Vulnerability Management Engineer is responsible for overseeing the organization's vulnerability management program, supporting security operations, managing cybersecurity aspects of change management processes, and responding to Managed Detection and Response (MDR) security events. This role serves as a critical liaison between Information Security, IT Operations, Infrastructure, Application Teams, and Business Stakeholders to ensure security risks are identified, communicated, prioritized, and remediated in a timely manner.
The ideal candidate possesses strong analytical and technical skills with extensive experience in vulnerability assessment tools, endpoint detection and response platforms, threat monitoring, risk management, and security governance processes. This individual will own the full vulnerability management lifecycle while supporting incident investigation, remediation coordination, and security review of organizational changes.
Essential Job Responsibilities
Vulnerability Management
Serve as the primary owner of the enterprise Vulnerability Management Program.
Administer and maintain Tenable vulnerability management platforms.
Conduct regular vulnerability assessments across servers, workstations, cloud services, applications, and network infrastructure.
Analyze vulnerability scan results and determine business risk, exploitability, and remediation priorities.
Establish and maintain vulnerability remediation timelines based on risk severity and organizational requirements.
Coordinate remediation efforts with infrastructure, application, cloud, and operations teams.
Validate remediation activities and perform rescanning to confirm closure.
Develop vulnerability metrics, dashboards, KPIs, and executive reporting.
Track vulnerability trends and identify recurring weaknesses requiring strategic improvement.
Manage vulnerability exception and risk acceptance processes.
Support internal and external audits related to vulnerability management and remediation activities.
Security Operations & MDR Response
Monitor and respond to Managed Detection and Response (MDR) alerts and findings.
Investigate security incidents identified through MDR services, Threat Intelligence feeds, and internal monitoring systems.
Coordinate containment, eradication, and recovery activities when cybersecurity incidents occur.
Perform triage and analysis of suspicious activity, malware events, unauthorized access attempts, and security anomalies.
Document investigations, findings, root cause analysis, and corrective actions.
Collaborate with MDR providers to improve detection capabilities and response procedures.
Assist in maintaining incident response documentation, playbooks, and escalation procedures.
Participate in after-action reviews and lessons learned activities.
Change Management & Security Governance
Review, evaluate, and approve cybersecurity-related change requests.
Assess proposed infrastructure, application, network, and cloud changes for security risks and compliance impacts.
Ensure security requirements are incorporated into organizational change management processes.
Participate in Change Advisory Board (CAB) meetings and provide security recommendations.
Identify potential security concerns before system implementations and production deployments.
Communicate security risks, mitigation requirements, and recommended controls to stakeholders.
Track security-related action items resulting from changes and project initiatives.
Risk Management & Communication
Identify, assess, and communicate cybersecurity risks throughout the organization.
Work closely with business and technical teams to ensure timely remediation of identified issues.
Develop and deliver security reports for operational teams, management, and executive leadership.
Escalate critical vulnerabilities and security concerns according to established procedures.
Assist with policy development, standards maintenance, and security program enhancements.
Provide security awareness and guidance regarding vulnerabilities, threats, and remediation best practices.
Required
Minimum Qualifications
5-10+ years of experience in Cyber Security, Vulnerability Management, Security Operations, or Information Security
Experience managing enterprise vulnerability management programs
Experience reviewing and approving technology-related change requests
Experience responding to security incidents and MDR findings
Experience working with infrastructure, cloud, networking, and endpoint technologies
Experience producing risk and remediation reports for technical and non-technical audiences
Technical Skills
Advanced experience with Tenable Vulnerability Management solutions
Strong experience with CrowdStrike Falcon
Experience with vulnerability prioritization methodologies and risk-based remediation
Understanding of Windows and Linux operating systems
Knowledge of Active Directory, Azure AD/Entra ID, and identity security
Understanding of network security concepts
Experience with vulnerability scanning, remediation validation, and risk tracking
Experience with security incident investigation and response
Experience with ticketing and change management systems
Physical Demands and Work Environment
The physical demands and work environment described here are representative of those that must be met by an employee to successfully perform the essential functions of this job. Reasonable accommodation may be made to enable individuals with disabilities to perform the essential functions.
Work Environment
Home Office: Remote management of project planning, scheduling, and client communication.
Field & Site Visits (Up to 50% Travel): Frequent, regular travel to job sites and data centers nationwide. This includes spending significant time at active outdoor construction sites with exposure to weather extremes, noise, and dust.
This role requires compliance with all applicable safety regulations, personal protective equipment (PPE) requirements, and Loenbro 's Environmental Health and Safety (EH&S) policies.
Benefits
Loenbro offers a competitive salary, comprehensive benefits package, and rewards to those who join our team:
Medical, dental, and vision insurance
401(k) retirement plan with company match
Paid time off (PTO) and holiday pay
Life and disability insurance
Professional development and training opportunities
Employee assistance program (EAP)
Benefits eligibility may vary based on employment classification and hours worked.
Guided By Core Values (LEAD) , Grounded In Grit And a Commitment To Excellence , Loenbro Betters Our Families, Customers, And Local Communities. If Youre Ready To Be Part Of a Company That LEADS By
L iving with Integrity
E xceeding Expectations
A cting with Urgency
D elivering Excellence
we want to hear from you.
Loenbro is an Equal Opportunity Employer
Colorado Pay Range
$120,000$160,000 USD
Originally posted on Himalayas
Create a free Caio profile to unlock more results and save your role and location preferences.
Unlock free search