Product Incident Manager

Posted 5 Days Ago
Be an Early Applicant
Philadelphia, PA, USA
In-Office
Mid level
Cloud • Information Technology • Consulting • Cybersecurity
The Role
Manage the lifecycle of externally reported product vulnerabilities: triage, coordinate remediation with engineering, communicate with external reporters and internal Legal/Communications, run technical investigations using IR and vulnerability management methodologies, and report findings while enforcing timely resolution.
Summary Generated by Built In
Company Description

AYR Global IT Solutions is a national staffing firm focused on cloud, cyber security, web application services, ERP, and BI implementations by providing proven and experienced consultants to our clients. Our competitive, transparent pricing model and industry experience make us a top choice of Global System Integrators and enterprise customers with federal and commercial projects supported nationwide.

Job Description

Job Title: Product Incident Manager
Location: Philadelphia, PA
Duration: 12+Months

Qualifications

Summary
The Product Security Incident Manager serves as a product security incident responder for reported product vulnerabilities that relate to Clients products. This role will entail managing the lifecyle of externally reported security product vulnerabilities and ensuring that appropriate internal stakeholders are engaged to resolve the reported vulnerabilities. This position will entail managing the queue of reported vulnerabilities, issuing corresponding responses to external reporters, coordinating efforts with internal technical teams to make them aware and hold teams accountable for prompt resolution to issues. This role will interface heavily with Corporate Communications and Legal teams to ensure responses to external parties are appropriate and prompt.
Skill and Abilities
Experience with vulnerability management
Experience with incident response methodology in investigations and the groups behind targeted attacks and tactics, techniques, and procedures (TTPs)
Knowledge of systems administration (*nix/Windows), network engineering, and security engineering
Must be comfortable at the command line of a UNIX-like OS
Intermediate level understanding of cloud/vm, automation, and devops technology
Ability to use tools to process large text files
Knowledge of product development lifecycles
Familiarity with responsible disclosure practices
Ability to work with other technical security and development teams to remediate vulnerabilities
Experience with penetration testing and/or systems auditing
Knowledge of OWASP top 10, referring to NVD/CVE, CVSS Scoring
Intermediate level understanding of validation tools and methodologies (port scanners, etc).
Intermediate level understanding of common vulnerabilities in large/agile environments.
Experience with software development methodologies and the software used within large/agile environments
Project Management experience or PMP certification
Knowledge of networking concepts and analysis tools and operating systems, software, and security controls
Ability to perform independent research and report on findings
Ability to be a self-starter, quick learner, and detail oriented
Ability to perform analysis with strict attention to detail and display solution orientation to learn and adapt quickly
Possession of excellent oral and written communication skills, including communicating effectively under normal and stressful situations

Additional Information

If anyone might be interest, please share your resume at smalik(at)ayrglobal(dot)com or you can directly contact me at 630-444-7490

Skills Required

  • Experience with vulnerability management
  • Experience with incident response methodology and knowledge of attacker TTPs
  • Knowledge of systems administration (UNIX-like and Windows)
  • Comfortable using the command line of a UNIX-like OS
  • Intermediate understanding of cloud, virtual machines, automation, and DevOps technologies
  • Ability to use tools to process large text files
  • Knowledge of product development lifecycles
  • Familiarity with responsible disclosure practices
  • Ability to work with technical security and development teams to remediate vulnerabilities
  • Experience with penetration testing and/or systems auditing
  • Knowledge of OWASP Top 10, NVD/CVE, and CVSS scoring
  • Intermediate understanding of validation tools and methodologies (port scanners, etc.)
  • Understanding of common vulnerabilities in large/agile environments
  • Experience with software development methodologies used in large/agile environments
  • Project management experience or PMP certification
  • Knowledge of networking concepts and analysis tools, operating systems, software, and security controls
  • Ability to perform independent research and report findings
  • Self-starter, quick learner, and detail oriented
  • Excellent oral and written communication skills, including under stress
Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
75 Employees

What We Do

AYR Global IT Solutions Inc is a national staffing firm specializing in cloud, cybersecurity, and web application services, including ERP and BI implementations. They provide proven and experienced consultants to a diverse range of enterprise customers and global system integrators. Their mission is to bridge the gap between technology and business needs through tailored, innovative IT services and professional consulting across federal and commercial projects nationwide.

Similar Jobs

AYR Global IT Solutions Inc Logo AYR Global IT Solutions Inc

Product Incident Manager

Cloud • Information Technology • Consulting • Cybersecurity
In-Office
Philadelphia, PA, USA
75 Employees

Dynatrace Logo Dynatrace

Expansion Enterprise AE (Philadelphia)

Artificial Intelligence • Big Data • Cloud • Information Technology • Software • Big Data Analytics • Automation
Remote or Hybrid
Philadelphia, PA, USA
5600 Employees
140K-180K Annually

Tapestry - Coach and Kate Spade Logo Tapestry - Coach and Kate Spade

Sales Support Associate III

eCommerce • Fashion • Retail • Sales • Wearables • Design
Hybrid
Lancaster, PA, USA
16000 Employees
15-20 Hourly

inKind Logo inKind

Account Executive

eCommerce • Fintech • Food • Mobile • Social Impact
Easy Apply
Remote or Hybrid
USA
170 Employees
100K-160K Annually

Similar Companies Hiring

Amplify Platform Thumbnail
Fintech • Financial Services • Consulting • Cloud • Business Intelligence • Big Data Analytics
Scottsdale, AZ
62 Employees
Standard Template Labs Thumbnail
Artificial Intelligence • Information Technology • Software
New York, NY
25 Employees
Golden Pet Brands Thumbnail
Digital Media • eCommerce • Information Technology • Marketing Tech • Pet • Retail • Social Media
El Segundo, California
178 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account