
Aerospace company.
Vulnerability Management & Control Efficacy Analyst
必备技能
Python
SQL
AWS
GCP
Azure
Job Description:
Vulnerability Management & Control Efficacy Analyst:
The Role:
Quantify security effectiveness by moving from qualitative assessments to data-driven risk modeling. You will bridge the gap between technical vulnerability data and financial risk, ensuring that control failures and security gaps are measured, prioritized, and remediated based on their actual business impact.
Key Responsibilities:
⦁ Quantitative Risk Modeling: Run Monte Carlo simulations to calculate Annual Loss Expectancy (ALE) and use Bayesian inference to update risk probabilities based on internal vulnerability telemetry and external evidence.
⦁ Vulnerability Life Cycle & Analysis: Collate and track vulnerabilities in a centralized platform, mapping them directly to the corporate security risk register across all divisions.
⦁ Perform multi-dimensional analysis to determine prioritization scores, determining which vulnerabilities require immediate correction based on Threat Intelligence, vulnerability intelligence, and aggregated incident response data.
⦁ Streamline and optimize various vulnerability management processes to reduce "Mean Time to Remediate" (MTTR).
⦁ Governance & Escalation: Support the Security Governance Department with remediation follow-up; continuously monitor risk posture and escalate major risks that exceed the company's risk appetite.
⦁ Control Efficacy: Use Linear Regression to correlate vulnerability metrics (e.g., patch latency) with business downtime and financial loss.
⦁ AI Automation: Apply AI Prompt Engineering to automate KRI/KPI generation using Python/SQL and to interpret complex statistical outputs for executive reporting.
Required Qualifications:
⦁ Experience: 4+ years in Cybersecurity, Vulnerability Management, or Quantitative Risk.
⦁ Statistics: Understanding of probability distributions (Lognormal, Poisson, Beta) and statistical significance (p-values, $R^2$).
⦁ Technical Skills: Proficiency in Python or R for data modeling and SQL for querying security telemetry.
⦁ Vulnerability Expertise: Deep understanding of the vulnerability management life cycle, prioritization frameworks (CVSS, EPSS), and technical control failure modes.
Preferred Qualifications:
⦁ Frameworks: Proficiency with FAIR (Factor Analysis of Information Risk).
⦁ Cloud: Experience managing security controls in AWS, Azure, or GCP.
⦁ Certifications: CRISC, CISM, or CISSP.
Expected Attributes in a potential Candidate:
- Adaptive Flexibility: Pivots effectively in response to shifting priorities and organizational change.
- Intellectual Humility: Values external expertise and prioritizes the best solution over personal ego.
- Accountability: Takes full ownership of outcomes and focuses on remediation rather than excuses.
- Critical Thinking: Analyzes objective data to make informed, logical business decisions.
- Resiliency: Maintains consistent performance and a solution-oriented mindset under high pressure.
- Effective Communication: Distills complex ideas into clear, actionable information for all stakeholders.
- Collaborative Orientation: Prioritizes cross-functional goals and team success over individual recognition.
- Solution-Focused Initiative: Proactively identifies challenges and presents viable resolutions independently.
- Emotional Intelligence: Navigates interpersonal dynamics with self-awareness and professional tact.
- Continuous Improvement: Actively seeks feedback and upskilling opportunities to refine performance.
This job requires an awareness of any potential compliance risks and a commitment to act with integrity, as the foundation for the Company’s success, reputation and sustainable growth.
Company:
Airbus India Private Limited:
Employment Type:
Permanent
Experience Level:
Professional
Job Family:
Cyber Security
By submitting your CV or application you are consenting to Airbus using and storing information about you for monitoring purposes relating to your application or future employment. This information will only be used by Airbus.
Airbus is committed to achieving workforce diversity and creating an inclusive working environment. We welcome all applications irrespective of social and cultural background, age, gender, disability, sexual orientation or religious belief.
Airbus is, and always has been, committed to equal opportunities for all. As such, we will never ask for any type of monetary exchange in the frame of a recruitment process. Any impersonation of Airbus to do so should be reported to emsom@airbus.com.
At Airbus, we support you to work, connect and collaborate more easily and flexibly. Wherever possible, we foster flexible working arrangements to stimulate innovative thinking.
浏览量
0
申请点击
0
Mock Apply
0
收藏
0
相似职位
关于Airbus

Airbus
PublicAirbus SE is a European aerospace corporation. While the company's primary business is the design and manufacture of commercial aircraft, it also operates separate divisions for Defence and Space and Helicopters.
10,001+
员工数
Leiden
总部位置
$89B
企业估值
评价
10条评价
3.7
10条评价
工作生活平衡
3.2
薪酬
4.0
企业文化
4.1
职业发展
3.5
管理层
3.8
72%
推荐率
优点
Learning opportunities and professional development
Supportive team and collaborative environment
Good compensation and benefits
缺点
High pressure and performance expectations
Long hours and overwhelming workload
Bureaucratic and rigid structure
薪资范围
43个数据点
Junior/L3
Mid/L4
Senior/L5
Staff/L6
Junior/L3 · Industrial Engineer
3份报告
$105,498
年薪总额
基本工资
$91,737
股票
-
奖金
-
$102,272
$131,358
面试评价
4条评价
难度
3.0
/ 5
时长
14-28周
录用率
25%
体验
正面 25%
中性 75%
负面 0%
面试流程
1
Application Review
2
HR Screen
3
Technical/Hiring Manager Interview
4
Panel Interview
5
Offer
常见问题
Technical Knowledge
Behavioral/STAR
Past Experience
Culture Fit
最新动态
Airbus installs 1st cargo door for A350 freighter prototype - FreightWaves
FreightWaves
News
·
1w ago
Air Canada Takes Delivery of Its First Airbus A321XLR - Airways Magazine
Airways Magazine
News
·
1w ago
What skills are needed for Airbus Digital Workspace / Digital CoE / Integration & Testing roles?
I’m a fresher trying to target roles at Airbus like Digital Workspace, Digital CoE (ERP), and Integration + Testing. Can anyone working in Airbus or who has gone through the process share: What skills/technologies should I focus on for these roles? How deep should I go into Python / SQL / APIs / Testing concepts? Are projects important? If yes, what kind of projects would actually help? What tools are commonly used (like ServiceNow, SAP, automation tools, etc.)? Any tips to crack the inter
·
1w ago
·
1
·
5
Lufthansa's first Airbus A380 with upgraded business class debuts on flight to LAX - The Points Guy
The Points Guy
News
·
1w ago




