The candidate will be responsible for continuous vulnerability lifecycle management within Caterpillar, including collecting, reporting, and assessing the impact of vulnerability data from internal and external sources. The candidate will also serve as a liaison between Corporate Cybersecurity and business partners to better understand their operations, maintain global security processes, and build collaborative relationships. This role will collect data from security tools and systems, such as intrusion detection systems, firewalls, and incident management platforms, while enhancing metrics collection and reporting to improve security visibility.
The Vulnerability Security Analyst will keep up with industry trends as well as the vulnerability threat landscape and partner with other security and IT professionals to assess potential impact from vulnerabilities specific to Caterpillar’s environment.
Provide strategic/thought leadership on maturing and optimizing vulnerability management programs focused on web application protection Closely support and collaborate with other cybersecurity teams Ensure the vulnerability management capability is fully interoperable and integrated with existing vulnerability management capabilities Engage with stakeholders, to include IT professionals, management, and auditors to provide remediation assistance as appropriate, including developing reporting and guidance Obtain and maintain knowledge on existing security procedures and directives related to application security and vulnerability management Participate in occasional rotational shift work, including nights, weekends, and 24x7 monitoring coverage. Analyze security events to identify trends, anomalies, and potential threats; prepare clear reports for stakeholders. Collaborate with security engineering, architecture, and SOC teams to implement detection logic and improve threat visibility.