About this role
About the Role Marvell is seeking a Vulnerability Management Professional to protect the company’s digital assets. You will be responsible for identifying, assessing, prioritizing, and driving mitigation of security weaknesses across IT infrastructure, including cloud and on-premises systems.
What You'll Do
- Conduct regular, scheduled, and on-demand vulnerability scans of servers, networks, applications, and cloud environments.
- Manage the regular scanning of Marvell’s infrastructure and applications to detect vulnerabilities.
- Analyze scan results to distinguish actual threats from false positives and prioritize vulnerabilities based on severity, exploitability, and business impact.
- Perform vulnerability risk profiling and prioritization of vulnerabilities.
- Conduct regular vulnerability assessments and penetration testing to identify weaknesses and potential threats to Marvell's systems and networks.
- Remediation Coordination: Work closely with system owners, IT teams, and engineers to ensure timely patching, configuration changes, or mitigation of vulnerabilities.
- Automation & Improvement: Implement automation for security workflows, data aggregation, and scanning to increase efficiency.
- Threat Intelligence: Research emerging threats and vulnerabilities to proactively update security controls.
- Stay up-to-date on emerging security threats, vulnerabilities, and industry best practices to continuously improve Marvell's security posture.
- Metrics & Reporting: Prepare detailed reports on vulnerability trends, remediation metrics, and compliance status for management and compliance teams.
What We're Looking For
- Bachelor’s degree in Computer Science, Information Security, or related field; Master’s degree preferred.
- 3 years of experience in vulnerability management.
- In-depth knowledge of common security vulnerabilities, attack vectors, and mitigation techniques.
- Experience with vulnerability scanning tools such as Qualys, Nessus, or similar.
- Strong understanding of network protocols, operating systems, and software development processes.
- Industry certifications such as OSCP, CISSP, GIAC GWAPT are highly desirable.
- Excellent communication and interpersonal skills, with the ability to effectively collaborate with technical and non-technical stakeholders.
- Strong analytical and problem-solving abilities, with a keen attention to detail.
Nice to Have
- Master’s degree preferred.
- Industry certifications such as OSCP, CISSP, GIAC GWAPT are highly desirable.
Compensation & Benefits
- Salary range: USD 92,500 - 136,860 per year.
- Benefits include employee stock purchase plan with a 2-year look back, family support programs, robust mental health resources, and recognition programs.
- Additional information about benefits and interview process will be shared during the interview.