Vulnerability Management Specialist - MRO AMS
Huawei Technologies
Role Overview
We are seeking a highly organized and proactive Vulnerability Management Specialist to join our Managed Services delivery team. In this role, you will act as the central point of contact for tracking, organizing and driving the remediation of Cyber Security vulnerabilities and infrastructure maintenance activities. You will work closely with both internal technical teams and the client to ensure all system hardening, patch management, access governance and SLA reporting meet strict compliance timelines. This is an excellent opportunity for a professional looking to grow their career in IT Security Management and Infrastructure Operations.
1 Key Responsibilities
- Vulnerability & Patch Management Coordination
- Ad-Hoc Vulnerability Remediation: Track, assign, and coordinate the deployment of patches resulting from ad-hoc Penetration Tests and vulnerability scans.
- Quarterly Scan Compliance: Oversee the end-to-end remediation lifecycle for vulnerabilities identified during Quarterly Security Scans, ensuring technical teams resolve flaws within agreed upon windows.
- Infrastructure & Hardening Operations
- Server Hardening: Coordinate ad-hoc server hardening and configuration adjustment activities based on client security baselines.
- Routine Maintenance: Schedule and track regular Infrastructure OS and server updates/patching cycles to minimize downtime and security risks.
- Identity Governance & Compliance
- User Access Reviews (UAR): Facilitate and drive the Quarterly ID Governance process, ensuring all user access tokens, privileges, and accounts are reviewed, validated, and documented according to policy. 4. Reporting & Service Level Agreements (SLAs)
- Performance Metrics: Compile, analyze, and deliver Weekly and Monthly SLA reports covering both Infrastructure health and Cyber Security posture.
- Stakeholder Updates: Maintain clear dashboards tracking open vulnerabilities, pending patches, and compliance statuses for project leadership.
2 Qualifications & Skills Education & Experience:
- Bachelor’s degree in Computer Science, Information Technology, Cyber Security, or a related field.
- 5+ years of experience in IT project coordination, managed services, infrastructure operations, or a security analyst role. Technical Competencies (Nice to Have / Concepts):
- Basic understanding of vulnerability management concepts (CVEs, CVSS scoring, patch lifecycles).
- Familiarity with OS environments (Windows/Linux) and basic infrastructure concepts.
- Exposure to identity governance, access control concepts, or user access reviews (UAR). Soft Skills & Attributes:
- Exceptional Organization: Ability to manage multiple tracking sheets, deadlines, and follow-ups without letting items slip through the cracks.
- Strong Communication: Confident in chasing technical engineers for updates and translating technical status into clear reports for client stakeholders.
- Problem Solver: Highly proactive with a "get things done" attitude to push tasks through blocking points.


