Cybersecurity Threat & Vulnerability Analyst
🏢 Horizon Blue Cross Blue Shield of New Jersey · all Horizon Blue Cross Blue Shield of New Jersey jobs
📍 United States
💰 USD 97,800 - 133,455 / annual
📅 Posted 2026-08-10 · via Himalayas
🏷 Cybersecurity,Threat-and-vulnerability-analysis,Vulnerability-Management,Infosec,Security-Operations,Vulnerability-Analyst,Vulnerability-Assessment-Analyst,Cyber-Threat-Analyst,Vulnerability-Management-Analyst,Cybersecurity-Analyst,Cyber-Threat-Intelligence-Analyst
Apply on original site ↗Horizon Blue Cross Blue Shield of New Jersey empowers our members to achieve their best health. For over 90 years , we have been New Jersey’s health solutions leader driving innovations that improve health care quality, affordability, and member experience. Our members are our neighbors, our friends, and our families. It is this understanding that drives us to better serve and care for the 3.5 million people who place their trust in us. We pride ourselves on our best-in-class employees and strive to maintain an innovative and inclusive environment that allows them to thrive. When our employees bring their best and succeed, the Company succeeds.
About the Role
This role works closely with the Enterprise Business and Technology Solutions (EBTS) Division to develop, implement, and enhance processes that identify, assess, and remediate vulnerabilities across Horizon’s technology environment. The analyst is responsible for performing internal and external vulnerability assessments, managing vulnerability scanning programs, establishing security standards, and evaluating exceptions and false-positive findings.
The position plays a key role in reducing organizational risk by partnering with technology teams to prioritize and remediate vulnerabilities, developing long-term security solutions, and supporting threat intelligence and threat hunting initiatives. The incumbent will stay current on emerging threats, industry standards, and security trends, providing regular updates and recommendations to leadership regarding risks requiring remediation. What You'll Do
-
Develop and enhance vulnerability scanning strategies to ensure comprehensive coverage across Horizon’s enterprise environment.
-
Conduct internal and external vulnerability assessments and validate scan results.
-
Apply established vulnerability management standards to classify vulnerabilities based on severity, exploitability, and business risk.
-
Categorize and prioritize assets according to criticality and organizational impact.
-
Partner with EBTS teams to develop and execute vulnerability remediation plans in accordance with established service level agreements (SLAs).
-
Track and report remediation activities to ensure timely resolution of identified vulnerabilities.
-
Analyze emerging cyber threats and assess potential impacts to Horizon’s technology environment.
-
Communicate current risk exposure, remediation efforts, and security recommendations to senior leadership and key stakeholders.
-
Develop, maintain, and present weekly and monthly vulnerability management metrics and executive reports.
-
Create, update, and maintain policies, standards, procedures, and process documentation related to vulnerability management and threat intelligence operations.
-
Ensure security controls, policies, and standards are operating effectively to satisfy audit and regulatory requirements.
-
Assist in the development and maturation of a threat hunting program by documenting threat scenarios, response playbooks, and use cases.
-
Collaborate with internal teams to investigate, validate, and resolve vulnerability findings, false positives, and remediation exceptions.
-
Support continuous improvement initiatives aimed at strengthening the organization’s overall cybersecurity posture
What You Bring
Education/Experience:
- High School Diploma or GED required.
-
Bachelor's degree in Information Security, Cybersecurity, Computer Science, Information Technology, or a related field preferred.
-
Relevant experience may be considered in lieu of a degree.
Experience:
-
Minimum of five (5) years of Information Security experience required.
-
At least three (3) years of experience focused on vulnerability identification, assessment, and remediation.
-
Experience working within a large enterprise environment preferred.
-
Experience supporting security audits, regulatory compliance reviews, and risk management programs preferred.
Certifications: