Title:- Business Analyst
Position Overview
We are seeking a senior technology Business Analyst / Product Leader to drive an enterprise Vulnerability and Patch Automation Initiative within a large financial-services environment.
This role sits at the intersection of cybersecurity, infrastructure operations, automation, product leadership, software quality, and Generative AI. The successful candidate will lead initiatives designed to reduce vulnerability exposure, accelerate patch deployment, improve remediation compliance, and introduce automation and AI into traditionally manual technology-risk processes.
This is not a traditional requirements-only Business Analyst position. The successful candidate must understand how enterprise patching and vulnerability-remediation processes operate across endpoints, servers, infrastructure, applications, and other technology environments and be capable of translating technical risk into executable product roadmaps and measurable business outcomes.
Must-Have Qualifications
-
7+ years of relevant technology experience, including software quality engineering, test automation, software testing, infrastructure technology, cybersecurity, technology operations, or closely related disciplines.
-
1+ year of hands-on GenAI-related development or implementation experience.
-
Demonstrated experience with Operational Technology patch management.
-
Demonstrated experience with enterprise vulnerability remediation and/or patch-management programs.
-
Experience within Financial Services or Banking.
-
Strong understanding of technology-risk reduction, remediation prioritization, patching processes, testing, and operational controls.
-
Demonstrated ability to work across cybersecurity, infrastructure, engineering, architecture, operations, and business organizations.
-
Strong executive-level communication, stakeholder-management, and decision-making skills.
Core Responsibilities
The Business Analyst V will lead the strategic and operational execution of enterprise vulnerability and patch-automation initiatives.
Responsibilities include:
-
Define and execute the roadmap for the Third-Party Remediation Pillar.
-
Identify opportunities to automate vulnerability remediation and patch-management workflows.
-
Reduce time between vulnerability identification, prioritization, testing, patch deployment, validation, and closure.
-
Apply Generative AI, analytics, and automation to improve remediation prioritization, operational decision-making, testing, and workflow efficiency.
-
Translate cybersecurity and infrastructure requirements into executable capabilities, user stories, acceptance criteria, roadmaps, and delivery priorities.
-
Partner with infrastructure, cybersecurity, architecture, engineering, application, and operations teams.
-
Lead complex cross-functional initiatives involving multiple technology organizations.
-
Manage dependencies, risks, competing priorities, and organizational constraints.
-
Establish measurable remediation KPIs and operational performance metrics.
-
Provide executive-level reporting regarding vulnerability exposure, remediation velocity, patch compliance, automation adoption, exceptions, and technology risk.
-
Drive continuous improvement across vulnerability-management and patching processes.
Product / Program Leadership
Although the client title is Business Analyst V, candidates with strong Product Owner, Product Manager, Technical Product Manager, or Program Leadership backgrounds are particularly relevant.
Highly desirable experience includes:
-
6+ years of Product Ownership or Product Management.
-
3+ years functioning at a senior, lead, or enterprise level.
-
Ownership of technology roadmaps and strategic backlogs.
-
Prioritization across competing security, infrastructure, and operational requirements.
-
Agile product-delivery experience.
-
Executive stakeholder management.
-
Technology-risk or cybersecurity transformation programs.
GenAI Expectations
Candidates should have more than general familiarity with ChatGPT or other AI tools.
Relevant experience may include using GenAI or machine-learning capabilities to improve:
-
Vulnerability prioritization.
-
Risk classification.
-
Patch recommendations.
-
Remediation workflow automation.
-
Test generation or validation.
-
Incident or vulnerability summarization.
-
Knowledge retrieval.
-
Operational analytics.
-
Decision support.
-
Engineering productivity.
Candidates should be capable of explaining a GenAI capability they helped design, develop, integrate, implement, or operationalize.
Preferred Technology Experience
Experience with one or more of the following platforms is highly desirable:
Equivalent enterprise patching, endpoint-management, vulnerability-management, testing, and workflow platforms should also be considered.
Technical Environment
Candidates should understand how vulnerability and patch-management programs interact with:
-
Enterprise endpoints.
-
Windows and Linux servers.
-
Operational technology.
-
Application environments.
-
Cloud infrastructure.
-
Network infrastructure.
-
Cybersecurity operations.
-
Vulnerability scanning.
-
Endpoint management.
-
Patch testing.
-
Change management.
-
Configuration management.
-
Technology-risk governance.