30 Jul
|
NewVison
|
India
Job Description: Vulnerability Management – Cloud Security (Microsoft Azure & Google Cloud Platform)
Role Objective
To lead and drive the end-to-end Vulnerability Management and Remediation program across multi-cloud environments, with primary focus on Microsoft Azure and secondary exposure to Google Cloud Platform (GCP), ensuring proactive identification, prioritization, and resolution of security vulnerabilities while mentoring and managing a high-performing team.
Location
Pune (Work from Offshore Development Center - ODC)
Chennai (Client location)
Key Responsibilities
• Lead Vulnerability Management function across cloud and hybrid environments
• Define strategy, roadmap, and operating model
• Mentor and guide vulnerability management team
• Act as escalation point for critical vulnerabilities
• Perform vulnerability scanning, assessment, prioritization, and remediation
• Ensure closure of vulnerabilities within defined Service Level Agreements (SLAs)
• Manage vulnerability lifecycle: Discovery → Assessment → Remediation → Reporting
• Drive automation and reporting dashboards
Cloud Security Focus
• Microsoft Azure: Heavy hands-on exposure, approximately 70%, including Microsoft Defender for Cloud, Azure Security Center, Azure Policy, Azure Resource Graph, and cloud security posture management
• Google Cloud Platform (GCP): Mild working exposure, approximately 30%, including Security Command Center, Cloud Asset Inventory, Identity and Access Management (IAM), and vulnerability/misconfiguration visibility
• Identify, prioritize,
and remediate cloud misconfigurations and vulnerabilities across Microsoft Azure and Google Cloud Platform (GCP)
Technical Skills
• Strong hands-on experience in Vulnerability Management and Remediation as the primary career focus
• Experience with tools such as Qualys, Tenable (Nessus), Rapid7, and cloud-native security tools across Microsoft Azure and Google Cloud Platform (GCP)
• Knowledge of network, operating system, endpoint, application, and cloud security
• Basic understanding of DevSecOps (Development, Security, and Operations) concepts
Experience & Qualifications
• 5–8 years of overall experience in Cybersecurity, Infrastructure Security, Cloud Security, or Vulnerability Management
• Majority of the overall 5–8 years of experience must be in Vulnerability Management, Vulnerability Assessment, Remediation Governance, and Security Operations
• Strong Microsoft Azure exposure, approximately 70%, with working knowledge of Google Cloud Platform (GCP), approximately 30%
• Proven leadership experience in managing vulnerability management programs, remediation tracking, stakeholder governance, and technical teams
Key Competencies
• Solid problem-solving and remediation mindset
• Excellent communication and stakeholder management
• Leadership with ownership-driven accountability
Success Criteria (KPIs)
• Reduction in high and critical vulnerabilities
• Improvement in remediation SLAs
• High-quality candidate validation and team productivity
📌 Public Cloud Security Engineer - Vulnerability & Exposure Management (MultiCloud) (India)
🏢 NewVison
📍 India