05 Aug
|
HCL Technologies
|
Bengaluru
05 Aug
HCL Technologies
Bengaluru
Track Manager - NESSUS, Compliance Remediation
Experience: 8 to Not Available years
Location: Bengaluru, India
Skills: Tenable Tool, Qualys, Rapid7, MS Defender, Prisma cloud, Wiz.io, Attack Surface Management (ASM), SNOW, Kenna, RiskSense, Nessus, Metasploit, Burp Suite, SIEM platforms, Certified Ethical Hacker (CEH), Offensive Security Certified Qualified (OSCP), Tenable Certified Nessus Auditor (TCNA)
Job Summary
kills Required 8+ years for L3: Hands-on experience in 2 or more of the Vuln Assessment tools and Vuln. Lifecycle management
Well conversant and experienced in Tenable Tool covering both VM & Policy compliance scanning. Tenable One Knowledge preferred.
Working knowledge in Qualys, Rapid7 & MS Defender. Certification Preferred.
Strong knowledge and work experience in handling vulnerability assessment, CSPM on cloud-based architecture using Prisma cloud, Wiz.io etc
Other tools knowledge pertaining to Attack Surface Management (ASM) will be preferred in addition.
Experience in defining, implementing, and consulting for vulnerability management framework based on enterprise security.
Overall knowledge in VM process and remediation Governance. Ability in working with the Business to effectively communicate the risks of identified vulnerabilities and recommend approach for addressing vulnerabilities.
Working knowledge in SNOW, threat monitoring tool and Risk based vulnerability assessment integration Platform like Kenna, RiskSense etc.
Development, revision, and maintenance of Standard Operating Procedures and other Operational DocumentsThis role is accountable for driving operational excellence and continuous improvement across vulnerability assessment and penetration testing (VAPT) services utilizing Nessus and related security tools. The individual ensures robust service delivery for complex environments, aligns operations to client SLAs, and empowers teams through expert guidance and process innovation to enhance organizational security posture.
Key Responsibilities
skills Required 8+ years for L3: Hands-on experience in 2 or more of the Vuln Assessment tools and Vuln. Lifecycle management
Well conversant and experienced in Tenable Tool covering both VM & Policy compliance scanning. Tenable One Knowledge preferred.
Working knowledge in Qualys, Rapid7 & MS Defender. Certification Preferred.
Strong knowledge and work experience in handling vulnerability assessment, CSPM on cloud-based architecture using Prisma cloud, Wiz.io etc
Other tools knowledge pertaining to Attack Surface Management (ASM) will be preferred in addition.
Experience in defining, implementing, and consulting for vulnerability management framework based on enterprise security.
Overall knowledge in VM process and remediation Governance. Ability in working with the Business to effectively communicate the risks of identified vulnerabilities and recommend approach for addressing vulnerabilities.
Working knowledge in SNOW, threat monitoring tool and Risk based vulnerability assessment integration Platform like Kenna, RiskSense etc.
Development, revision, and maintenance of Standard Operating Procedures and other Operational Documents1. Lead and optimize VAPT operations by utilizing Nessus and related vulnerability management tools to ensure continuous improvement in threat detection and mitigation processes.
2. Oversee the execution of complex vulnerability assessments and penetration tests, ensuring accurate reporting and remediation guidance in line with client requirements and industry best practices.
3. Provide expert technical direction and mentorship to the VAPT operations team in the use of Nessus, Metasploit, and other security tools for advanced vulnerability management.
4. Develop and implement advanced operational workflows and reporting mechanisms using Nessus and SIEM platforms to improve information flow, incident response, and management reporting.
5. Innovate and introduce process enhancements in VAPT operations leveraging automation and integration between Nessus and ticketing or orchestration platforms.
6. Drive transparent communication of project goals, security findings,
and operational metrics to internal teams and clients, ensuring alignment and service excellence.
7. Solve complex security operations challenges by designing tailored solutions with Nessus and VAPT methodologies that address unique client environments and business objectives.
Skill Requirements
skills Required 8+ years for L3: Hands-on experience in 2 or more of the Vuln Assessment tools and Vuln. Lifecycle management
Well conversant and experienced in Tenable Tool covering both VM & Policy compliance scanning. Tenable One Knowledge preferred.
Working knowledge in Qualys, Rapid7 & MS Defender. Certification Preferred.
Strong knowledge and work experience in handling vulnerability assessment, CSPM on cloud-based architecture using Prisma cloud, Wiz.io etc
Other tools knowledge pertaining to Attack Surface Management (ASM) will be preferred in addition.
Experience in defining, implementing, and consulting for vulnerability management framework based on enterprise security.
Overall knowledge in VM process and remediation Governance. Ability in working with the Business to effectively communicate the risks of identified vulnerabilities and recommend approach for addressing vulnerabilities.
Working knowledge in SNOW, threat monitoring tool and Risk based vulnerability assessment integration Platform like Kenna, RiskSense etc.
Development, revision, and maintenance of Standard Operating Procedures and other Operational Documents1. Advanced Skills In Managing Security Operations And Incident Response For LargeScale Environments.
2. InDepth Knowledge Of Security Tools Such As Metasploit, Burp Suite, And Siem Platforms.
3. Excellent Ability To Design, Implement, And Optimize Vapt Operational Processes And Reporting.
4. Strong Understanding Of Security Frameworks, Compliance Standards, And Risk Management Practices.
5. Excellent Communication, Leadership, And Mentoring Abilities Within Security Operations Teams.
Other Requirements
Relevant Certifications1. Recommended: Certified Ethical Hacker (CEH), Offensive Security Certified Professional (OSCP), or Tenable Certified Nessus Auditor (TCNA).
2. Certifications are optional but valuable for this role
📌 Track Manager NESSUS, Compliance Remediation (Bengaluru)
🏢 HCL Technologies
📍 Bengaluru