06 Aug
|
Sonata Software
|
Pune
06 Aug
Sonata Software
Pune
Vulnerability Assessment/ Management Specialist
ABOUT THE ROLE
The Vulnerability Assessment Specialist will manage the end-to-end vulnerability lifecycle across the portfolio companies, from scanning and risk prioritization through to verified remediation. You will also plan and execute annual penetration tests, web application assessments, and cloud security reviews.
KEY RESPONSIBILITIES
Design and manage vulnerability scanning program across all portfolio companies
Operate and tune scanning platforms (Tenable, Qualys, Rapid7) for continuous coverage
Prioritize findings using CVSS scoring and business risk context
Track remediation SLAs and escalate overdue critical vulnerabilities
Conduct annual internal and external penetration tests per company rotation
Perform web application security assessments (OWASP Top 10)
Deliver cloud configuration reviews and CSPM gap analysis
Produce executive-level and technical vulnerability reports
Build and maintain vulnerability management KPIs and dashboards
REQUIREMENTS & SKILLS
Bachelor's in Cybersecurity, CS, or equivalent experience
4+ years invulnerability management or penetration testing roles
Proficiency with Tenable (Nessus), Qualys, or Rapid7 InsightVM
Hands-on penetration testing experience (network, web app, cloud)
Familiarity with OWASP Top 10, CVE/NVD, and CVSS scoring
Knowledge of cloud security(AWS, Azure, GCP) configuration review
Scripting skills (Python, Bash) for automation of scanning workflows
Certifications preferred: OSCP, CEH, CompTIA PenTest+, GPEN, GWAPT
Excellent report writing skills for both technical and executive audiences
📌 Cyber Security Vulnerability Assessment/ Management Specialist (Pune)
🏢 Sonata Software
📍 Pune