Vulnerability Management Coordination Manager (Navi Mumbai)

Vulnerability Management Coordination Manager (Navi Mumbai)

05 Aug
|
Conviction HR
|
Navi Mumbai

05 Aug

Conviction HR

Navi Mumbai

Job Description : We are hiring for one of the GCC based out in Mumbai, GCC hails from US as a Fortune 500 & from Reinsurance Industry.Years of Experience : 8 - 12 YearsShifts : UK Hours (02 : 00 p.m. to 11 : 00 p.m. IST)Role Summary : The Vulnerability Management Coordinator is responsible for driving the end-to-end remediation lifecycle for security vulnerabilities identified by the Information Security (InfoSec) team. This role acts as the critical bridge between InfoSec, which identifies and prioritizes finding, and the operational teams across Infrastructure, Business Unit IT, and Application Development who are responsible for fixing them. The coordinator ensures that every finding is tracked, assigned, escalated when necessary, and closed within defined Service Level Agreements (SLAs). This is a highly cross-functional, process-driven role suited to someone who is organized, persistent, and comfortable holding technical teams accountable without being a subject-matter expert in every domain.Key Responsibilities : Intake & Triage : - Receive vulnerability findings from InfoSec (vulnerability scanners, penetration tests, bug bounty programs, threat intelligence, and audit findings).- Validate findings for completeness, deduplicate where necessary, and route them to the correct owning team (Infrastructure, Business Unit IT, or Application/Dev teams).- Confirm severity ratings and corresponding SLA timelines in partnership with InfoSec.Remediation Ownership & Tracking : - Own the remediation process from assignment through verified closure. This role is accountable for outcomes, not just reporting.- Maintain an accurate, centralized system of record (e.g., ticketing/GRC platform) for all open findings, owners, due dates,



and status.- Proactively follow up with asset/application owners to confirm remediation plans, patch schedules, or compensating controls are in place.- Coordinate remediation validation (rescans, evidence collection) with InfoSec to confirm closure.SLA Management & Escalation : - Monitor remediation progress against SLA targets by severity (e.g., Critical, High, Medium, Low).- Identify findings at risk of missing SLA and drive corrective action before breach.- Escalate overdue or high-risk findings to management, asset owners, or governance forums according to a defined escalation path.- Manage and track risk acceptance/exception requests when remediation isn't feasible within SLA, ensuring proper approval and compensating controls are documented.Reporting & Governance : - Produce regular reporting and dashboards on remediation status, SLA compliance, aging findings, and trends by business unit, asset type, or severity.- Present remediation metrics to leadership and relevant risk/security governance committees.- Support audit and compliance requests (e.g., PCI, SOC 2, ISO 27001) related to vulnerability management evidence.Process Improvement : - Identify recurring bottlenecks in remediation workflows and recommend process, tooling, or policy improvements.- Help maintain and refine the vulnerability management policy, SLA definitions,



and escalation procedures.- Support onboarding new asset owners/teams into the vulnerability management process.Required Qualifications : - 5 years of experience in IT, security operations, risk management, or a related coordination/PM role.- Working knowledge of vulnerability management concepts (CVSS scoring, patch management, vulnerability scanning tools such as Tenable, Qualys, or Rapid7).- Solid organizational skills with experience managing multiple concurrent workstreams and deadlines.- Excellent written and verbal communication skills; ability to translate technical findings into clear action items for non-security stakeholders.- Experience using ticketing or GRC platforms (e.g., ServiceNow, Jira).- Comfortable working cross-functionally with Infrastructure, IT, Development, and Security teams, and holding stakeholders accountable to deadlines.Preferred Qualifications : - Familiarity with compliance frameworks (PCI DSS, SOC 2, ISO 27001, NIST CSF).- Experience building or improving vulnerability management workflows or dashboards.- Basic understanding of cloud infrastructure, networking, and application security concepts.- Relevant certifications (e.g., Security+, CySA+, or similar) are a plus but not required.Success Metrics : - % of vulnerabilities remediated within SLA by severity tier.- Reduction in average time-to-remediate and aging backlog.- Timely, accurate reporting to leadership and governance committees.- Low rate of SLA exceptions/risk acceptances without proper justification and approval.This job description is intended to convey information essential to understanding the scope of the role and is not exhaustive. Responsibilities may evolve based on organizational needs. (ref:hirist.tech)

📌 Vulnerability Management Coordination Manager (Navi Mumbai)
🏢 Conviction HR
📍 Navi Mumbai

Reply to this offer

Impress this employer describing Your skills and abilities, fill out the form below and leave Your personal touch in the presentation letter.

Subscribe to this job alert:

Get the latest job offers by email for: vulnerability management coordination manager (navi mumbai) / navi mumbai

Subscribe to this job alert:

Get the latest job offers by email for: vulnerability management coordination manager (navi mumbai) / navi mumbai