General conceptual understanding of how scanners like Qualys (so they understand why something shows up, false-positive patterns, scan coverage gaps) — enough to have an informed conversation with the scanning team, not to operate the tool • Basic understanding of asset inventory/CMDB concepts.
Key Responsibilities
Vulnerability Data Analysis & Reporting (Must-Have) • Ability to read, interpret, and prioritize findings from an AVM (Allianz Vulnerability Management) dashboard - understanding severity, exposure, asset criticality, and exploitability context • Intermediate-Strong Knowledge on Intune and Chocolatey: Knowledge to look into the Intune consols and find the applications and its dependencies. Essentially to help to find the remediation owner • Utilize the available vulnerability tools within AZT to categorize the vulnerabilities effectively. Plan and execute the remediation • Solid Excel/PowerBI skills to build executive and operational dashboards (aging reports, SLA breach tracking, trend lines, top-N recurring findings) Coordination Skills (Must-Have)
• Ability to present meaningful data and statistics to the stakeholders • Ability to translate complex vulnerability requirements to easy but meaningful stories • Stakeholder management — chasing remediation owners (e.g., HCL, other OEs) • Ability to run recurring governance forums/reviews (weekly/monthly vuln review calls) with clear minutes and action tracking • Comfortable escalating diplomatically but firmly when SLAs are missed
Skill Requirements
Security and vulnerability management, Qualys and Intune, Power BI
Other Requirements
Recommended: Certified Ethical Hacker (CEH), Offensive Security Certified Qualified (OSCP), or Tenable Certified Nessus Auditor (TCNA).
Certifications are optional but valuable for this role
body.unify div.unify-button-container .unify-apply-now: focus, #body.unify div.unify-button-container .unify-apply-#body.unify div.unify-button-container .unify-apply-now: focus, #body.unify div.unify-button-container .unify-apply-