23 Aug
|
Tekshiras Software Services Private
|
Hyderabad
23 Aug
Tekshiras Software Services Private
Hyderabad
Role Overview
We are looking for a Prisma Cloud Security Operations Analyst with hands-on experience in Prisma Cloud , vulnerability management , ServiceNow , and cloud security operations . The candidate will be responsible for service account lifecycle management, vulnerability triage, application team support, CVIT management, remediation tracking, and coordination with security and vendor teams.
Key ResponsibilitiesPrisma Cloud & Service Account Management
- Manage and track Prisma Cloud service account creation, modification, review, and deactivation requests.
- Validate business justification, ownership, scope, and access requirements before provisioning.
- Monitor service account usage and identify anomalous or unnecessary activity.
- Conduct periodic access reviews and recertification of service accounts.
- Track API key and credential rotation, renewal, and revocation activities.
- Maintain service account inventories with ownership, purpose, status, and review information.
- Support audit and compliance requests related to service account governance.
Vulnerability Triage & Application Support
- Triage vulnerabilities identified through Prisma Cloud based on severity, CVE details, validity, and business context.
- Work with application teams to validate findings and determine True Positive vs. False Positive findings.
- Coordinate with Palo Alto Networks/Prisma Cloud support for disputed or ambiguous findings.
- Document vulnerability analysis, evidence, approvals, and exception decisions.
- Identify recurring false-positive patterns and support scan tuning activities.
- Provide application teams with guidance on twistcli scans, troubleshooting, and interpretation of scan results.
- Support application teams in determining appropriate remediation or exception paths.
ServiceNow / CVIT Management
- Intake, validate, assign, and track ServiceNow CVITs .
- Route vulnerabilities and security tickets to the appropriate application/support teams.
- Monitor ticket backlog, SLA aging, severity, and remediation timelines.
- Validate remediation evidence and rescan results before CVIT closure.
- Escalate overdue, critical, and high-severity vulnerabilities appropriately.
- Maintain accurate documentation for audit and compliance purposes.
Stakeholder & Vendor Coordination
- Coordinate with security, application, infrastructure, and development teams.
- Communicate vulnerability findings and remediation requirements clearly to technical and non-technical stakeholders.
- Engage with third-party vendors, particularly Palo Alto Networks , for product-related issues and disputed findings.
- Maintain explicit records of decisions, approvals, remediation evidence, and escalations.
📌 Prisma Cloud Security Operations Analyst (Hyderabad)
🏢 Tekshiras Software Services Private
📍 Hyderabad