- REQUIREMENT TEMPLATE – Vulnerability Assessment and Management
No. of positions
6
Account Name
Citizens Bank
Service Line
Cyber Security
Must have skills - 2 skills which are non-negotiable
Application security, Infra Vulnerability Management
Exposure to vulnerability scanning and reporting tools such as Qualys, Tenable, Rapid7, or equivalent
Desirable skills - 1 skill which is nice to have
Infosys role
Technology Lead / Technology Analyst
Desired experience range
5+ years
Location(s) where this position can work out of
Bangalore
Does this position require working from client office all or some days in the week? If yes pls provide details
No
Is remote working allowed
Hybrid / as per project policy
Any additional things to be checked
Responsibilities and JD in brief along with additional criteria to be considered (if any):
Responsibilities and JD in brief along with additional criteria to be considered (if any):
• Perform vulnerability assessments across infrastructure, applications, cloud, and network environments.
• Operate enterprise vulnerability scanning tools and validate findings to reduce false positives.
• Analyze vulnerabilities using severity, exploitability, asset criticality, and business impact.
• Coordinate with infrastructure, application, cloud, and security teams for remediation and risk treatment.
• Track vulnerabilities through closure, including SLA monitoring, ageing analysis, exceptions, and risk acceptance.
• Prepare dashboards, metrics, executive summaries, and audit evidence for stakeholders.
• Support vulnerability governance, remediation reviews, and continuous improvement of assessment processes.
• Validate remediation through rescans and document closure evidence.
• Maintain awareness of emerging vulnerabilities, threat intelligence, and security advisories.
• Strong knowledge of CVE, CVSS, CWE, OWASP, vulnerability lifecycle, and remediation prioritization.
• Positive communication and stakeholder management skill
📌 Citizens Bank (India)
🏢 Clifyx
📍 India