Threat and Vulnerability Management Analyst
Location: Hyderabad & Delhi NCR
Experience: 5-10 years
Immediate joiners preferred
Interested candidate please share your CV to
[email protected]
Rotational Shift
: The Senior Security Analyst (TVM Operations) ensures the organization maintains a comprehensive and real-time view of its security posture. This operational role manages the daily execution of the Qualys platform, utilizing VMDR, CSAM, and EASM to detect vulnerabilities, discover unmanaged assets, and monitor our external attack surface.
You will not be patching systems yourself; rather, you will be the "source of truth" for partner teams. Your goal is to deliver accurate, actionable data into Jira, collaborate with System Administrators to prioritize fixes, and validate that remediation has occurred.
- Operational Specialist: You enjoy the rhythm of daily operationsensuring scans run, agents report, and data flows correctly.
- The "Radar Operator": You are vigilant about the External Attack Surface (EASM), spotting exposed services or forgotten subdomains before adversaries do.
- Team-oriented Influencer: Since you do not apply the patches, you rely on building strong relationships with IT partner teams to drive remediation action.
- Data Steward: You understand that a Vulnerability Management program is only as good as its asset inventory (CSAM), and you relentlessly chase down "unknown" assets.
- Ticket Master: You are comfortable working in Jira, ensuring that security findings don't get lost in the backlog.
- • Qualys Operations: Manage the daily health of the Qualys subscription, specifically VMDR (Vulnerability Management), CSAM (CyberSecurity Asset Management),
and EASM (External Attack Surface Management).
- Asset Discovery & Hygiene (CSAM): continuously monitor the network for unmanaged devices and unauthorized software. Work with IT to install agents or decommission shadow IT.
- External Exposure (EASM): Monitor the organizations external footprint. Identify and alert on unexpected public-facing assets, open ports, or expired certificates.
- Vulnerability Remediation Management: Translate scan findings into actionable Jira tickets. Assign tasks to appropriate partner teams (Server, Network, Cloud) and participate in sprint planning/backlog reviews to advocate for security tasks.
- Remediation Verification: Execute validation scans (re-scans) once partner teams mark Jira tickets as "Resolved" to confirm the vulnerability is truly closed.
- Scanning Execution: Configure and schedule discovery and vulnerability scans. Manage scanner appliances and exclude lists to prevent operational disruption.
- False Positive Analysis: Review technical evidence provided by partner teams to validate "False Positive" or "Risk Acceptance" requests.
- Reporting & Metrics: Generate weekly operational reports on "Open Vulnerabilities vs. Closed," Remediation SLAs, and Agent Health.
- Agent Health: Troubleshoot Qualys Cloud Agents on endpoints that have stopped reporting or are failing to authenticate.
- Threat Triage:
When high-profile vulnerabilities (e.g., Log4j, HTTP/2 Rapid Reset) are announced, use VMDR and CSAM to provide immediate impact assessments to leadership.
- Bachelors degree in information security, computer science, or equivalent operational experience.
- Qualys Power User: Proven operational experience with VMDR (running scans, analyzing results).
- Asset Management Experience: Experience using Qualys CSAM or similar tools to reconcile asset inventories and identify "blind spots" in coverage.
- Attack Surface Knowledge: Experience with EASM conceptsunderstanding DNS, public IP ranges, and how to identify assets that shouldn't be on the internet.
- Jira Proficiency: Strong working knowledge of Jira for ticket management. Ability to use JQL (Jira Query Language) to search for issues and create dashboards.
- Partner Collaboration: A track record of successfully working with System Administrators and DevOps teams. You know how to "speak their language" to get patches prioritized.
- Network & OS Fundamentals: Sufficient knowledge of Windows, Linux, and Networking to help partner teams understand where a vulnerability is located and why it needs fixing.
- Troubleshooting Skills: Ability to diagnose why a scanner can't reach a host or why an agent is offline.
- Analytical Mindset: Ability to correlate an external finding (EASM) with an internal vulnerability (VMDR) to determine true risk.
- Qualys Certified Specialist in CSAM or VMDR.
- Education : Bachelors in Computer Science, Bachelors in Cybersecurity, Bachelors in Information Systems, Bachelors in Information Technology, Masters in Computer Science
📌 Threat and Vulnerability Management Analyst (Bengaluru)
🏢 Genpact
📍 Bengaluru