Competency:
QUALYS, VMDR, OWAPS, SCA, NIPPER, NETWORKS, LOAD BALANCER, AZURE, AWS, GCPYears of experience required:
2 - 6 Years:
About the Company: ACPL (www.acpl.com)
We at ACPL are Cyber Security specialists and help corporates with their complete cycle of setting up the Cyber security platform. Right from selecting the adaptable security tools to the deployment of the same and then providing dedicated cybersecurity services.
Established in 1990, ACPL is the developer of India’s first antivirus software “SmartDog”. We offer our services and solutions by integrating complex technologies offered by the leading IT companies through strategic partnerships. Our solutions and services are majorly focused on the most challenging industry verticals like BFSI, Manufacturing, Telecommunication, Retail, Healthcare, IT/ ITES, Power, Media Education, Distribution and more.
We are $70 million company with PAN India presence with services across ASIA and a branch office in Singapore. We are a team of 300+ highly qualified professionals having certifications like CISSP, CISA, GICH etc.
Apart from winning various Industry awards and recognitions ACPL is 100% RBA Compliant and a certified “Great place to work”.
Job Summary:
We are looking for an experienced Vulnerability Management Engineer with solid expertise in Qualys VMDR, Security Configuration Assessment (SCA), and network configuration analysis using Nipper. The role spans network devices, servers, endpoints, and cloud workloads, with a key focus on secure configuration, vulnerability management, and network segmentation posture. Environment Scope
- Network Devices: Firewalls, routers, switches, load balancers
- Servers: Windows, Linux, virtual environments
- Endpoints: Laptops, desktops
- Cloud Workloads: AWS / Azure / GCP
Key Responsibilities
- Perform vulnerability assessments using Qualys across:
- Network infrastructure
- Servers and endpoints
- Cloud workloads
- Conduct Security Configuration Assessments (SCA):
- OS hardening (Windows/Linux)
- Baseline compliance (CIS, NIST, ISO)
- Perform network device configuration reviews using Nipper:
- Analyze firewall, router, and switch configurations
- Identify misconfigurations, weak rules, and policy gaps
- Recommend secure configuration improvements
- Evaluate and support network segmentation posture:
- Review VLANs, firewall rules, ACLs, and micro-segmentation policies
- Identify over-permissive access and lateral movement risks
- Provide recommendations to enforce least privilege network access
- Correlate vulnerabilities + misconfigurations + segmentation gaps to assess real risk exposure.
- Drive remediation across:
- Network teams
- Server/infra teams
- Endpoint teams
- Cloud teams
- Validate remediation via rescans and config re-assessments.
- Maintain asset inventory, tagging, and ownership mapping in Qualys.
- Ensure proper scan coverage (agent-based + network-based) across all environments.
- Track and report:
- Vulnerability SLAs
- SCA compliance scores
- Network configuration risk posture
- Support audit and compliance activities with evidence and reporting.
Technical Skills Required
- Strong hands-on experience with:
- Qualys VMDR
- Qualys Policy Compliance (SCA)
- Nipper (network configuration assessment tool)
- Solid understanding of
- Network security concepts:
- OS hardening (Windows/Linux)
- Endpoint security posture
- Cloud security fundamentals
- Experience with
- Authenticated scanning & credential management
- Cloud Agent deployment and troubleshooting
- Network device auditing (firewalls, routers, switches)
- Knowledge of
- CIS Benchmarks, STIGs, NIST, ISO 27001
- CVSS scoring, OWASP Top 10
📌 Solution Engineer - Qualys (Mumbai)
🏢 ACPL
📍 Mumbai