Job Summary
Job Title: Cybersecurity Lead Analyst - Vulnerability, Cyber Risk Governance, Security Operations
Experience: 8-10 Years
Location: Bangalore
Employment Type: Full-time
Responsibilities
- Coordinate end to end vulnerability management activities for applications and supporting technologies
- Monitor and track findings from SAST, DAST, penetration testing, Qualys, SonarQube, bug bounty, and other security assessment platforms
- Perform risk based prioritization of vulnerabilities and drive remediation actions with application teams
- Organize and facilitate vulnerability governance committees, remediation reviews, and executive reporting forums
- Challenge and follow up with stakeholders on overdue remediation actions and exception management requests
- Produce and maintain vulnerability dashboards, Key Risk Indicators (KRIs), and Key Performance Indicators (KPIs)
- Analyze vulnerability trends and recurring root causes to recommend improvement actions
- Support audit requests, evidence collection, and compliance reporting activities
Required Skills and Experience
- 5+ years of experience in Vulnerability Management, Cyber Risk Governance, Application Security, or Security Operations
- Strong understanding of vulnerability lifecycle management and remediation governance
- Hands on experience with Qualys, SonarQube,
SAST, DAST, penetration testing outputs, and vulnerability reporting tools
- Valuable understanding of OWASP Top 10, CVSS scoring, application security risks, and remediation practices
- Experience working with application development, infrastructure, and cybersecurity teams in large enterprise environments
- Strong stakeholder management and executive communication capabilities
- Experience creating management dashboards, metrics, risk reports, and committee materials
- Ability to manage multiple priorities while ensuring adherence to security and compliance objectives
Key Deliverables
- Vulnerability governance dashboards and remediation tracking reports
- Executive reporting packs and cybersecurity committee materials
- Monthly KRI/KPI reporting and trend analysis
- Tracking and closure of remediation plans and risk treatment actions
- Reduction of overdue vulnerabilities and improvement of remediation compliance
- Audit, compliance, and management reporting evidence
Business Insight The Senior Cybersecurity Vulnerability is responsible for driving vulnerability remediation, coordinating cybersecurity risk management activities, and supporting security governance across multiple IT organizations.
📌 Cybersecurity Lead Analyst - Vulnerability, Cyber Risk Governance (Bengaluru)
🏢 CGI
📍 Bengaluru