Implement and operate enterprise vulnerability management using Tenable (Tenable.sc / Tenable.io / Nessus) across endpoints, servers, and network devices. Drive accurate asset discovery, risk-based scanning, remediation orchestration, reporting, and
audit closure in line with regulatory and internal security policies.
Key Responsibilities:
- Configure credentialed and agent-based scans for ~65,000 endpoints and 5,000 servers.
- Design scan templates, schedules, and tune plugins for risk-based prioritization.
- Partner with patch teams for CVE-to-patch mapping and compliance enforcement.
- Publish daily, weekly, and monthly posture reports and dashboards.
- Ensure SLA compliance for severity-based remediation timelines.
- Maintain SOPs, security baselines, and audit evidence packs.
Qualifications:
- Bachelors in B. Tech/BE/CS-IT or equivalent.
- Minimum 2 years in VM/patch/compliance.
- Hands-on with Tenable or any other VM tools, credentialed scans, agent deployment.
- OS expertise: Windows, RHEL; scripting (Python/Bash/PowerShell)