Implement and operate enterprise vulnerability management using Tenable (Tenable.sc / Tenable.io / Nessus) across endpoints, servers, and network devices. Drive accurate asset discovery, risk-based scanning, remediation orchestration, reporting, and
audit closure in line with regulatory and internal security policies.
Key Responsibilities:
Configure credentialed and agent-based scans for ~65,000 endpoints and 5,000 servers.
Design scan templates, schedules, and tune plugins for risk-based prioritization.
Partner with patch teams for CVE-to-patch mapping and compliance enforcement.
Publish daily, weekly, and monthly posture reports and dashboards.
Ensure SLA compliance for severity-based remediation timelines.
Maintain SOPs, security baselines, and audit evidence packs.
Qualifications:
Bachelors in B. Tech/BE/CS-IT or equivalent.
Minimum 2 years in VM/patch/compliance.
Hands-on with Tenable or any other VM tools, credentialed scans, agent deployment.
OS expertise: Windows, RHEL; scripting (Python/Bash/PowerShell)