04 Oct
|
HCL Technologies
|
India
04 Oct
HCL Technologies
India
Job Summary
- Well versed with development of vulnerability management tool architecture, deployment, and configuration of vulnerability tools like Qualys.
- Extensive experience in ServiceNow VR module.
- Extensive experience in Qualys modules like VM, PC, WAS, Cloud Agent, Container Security etc.
- Knowledge in integration of Qualys with ServiceNow ITSM and CMDB.
- Able to identify and suggest vulnerability management tool related architectural best practices.
- Working experience on configuring the vulnerability management tool including scanners, cloud agents, scanning profiles, policy compliance templates, scanning schedules etc.
- Analyze, interpret, and prioritize vulnerability scan results into remediation actions.
- Experience in working and removing false positive vulnerabilities.
- Extensive experience in handling end-to-end vulnerability remediation tracking process, which includes coordination with different stakeholders, attending CAB meetings, taking updates on status of remediation.
- Coordination with relevant stakeholders until closure of zero-day vulnerabilities.
- Well versed with exception management process; coordinate with business stakeholders to mark vulnerabilities as exception which cannot be remediated due to business reasons.
- Creation and deployment of vulnerability management related process.
- Review process definition and technical operational runbooks.
- Providing and presenting vulnerability remediation tracking status updates to management in form of dashboards.
- Must be ready to work in 24*7 environment.
Requirements:
- Should have experience in reduction of the backlog vulnerabilities.
- Good understanding of information security related fields, including security implementation, security operations, and security policy and technology administration.
- Should possess a good understanding of assets, threats, and vulnerabilities and their correlation in an organization.
- Should be able to collect feedback and analyze weak areas and present the same to management.
- Should be able to collect gaps in vulnerability management processes and provide optimization recommendations to customer.
Good to Have Requirements:
- Experience on vulnerability prioritization platforms like RiskSense, Kenna, Lumin, VMDR would be a plus.
- Experience on tools like StealthAudit.
- Hands-on experience in vulnerability patching for Wintel/Linux etc.
- Hands-on experience in tools like SCCM/ BigFix etc.
Qualification:
- Candidate should be graduate preferably B. E/ B. Tech/ M. Tech/ MCA.
Certification:
- Qualys Certified Specialist for VM, PC, WAS is a must.
- Certifications like CCNA, CISA, ISO 27001, or CEH.
Key Responsibilities
- Well versed with development of vulnerability management tool architecture, deployment, and configuration of vulnerability tools like Qualys.
- Extensive experience in ServiceNow VR module.
- Extensive experience in Qualys modules like VM, PC, WAS, Cloud Agent, Container Security etc.
- Knowledge in integration of Qualys with ServiceNow ITSM and CMDB.
- Able to identify and suggest vulnerability management tool related architectural best practices.
- Working experience on configuring the vulnerability management tool including scanners, cloud agents, scanning profiles, policy compliance templates, scanning schedules etc.
- Analyze, interpret, and prioritize vulnerability scan results into remediation actions.
- Experience in working and removing false positive vulnerabilities.
- Extensive experience in handling end-to-end vulnerability remediation tracking process, which includes coordination with different stakeholders, attending CAB meetings, taking updates on status of remediation.
- Coordination with relevant stakeholders until closure of zero-day vulnerabilities.
- Well versed with exception management process; coordinate with business stakeholders to mark vulnerabilities as exception which cannot be remediated due to business reasons.
- Creation and deployment of vulnerability management related process.
- Review process definition and technical operational runbooks.
- Providing and presenting vulnerability remediation tracking status updates to management in form of dashboards.
- Must be ready to work in 24*7 environment.
Requirements:
- Should have experience in reduction of the backlog vulnerabilities.
- Good understanding of information security related fields, including security implementation, security operations, and security policy and technology administration.
- Should possess a good understanding of assets, threats, and vulnerabilities and their correlation in an organization.
- Should be able to collect feedback and analyze weak areas and present the same to management.
- Should be able to collect gaps in vulnerability management processes and provide optimization recommendations to customer.
Good to Have Requirements:
- Experience on vulnerability prioritization platforms like RiskSense, Kenna, Lumin, VMDR would be a plus.
- Experience on tools like StealthAudit.
- Hands-on experience in vulnerability patching for Wintel/Linux etc.
- Hands-on experience in tools like SCCM/ BigFix etc.
Qualification:
- Candidate should be graduate preferably B. E/ B. Tech/ M. Tech/ MCA.
Certification:
- Qualys Certified Specialist for VM, PC, WAS is a must.
- Certifications like CCNA, CISA, ISO 27001, or CEH.
Skill Requirements
- Well versed with development of vulnerability management tool architecture, deployment, and configuration of vulnerability tools like Qualys.
- Extensive experience in ServiceNow VR module.
- Extensive experience in Qualys modules like VM, PC, WAS, Cloud Agent, Container Security etc.
- Knowledge in integration of Qualys with ServiceNow ITSM and CMDB.
- Able to identify and suggest vulnerability management tool related architectural best practices.
- Working experience on configuring the vulnerability management tool including scanners, cloud agents, scanning profiles, policy compliance templates, scanning schedules etc.
- Analyze, interpret, and prioritize vulnerability scan results into remediation actions.
- Experience in working and removing false positive vulnerabilities.
- Extensive experience in handling end-to-end vulnerability remediation tracking process, which includes coordination with different stakeholders, attending CAB meetings, taking updates on status of remediation.
- Coordination with relevant stakeholders until closure of zero-day vulnerabilities.
- Well versed with exception management process; coordinate with business stakeholders to mark vulnerabilities as exception which cannot be remediated due to business reasons.
- Creation and deployment of vulnerability management related process.
- Review process definition and technical operational runbooks.
- Providing and presenting vulnerability remediation tracking status updates to management in form of dashboards.
- Must be ready to work in 24*7 environment.
Requirements:
- Should have experience in reduction of the backlog vulnerabilities.
- Good understanding of information security related fields, including security implementation, security operations, and security policy and technology administration.
- Should possess a positive understanding of assets, threats, and vulnerabilities and their correlation in an organization.
- Should be able to collect feedback and analyze weak areas and present the same to management.
- Should be able to collect gaps in vulnerability management processes and provide optimization recommendations to customer.
Good to Have Requirements:
- Experience on vulnerability prioritization platforms like RiskSense, Kenna, Lumin, VMDR would be a plus.
- Experience on tools like StealthAudit.
- Hands-on experience in vulnerability patching for Wintel/Linux etc.
- Hands-on experience in tools like SCCM/ BigFix etc.
Qualification:
- Candidate should be graduate preferably B. E/ B. Tech/ M. Tech/ MCA.
Certification:
- Qualys Certified Specialist for VM, PC, WAS is a must.
- Certifications like CCNA, CISA, ISO 27001, or CEH.
Other Requirements
- Well versed with development of vulnerability management tool architecture, deployment, and configuration of vulnerability tools like Qualys.
- Extensive experience in ServiceNow VR module.
- Extensive experience in Qualys modules like VM, PC, WAS, Cloud Agent, Container Security etc.
- Knowledge in integration of Qualys with ServiceNow ITSM and CMDB.
- Able to identify and suggest vulnerability management tool related architectural best practices.
- Working experience on configuring the vulnerability management tool including scanners, cloud agents, scanning profiles, policy compliance templates, scanning schedules etc.
- Analyze, interpret, and prioritize vulnerability scan results into remediation actions.
- Experience in working and removing false positive vulnerabilities.
- Extensive experience in handling end-to-end vulnerability remediation tracking process, which includes coordination with different stakeholders, attending CAB meetings, taking updates on status of remediation.
- Coordination with relevant stakeholders until closure of zero-day vulnerabilities.
- Well versed with exception management process; coordinate with business stakeholders to mark vulnerabilities as exception which cannot be remediated due to business reasons.
- Creation and deployment of vulnerability management related process.
- Review process definition and technical operational runbooks.
- Providing and presenting vulnerability remediation tracking status updates to management in form of dashboards.
- Must be ready to work in 24*7 environment.
Requirements:
- Should have experience in reduction of the backlog vulnerabilities.
- Good understanding of information security related fields, including security implementation, security operations, and security policy and technology administration.
- Should possess a good understanding of assets, threats, and vulnerabilities and their correlation in an organization.
- Should be able to collect feedback and analyze weak areas and present the same to management.
- Should be able to collect gaps in vulnerability management processes and provide optimization recommendations to customer.
Good to Have Requirements:
- Experience on vulnerability prioritization platforms like RiskSense, Kenna, Lumin, VMDR would be a plus.
- Experience on tools like StealthAudit.
- Hands-on experience in vulnerability patching for Wintel/Linux etc.
- Hands-on experience in tools like SCCM/ BigFix etc.
Qualification:
- Candidate should be graduate preferably B. E/ B. Tech/ M. Tech/ MCA.
Certification:
- Qualys Certified Specialist for VM, PC, WAS is a must.
- Certifications like CCNA, CISA, ISO 27001, or CEH.
📌 SME - Qualys (India)
🏢 HCL Technologies
📍 India