Job Summary
Job Title: Senior Analyst Vulnerability Management
Position: Senior Analyst Vulnerability Management
Experience: 5-7 Years
Category: Infrastructure /Cloud
Location: Bangalore
Employment Type: Full-time
Responsible for Infrastructure IT Security and SOC operations to perform periodic scans and identify the threats associated with vulnerabilities. This role is for a SOC Vulnerability Management (Cyber Security Analyst). Will be part of the GTS Security SOC team. In this role, you will involve in supporting India and global regional needs. The objectives of the Security Department (RESG/GTS/SEC) are to manage the strategy for all RESG/GTS in terms of security, technical standards, processes and tools, and thus to cover many cross functional functions within the company and subsidiaries across all regions.
Responsibilities
- Conduct Network and System Vulnerability assessments and documentation of corrective/remediation actions, Drive the end to end vulnerability lifecycle from discovery to closure, Identify internal and external threats that could result in unauthorized disclosure, misuse, alteration, or destruction of customer's information assets, Identify and prioritize all vulnerabilities in client environments and provide timely vulnerability assessment reports to key stakeholders, Ensure timely follow up with patch management and vulnerability remediation in coordination with Countermeasures personnel.
- Responsible for understanding, reviewing, and interpreting assessment and scanning results, reducing false positive findings, and acting as a trusted security advisor to the client.
- Identify and prioritize all vulnerabilities in client environments and provide timely vulnerability assessment reports to key stakeholders
- Develop and report enterprise level metrics for vulnerabilities and remediation progress
- Present Vulnerability report to clients and triaging to priorotize the remediation
- Analysis of vulnerability: based on group standards, manage the alerting on critical vulnerability found by a vulnerability scan and follow the mitigation with remediation teams
- Ability to identify false positives
- Knowledge of vulnerability management frameworks and concepts such as CVE, and CVSS scoring systems and attacking vectors
- Dashboard: generate monthly and quarterly reports and dashboards
- Implement automated, proactive security measures
- Security process improvement
- Hands on Qualys modules Vulnerability Management, Policy Compliance, Web Application Scanning, Cloud Agent, Asset View
Qualifications
- Any degree or equivalent
- Information Security, SOC, Vulnerability Management, Qualys guard
- Good Communication Skills, Teamwork, Flexibility
- Minimum 3 experience working with security teams in lead roles in SOC etc.
- Service Now, ITSM, Qualys guard. Experience using scripting languages (Python or similar, PowerShell scripts, bash)
- Knowledge of technical aspects of the Security Assessment processes is an added advantage
- Energetic and matured and focus on collective Success
- Demonstrate commitment Team Spirit by inspiration, exemplarity, care and sustainability
- Effective interpersonal skills in a multi cultural team setting
- Self starter and Self motivated with the ability to work independently and efficiently as well as with a team of peers
- Expertise in Excel/Word Power Point and other office/productive tools
- Good communication skills on both written, spoken and presentation skills
- Quick learner and proactively take ownership
- Good in coordination and communication skills
- Foreign Language: French
Skills
- Infrastructure
- Qualys Vulnerability Mgmt
- Security Operations Center
- Vulnerability management(IAVM)
- Communication
📌 Senior Analyst - Vulnerability Management (Bengaluru)
🏢 CGI
📍 Bengaluru