Process Overview*
Global Information Security (GIS) functions by analyzing, researching, improving, defining, implementing, and executing information security processes defined, in large part, by past high profile audit issues. Key responsibilities include Data Quality management of closed manually identified P2 vulnerabilities, developing an understanding of the LOBs that report vulnerabilities via manual flat file to GIS, following standard practices and procedures in analyzing situations or data, and supporting team members in performing specialized GIS functions, primarily Data Quality assurance. Job expectations include partnering with teams inside, and outside, of GIS, inclusive of GIS, CTI, EET, APS&E, GT Risk, and others.
Responsibilities*
- Responsible for the development and execution of the vulnerability identification technology strategy
- Hands on proof-of-concept testing of next generation Vulnerability identification technologies
- Deliver routine Project progress updates to Senior Executive Leadership
- Responsible for vulnerability scanning platforms optimization and resiliency
- Responsible for the mapping of vulnerability identification gaps with remedial technology solutions
- Maintain relationships with Vulnerability Management Solutions Providers and Technology implementation partners
- Responsible for Technology-based thematic issue tracking, resolution, and reporting
- Key participants to Vulnerability Identification Incident Management & Response.
- Provide technical guidance and mentorship to team members
Requirements*
Bachelor’s and/or master’s degree in computer science, Information Technology or related field
Certifications (If Any) :Qualys VMDR preferred, Relevant certifications such as CISSP, CISM, ISO 27001, NIST is a plus
8+ Years
Foundational Skills:
- Hands-on technical experience deploying an Industry-leading Vulnerability Identification Scanning Solution(s) (Qualys and Tenable)
- Working knowledge of Network architecture and Engineering concepts
- Experience with deploying and managing cloud-based Vulnerability scanning solutions
- Superior sense of urgency and ability to accurately prioritize deliverables
- Good written and verbal communication Skills
Desired Skills:
- BS or MS in Information technology/security or related areas of study
- Experience with establishing and maintaining integration between Vulnerability identification tools and Vulnerability Management Workflows (e.g. ServiceNow)
- Familiarity with mainstream attacker techniques, tactics, and procedures (i.e. MITRE ATT&CK Framework)
- Experience with deploying and managing Cloud-based Vulnerability scanning solutions
- Familiarity with compliance regulations, frameworks, and certifications (e.g., NIST, FFIEC.)
- Experience with Vulnerability ratings methodologies
- Background in Windows & UNIX platform Administration
- Experience with a scripting language(s)
Work Timings* :1:30 PM - 10:30 PM
: Chennai, Hyderabad