Description:
We are seeking a Security Engineering professional with experience in Vulnerability Management to support enterprise security operations. The ideal candidate will be responsible for managing the end-to-end vulnerability management lifecycle, working closely with infrastructure, application, cloud, and DevOps teams to identify, assess, prioritize, and remediate security vulnerabilities across the organization.
Essential Skills & Responsibilities
- Manage the end-to-end vulnerability management lifecycle, including discovery, assessment, prioritization, remediation tracking, and reporting.
- Conduct regular vulnerability scans for servers, endpoints, databases, applications, network devices, and cloud environments.
- Analyze scan results, validate findings, and determine business risk and remediation priorities.
- Collaborate with infrastructure, application, cloud, and DevOps teams to drive timely remediation of identified vulnerabilities.
- Track remediation progress and ensure compliance with defined SLAs and security policies.
- Perform risk-based prioritization using CVSS scores, threat intelligence, exploitability, and business impact.
- Conduct vulnerability trend analysis and provide actionable recommendations to stakeholders.
- Support security audits, regulatory assessments, and compliance activities.
- Develop and maintain vulnerability management dashboards, KPIs, and executive reports.
- Stay informed about emerging threats, zero-day vulnerabilities, and security advisories.
- Support penetration testing activities and coordinate remediation of identified findings.
- Contribute to vulnerability management policies, procedures, and process improvements.