Vulnerability Management Engineer

Chennai, Tamil Nadu ₹800000 - ₹1200000 Y Mobile Programming

Posted today

Job Viewed

Tap Again To Close

Job Description

Candidate Skill:Technical Skills Vulnerability Management, CVE Tracking, Cloud Security Posture Management (CSPM), Prisma, Wiz, SAST, DAST, Dependency Scans, Secrets Scans, Container Workload Protection, Kubernetes, Vulnerability Scanning, Risk Assessment, Change Request Analysis, Security Assessment, Vulnerability Remediation, Security Best Practices.

Job Description:We are looking for a skilled and motivated Vulnerability Management Engineer to join our team. In this role, you will be responsible for assessing, tracking, and managing vulnerabilities in cloud and platform environments. You will play a critical role in ensuring the security posture of applications and infrastructure, using various vulnerability management tools and processes. Your responsibilities will include evaluating vulnerabilities, triaging risks, and ensuring proper remediation actions are taken to protect the organization's systems.

Responsibilities: Vulnerability Assessment: Assess the risk of CVEs (Common Vulnerabilities and Exposures) in the context of your environment and prioritize them based on risk. Vulnerability Management Lifecycle: Triage the entire vulnerability management lifecycle, ensuring vulnerabilities are identified, tracked, and remediated in a timely manner. Application Security & Vulnerability Management: Manage and oversee the Application Security and Vulnerability Management product, including CSPM (Cloud Security Posture Management), SAST (Static Application Security Testing), DAST (Dynamic Application Security Testing), Dependency Scans, and Secrets Scans. Cloud Security & Container Protection: Responsible for platform vulnerability management, including Cloud Security Posture Management and Container Workload Protection using Prisma Scanner. Change Request Analysis: Evaluate change requests for e-commerce systems, assess security implications, and provide security recommendations. Change Tracking: Track all feature changes, bug fixes, and release changes for each platform release to ensure no vulnerabilities are introduced. CVE Tracking: Monitor and track CVEs, ensuring timely identification, prioritization, and assessment of vulnerabilities. Component Identification: Identify and document components and systems impacted by proposed changes and their associated vulnerabilities. Security Assessment Planning: Develop and implement security assessment plans for changes to ensure compliance with industry standards and best practices. Vulnerability Scanning: Conduct regular vulnerability scans of infrastructure and source code, focusing on Kubernetes containerized apps, to identify and prioritize security risks. Documentation: Maintain detailed and accurate records of vulnerability assessments, findings, remediation actions, and reporting for compliance purposes. Security Tools: Experience with enterprise-grade vulnerability management tools like Prisma and Wiz is a plus. Qualifications: Solid understanding of vulnerability management life cycle and risk assessment. Experience with vulnerability scanning tools and platforms such as Prisma/Wiz. Familiarity with Cloud Security Posture Management (CSPM), Container Workload Protection, SAST, DAST, and Dependency Scans. Proven experience in security assessment, vulnerability remediation, and risk management. Strong knowledge of CVE tracking and vulnerability prioritization techniques. Knowledge of security best practices and compliance standards. Excellent documentation, communication, and collaboration skills. Past experience in operating enterprise-grade security vulnerability management tools is a plus.

This advertiser has chosen not to accept applicants from your region.

Vulnerability Management Analyst

Chennai, Tamil Nadu Hapag-Lloyd

Posted today

Job Viewed

Tap Again To Close

Job Description

Vulnerability Management Analyst

  • Full Time
  • Brigade World Trade Center Sales office 5, , Rajiv Gandhi Salai, Tirumalai Nagar, Perungudi, Chennai, Tamil Nadu , India
  • With Professional Experience
  • 6/10/25
  • About Hapag-Lloyd
    With a fleet of modern container ships and a Vessel Capacity 2.2 million TEU, as well as a Container Capacity 3.2 million TEU including one of the world’s largest and most modern reefer container fleets, Hapag-Lloyd is one of the world’s leading liner shipping companies. In the Liner Shipping segment, the Company has around 13. employees and offices in countries. Hapag-Lloyd has a container capacity of 11.9 million TEU – including one of the largest and most modern fleets of reefer containers. A total of liner services worldwide ensure fast and reliable connections between more than ports across the world. In the Terminal & Infrastructure segment, Hapag-Lloyd has stakes in 20 terminals in Europe, Latin America, the United States, India, and North Africa. The roughly 2. employees assigned to the Terminal & Infrastructure segment deal with terminal-related activities and provide complementary logistics services at selected locations.

    Background

    Hapag-Lloyd CISO is accountable on keeping the business secure and to safeguard customer trust by predicting, preventing, identifying, and responding to threats and make sure a quick recovery from cyber-related incidents. Whilst assisting Hapag-Lloyd management, business, and other areas, we enable our employees by providing usable and secure services and ensuring that security is part of our DNA. Our mission is to enable the company to continue doing business securely and efficiently.
    Hapag-Lloyd is operating in an increasingly complex environment were disruptive technologies, new types of threats and new cyber security regulations create additional cyber risks for organizations. Digitization is a top priority as customer preferences are changing towards mobile and digital and is part of Hapag-Lloyd values: “We care, We move, We deliver” , which are the heart of everything we do.

    Summary of the Role

    We are currently seeking a dedicated and analytical Vulnerability Management Analyst to join our Cyber Resilience Fusion Center team. This role is essential for protecting our Information Technology (IT) and Operational Technology (OT) environments from potential threats and vulnerabilities. The ideal candidate will be responsible for identifying, evaluating, and reporting on security vulnerabilities within our systems and networks. Working in the Attack Surface Management (ASM) area, the Vulnerability Management Analyst plays a crucial role in maintaining the integrity, confidentiality, and availability of our IT and OT infrastructures by ensuring our systems are safeguarded against the latest threats.

    Responsibilities and Tasks

  • Conduct regular scans of IT and OT systems to identify vulnerabilities and assess their potential impact.
  • Perform thorough risk assessments on identified vulnerabilities, considering both the technical aspects and the business context.
  • Collaborate with IT and OT teams to prioritize and facilitate the timely patching of vulnerabilities.
  • Prepare detailed reports on vulnerability findings, including risk assessments, recommended actions, and patch management status.
  • Develop and maintain Vulnerability Management policies, procedures, and related documentation to ensure consistent and effective practices.
  • Stay abreast of the latest cybersecurity threats and vulnerabilities, incorporating this intelligence into Vulnerability Management processes.
  • Communicate effectively with various stakeholders, including IT and OT teams, management, and external partners, to ensure a comprehensive understanding of vulnerabilities, impacts, and mitigation strategies.
  • Provide expertise and support during cybersecurity incidents related to vulnerabilities.
  • Assist in compliance efforts and audits, ensuring that Vulnerability Management practices meet industry standards and regulatory requirements.
  • Regularly review and recommend improvements to the Vulnerability Management program to enhance security posture.
  • Requirements and Qualifications

  • Master’s or bachelor’s degree or equivalent technical training in Information Technology, Information Systems Security, Cybersecurity, or related field.
  • Minimum of 3 years of experience in Cybersecurity, specifically in Vulnerability Management, risk assessment, or a similar role.
  • Strong understanding of both Information Technology (IT) and Operational Technology (OT) systems and their unique security challenges.
  • Proficiency with vulnerability scanning tools (e.g., Nessus, Qualys, Rapid7) and familiarity with security frameworks (e.g., NIST, ISO ).
  • Ability to analyze vulnerability data, assess risks, and prioritize responses based on potential impact.
  • Excellent written and verbal communication skills, with the ability to explain technical details to non-technical stakeholders.
  • Relevant certifications such as CEH, Security+, PenTest+, GSEC are desired.
  • Good understanding of Windows, UNIX and Linux operating systems functions and security.
  • Ability to clearly convey results in formal technical reports and deliver briefings to senior staff, technical specialists, and management, including CISO and C-Suite.
  • Excellent soft skills – team building, conflict resolution, empathy, motivation, creativity, flexibility.
  • Experience working in Supply Chain, Logistics, Shipping/Transport sectors is a plus.
  • Creative and flexible mindset.
  • Responsive and able to take responsibility for actions & deliverables.
  • Stick to commitments and hold each other accountable.
  • Ability to work collaboratively in a team environment and with employees from various departments.
  • Excellent oral and written English communication skills.
  • Contact person

    Muthu Vignesh Rajendran Talent Acquisition Executive Share this job
  • Imprint | Privacy Policy
  • This advertiser has chosen not to accept applicants from your region.

    Qualys Vulnerability Management

    Chennai, Tamil Nadu Snaphunt

    Posted today

    Job Viewed

    Tap Again To Close

    Job Description

    The Offer

    • Attractive salary & benefits

    The Job

    Job Role: Security Engineer – Vulnerability Management

    Job Location: Hyderabad / PAN India

    Work Mode: Hybrid Model

    Job Summary:

    • Deployment of QCS Agents in all serves (On-premise and Cloud -AWS/Azure)
    • Exposure to all modules of Qualys Tool CSAM and EASM VMDR PM
    • Vulnerability risk analysis and define criticality (1-5) – Eg: Zero-Days
    • Establish patching standards, baselines and frequency
    • Identifying and enabling patches on 3rd party software thru prioritized products section
    • Guide the patch management team on Qualys features, patch deployment strategies, and troubleshooting.
    • Act as the technical escalation point for patch failures or complex deployment scenarios
    • Train team members on Qualys Patch Management usage and advanced troubleshooting
    • Scripting knowledge (PowerShell, Bash) for Automation
    • Develop SOPs and knowledge base articles for common operational tasks

    The Profile

    Primary Skill:

    • Complete understanding of Asset Management, Patch Management, Vulnerability Management and Qualys Tool
    • Qualys Platform Administration (Asset Tagging, Purge Rules, Job Monitoring, Agent Troubleshoot)
    • Strong and Hands on experience in Linux patching and Linux administration
    • Knowledge of VMWARE , LINUX , AWS , AZURE
    • Integration of Qualys Tool with various platforms (On Premise, Cloud)

    Secondary Skill : Linux Admin and understanding of QCS

    GOOD KNOWLEDGE AND HANDS ON BELOW

    • V Center Administration AWS and Azure Administration
    • OS Administration (Windows/Linux)
    • LINUX PATCHING EXPERIENCE

    The Employer

    Founded in 2003 to solve mission-critical development and maintenance problems, Our client has steadily grown into a multi-service, multi-product entity.

    Our client is a global solutions-driven technology consulting and development company partnering with clients in their digital transformation journey across North America, Europe, APAC and the Middle East.

    Headquartered in the US, our global staff of 1000+ experts leverage their unmatched experience to efficiently deliver innovative projects in core IT solution development, cloud optimization & management, digital transformation, business application development, collaborative enterprise solutions and IT infrastructure management.

    This advertiser has chosen not to accept applicants from your region.

    Qualys Vulnerability Management

    Chennai, Tamil Nadu Tekskills

    Posted today

    Job Viewed

    Tap Again To Close

    Job Description

    Founded in 2003 to solve mission-critical development and maintenance problems, Tekskills Inc. has steadily grown into a multi-service, multi-product entity.

    We are a global solutions-driven technology consulting and development company partnering with clients in their digital transformation journey across North America, Europe, APAC and the Middle East.

    Headquartered in the US, our global staff of 1000+ experts leverage their unmatched experience to efficiently deliver innovative projects in core IT solution development, cloud optimization & management, digital transformation, business application development, collaborative enterprise solutions and IT infrastructure management.

    We offer a comprehensive portfolio of highly reliable, scalable, cost-efficient products, solutions and services to many Fortune 500 companies worldwide. Tekskills Inc. is an ISO 9001:2015 certified company appraised at CMMI Level 3, and we are a Great Place To Work Certified organization.

    The Role

    Job Role: Security Engineer – Vulnerability Management

    Job Location: Hyderabad / PAN India

    Work Mode: Hybrid Model

    Job Summary:

    • Deployment of QCS Agents in all serves (On-premise and Cloud -AWS/Azure)
    • Exposure to all modules of Qualys Tool CSAM and EASM VMDR PM
    • Vulnerability risk analysis and define criticality (1-5) – Eg: Zero-Days
    • Establish patching standards, baselines and frequency
    • Identifying and enabling patches on 3rd party software thru prioritized products section
    • Guide the patch management team on Qualys features, patch deployment strategies, and troubleshooting.
    • Act as the technical escalation point for patch failures or complex deployment scenarios
    • Train team members on Qualys Patch Management usage and advanced troubleshooting
    • Scripting knowledge (PowerShell, Bash) for Automation
    • Develop SOPs and knowledge base articles for common operational tasks

    Ideal Profile

    Primary Skill:

    • Complete understanding of Asset Management, Patch Management, Vulnerability Management and Qualys Tool
    • Qualys Platform Administration (Asset Tagging, Purge Rules, Job Monitoring, Agent Troubleshoot)
    • Strong and Hands on experience in Linux patching and Linux administration
    • Knowledge of VMWARE , LINUX , AWS , AZURE
    • Integration of Qualys Tool with various platforms (On Premise, Cloud)

    Secondary Skill : Linux Admin and understanding of QCS

    GOOD KNOWLEDGE AND HANDS ON BELOW

    • V Center Administration AWS and Azure Administration
    • OS Administration (Windows/Linux)
    • LINUX PATCHING EXPERIENCE

    What's on Offer?

    • Attractive salary & benefits
    This advertiser has chosen not to accept applicants from your region.

    Security Specialist - Vulnerability Management

    Chennai, Tamil Nadu Lennox

    Posted today

    Job Viewed

    Tap Again To Close

    Job Description

    Job Description

  • Hands-on experience working with Vulnerability assessment tools like Nexpose, Nessus & vulnerability response (ServiceNow)
  • Perform information system security vulnerability scanning to discover and analyze vulnerabilities and characterize risks to networks, operating systems, applications, databases, and other information system components.
  • Perform compliance scanning to analyze configurations and facilitate implementation of configurations and hardening settings for networks, operating systems, applications, databases, and other information system components.
  • Maintaining appropriate documentation that defines the Threat & Vulnerability Management Program, Policy and Procedures
  • Participated in the calls to resolve information security incidents, including internal events and targeted threats.
  • Research, evaluate, and assess emerging cyber security threats, incidents, and vulnerabilities.
  • Work with the stakeholders to develop and maintain a vulnerability intelligence process that monitors for emerging systems vulnerabilities.
  • Prioritize the remediation of vulnerabilities based on their characteristics, such as threat intelligence, business criticality, and exploit maturity.
  • Define minimum standards in relation to threat management and monitoring compliance across the businesses.
  • Take responsibility for scheduling, detecting, and analyzing vulnerabilities and vulnerability-related activity affecting the organization domain.
  • Help create prioritized overviews of cyber vulnerabilities by putting them in the context of IT services and business applications, leading to remediation actions by the respective parties.
  • Conduct deep-dive analysis on attacks and share actionable data with partner teams.
  • Ensure the accurate and timely release of vulnerability metrics.
  • Report on areas of non-compliance against Policy and/or Group Standards
  • Qualifications

  • Good knowledge of security monitoring approaches, techniques, and widely used products to seek out security threats and improve an organization’s security posture.
  • Experience with threat and vulnerability management and other security operations processes and techniques (such as identity management, cryptography, patch management, etc.). Knowledge of threats to widely used digital and technology systems, including on-prem and cloud-based solutions.
  • Interprets device and application logs from various sources (i.e., Firewalls, Proxies, Web Servers, System Logs, Splunk, Packet Captures, etc.) to identify anomalies or evidence of compromise.
  • Experience defining a Threat and Vulnerability Management solution using tools such as Tenable.io/Rapid 7/Nessus/Vulnerability Response (ServiceNow)/Azure Threat management platform/Other Cloud Security Technologies.
  • Minimum seven plus years of Experience working within a Security Operations Centre or Incident Response Team, Law Enforcement.
  • Use of threat intelligence to identify potential threats, assess their impact, and provide actionable insights to the organization.
  • Certification in vulnerability management related to Nessus, Nexpose & ServiceNow Vulnerability response.
  • Any Certification in CEH, CompTIA PenTest+, Certified Penetration Tester (CPT), Certified Cloud Penetration Tester (CCPT) etc.
  • A broad background in information security with experience in security operations, vulnerabilities and exploitation, network security, and cloud security
  • Relevant experience in cybersecurity architecture, engineering, and/or SOC work experience (monitoring, detection, incident response, forensics)
  • Monitoring for emerging threat patterns and vulnerabilities
  • Vulnerability Scheduling, monitoring & troubleshooting the tools we manage.
  • Threat Report Generation based on the stakeholder's requirements.
  • This advertiser has chosen not to accept applicants from your region.

    Vulnerability Management L2 Support Engineer

    Chennai, Tamil Nadu Covenant HR

    Posted today

    Job Viewed

    Tap Again To Close

    Job Description

    Company – Our client is a global technology services and consulting leader, recognized for driving innovation in enterprise IT and cybersecurity. Known for its collaborative culture and digital transformation expertise, this Fortune 500 organization partners with top enterprises worldwide to elevate their security posture and resilience.


    Job Title – Vulnerability Management L2 Support Engineer

    Location – Remote (flexible to collaborate across global teams)

    Role Type – Contract (12 months) only


    Must Have Skills:

    • 2–4 years of experience in IT security or vulnerability management
    • Hands-on experience with vulnerability scanning tools such as Qualys, Tenable, Rapid7, or Nessus
    • Strong understanding of patch management processes (Windows, Linux, applications)
    • Familiarity with CVE/CVSS scoring systems and threat prioritization
    • Proficiency in generating and maintaining dashboards and reports


    Responsibilities and Job Details:

    • Execute regular vulnerability scans and validate results for accuracy
    • Collaborate with infrastructure and application teams to coordinate remediation
    • Track and report on remediation progress, escalating high-risk findings as needed
    • Support patch management and assist with configuration baseline enforcement
    • Maintain vulnerability dashboards and prepare regulatory compliance reports
    • Provide L2-level technical support and mentorship to L1 teams
    • Assist in defining security hardening guidelines and vulnerability baselines
    • Engage with Security Operations and L3 teams for critical issue resolution
    • Utilize strong analytical and troubleshooting skills for issue analysis
    • Communicate effectively with global stakeholders across security and IT teams
    • Leverage knowledge of networking, firewalls, OS, and app security
    • (Bonus) Apply scripting skills and familiarity with standards like ISO 27001, PCI-DSS, HIPAA
    This advertiser has chosen not to accept applicants from your region.

    Vulnerability Management L2 Support Engineer

    Chennai, Tamil Nadu Covenant HR

    Posted today

    Job Viewed

    Tap Again To Close

    Job Description

    Company – Our client is a global technology services and consulting leader, recognized for driving innovation in enterprise IT and cybersecurity. Known for its collaborative culture and digital transformation expertise, this Fortune 500 organization partners with top enterprises worldwide to elevate their security posture and resilience.


    Job Title – Vulnerability Management L2 Support Engineer

    Location – Remote (flexible to collaborate across global teams)

    Role Type – Contract (12 months) only


    Must Have Skills:

    • 2–4 years of experience in IT security or vulnerability management
    • Hands-on experience with vulnerability scanning tools such as Qualys, Tenable, Rapid7, or Nessus
    • Strong understanding of patch management processes (Windows, Linux, applications)
    • Familiarity with CVE/CVSS scoring systems and threat prioritization
    • Proficiency in generating and maintaining dashboards and reports


    Responsibilities and Job Details:

    • Execute regular vulnerability scans and validate results for accuracy
    • Collaborate with infrastructure and application teams to coordinate remediation
    • Track and report on remediation progress, escalating high-risk findings as needed
    • Support patch management and assist with configuration baseline enforcement
    • Maintain vulnerability dashboards and prepare regulatory compliance reports
    • Provide L2-level technical support and mentorship to L1 teams
    • Assist in defining security hardening guidelines and vulnerability baselines
    • Engage with Security Operations and L3 teams for critical issue resolution
    • Utilize strong analytical and troubleshooting skills for issue analysis
    • Communicate effectively with global stakeholders across security and IT teams
    • Leverage knowledge of networking, firewalls, OS, and app security
    • (Bonus) Apply scripting skills and familiarity with standards like ISO 27001, PCI-DSS, HIPAA
    This advertiser has chosen not to accept applicants from your region.
    Be The First To Know

    About the latest Vulnerability management Jobs in Chennai !

    Threat Management Manager

    Chennai, Tamil Nadu DTCC

    Posted today

    Job Viewed

    Tap Again To Close

    Job Description

    Are you ready to make an impact at DTCC?

    Do you want to work on innovative projects, collaborate with a dynamic and supportive team, and receive investment in your professional development? At DTCC, we are at the forefront of innovation in the financial markets. We are committed to helping our employees grow and succeed. We believe that you have the skills and drive to make a real impact. We foster a thriving internal community and are committed to creating a workplace that looks like the world that we serve.

    Pay and Benefits:

  • Competitive compensation, including base pay and annual incentive
  • Comprehensive health and life insurance and well-being benefits, based on location
  • Pension / Retirement benefits
  • Paid Time Off and Personal/Family Care, and other leaves of absence when needed to support your physical, financial, and emotional well-being.
  • DTCC offers a flexible/hybrid model of 3 days onsite and 2 days remote (onsite Tuesdays, Wednesdays and a third day unique to each team or employee).
  • The Impact you will have in this role: Cyber Threat Fusion Center (CTFC) is responsible for setting strategic direction in the areas of IT Risk and Information Security. Maintains corporate security policies and control standards, acts as a second line of defense via a robust collection of risk and control assessments, reports to leadership and the Board on the status of the IT Risk and Information Security Programs, acts as an operational arm for monitoring threat intelligence, understanding when threats are being targeted against the firm, and responding to potential incidents, and serves as the main interface for Regulatory and Client reviews that focus on IT Risk and Information Security. Threat Management ensures security monitoring controls provide proper coverage, data quality, and effectiveness to improve DTCC's ability to properly identify current cyber threats, monitor, and detect suspicious activities or instances of data loss.

    Your Primary Responsibilities:

  • Manage a team of cyber security professionals who can design and implement security monitoring controls
  • Lead technical PoC evaluations and onboarding of new security technologies.
  • Drive continuous improvement of technology, processes, and procedures to align with stakeholder needs.
  • Ensure alignment with enterprise security architecture and compliance standards.
  • Collaborate with internal stakeholders and vendors to ensure robust and scalable integrations.
  • Design and maintain automated playbooks for incident response and threat remediation.
  • Optimize SOAR workflows to reduce manual effort and improve response times.
  • Conduct regular assessments of existing security tools and processes to identify gaps or inefficiencies.
  • Develop and maintain a technology roadmap aligned with business and security objectives.
  • Collaborate with architecture and engineering teams to prioritize and implement gap remediation strategies.
  • Track and report on gap closure progress and impact on overall security posture.
  • Establish performance metrics and key performance indicators (KPIs) to measure the effectiveness of the Security Integration and Orchestration program
  • Qualifications:

  • Minimum of 8 years of related experience
  • Bachelor's degree preferred or equivalent experience
  • Talents Needed for Success:

  • Deep understanding of integrating tools like QRadar, Syslog-NG, SOAR, Armis IoT, Reversing Labs, and Zscaler into the incident response ecosystem.
  • Experience with SOAR platforms and case management systems, including playbook creation and automation workflows.
  • Ability to identify technology gaps in security monitoring and develop actionable remediation plans.
  • Skills in enriching security event data to improve detection and response efficiency
  • Capable of defining objectives and scope for orchestration initiatives and aligning them with business use cases.
  • Proficiency in Python, PowerShell, Bash, or Perl to automate compliance checks, data parsing, and reporting.
  • Proficiency in generating reports and metrics to measure orchestration effectiveness and tool coverage.
  • Experience in coordinating with external vendors for tool integration and support
  • Regular engagement with incident response, Network Penetration and other Cyber Fusion Center teams to ensure alignment and operational readiness.
  • Skilled in managing stakeholder expectations, facilitating discussions, and driving consensus across technical and business teams
  • Highlights the expected benefits of new actions and strategies to help others overcome fears of change.
  • Fosters a culture where honesty and transparency are expected.
  • Proactively seeks feedback from others on his/her own performance.
  • Ensures that regular feedback is given in a constructive and behaviorally oriented manner.
  • Supports an environment where individuals are respected for their contributions.

  • Actual salary is determined based on the role, location, individual experience, skills, and other considerations.

    This advertiser has chosen not to accept applicants from your region.

    Threat Management Associate Director

    Chennai, Tamil Nadu DTCC

    Posted today

    Job Viewed

    Tap Again To Close

    Job Description

    Are you ready to make an impact at DTCC?

    Do you want to work on innovative projects, collaborate with a dynamic and supportive team, and receive investment in your professional development? At DTCC, we are at the forefront of innovation in the financial markets. We are committed to helping our employees grow and succeed. We believe that you have the skills and drive to make a real impact. We foster a thriving internal community and are committed to creating a workplace that looks like the world that we serve.

    Pay and Benefits:
  • Competitive compensation, including base pay and annual incentive
  • Comprehensive health and life insurance and well-being benefits, based on location
  • Pension / Retirement benefits
  • Paid Time Off and Personal/Family Care, and other leaves of absence when needed to support your physical, financial, and emotional well-being.
  • DTCC offers a flexible/hybrid model of 3 days onsite and 2 days remote (onsite Tuesdays, Wednesdays and a third day unique to each team or employee).
  • The Impact you will have in this role: Cyber Threat Fusion Center (CTFC) ensures security monitoring controls provide proper coverage, data quality, and effectiveness to improve DTCC's ability to properly identify current cyber threats, monitor, and detect suspicious activities or instances of data loss.

    Your Primary Responsibilities:

  • Provide subject matter expertise for Security Event Monitoring program and technologies supporting the program
  • Influence the direction of the SIEM roadmap by proactively looking forward on security gaps that require planning
  • Lead the preparation of security monitoring coverage reports that goes out to stakeholders and senior management.
  • Coordinate with IT teams for the remediation of identified risks and issues affecting security event monitoring controls.
  • Possess hands-on, expert-level technical proficiency and technical certifications specific to a critical skill.
  • Mitigates risk by following established procedures and monitoring controls, spotting key errors and demonstrating strong ethical behavior.
  • Qualifications:

  • Minimum of 8 years of related experience
  • Bachelor's degree preferred or equivalent experience
  • Talents Needed for Success:

  • Strong Information Security experience in SIEM and log management (Google SecOps, QRadar, ELK, Kafka, Splunk) and related technologies (firewalls, IDS/IPS, user behavior analytics, DNS, WAF, DLP, Endpoint Detection and Response etc.)
  • Strong communication skills, including executive communication to senior leadership
  • Strong, demonstrable experience in Cybersecurity engineering, design, implementation, and documentation
  • Good understanding of network and infrastructure (Networking protocol knowledge is an advantage- TCP/IP, HTTP, HTTPS, DNS, firewalls, proxies, IDS, IPS etc.)
  • Proficiency in Python, PowerShell, Bash, or Perl to automate compliance checks, data parsing, and reporting.
  • Knowledge of industry-standard Information Security frameworks, policies and procedures
  • Security certifications (CEH, CCSP, CISSP, OSCP) are a plus
  • Serves as a trusted coach or mentor within the organization.
  • Communicates openly keeping everyone across the organization informed.
  • Actual salary is determined based on the role, location, individual experience, skills, and other considerations.
    This advertiser has chosen not to accept applicants from your region.

    (Immediate Joiners Only)Cybersecurity Vulnerability & Patch Management Engineer (India – U.S. Shift)

    Chennai, Tamil Nadu Triune Infomatics Inc

    Posted 1 day ago

    Job Viewed

    Tap Again To Close

    Job Description

    Role: Cybersecurity Vulnerability & Patch Management Engineer (India – U.S. Shift)

    Working Hours: Monday to Friday, 9 AM – 5 PM PST (U.S. Business Hours)

    Reporting To: Security Operations (SecOps) Leader – USA



    Role Overview: We are hiring a skilled Cybersecurity Vulnerability Management Engineer based in India to support our U.S. Security Operations team. This role will be responsible for managing enterprise vulnerabilities, patching, and cloud security. You will work closely with the U.S. team and other global stakeholders to ensure our systems remain secure, compliant, and up to date.


    Key Responsibilities:

    • Vulnerability Management
    • Manage vulnerabilities across networks, endpoints, Azure cloud, and enterprise applications.
    • Perform full lifecycle vulnerability management using TenableOne - detect, prioritize, and remediate vulnerabilities (Zero-day, Critical, High, Medium, Low).
    • Assess vulnerabilities based on CVE impact, CVSS, and VPR scores.
    • Respond to zero-day vulnerabilities using CrowdStrike RTR for endpoint investigation and mitigation.
    • Track and ensure timely remediation within SLA guidelines.
    • Patch Management
    • Design and manage patching for Windows, Linux, cloud workloads, and endpoints using Automox or similar tools.
    • Develop automation scripts (PowerShell or Python) for deployment, validation, and rollback.
    • Collaborate with IAM, Systems Engineering, End User Services, NetOps, and Software Engineering teams to ensure complete patch compliance.
    • Monitor patch effectiveness and verify enterprise-wide coverage.
    • Cloud Security & Threat Hunting
    • Manage Azure Cloud security posture using Defender for Cloud, Azure Security Center, and Azure Policy.
    • Perform threat hunting and incident response using Azure Sentinel and KQL queries.
    • Governance, Reporting & Collaboration
    • Lead weekly Vulnerability & Patch Management (VMP) status meetings.
    • Prepare reports and dashboards covering vulnerability KPIs, MTTR, risk trends, patch compliance, and risk exposure.
    • Work closely with SecOps leadership and cross-functional teams (IT, IAM, DevOps, NetOps, IAM) to drive remediation and process improvement.
    • Team Involvement & Availability
    • Participate in daily SecOps standups, lead VMP weekly status meetings, and attend bi-weekly staffing meetings.
    • Be a proactive team player and provide mentorship and support for junior engineers.
    • Availability required during U.S. business hours (PST timezone).


    Required Qualifications:

    • Minimum 5 years of experience in vulnerability and patch management in enterprise environments.
    • Hands-on expertise with TenableOne.
    • Experience with patch deployment using Automox or equivalent tools.
    • Strong knowledge of CrowdStrike Falcon Complete and RTR scripting.
    • Proficient in PowerShell and/or Python scripting.
    • Proven ability to manage zero-day vulnerabilities and coordinate rapid remediation.
    • Deep experience with Azure cloud security and threat detection using Azure Sentinel and KQL.
    • Strong understanding of enterprise IT infrastructure: networking, servers, cloud, and endpoint security.
    • Excellent communication and collaboration skills for cross-functional and executive reporting.


    Preferred Qualifications:

    • CISSP or equivalent cybersecurity certification.
    • Experience with Infrastructure as Code (IaC) tools: Terraform, ARM templates, or Bicep.
    • Azure Security Engineer Associate or CrowdStrike certification.
    • Background in manufacturing or regulated industries.
    • Familiarity with DevOps security tools such as Ansible, Chef, or Puppet.
    This advertiser has chosen not to accept applicants from your region.
     

    Nearby Locations

    Other Jobs Near Me

    Industry

    1. request_quote Accounting
    2. work Administrative
    3. eco Agriculture Forestry
    4. smart_toy AI & Emerging Technologies
    5. school Apprenticeships & Trainee
    6. apartment Architecture
    7. palette Arts & Entertainment
    8. directions_car Automotive
    9. flight_takeoff Aviation
    10. account_balance Banking & Finance
    11. local_florist Beauty & Wellness
    12. restaurant Catering
    13. volunteer_activism Charity & Voluntary
    14. science Chemical Engineering
    15. child_friendly Childcare
    16. foundation Civil Engineering
    17. clean_hands Cleaning & Sanitation
    18. diversity_3 Community & Social Care
    19. construction Construction
    20. brush Creative & Digital
    21. currency_bitcoin Crypto & Blockchain
    22. support_agent Customer Service & Helpdesk
    23. medical_services Dental
    24. medical_services Driving & Transport
    25. medical_services E Commerce & Social Media
    26. school Education & Teaching
    27. electrical_services Electrical Engineering
    28. bolt Energy
    29. local_mall Fmcg
    30. gavel Government & Non Profit
    31. emoji_events Graduate
    32. health_and_safety Healthcare
    33. beach_access Hospitality & Tourism
    34. groups Human Resources
    35. precision_manufacturing Industrial Engineering
    36. security Information Security
    37. handyman Installation & Maintenance
    38. policy Insurance
    39. code IT & Software
    40. gavel Legal
    41. sports_soccer Leisure & Sports
    42. inventory_2 Logistics & Warehousing
    43. supervisor_account Management
    44. supervisor_account Management Consultancy
    45. supervisor_account Manufacturing & Production
    46. campaign Marketing
    47. build Mechanical Engineering
    48. perm_media Media & PR
    49. local_hospital Medical
    50. local_hospital Military & Public Safety
    51. local_hospital Mining
    52. medical_services Nursing
    53. local_gas_station Oil & Gas
    54. biotech Pharmaceutical
    55. checklist_rtl Project Management
    56. shopping_bag Purchasing
    57. home_work Real Estate
    58. person_search Recruitment Consultancy
    59. store Retail
    60. point_of_sale Sales
    61. science Scientific Research & Development
    62. wifi Telecoms
    63. psychology Therapy
    64. pets Veterinary
    View All Vulnerability Management Jobs View All Jobs in Chennai