Vulnerability Management SME

3 days ago


Chennai, India TOCUMULUS Full time

Main Purpose of the Role :· To support Vulnerability Management activities and Policy Compliance activities byproviding guidance to technology owners on remedial actions.· Reduce the vulnerability footprint by working wih the technology owner or product owner.· Provide comprehensive solutions to complex problems, lead major iniatives in riskreduction surrounding vulnerabilities.· Ensure that processes are documented in accordance with CLIENT requirements and standards· Influence the strategic direction on risk reduction that impact the organisation by prioritising remediation activities. · To ensure effective management and control of information security, IT and information risk for MUSI by ensuring all appropriate Security, IT and common sense controls are in place, that these controls are being followed and that this is evidenced across the whole business and IT department. · The role will involve liaising with the other information security functions within the MUS international business and CLIENT group to ensure a consistent approach to all controls, standards and policies is adopted across the organisation. · To ensure all necessary Information Security controls are in place and that an appropriate strategy to protect the firm from related Cyber, external and internal threats is defined and being implemented. · To develop, implement and manage compliance with appropriate IS and IT Security policies, standards and procedures. · To support the relationship and associated reporting requirements between Technology and internal and external bodies e.g. auditors, management committees, Tokyo head office, regulators (via Compliance), Operational Risk.Key Responsibilities:In this role, you will be responsible for Information Security across CLIENT’s banking arm and securities business under a dual-hat arrangement. Under this arrangement, you will act and make decisions on behalf of both the bank and the securities business, subject to the same remit and level of authority, and irrespective of the entity which employs you.· Develop and manage processes for assessing disclosed vulnerabilities, threat scenarios, and mitigating controls.· Develop and manage processes for maintaining governance surrounding policy compliance (CIS benchmarks or other asset hardening frameworks or standards).· Evaluate the threats that vulnerabilities present to drive prioritization of remediation actions. · Assist in process development that includes reviewing and validating vulnerabilities using available data sources, tools as analysts assess and risk rate vulnerabilities. · Monitor and report on the security posture of CLIENT’s digital presence, i.e. CLIENT web sites. · Liaise with Technology and Business teams as necessary to ensure all MUSI systems meet MUSI security standards and/or agree appropriate measures to mitigate the risk where they don’t. · Collaborate with stakeholders across the enterprise on appropriate remediation & mitigation solutions. · Support Audit & Regulatory liaison and ensure consistent and timely answers to information requests. · Support any issues and remedial actions resulting from information security incidents and audits are agreed with appropriate timescales for resolution. · Support Operational Risk management · Support MUSI’s information security risk profile and associated operational risk reporting. · Ensure adequate technical safeguards are in place and are being actively managed by the support teams to provide appropriate protection to MUSI’s information assets across the following environments: o Windows & Unix operating systems o Databases (Oracle, SQL, Sybase) o Networks · Be seen as the Information Security centre of excellence for MUSI and ensure MUSI adopt an appropriate and professional response on any information security issues raised by the organisation’s business activities · Liaise with IT teams to ensure information security alerts, threats and vulnerabilities across the IT estate are highlighted, managed and mitigated within appropriate timescales· Maintain an up to date, working knowledge of current laws, regulations and best practices relating to information security. · Support the annual penetration test · Support Information Security incidents where requested. · Support Operational Security duties where requested. · Responsibility covers EMEA for Bank and EMEA for Securities technologySkills and Experience:· Experience as a Vulnerability Analyst· Understanding of Vulnerability Management principles· Understanding of Risk Assessment Methodologies· Knowledge of industry standard scoring models such as CVSS (Common VulnerabilityScoring System) or CCSS (Common Configuration Scoring System)· Knowledge of industry standard data models such as CPE (Collection Processing Engine) and data normalization tools· Process oriented with keen attention to detail· Knowledge of common vulnerabilities, attack vectors and mitigation techniques· Ability to proactively anticipate problems and execute solutions at a strategic level· Wide knowledge of application and IT products, interoperability, and extensive knowledgeof IT security· Knowledge of application development platforms· Knowledge of vulnerability attack methods, exploit results, attack chains· Ability to think strategically· Active involvement in internal and external audits and experience of managing Auditrelationships.· A bachelor’s degree in computer science, cybersecurity or a related fieldDesired but not necessary: · Qualys Cloud Portal experience · Experience in cloud security, preferably with Azure / Oracle Cloud Infrastructure · Knowledge of cloud security frameworks, tools and technologies · Experience with DLP (Data Loss Prevention) such policy creation and management, workflow and approval.Personal Requirements:Excellent communication skillsResults driven, with a strong sense of accountabilityA proactive, motivated approach.The ability to operate with urgency and prioritise work accordinglyStrong decision making skills, the ability to demonstrate sound judgementA structured and logical approach to workStrong problem solving skillsA creative and innovative approach to workExcellent interpersonal skillsThe ability to manage large workloads and tight deadlinesExcellent attention to detail and accuracyA calm approach, with the ability to perform well in a pressurised environment



  • Chennai, India TOCUMULUS Full time

    Main Purpose of the Role : · To support Vulnerability Management activities and Policy Compliance activities by providing guidance to technology owners on remedial actions. · Reduce the vulnerability footprint by working wih the technology owner or product owner. · Provide comprehensive solutions to complex problems, lead major iniatives in risk reduction...


  • Chennai, India TOCUMULUS Full time

    Main Purpose of the Role : · To support Vulnerability Management activities and Policy Compliance activities by providing guidance to technology owners on remedial actions. · Reduce the vulnerability footprint by working wih the technology owner or product owner. · Provide comprehensive solutions to complex problems, lead major iniatives in risk reduction...


  • Chennai, India TOCUMULUS Full time

    Main Purpose of the Role :· To support Vulnerability Management activities and Policy Compliance activities byproviding guidance to technology owners on remedial actions.· Reduce the vulnerability footprint by working wih the technology owner or product owner.· Provide comprehensive solutions to complex problems, lead major iniatives in riskreduction...


  • Chennai, Tamil Nadu, India, Tamil Nadu TOCUMULUS Full time

    Main Purpose of the Role :· To support Vulnerability Management activities and Policy Compliance activities byproviding guidance to technology owners on remedial actions.· Reduce the vulnerability footprint by working wih the technology owner or product owner.· Provide comprehensive solutions to complex problems, lead major iniatives in riskreduction...


  • Chennai, Tamil Nadu, India HTC Global Services Full time

    Job DescriptionAbout the Role:We are seeking a Vulnerability Management & EOL Remediation Engineer – Windows Servers & Workstations with 6+ years of experience in End-of-Life (EOL) Software Remediation for Windows Servers, Vulnerability Management and Patch Deployment for both Servers and WorkstationsRequirementsStrong proficiency in PowerShell scripting...

  • Vulnerability

    6 days ago


    Chennai, Tamil Nadu, India Tata Consultancy Services (TCS) Full time ₹ 6,00,000 - ₹ 12,00,000 per year

    Job Description:In depth understanding of application security risks and how to test themConfident with OWASP Top 10 and SANS Top 25 vulnerabilitiesShould have working experience on solutions like Burp Suite / HCL Appscan / Acunetics /Sql Map / nMAP etc .LocationChennaiJob FunctionIT INFRASTRUCTURE SERVICESRoleEngineerJob Id381432Desired SkillsCyber Security...

  • Vmware SME

    6 days ago


    Chennai, Tamil Nadu, India Tata Consultancy Services Full time ₹ 12,00,000 - ₹ 36,00,000 per year

    TCS has been a great pioneer in feeding the fire of young techies like you. We are a global leader in the technology arena and there's nothing that can stop us from growing together.What we are looking forRole: Vmware SME (must havehandson VR Automation exp)Experience Range: yearsLocation: Pune, Chennai/HyderabadInterview Mode: Telephonic InterviewMust...

  • AWS Security Engineer

    2 weeks ago


    Chennai, India Firstcareercentre Full time

    Description :- Design, implement, and manage AWS security solutions in alignment with organizational and regulatory requirements.- Deep expertise in AWS native security services including IAM, SSO, Security Hub, GuardDuty, KMS, CloudTrail, and Config.- Conduct security assessments, vulnerability management, and risk analysis for AWS environments.- Implement...

  • Vulnerability Analyst

    2 weeks ago


    Chennai, Tamil Nadu, India UST Full time

    Vulnerability Management Analyst Experience 2 to 4 years Location Hyderabad Trivandrum Kochi Bangalore Chennai Company CyberProof A UST Company Job Summary We are seeking a skilled and proactive Vulnerability Management Analyst to join our security team In this role you ll lead day-to-day operations of vulnerability assessment and remediation efforts for a...


  • Chennai, India MNR Solutions Full time

    Description :Job Summary :-We are seeking an experienced SOC Manager (L4) to lead our Security Operations Center. The candidate will oversee monitoring, detection, response, and mitigation of cybersecurity threats, manage SOC teams, and ensure alignment with organizational security strategies. This role requires strong leadership, technical expertise, and a...