Vulnerability Management Sr. Analyst

1 week ago


Pune, India METRO LOGISTICS Full time

Company Description Metro Global Solution Center (MGSC) is internal solution partner for METRO, a € Billion international wholesaler with operations in 31 countries through 661 stores & a team of 93,000 people globally. Metro operates in a further 10 countries with its Food Service Distribution (FSD) business and it is thus active in a total of 34 countries. MGSC, location wise is present in Pune (India), Düsseldorf (Germany) and Szczecin (Poland). We provide IT & Business operations support to 31 countries, speak 24+ languages and process over 18,000 transactions a day. We are setting tomorrow’s standards for customer focus, digital solutions, and sustainable business models. For over 10 years, we have been providing services and solutions from our two locations in Pune and Szczecin. This has allowed us to gain extensive experience in how we can best serve our internal customers with high quality and passion. We believe that we can add value, drive efficiency, and satisfy our customers. Website: Company Size: 600-650 Headquarters: Pune, Maharashtra, India Type: Privately Held Inception: 2011 Job Description Responsibilities: Deep understanding of VAPT and its management platforms. Manage and maintain vulnerability scanning tools to identify security vulnerabilities in enterprise systems, networks, and applications. Refine scan results to identify and resolve any false positive findings and produce vulnerability reports with actionable and prioritized information for system owners. Perform risk-based prioritization of identified vulnerabilities. Collaborate with security analysts to conduct detailed assessments of critical vulnerabilities and develop mitigation strategy. Work with IT and cross-functional teams to develop and implement prioritized vulnerability remediation plans and timelines. Ensure timely patching or mitigation. Ensure that Metro's systems and applications are regularly updated with security patches to mitigate vulnerabilities and maintain a secure environment. Provide risk-based mitigation and remediation recommendations and guidance. Manage tracking and reporting on remediation progress to stakeholders and leadership. Stay updated on emerging threats and vulnerabilities through threat intelligence sources. Integrate threat intelligence into the vulnerability management process to address high-risk areas proactively. Develop baseline asset inventories and maintain owners for systems in the inventory. Define metrics and reporting to track program effectiveness and improvement. Develop and track key performance indicators (KPIs) for the vulnerability management program. Cross-train and mentor wider analyst team in the development of VA Team. Adapts quickly to changing priorities, seeks new ideas, and re-align with team’s priority/roadmap to maximize business productivity. Technical & Soft Skills: Strong Experience in coordinating vulnerability remediation activities in a larger corporate environment Hands-on experience and knowledge of vulnerability management technologies. Extensive knowledge of OS, Application, Middleware Vulnerability Management, Container Scanning, and Patch Management. Well-versed in penetration testing, vulnerability scanning, and red teaming methodologies and frameworks such as OWASP Top 10 and CWE 25. In-depth Understanding of technical information security concepts related to threat landscapes. Strong understanding of network protocols, operating systems, and security technologies. Experience in improving vulnerability prioritization models. Ability to conduct independent research and analysis, identifying issues, formulating options, and making conclusions and recommendations. Demonstrable conceptual, analytical and innovative problem-solving and evaluative skills. Very high attention to detail, with strong skills in managing/presenting data and information. Excellent communication, collaboration, and interpersonal skills Capable of working collaboratively in a team environment and with the ability to work in a hybrid work environment, offering support to team members remotely along with able to work as part of a geographically separated team. Willingness to learn additional technologies, not focused on a single technology/application. Qualifications Qualifications Bachelor’s degree in computer science, Information security, or in a related field. Relevant Cyber Security certifications ( CompTIA PenTest+, C|PENT,OSCP, CPT, CCPT) are a plus. 4-7 years of total experience in Cybersecurity in a large multi-national organization or in a known MSSP. The candidate should have minimum 2 years of experience in Infrastructure Vulnerability Management.



  • Pune, India ZS Full time

    ZS is a place where passion changes lives. As a management consulting and technology firm focused on improving life and how we live it, we transform ideas into impact by bringing together data, science, technology and human ingenuity to deliver better outcomes for all. Here you’ll work side-by-side with a powerful collective of thinkers and experts shaping...


  • Pune, Maharashtra, India ZS Full time ₹ 12,00,000 - ₹ 24,00,000 per year

    Role & responsibilitiesAnalyze and prioritize vulnerabilities from internal scans, pen tests, threat intelligence, and red team exercises across infrastructure and cloud environments.Lead coordination efforts with infrastructure, cloud, and application teams to ensure timely remediation and secure configurations.Drive continuous improvement of vulnerability...


  • Pune, India ZS Associates Full time

    Job Description ZS is a place where passion changes lives. As a management consulting and technology firm focused on improving life and how we live it, we transform ideas into impact by bringing together data, science, technology and human ingenuity to deliver better outcomes for all. Here you'll work side-by-side with a powerful collective of thinkers and...


  • Pune, India Genpact Full time

    Job Description Inviting applications for the role ofLead Consultant - Vulnerability Management and SOC Analyst Responsibilities - Oversee identification, assessment, remediation, and reporting of vulnerabilities across cloud, on-premises, and OT environments. - Perform regular scans using Tenable.IO, Tenable.SC, Tenable.CS, and Tenable.OT. - Interpret scan...


  • pune, India Payatu Full time

    Are you a skilled penetration tester looking for an exciting new opportunity to take your career to the next level? Join our dynamic cybersecurity team, where you'll have the chance to work on cutting-edge projects, including cloud security, reverse engineering, threat modelling, and product security.Who we are? Payatu is an ISO certified company where we...


  • Pune, India SynRadar Full time

    Description : Role : Senior Security Analyst - Appsec/VA/PTExperience : 4-6 yearsLocation : Mumbai, PuneKey Responsibilities :- Perform web application security testing and identify vulnerabilities.- Conduct mobile application security testing for Android/iOS platforms.- Scan networks for potential security vulnerabilities.- Coordinate with clients regarding...


  • Pune, India SynRadar Full time

    Job Description Description Role : Senior Security Analyst - Appsec/VA/PT Experience : 4-6 years Location : Mumbai, Pune Key Responsibilities - Perform web application security testing and identify vulnerabilities. - Conduct mobile application security testing for Android/iOS platforms. - Scan networks for potential security vulnerabilities. - Coordinate...


  • Pune, Maharashtra, India GENPACT Full time

    Ready to build the future with AI At Genpact we don t just keep up with technology we set the pace AI and digital innovation are redefining industries and we re leading the charge Genpact s our industry-first accelerator is an example of how we re scaling advanced technology solutions to help global enterprises work smarter grow faster and transform at scale...

  • Sr. Analyst

    2 days ago


    Pune, Maharashtra, India Cummins Talent Acquisition Full time ₹ 12,00,000 - ₹ 24,00,000 per year

    Job SummaryThe Sr. Analyst – Cummins CARE Operations provides advanced support to customers including end-users, distributors, and dealers seeking information across multiple communication channels with minimum supervision. The role is responsible for resolving non-routine inquiries, ensuring high-quality service delivery, and contributing to service...

  • Security Analyst

    2 days ago


    Pune, India Johnson Controls Full time

    Description :We are seeking a talented Security Analyst to join our team, he/she would be responsible for identifying, assessing, and mitigating security vulnerabilities within an organization’s IT systems, applications, and networks. This role ensures the confidentiality, integrity, and availability of sensitive data by proactively detecting weaknesses...