Vulnerability Risk Specialist

2 weeks ago


Bengaluru, Karnataka, India beBeeCybersecurity Full time ₹ 1,04,000 - ₹ 1,30,878
Job Description">

The Information Security Consultant will support planning, execution, and reporting of operational and system IT internal controls and risk management within the organization.

This role will act as a point of contact for Cybersecurity Governance, Risk, and Compliance. The role will work closely with Technology functional teams and internal business lines in the day-to-day operational delivery of the overall Cybersecurity Compliance program.

Teaming with the Cybersecurity Compliance Manager, the Information Security Consultant will:

  • Monitor changes in business processes, information systems, management, and operations, and accordingly maintain an assessment of risk.
  • Build and maintain productive relationships with process owners.
  • Through effective leadership, ensure audits of control effectiveness and design and other projects are completed in an efficient manner, and within established deadlines.
  • Through the effective review of department work, ensure that the assessments of the internal control structure related to processes audited are supported through sufficient and adequately documented evidence.
  • Continually evaluate the efficiency and effectiveness of the internal controls and department functions, and identify areas of improvement.
  • Assist with internal investigations.
  • Promote good practice of Information Security Compliance to staff and associated contractors.
  • Provide direct and specific guidance to the department internal control process owners as appropriate for each process owner of the department and the work being performed.
  • Perform risk assessments related to controls in scope for work being performed.

Responsibilities

  • Maintain awareness of current compliance, audit professional standards and any associated legislation changes, and apply where appropriate to the internal IT controls and audit function.
  • Maintain awareness of current issues and significant changes within the business environment and business processes.
  • Periodically determine the need for revisions to control processes.
  • Demonstrate effective interaction with all levels of management and business partners.
  • Review specific control risk assessments to ensure efficiency and effectiveness in addressing key risks associated with the respective auditable entity or entities.
  • Review risk questionnaire submissions to identify key risks associated with the respective vendor/service and work with stakeholders to mitigate and advise.
  • Ensure that appropriate communication has been made in advance with compliance and internal process & service owners regarding the timing and logistics of each audit and review.
  • Anticipate problems and obstacles to the timely and efficient completion of audits and compliance reviews. Recommend solutions to anticipated and incurred problems and obstacles impeding the timely completion of such audit and reviews.
  • Through an understanding of internal controls, standards and applicable policies, procedures, and country regulations, review evidence to ensure the assessment of the effectiveness and efficiency of internal controls is adequate and sufficiently supported and documented, and the departmental and professional standards are adequately upheld.
  • Ensure issues and exceptions are fully identified and properly defined, and recommendations are adequately formulated to address the root cause of identified issues in a beneficial manner.
  • Ensure issues and recommendations are adequately and effectively communicated to owners on a proactive basis during the course of each audit or review.
  • Review final process owners responses for adequacy and completeness.
  • Ensure appropriate and timely follow-up audit work is performed to properly update the status of outstanding reported issues, and adequate communication is provided to management on a proactive basis.
  • Use the firm's various methods of internal communication to direct colleagues and the wider organization to current, new policies and essential compliance information.


  • Bengaluru, Karnataka, India World Wide Technology Full time ₹ 15,00,000 - ₹ 25,00,000 per year

    Job Title: Vulnerability Management Specialist (AWS & Wiz)Client: HPENumber of Positions: 3Location: India, remote (candidate has to be local to Bangalore, no relo)Duration: 6+ monthsPosition OverviewWe are seeking a skilled Vulnerability Management Specialist with hands-on experience in AWS environments and Wiz (cloud security posture management).The ideal...


  • Bengaluru, Karnataka, India beBeeVulnerability Full time ₹ 15,00,000 - ₹ 28,00,000

    Job Title:Vulnerability Management SpecialistJob Description:We are seeking a skilled Vulnerability Management Specialist to join our team. In this role, you will be responsible for developing hardening standards and translating them into tool-recognized formats.You will have the opportunity to work with leading vulnerability scanning solutions like Qualys,...


  • Bengaluru, Karnataka, India Tekgence Inc Full time ₹ 6,00,000 - ₹ 12,00,000 per year

    Vulnerability Management Specialist (AWS & Wiz)AWSWIZ


  • Bengaluru, Karnataka, India beBeeCybersecurity Full time ₹ 24,89,500 - ₹ 32,16,100

    The Security Testing Operations Analyst is a pivotal role in vulnerability management and offensive testing across the organization, protecting the business from sophisticated cyber threats.">Plan and facilitate testing programs with third-party vendors to ensure efficient execution.Work closely with internal teams, BISOs, GSOC, and external entities to...


  • Bengaluru, Karnataka, India SAP Fioneer Full time ₹ 12,00,000 - ₹ 36,00,000 per year

    Innovation is and will always be the core of SAP Fioneer, and it is the promise of why we were spun out of SAP: agility, innovation, and delivery.   SAP Fioneer builds on a heritage of outstanding technology and a deep understanding of corporate and consumer demands. At the heart of it all it is simple: We bring financial services to the next level with...


  • Bengaluru, Karnataka, India beBeeVulnerability Full time ₹ 15,00,000 - ₹ 20,00,000

    Job Title: Senior Vulnerability Management SpecialistOverview:We are seeking an experienced Vulnerability Management Specialist to join our team. This role is responsible for performing vulnerability assessments and policy compliance on on-prem, cloud-hosted systems, containers, databases, web services, and other widely deployed infrastructure components.Key...


  • Bengaluru, Karnataka, India Triune Infomatics Inc Full time

    Role: Cybersecurity Vulnerability & Patch Management Engineer (India – U.S. Shift)Working Hours: Monday to Friday, 9 AM – 5 PM PST (U.S. Business Hours)Reporting To: Security Operations (SecOps) Leader – USARole Overview: We are hiring a skilled Cybersecurity Vulnerability Management Engineer based in India to support our U.S. Security Operations team....


  • Bengaluru, Karnataka, India Triune Infomatics Inc Full time

    Role: Cybersecurity Vulnerability & Patch Management Engineer (India – U.S. Shift) Working Hours: Monday to Friday, 9 AM – 5 PM PST (U.S. Business Hours) Reporting To: Security Operations (SecOps) Leader – USA Role Overview: We are hiring a skilled Cybersecurity Vulnerability Management Engineer based in India to support our U.S. Security...


  • Bengaluru, Karnataka, India Triune Infomatics Inc Full time

    Role: Cybersecurity Vulnerability & Patch Management Engineer (India – U.S. Shift) Working Hours: Monday to Friday, 9 AM – 5 PM PST (U.S. Business Hours)Reporting To: Security Operations (SecOps) Leader – USA Role Overview: We are hiring a skilled Cybersecurity Vulnerability Management Engineer based in India to support our U.S. Security Operations...


  • Bengaluru, Karnataka, India beBeeRiskManagement Full time ₹ 9,00,000 - ₹ 12,00,000

    Security Risk Management SpecialistWe are seeking a highly skilled Security Risk Management Specialist to join our team.This role involves identifying, assessing, and mitigating information security risks within the organization.Developing and implementing risk management strategies and frameworks.Monitoring and reviewing security policies and procedures to...