Vulnerability Management Specialist – Gurugram – 3 to 5 Years Experience

26 July 2024
Urgent

Job Overview

  • Date Posted
    26 July 2024
  • Location
  • Expiration date
    30 September 2024
  • Experience
    3 Year
  • Gender
    Any

Job Description

As a Vulnerability Management Specialist, you will perform vulnerability assessments and articulate findings in an easily consumable manner to asset owners. Strong reporting skills are essential.

Responsibilities:
  • Configure and maintain regular and ad-hoc vulnerability scans against internal and external IT infrastructure, including Cloud.
  • Assess, report, and close identified vulnerabilities.
  • Plan and coordinate penetration testing activities for internally/externally facing applications and internal IT infrastructure.
  • Collaborate with service owners and cross-functional stakeholders related to vulnerability assessment and penetration testing.
Job Requirements

• 3-5 years of experience in vulnerability assessment of infrastructure assets (Network/Servers in both on-premises & Cloud environments).
• Exposure to vulnerability scanning tools such as Tenable, Qualys, or Rapid7. Thorough knowledge of the CVSS risk rating.
• Knowledge of scripting (e.g., PowerShell) to write automation scripts and POCs.
• Solid understanding of the Windows platform, Active Directory, and networking protocols.
• Experience with implementation and operation of Nexpose/Nessus or similar vulnerability scanning tools at an enterprise level.
• Sound knowledge of ITIL standards and working experience with ITSM tools such as ServiceNow.
• Experience working in a virtual team within a globally distributed company with diverse cultures.
• Bachelor's degree (or equivalent), preferably in Computer Science, Computer Application, Information & Technology, or Electronic & Communication Engineering.
• Security certifications are a plus.
• Experience in bug bounty hunting with well-known bug bounty platforms or vulnerability disclosure programs is a plus.

Preferred Qualifications

• Security certifications (e.g., CEH, CISSP).
• Experience in bug bounty hunting with well-known bug bounty platforms/vulnerability disclosure programs.

About the Company

Capgemini is a global leader in consulting, technology services, and digital transformation. We address the entire breadth of clients’ opportunities in the evolving world of cloud, digital, and platforms. Building on its strong 50-year heritage and deep industry-specific expertise, Capgemini enables organizations to realize their business ambitions through an array of services from strategy to operations.