Home
Jobs

369 Qualys Jobs - Page 13

Filter
Filter Interviews
Min: 0 years
Max: 25 years
Min: ₹0
Max: ₹10000000
Setup a job Alert
JobPe aggregates results for easy application access, but you actually apply on the job portal directly.

0 years

0 Lacs

Pune, Maharashtra, India

On-site

Linkedin logo

Come work at a place where innovation and teamwork come together to support the most exciting missions in the world! Job Description Qualys, a leading cybersecurity firm, is seeking an experienced Senior Technical Support Engineer for Security Applications to resolve global customer and partner service requests promptly. Collaborate across teams for high customer satisfaction in a secure environment. Ideal for security enthusiasts with solid networking skills. Lead in resolving technical issues, provide top-tier support, and contribute to world-class assistance. Responsibilities: Promptly resolve global customer and partner service requests in a highly secured environment. Collaborate with cross-functional teams for high customer satisfaction. Provide support via phone, email, and MS Teams for Product modules over the SaaS platform. Ensure friendly and professional customer interactions throughout the service life cycle. Act as the main point of contact for technical issues, collaborating directly with Development and QA teams. Thrive in a challenging and dynamic environment, delivering world-class support and technical solutions. Qualifications: 2+ years of technical support experience. Experience in Vulnerability Management and Web Application Security/Firewall application support. In-depth TCP/IP understanding and LAN/WAN infrastructure knowledge. Strong foundation in Windows and/or solid Linux/Unix experience in an enterprise environment. Familiarity with common OS services (IIS, BIND, Apache, AD, WINS, Samba, SSH). Knowledge of firewalls, Intrusion Detection System technologies, and Network Vulnerability Scanners. Outstanding troubleshooting and analytical skills. Excellent written and verbal communication skills. Bachelor of Science in Computer Science or equivalent experience. Show more Show less

Posted 4 weeks ago

Apply

0 years

0 Lacs

Pune, Maharashtra, India

On-site

Linkedin logo

Come work at a place where innovation and teamwork come together to support the most exciting missions in the world! Job Description Position Title: Content Writer Creator Department: Content Experience Reports To: Director Location: Pune - Hybrid Job Type: Full-time Overview Qualys is looking for an experienced content writer for our IT security and compliance solutions in the cloud. The candidate must possess a background in content writing with 5+ years of content development experience for IT products. You need to deliver platform stories based on user persona to help customers see the big picture of the solutions offered by Qualys integrations. This role will involve close collaboration with cross-functional teams such as Product Managers, Engineering, SMEs, Support, Documentation, and marketing. It requires experience and understanding in the domain of cloud-native infrastructure. The ideal candidate has worked with networking and/or security products and is passionate about creating helpful content in a modern way. Skills: Technical Skills Ability to evaluate new and evolving blog technologies. Solid understanding of all sections related to the anatomy of a blog Ability to utilize reporting tools for analysis of traffic, referral links and reader demographics Knowledge and understanding of current editing, authoring tools, and related blog technologies. Ability to utilize computerized word processing, blogging and internet software. Knowledge and understanding of internet operations and functionality Skill in the use of computerized blog layout and design software. Writing And Editing Skills Proofreading and editing skills. Ability to research, create, compose, and edit written materials. Ability to write simply with a conversational style Writing should be informative, but not verbose Project Management Skills Ability to effectively manage time and schedules for content projects. Ability to work independently and as a member of a team. Strategic planning skills. Key Responsibilities As part of your role, you will act as a conduit between various internal and external teams to deliver an integrated documentation management architecture and roadmap to support the Qualys vision. Work cross-functionally to develop and cultivate relationships with SMEs and stakeholders to gain an understanding of customer needs and priorities and get buy-in from the functional units as required. Technical Blogs – Get technical blogs created and published by various stakeholders. Create templates for blogs and newsletters so they can be used easily by other teams. Threat Protection blogs – Google search and call to action Customer Content Strategies - You will need to work with other team members and the product documentation team to enhance the existing documents and to incorporate the playbook style of content strategies. Integration Documents - These will be high-level integration documents that tell platform stories of our upcoming products and solutions. You will need to work closely with other product managers to deliver on a unified central platform approach for cross-product interoperation and use case-driven upsells. Show more Show less

Posted 4 weeks ago

Apply

0 years

0 Lacs

Gurgaon, Haryana, India

On-site

Linkedin logo

Requisition Number: 100676 Cloud Infrastructure Engineer II Location- Bangalore, it's 5 days work from office. Shifts- 24*7 rotational Insight at a Glance 14,000+ engaged teammates globally with operations in 25 countries across the globe. Received 35+ industry and partner awards in the past year $9.2 billion in revenue #20 on Fortune’s World's Best Workplaces™ list #14 on Forbes World's Best Employers in IT – 2023 #23 on Forbes Best Employers for Women in IT- 2023 $1.4M+ total charitable contributions in 2023 by Insight globally Now is the time to bring your expertise to Insight. We are not just a tech company; we are a people-first company. We believe that by unlocking the power of people and technology, we can accelerate transformation and achieve extraordinary results. As a Fortune 500 Solutions Integrator with deep expertise in cloud, data, AI, cybersecurity, and intelligent edge, we guide organizations through complex digital decisions. About The Role We are looking for a Cloud and On-Prem Security Engineer with expertise in managing vulnerabilities, hardening servers, and ensuring the security of both cloud and on-premises environments. The ideal candidate should have hands-on experience with Orca Security for cloud security and Qualys for on-prem vulnerability management. Additionally, they should be proficient in patching using Puppet (Cloud) and SCCM/MECM (On-Prem), as well as server hardening across Windows and Linux environments. As a Cloud Infra Engineer II, you will get to: Vulnerability Management: Experience in managing and remediate vulnerabilities in Azure Cloud using Orca Security. Perform on-prem vulnerability assessments and patching using Qualys. Server Hardening & Security Compliance: Implement security best practices for Windows Server 20 (various versions) and Linux (CentOS, RedHat, Ubuntu). Ensure compliance with security standards and policies for both cloud and on-prem servers. Patch Management: Conduct monthly patching of Windows and Linux servers using: Puppet for cloud-based patching. SCCM/MECM for on-prem patching. Cloud & On-Prem Infrastructure Security: Secure and manage Azure cloud resources. Experience in managing on-prem virtualization using Hypervisor and Failover Clustering. Be Ambitious: This opportunity is not just about what you do today but also about where you can go tomorrow. As a Cloud Infra Engineer III, you are positioned for swift advancement within our organization through a structured career path. When you bring your hunger, heart, and harmony to Insight, your potential will be met with continuous opportunities to upskill, earn promotions, and elevate your career. We are looking for a Cloud Infra Engineer II with: 4+ years of experience in cloud and on-prem security. Strong understanding of server security hardening and vulnerability remediation. Experience with compliance frameworks such as ISO 27001, NIST, CIS benchmarks, PCI-DSS, and OWASP security principles, ensuring adherence to industry security standards and best practices. Bachelor’s degree in computer science, Information Technology, or a related field. Exp on Security Tools & Platforms: Cloud Security: Orca Security On-Prem Security: Qualys Patch Management: Puppet (Cloud), SCCM/MECM (On-Prem) Operating Systems: Exp on Windows Server 2016, 2019, 2022 or Linux (CentOS, RedHat, Ubuntu) Infrastructure & Cloud Expertise: Azure Cloud Security & Administration , On-Prem Hypervisor & Failover Cluster Management (good to have) What you can expect - We’re legendary for taking care of you, your family and to help you engage with your local community. We want you to enjoy a full, meaningful life and own your career at Insight. Some of our benefits include: Freedom to work from another location, even an international destination—for up to 30 consecutive calendar days per year. Medical Insurance Health Benefits Professional Development: Learning Platform and Certificate Reimbursement Shift Allowance The position described above provides a summary of some the job duties required and what it would be like to work at Insight. For a comprehensive list of physical demands and work environment for this position, click here. Internal Teammate Application Guidelines Meet the minimum qualifications and requirements of the position; Have completed twelve (12) months service in their current position; Not be under a disciplinary evaluation or suspension period; Have satisfactory performance in their current position; Have their current manager/supervisor recommendation Do you know someone who would make a great Insight teammate? Referrals are the best way to build quality teams – and a great way for you to earn a little extra cash. Insight to find out how you can refer someone to this job at Insight. Insight is an equal opportunity employer, and all qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, disability status, protected veteran status, sexual orientation or any other characteristic protected by law. Show more Show less

Posted 4 weeks ago

Apply

0 years

0 Lacs

Gurugram, Haryana, India

On-site

Linkedin logo

Line of Service Advisory Industry/Sector FS X-Sector Specialism Risk Management Level Senior Associate Job Description & Summary The SOC Analyst –L3 will be part of existing Ares Global SOC team and will be responsible for day-to-day security operations by responding to and investigating security events of interest and recommending or taking corrective action by working with IT and non-IT team members. They will also respond to security incident and investigation requests in line with established Security Incident Response processes and procedures, within defined service level targets. This position requires shift work in a 24*7*365 environment. Why PWC At PwC, you will be part of a vibrant community of solvers that leads with trust and creates distinctive outcomes for our clients and communities. This purpose-led and values-driven work, powered by technology in an environment that drives innovation, will enable you to make a tangible impact in the real world. We reward your contributions, support your wellbeing, and offer inclusive benefits, flexibility programmes and mentorship that will help you thrive in work and life. Together, we grow, learn, care, collaborate, and create a future of infinite experiences for each other. Learn more about us. At PwC, we believe in providing equal employment opportunities, without any discrimination on the grounds of gender, ethnic background, age, disability, marital status, sexual orientation, pregnancy, gender identity or expression, religion or other beliefs, perceived differences and status protected by law. We strive to create an environment where each one of our people can bring their true selves and contribute to their personal growth and the firm’s growth. To enable this, we have zero tolerance for any discrimination and harassment based on the above considerations. " Job Description & Summary: We are seeking a highly skilled and experienced Cybersecurity/Risk Consulting Senior Associate to join our Risk Consulting team. As a Cybersecurity Senior Associate, you will be responsible for leading and managing a team of consultants to deliver high-quality cybersecurity and risk management services to our clients. Responsibilities Key Responsibilities: Good interpersonal skills (written and oral communication) and ability to articulate complex issues Ability to communicate technical information clearly and concisely, commensurate with the audience Conceptual thinking and communication skills — the ability to conceptualize complex business and technical requirements into comprehensible models and templates. Good communicator (written and verbal) and listener. Must be a team player and motivated self-starter with ability to work independently with limited supervision. Must be assertive, methodical and detail oriented Technical Experience Experience in Web and Mobile Application Security Testing, Vulnerability Assessment and Penetration testing Analyze scan reports and suggest remediation / mitigation plan for security vulnerabilities Should be aware of tools like Qualys, HP Fortify, IBM Appscan, Burpsuite, Kali Linux suite of tools Expertise in mobile apps reverse engineering and in-depth knowledge of Android and iOS ecosystems. Knowledge of industry standard tools for mobile pentest. Thorough understanding of OWASP Top 10 vulnerabilities and their mitigations. Knowledge of Network Security technology in areas of Firewall, IPS, VPN, Gateway security solutions (proxy, web filtering) Conduct penetration test and launch exploits using Nessus, Metaspoilt, kali linux penetration testing distribution tools sets Conduct Vulnerability Assessments of Network Devices using various open source and commercial tools Map out a network, discover ports and services running on the different exposed network and security devices Research and maintain proficiency in computer network exploitation, tools, techniques, countermeasures, and trends in computer network vulnerabilities, data hiding, network security, and encryption. In-depth understanding on Common Vulnerability Exposure (CVE)/ CERT advisory database. Broad background of networks, operating systems (Window, Unix, Linux), firewalls and security engineering concepts. Knowledge of scripting languages (Perl, Python, Shell etc) will be added advantage Knowledge of Open-Source Security Testing Methodology Manual (OSSTMM) Mandatory Skill Sets CEH, ECSA, LPT (any one) Preferred Skill Sets OSCP, OSWE Years Of Experience Required 2-10 Years Education Qualification B.Tech ee in Information Technology, Cybersecurity, Computer Science Professional Certifications like CEH, CCSE, CCNA, Security+, etc., will be plus SIEM certifications Education (if blank, degree and/or field of study not specified) Degrees/Field of Study required: Bachelor of Engineering, Master of Business Administration Degrees/Field Of Study Preferred Certifications (if blank, certifications not specified) Required Skills Microsoft Defender, Palo Alto Cortex XSOAR, Splunk Optional Skills SoCs Desired Languages (If blank, desired languages not specified) Travel Requirements Not Specified Available for Work Visa Sponsorship? No Government Clearance Required? No Job Posting End Date Show more Show less

Posted 1 month ago

Apply

0 years

0 Lacs

Gurgaon, Haryana, India

On-site

Linkedin logo

Job Summary We are looking for an experienced, self-motivated and proactive System Engineer with 5-7 years of experience to join our dynamic team. The ideal candidate will have a strong background in customer service, systems administration, network concepts, performance optimization, and troubleshooting in multi-platform environments. You will be responsible for managing, monitoring, and optimizing our infrastructure, ensuring high availability and performance across our systems and applications. This position requires a high level of collaboration with other departments around the globe to support both regional and global efforts. About Milliman Milliman is among the world's largest providers of actuarial and related products and services. The firm has consulting practices in healthcare, property & casualty insurance, life insurance and financial services, and employee benefits. Founded in 1947, Milliman is an independent firm with offices in major cities around the globe. About Milliman’s GCS IT Team GCS IT (Global Corporate Services Information Technology) plays a critical role in supporting firm wide technologies, security framework, and application landscape of the firm. Its responsibilities encompass a wide array of functions that are essential for the organization's innovation and entrepreneurial efforts, and seamless operations. Key Responsibilities Infrastructure Management : Manage and maintain Windows/Linux-based servers, Windows and Mac endpoint management, Knowledge of virtualization administration such as Hyper-V or VMWare or both, Manage Microsoft Entra ID, Exchange Online, One Drive and Intune, Sound knowledge of Single Sign-On Management (For ex: Okta), SQL database maintenance and basic configuration, and Azure resource deployment and management. Perform regular system updates, patches, backups, and vulnerability remediation. Performance Optimization Monitor system performance, resolve bottlenecks, and optimize resources for scalability and availability. Conduct system performance assessments and provide recommendations for improvement. Define metrics and establish targets, driving process and service improvements. Automation & Scripting Develop and maintain automation scripts using tools like Terraform, Bash, PowerShell, or Python scripting to streamline workflows, system configuration, and software deployment. Troubleshooting & Support Be self-directed in diagnosing, troubleshooting, and resolving issues related to system performance, network connectivity, software, hardware, and applications in accordance with SLA standards. Alert management with escalation to appropriate team. Participate in on-call support rotation. Collaboration & Documentation Collaborate with cross-functional teams (development, DevOps, infrastructure, practice support teams, etc.) to support system deployments and integrations. Prepare and maintain detailed documentation for system configurations, processes, and troubleshooting steps. Experience Required Skills & Attributes: 5-7 years of experience as a System Engineer or in a similar role, automating day-to-day tasks, system implementation, administration, and troubleshooting, use data to create reports and present findings, administer M365 services and Microsoft-based systems, and improve operational tasks. Technical Skills Microsoft 365 Services – Entra ID, Exchange online, OneDrive and Intune Microsoft Active Directory and Windows Operating Systems Configuration and Administration Strong experience with server operating systems (Linux, Windows) Knowledge of cloud platforms (AWS, Azure, or Google Cloud) Experience with virtualization technologies (VMware, Hyper-V, etc.) Experience in managing single sign-on (Okta, Microsoft Azure SSO etc.) Proficiency in system automation and scripting (Python, Shell, PowerShell, Terraform, etc.) Experience with monitoring tools (Logic Monitor, New Relic, Nagios, Zabbix, etc.) Experience with backup and disaster recovery systems (For example: Rubrik) Experience with vulnerability management and patch management (For Example: Qualys) Soft Skills Strong analytical and problem-solving skills Excellent communication and documentation skills Ability to work independently and as part of a team Detail-oriented with a focus on system reliability and performance Required Qualifications Bachelor's degree in computer science, information technology, or a related field (or equivalent experience). Relevant certifications (e.g., ITIL, Microsoft Certified: Azure Fundamentals, etc.) are a plus. Show more Show less

Posted 1 month ago

Apply

0 years

0 Lacs

Noida, Uttar Pradesh, India

On-site

Linkedin logo

At EY, you’ll have the chance to build a career as unique as you are, with the global scale, support, inclusive culture and technology to become the best version of you. And we’re counting on your unique voice and perspective to help EY become even better, too. Join us and build an exceptional experience for yourself, and a better working world for all. TEM Senior – Vulnerability Management As a Senior with EY’s Global Delivery Services (GDS) Cybersecurity Team, you will contribute technically to client engagements and internal initiatives. An important part of your role will be to actively establish, maintain and strengthen client’s relationships. You will also identify potential business opportunities for EY within existing engagements, and report and escalate any engagement related issues to senior team members as appropriate. The opportunity In line with EY’s commitment to quality, you’ll confirm that work is of the highest quality as per EY’s quality standards, and is reviewed by the next-level reviewer. As an influential member of the team, you’ll help to create a positive learning culture, coach and counsel junior team members and help senior members with business development activities. Your Key Responsibilities Must have handled a Vulnerability Management process for a large enterprise using any one of the solutions: Qualys / Nexpose / Tenable or similar Must have thorough understanding about the Vulnerability Management and Exception & Exemption process on Cloud hosted systems, databases, web services and other widely deployed infrastructure components Strong knowledge and experience in Linux Experience in Nexpose and Tenable administration Working in shifts and provide weekend support Experience working with vendors to troubleshoot issues and/or operationalize new features Scripting rest API for automation (Python and/or Bash) Familiarity on databases (Oracle, Sql Server, AWS Aurora, Hadoop, MongoDB) Maintain a strong client focus by effectively serving client needs and developing productive working relationships with client personnel. Stay abreast of current business and economic developments and new pronouncements/standards relevant to the client's business. Demonstrate industry expertise (deep understanding of the industry, emerging trends, issues/challenges, key players & leading practices) Actively contribute to improving operational efficiency through standardization and process automation on client engagements and internal initiatives Skills And Attributes For Success Knowledge of Windows, Linux, UNIX, any other major operating systems. Familiarized with the latest security vulnerabilities and exploit, understanding of web-based application vulnerabilities (OWASP Top 10), cloud security and architecture Experience with scripting / programming skills (e.g., Python, PowerShell) Hands on operational experience with vulnerability management tools (e.g. Qualys, Nexpose) including the ability to deploy, configure, and run these tools Fluency in English, other language skills are considered an asset Experience in handling data using Pandas, XML libraries Exposure to handling computer networking and operating systems use cases using python. Required knowledge for Python libraries: netaddr, ipaddress, qualysapi, lxml, pandas, numpy To qualify for the role, you must have Graduates / BE / BTech / MSc / MTech / MBA in the fields of Computer Science, Information Systems, Engineering, Business or related major with minimum 3 years of work experience especially in penetration testing and vulnerability assessment. Any one of the following technical certifications: CEH, Qualys Certified Specialist, CISM Knowledge of Windows, Linux, UNIX, any other major operating systems Willingness to work in shifts and weekend Ideally, you’ll also have Project management skills Certifications: CEH, Qualys Certified Specialist, CISM What We Look For Who can perform penetration testing which includes internet, intranet, wireless, web application, social engineering and physical penetration testing and provide analysis for the testing results. What Working At EY Offers At EY, we’re dedicated to helping our clients, from start–ups to Fortune 500 companies — and the work we do with them is as varied as they are. You get to work with inspiring and meaningful projects. Our focus is education and coaching alongside practical experience to ensure your personal development. We value our employees and you will be able to control your own development with an individual progression plan. You will quickly grow into a responsible role with challenging and stimulating assignments. Moreover, you will be part of an interdisciplinary environment that emphasizes high quality and knowledge exchange. Plus, we offer: Support, coaching and feedback from some of the most engaging colleagues around Opportunities to develop new skills and progress your career The freedom and flexibility to handle your role in a way that’s right for you EY | Building a better working world EY exists to build a better working world, helping to create long-term value for clients, people and society and build trust in the capital markets. Enabled by data and technology, diverse EY teams in over 150 countries provide trust through assurance and help clients grow, transform and operate. Working across assurance, consulting, law, strategy, tax and transactions, EY teams ask better questions to find new answers for the complex issues facing our world today. Show more Show less

Posted 1 month ago

Apply

0 years

0 Lacs

Mumbai, Maharashtra, India

On-site

Linkedin logo

At EY, you’ll have the chance to build a career as unique as you are, with the global scale, support, inclusive culture and technology to become the best version of you. And we’re counting on your unique voice and perspective to help EY become even better, too. Join us and build an exceptional experience for yourself, and a better working world for all. TEM Senior – Vulnerability Management As a Senior with EY’s Global Delivery Services (GDS) Cybersecurity Team, you will contribute technically to client engagements and internal initiatives. An important part of your role will be to actively establish, maintain and strengthen client’s relationships. You will also identify potential business opportunities for EY within existing engagements, and report and escalate any engagement related issues to senior team members as appropriate. The opportunity In line with EY’s commitment to quality, you’ll confirm that work is of the highest quality as per EY’s quality standards, and is reviewed by the next-level reviewer. As an influential member of the team, you’ll help to create a positive learning culture, coach and counsel junior team members and help senior members with business development activities. Your Key Responsibilities Must have handled a Vulnerability Management process for a large enterprise using any one of the solutions: Qualys / Nexpose / Tenable or similar Must have thorough understanding about the Vulnerability Management and Exception & Exemption process on Cloud hosted systems, databases, web services and other widely deployed infrastructure components Strong knowledge and experience in Linux Experience in Nexpose and Tenable administration Working in shifts and provide weekend support Experience working with vendors to troubleshoot issues and/or operationalize new features Scripting rest API for automation (Python and/or Bash) Familiarity on databases (Oracle, Sql Server, AWS Aurora, Hadoop, MongoDB) Maintain a strong client focus by effectively serving client needs and developing productive working relationships with client personnel. Stay abreast of current business and economic developments and new pronouncements/standards relevant to the client's business. Demonstrate industry expertise (deep understanding of the industry, emerging trends, issues/challenges, key players & leading practices) Actively contribute to improving operational efficiency through standardization and process automation on client engagements and internal initiatives Skills And Attributes For Success Knowledge of Windows, Linux, UNIX, any other major operating systems. Familiarized with the latest security vulnerabilities and exploit, understanding of web-based application vulnerabilities (OWASP Top 10), cloud security and architecture Experience with scripting / programming skills (e.g., Python, PowerShell) Hands on operational experience with vulnerability management tools (e.g. Qualys, Nexpose) including the ability to deploy, configure, and run these tools Fluency in English, other language skills are considered an asset Experience in handling data using Pandas, XML libraries Exposure to handling computer networking and operating systems use cases using python. Required knowledge for Python libraries: netaddr, ipaddress, qualysapi, lxml, pandas, numpy To qualify for the role, you must have Graduates / BE / BTech / MSc / MTech / MBA in the fields of Computer Science, Information Systems, Engineering, Business or related major with minimum 3 years of work experience especially in penetration testing and vulnerability assessment. Any one of the following technical certifications: CEH, Qualys Certified Specialist, CISM Knowledge of Windows, Linux, UNIX, any other major operating systems Willingness to work in shifts and weekend Ideally, you’ll also have Project management skills Certifications: CEH, Qualys Certified Specialist, CISM What We Look For Who can perform penetration testing which includes internet, intranet, wireless, web application, social engineering and physical penetration testing and provide analysis for the testing results. What Working At EY Offers At EY, we’re dedicated to helping our clients, from start–ups to Fortune 500 companies — and the work we do with them is as varied as they are. You get to work with inspiring and meaningful projects. Our focus is education and coaching alongside practical experience to ensure your personal development. We value our employees and you will be able to control your own development with an individual progression plan. You will quickly grow into a responsible role with challenging and stimulating assignments. Moreover, you will be part of an interdisciplinary environment that emphasizes high quality and knowledge exchange. Plus, we offer: Support, coaching and feedback from some of the most engaging colleagues around Opportunities to develop new skills and progress your career The freedom and flexibility to handle your role in a way that’s right for you EY | Building a better working world EY exists to build a better working world, helping to create long-term value for clients, people and society and build trust in the capital markets. Enabled by data and technology, diverse EY teams in over 150 countries provide trust through assurance and help clients grow, transform and operate. Working across assurance, consulting, law, strategy, tax and transactions, EY teams ask better questions to find new answers for the complex issues facing our world today. Show more Show less

Posted 1 month ago

Apply

4 - 6 years

10 - 15 Lacs

Hyderabad

Work from Office

Naukri logo

Role Overview : The Application Security Senior Engineer will play a crucial role in safeguarding our applications and digital assets against security threats. With a primary focus on Vulnerability Assessment and Penetration Testing (VAPT), the role involves identifying, assessing, and mitigating security vulnerabilities across our application portfolio. This position requires a proactive mindset, strong technical skills, and the ability to collaborate effectively with cross-functional teams and support the security projects. Youll be Responsible for? I. Vulnerability Assessment and Penetration Testing (VAPT): Conduct comprehensive security assessments of applications using industry-standard tools and techniques. Perform manual testing and automated scans to identify vulnerabilities such as OWASP Top 10, SQL injection, XSS, CSRF, etc. Analyze and interpret assessment findings, providing clear and actionable recommendations to development teams. Support the security gating process with timely security assessment and reporting. Provide guidance and assistance on secure software development life cycle. Track identified vulnerabilities through to resolution, collaborating closely with development teams to ensure timely mitigation. Provide detailed vulnerability reports and metrics to stakeholders, including risk assessments and remediation progress. II. Support for Security Projects: Actively participate in security projects and initiatives, providing expertise and guidance on application security best practices. Perform Security Architecture review for existing and new security projects and guide on security best practices. Collaborate with architects and developers to integrate security into the SDLC (Secure Development Life Cycle) and CI/CD pipelines. III. Incident Response and Support: Assist in incident response activities related to application security incidents. Contribute to root cause analysis and lessons learned sessions to improve incident handling and prevention strategies. IV. Security Awareness and Training: Develop and deliver training sessions on secure coding practices and application security awareness. Promote a culture of security within the organization, advocating for continuous improvement and adherence to security policies. What we’ll look in you? Bachelor’s degree in computer science/information technology, or a related field. Minimum of 5 years of experience in application security, with a focus on VAPT and secure development practices. Proven experience with security assessment tools such as Burp Suite, Qualys, Nessus, etc. Strong understanding of web application architecture, including front-end, back-end, and APIs. Solid knowledge of OWASP guidelines and best practices for secure coding. Certifications such as CISSP, CEH, OSCP, or similar are preferred. Excellent communication skills with the ability to articulate technical concepts to non-technical stakeholders. Strong analytical and problem-solving skills, with attention to detail. Why join us? Impactful Work : Play a pivotal role in safeguarding Tanla's assets, data, and reputation in the industry. Tremendous Growth Opportunities : Be part of a rapidly growing company in the telecom and CPaaS space, with opportunities for professional development. Innovative Environment: Work alongside a world-class team in a challenging and fun environment, where innovation is celebrated. Tanla is an equal opportunity employer. We champion diversity and are committed to creating an inclusive environment for all employees. www.tanla.com

Posted 1 month ago

Apply

3 - 6 years

5 - 8 Lacs

Bengaluru

Work from Office

Naukri logo

The Opportunity "This is an opportunity to define, build, and shape the future of FICOs Cybersecurity and Risk Posture. As part of the Threat & Vulnerability Management team, you will collaborate across the business, IT, and client environments to secure our cloud and data center infrastructure. Your contributions will be key to strengthening FICO's defense mechanisms and enhancing our compliance posture. We're looking for a cybersecurity expert passionate about continuous improvement, cloud security, and vulnerability risk reduction. If you're someone who thrives in a fast-paced environment and wants to work on high-impact global security initiatives, this role is for you" - VP, Software Engineering. What Youll Contribute Collaborate with the Cyber Security Team, business stakeholders, IT partners, and clients to manage and reduce cybersecurity risk. Act as a subject matter expert in vulnerability scanning, compliance monitoring, and risk reporting. Operate and optimize tools such as Wiz, Qualys, or similar for vulnerability scanning across cloud and on-prem environments. Validate, triage, and risk-rank vulnerabilities based on severity, exposure, and potential business impact. Drive remediation planning with Product and IT teams, and oversee patch management cycles. Contribute to threat & vulnerability management strategy, policy, and continuous process improvement. Conduct periodic risk assessments and develop mitigation strategies in line with compliance requirements. Monitor the evolving threat landscapeincluding zero-day exploits, vendor patches, EOL systemsand proactively update mitigation plans. Lead initiatives to improve configuration, cloud asset management, vulnerability and patch management practices. Provide documentation, reporting, and cross-functional collaboration support. What Were Seeking Bachelors degree in Computer Science, Information Security, or a related field (or equivalent work experience). 3 6 years of hands-on experience with cloud security tools such as Wiz, Qualys, or similar vulnerability scanning platforms. Strong understanding of AWS infrastructure and cloud security principles. Working knowledge of operating system and application-level vulnerabilities and how they relate. Familiarity with risk-based vulnerability management and compliance frameworks. CISSP, CISM or equivalent certifications preferred (or willingness to obtain). Ability to multitask, manage complex data sets, and collaborate with diverse teams. Knowledge of scripting languages (e.g., Python, Bash) is a plus. Demonstrated experience in cloud (especially AWS) patch and configuration management. Familiarity with malware behavior, indicators of compromise, and modern threat vectors. Strong documentation, analytical, and communication skills.

Posted 1 month ago

Apply

0 years

0 Lacs

Kozhikode, Kerala, India

Hybrid

Linkedin logo

To support in presales and sales closure as a Cybersecurity Engineer, the ideal candidate should combine technical knowledge with client-facing and business-oriented skills. ResponsibilitiesThis person acts as the bridge between your clients' problems and your service offerings — a key role in winning and delivering cybersecurity consulting work. Qualifications, Skills, ExpertiseTechnicalKnowledge of VAPT, SIEM, firewalls, cloud security, endpoint protectionFamiliar with frameworks: ISO 27001, NIST, OWASP Top 10, CIS ControlsBasic hands-on exprience with tools like Burp Suite, Nessus, Metasploit Wireshark, Splunk, Qualys etc.Client Communication & PresentationAbility to translate technical jargon into business valueBuild trust during discovery and solution demo callsComfprtable with writing technical proposals, RFP responses and SOWsSales Awareness / Presales ExperienceExperience mapping client pain points to servicesFamiliar with solutioning - creating custom packages, BoQs, effort estimatesCan perform initial scoping and handover to delivery teamsExperience in demoing services(e.g. walkthough of VAPT or risk assessment approach)

Posted 1 month ago

Apply

4 - 8 years

8 - 18 Lacs

Chennai, Bengaluru

Work from Office

Naukri logo

Role & responsibilities Primary Skills (All mandate) -Qualys, VMDR, Policy Compliance, Cloud Agent Location: Chennai/Bangalore Preferred candidate profile

Posted 1 month ago

Apply

0 - 4 years

0 Lacs

Kochi, Kerala

Remote

Indeed logo

About the Role: We are seeking an experienced and passionate Threat & Vulnerability Trainer to join our team in Kochi. The ideal candidate will be responsible for delivering comprehensive training programs focused on cybersecurity threats, vulnerability assessments, and remediation strategies. You will work closely with technical teams and trainees to upskill professionals and ensure readiness to tackle evolving cyber threats. Key Responsibilities: Design and deliver in-depth training sessions on cybersecurity topics including: Threat intelligence Vulnerability scanning and management Common attack vectors (phishing, malware, zero-day exploits, etc.) Security frameworks (NIST, ISO 27001, OWASP Top 10) Remediation techniques and best practices Develop customized training materials, hands-on labs, and assessments. Conduct workshops, webinars, and classroom sessions for internal and external learners. Continuously update training content to align with industry trends and threat landscapes. Assess the effectiveness of training sessions through feedback, tests, and practical evaluations. Collaborate with SMEs, SOC teams, and IT departments to understand training needs and integrate real-world scenarios into modules. Required Qualifications: Bachelor’s degree in Computer Science, Information Security, or related field. 3+ years of experience in cybersecurity, with a focus on threat and vulnerability management. Proven experience in delivering technical training or mentoring. Familiarity with tools like Nessus, Qualys, Rapid7, Metasploit, Burp Suite, etc. Strong knowledge of CVEs, threat modeling, penetration testing basics, and SIEM concepts. Excellent communication, presentation, and facilitation skills. Preferred Qualifications: Certifications such as CEH, CompTIA Security+, OSCP, CISSP, or similar. Experience working in a SOC or red/blue team environment. Prior experience with learning management systems (LMS) or e-learning content creation. Work Location & Schedule: Location: Kochi (mandatory on-site presence) Work Hours: Monday to Friday, 9:00 AM – 6:00 PM Job Type: Full-time Benefits: Flexible schedule Internet reimbursement Schedule: Day shift Evening shift Monday to Friday Morning shift US shift Experience: total work: 4 years (Required) Language: English (Required) Work Location: Hybrid remote in Kochi, Ernakulam, Kerala Expected Start Date: 13/05/2025

Posted 1 month ago

Apply

5 - 8 years

0 Lacs

Pune, Maharashtra, India

On-site

Linkedin logo

Come work at a place where innovation and teamwork come together to support the most exciting missions in the world! Qualys is seeking a ReactJs Front-end Engineer to join our team. As a ReactJs developer, you'll be tasked with creating modern, intuitive, data-driven interfaces for our multiple web-based SaaS products. We’re looking for someone who is passionate about front-end technologies and who enjoys the unique responsibility of helping to define the customer experience. Responsibilities Coding! You will collaborate with a UX/UI designer and other front-end and middle-tier engineers to design, prototype, and build complex cloud-based security applications. You will assist other developers with integration of UI components with backend logic, interface implementation, and troubleshooting. Of course supporting the existing UI is a must, however, there will be plenty of opportunities to create solutions for advanced functionality while making improvements to existing areas of the application, as well as with new features. Qualifications 3+ years front-end development experience.The fundamentals: HTML, CSS, and JavaScript. Must have an excellent understanding of the browser DOM.You’re a JavaScript expert! Firm grasp of lexical scoping, closures, and OO JavaScript. Proficient in native JavaScript as well as one or more frameworks such as ReactJS, etc.Ability to bring Photoshop designs to life with near pixel-perfect accuracy.Proficient with debugging and testing tools to troubleshoot and optimize the UI.Understanding of accessibility, 508 compliance.Experienced in building Responsive UI Understanding of front-end security best practices and XSS, CSRF, etc.

Posted 1 month ago

Apply

0 years

0 Lacs

Vadodara, Gujarat

Remote

Indeed logo

Welcome to Veradigm! Our Mission is to be the most trusted provider of innovative solutions that empower all stakeholders across the healthcare continuum to deliver world-class outcomes. Our Vision is a Connected Community of Health that spans continents and borders. With the largest community of clients in healthcare, Veradigm is able to deliver an integrated platform of clinical, financial, connectivity and information solutions to facilitate enhanced collaboration and exchange of critical patient information. Veradigm Veradigm is here to transform health, insightfully. Veradigm delivers a unique combination of point-of-care clinical and financial solutions, a commitment to open interoperability, a large and diverse healthcare provider footprint, along with industry proven expert insights. We are dedicated to simplifying the complicated healthcare system with next-generation technology and solutions, transforming healthcare from the point-of-patient care to everyday life. For more information, please explore www.veradigm.com. What will your job look like: Cyber Security Engineers supports and implements cloud and application security tools and technologies. These technologies include firewalls, IDS/IPS, antivirus, web proxy, certificate management, SIEM, patch management, access controls as well as vulnerability assessments within the Veradigm environment. The Cyber Security Engineer should be comfortable working with a variety of security technologies and implements security measures to protect our systems from attacks, intrusion, and infiltration. An Ideal Candidate will have: Experience monitoring and maintaining firewalls, IDS/IPS systems, web proxy, and content filtering security products for policy violations, intrusions, anomalous behaviors, and day to day incident response activities. Experience with deployment, administration and troubleshooting of endpoint detection and response (EDR) and antivirus (AV) solutions supporting both servers and workstations. Experience securing cloud infrastructure (Azure or AWS). Administers authentication and access controls including provisioning, changes and deprovisioning of user and system accounts, security/access roles and access permissions. Monitoring and analyzing system access logs and deployment and implementation of SIEM solution such as Microsoft Sentinel or Splunk. Experience with Active Directory, Entra ID, and IAM protocols such as SAML, Single Sign On (SSO) and MFA solutions. Experience with email security and filtering, and sender authentication. Experience creating and maintaining automation and scripting tools such as PowerShell, JavaScript, Python, Perl, or Bash. Working knowledge of Windows Server administration and support including security best practices and understanding of Active Directory/Entra ID. Analyze and report organizational security posture trends. Experience with Linux distros such as RHEL, CentOS, Ubuntu, or Oracle Linux a plus. Experience conducting vulnerability assessments or risk assessments with tools such as Nessus, Qualys, Metasploit, Kali and working with application and server owners to review scan results, suggest remediation actions, and track/report on progress to management Certification Requirements Comptia Security Certification Security+ or CySA+ or CASP+ or PenTest+ Other Security Certifications- GSEC or CEH or OSCP or CCSP or MS-500 or AZ-500 Benefits Veradigm believes in empowering our associates with the tools and flexibility to bring the best version of themselves to work. Through our generous benefits package with an emphasis on work/life balance, we give our employees the opportunity to allow their careers to flourish. Quarterly Company-Wide Recharge Days Flexible Work Environment (Remote/Hybrid Options) Peer-based incentive "Cheer" awards "All in to Win" bonus Program Tuition Reimbursement Program To know more about the benefits and culture at Veradigm, please visit the links mentioned below: - https://veradigm.com/about-veradigm/careers/benefits/ https://veradigm.com/about-veradigm/careers/culture/ We are an Equal Opportunity Employer. No job applicant or employee shall receive less favorable treatment or be disadvantaged because of their gender, marital or family status, color, race, ethnic origin, religion, disability or age; nor be subject to less favorable treatment or be disadvantaged on any other basis prohibited by applicable law. #LI-SM1 #LI-REMOTE Veradigm is proud to be an equal opportunity workplace dedicated to pursuing and hiring a diverse and inclusive workforce. Thank you for reviewing this opportunity! Does this look like a great match for your skill set? If so, please scroll down and tell us more about yourself!

Posted 1 month ago

Apply

0 years

0 Lacs

Pune, Maharashtra

Work from Office

Indeed logo

Come work at a place where innovation and teamwork come together to support the most exciting missions in the world! Job Description: We are seeking a skilled Penetration Tester to assess and enhance the security of our cross-platform executable Qualys Cloud Agent. This agent is responsible for system monitoring, data collection, and secure communication with a cloud platform. Operating across Unix, Windows, and macOS environments, the agent plays a critical role in our security and compliance solutions. The ideal candidate will uncover vulnerabilities, simulate attack scenarios, and work with our teams to fortify the system against threats. Key Responsibilities: Cross-Platform Agent Testing: Conduct comprehensive security testing of the executable agent, ensuring robust functionality across Unix/Linux, Windows, and macOS platforms. Identify and exploit vulnerabilities in the agent’s runtime behavior, system interactions, and interprocess communications. Test agent privilege management and evaluate risks of escalation or exploitation. Data Collection and Handling: Analyze the agent’s data collection mechanisms to ensure data privacy and integrity. Validate proper implementation of sensitive data redaction and secure storage practices. Communication Security: Test the agent’s secure communication mechanisms with the cloud server, focusing on: Encryption (TLS/SSL, public key cryptography). Authentication and session management. Mitigation of threats like MITM, replay attacks, and DNS spoofing. Reverse Engineering and Exploitation: Perform binary analysis to identify vulnerabilities in the agent's implementation. Reverse engineer agent components to assess the effectiveness of tamper-proofing mechanisms and embedded security features. Simulate advanced threat scenarios, including code injection and runtime manipulation. System Security Evaluations: Assess the agent’s impact on host system security, ensuring it does not inadvertently introduce risks (e.g., open ports, exploitable configurations). Evaluate installation, update, and self-defense mechanisms for tamper resistance and exploitation risks. Reporting and Remediation: Provide detailed vulnerability reports with proof of concept (PoC), risk impact assessments, and actionable remediation steps. Collaborate with development team to address vulnerabilities and validate fixes Contribute to improving secure development practices and robust agent design. Required Qualifications: Technical Expertise: In-depth knowledge of penetration testing methodologies for executable agents, system processes, and OS-specific security models (Windows, Unix/Linux, macOS). Proficiency in network security and cryptographic protocol testing. Strong background in reverse engineering tools and techniques Tools & Scripting: Scripting skills in Python, Bash, PowerShell, for creating custom tests. Hands on experience with proxy solutions ex Burp or Fiddler Experience: Proven track record of assessing software agents or similar system monitoring tools. Familiarity with common vulnerabilities, including CVEs related to agent-based applications. Experience working with security tools or platforms similar to Qualys Agent. Certifications (Preferred): OSCP, OSWE, CEH, GPEN, or equivalent cybersecurity certifications. Relevant cloud certifications such as AWS Security Specialty, Azure Security Engineer Associate. Preferred Qualifications: Hands-on experience with agent technologies similar to Qualys Cloud Agent. Familiarity with cloud architecture, APIs, and integration points. Knowledge of secure coding practices and defensive programming. Experience with CI/CD pipeline security.

Posted 1 month ago

Apply

8 - 13 years

15 - 30 Lacs

Mumbai

Work from Office

Naukri logo

Position Details- Position: VAPT Lead Experience: 8-12 years Job Location: Powai, Mumbai - WORK FROM OFFICE Number of Position 1 Description: We are looking for VAPT LEAD who will be responsible for running automated and manual security scans which include but not limited to SAST, DAST, IAST, Mobile, Web, API and ad-hoc pen-testing. The candidate will play a key role of integrating Security element in DevSecOps The role entails taking responsibility of analysing security vulnerabilities and capability to provide mitigation solutions to fix issues, providing guidance to application teams, and coordinating with cross functional teams across the platform. Responsibilities: Hands-on experience creating and implementing DevSecOps pipeline using CICD automation tools like Jenkins, Automated scanning tools, BurpSuite, and open source tools. Implement Application Cyber Security Controls/Policies developed by IT Security Team. Ability to demo security vulnerability to application teams. Drive application security issues to a resolution. Provide a clear guidance to application teams during vulnerability mitigation effort Conduct application security assessment on periodic intervals and for every release Collect and report status on application security assessments including milestones, deliverables, timing, tasks, risk areas, and status to Head of IT Security Categorize and recommend assessment strategies for existing and new application development Coach development and vendor teams on application security Develop user training material on secure coding and conduct training sessions Coordinate and execute IT security projects Integrate the Application and DevOps processes and CI/CD pipelines from early stages of the development lifecycle. Evaluating and on-boarding security tools such as SAST, vulnerability and open source scanning into the Security DevOps life cycle for multiple tech stacks. Contributing features to internally developed Cyber security tools, and integrate those tools into the Security DevOps pipelines. Driving continuous improvement for Security DevOps pipelines and processes, and to the Cyber security tools, services, and processes. Engage in security research in keeping abreast of the latest security issues for Cloud enabled enterprises Research best practices for a variety of technologies and document / advice on solutions for security for multiple teams Develop, improve and monitor system compliance with the IT framework for controls and levels of access Collaborate with internal teams to manage and mitigate security vulnerabilities and risks Collaborate with software engineering and digital team to deliver integrated security solutions, and improve developer security practices Collaborate on Red Team penetration testing of IT systems Essential Qualification: Tenable/Qualys tool experience is mandatory. Experience with Dockers, Kubernetes, Terraform Good to have Appsec, API Testing, Infra Cloud Security testing experience. Must have experience with a modern version control system such as: Git, Github, GitLab. CISSP, OSCP or other security certifications desired. Experience with infrastructure as code and technologies behind it (Terraform preferred) Must have 4+ years of progressive experience in computing and information security. Capable of analysing data from various data sources and generating reports, charts and graphs. • Proven experience with at least one of the following technologies: MySQL, Postgres, FireBase, Google Cloud Storage and willing to learn and fill in any gaps. Working knowledge of agile methodology, techniques, and frameworks, such as Scrum or Kanban Excellent people and project management skills. Strong communication and presentation skills. Strong analytical and problem-solving skills.

Posted 1 month ago

Apply

2 - 6 years

3 - 7 Lacs

Hyderabad

Work from Office

Naukri logo

At F5, we strive to bring a better digital world to life. Our teams empower organizations across the globe to create, secure, and run applications that enhance how we experience our evolving digital world. We are passionate about cybersecurity, from protecting consumers from fraud to enabling companies to focus on innovation. Everything we do centers around people. That means we obsess over how to make the lives of our customers, and their customers, better. And it means we prioritize a diverse F5 community where each individual can thrive. Join a team using leading edge security technology and processes to protect the F5 enterprise and product environment. The Security Engineer position will execute strategic processes and implement technical solutions to enable our information security program and address day-to-day security challenges amidst the industry’s evolving technology landscape. Primary Responsibilities Build and implement new security controls, processes and tools. Identify organizational risks to confidentiality, integrity, and availability, and determine appropriate mitigations. Leverage native Azure, GCP, and AWS cloud services to automate and improve existing security and control activities. Develop or implement open-source/third-party tools to assist in detection, prevention and analysis of security threats. Perform technical security assessments against product and enterprise cloud hosted, virtual, and on-premise systems including static and dynamic analysis, and threat modeling. Review and test changes to services, applications, and networks for potential security impacts. Collaborate with Architecture, Site Reliability Engineering and Operations teams to develop and implement technical solutions and security standards. Stay abreast on security best practices and secure design principles. Review changes to and ongoing operations of enterpise environments and supporting systems for security and compliance impacts. Assist in incident detection and response efforts. Implement zero-trust patterns with cloud agnostic tools to support enterprise business units. Implement, design, develop, administer, and manage enterprise security tooling. Knowledge, Skills and Abilities Experience working with high-availability enterprise production environments Familiarity with scripting languages (e.g., (Go, Python, Ruby, Rust,etc.). and building scripts for process improvements Experience automating security testing and reporting outputs Technical knowledge and hands-on experience with security and networking security, basic networking protocols, cloud security, network security design, intrusion prevention/detection, and firewall architecture Experience assessing and implementing technical security controls Willingness to innovate and learn new technologies Excellent interpersonal and relationship skills with a collaborative mindset Knowledge or familiarity with technological stack (Big-IP, Azure, AWS, GCP, CentOS, Hashicorp Vault, Palo Alto, Qualys). Experience with network and application vulnerability and penetration testing tools. Baseline competency in administration of Microsoft Azure Cloud, Amazon Web Services (AWS), Google Cloud Platform (GCP) or equivalent public cloud infrastructure. Exposure to DevOps tooling, CI/CD pipelines, container orchestration, and infrastructure as code approach (e.g. Puppet, Chef, Ansible, Terraform, Jenkins, CircleCI, Artifactory, Git) Strong written and verbal communication skills. Strong self-directed work habits, exhibiting initiative, drive, creativity, maturity, self-assurance and professionalism. Agile, tactful, and proactive attitude that can manage prioritization and know when to escalate. Qualifications B.S. or M.S. in Computer Science, Engineering, or related field, or equivalent experience. 3+ years of relevant security and networking experience The About The Role is intended to be a general representation of the responsibilities and requirements of the job. However, the description may not be all-inclusive, and responsibilities and requirements are subject to change. Please note that F5 only contacts candidates through F5 email address (ending with @f5.com) or auto email notification from Workday (ending with f5.com or @myworkday.com ) . Equal Employment Opportunity It is the policy of F5 to provide equal employment opportunities to all employees and employment applicants without regard to unlawful considerations of race, religion, color, national origin, sex, sexual orientation, gender identity or expression, age, sensory, physical, or mental disability, marital status, veteran or military status, genetic information, or any other classification protected by applicable local, state, or federal laws. This policy applies to all aspects of employment, including, but not limited to, hiring, job assignment, compensation, promotion, benefits, training, discipline, and termination. F5 offers a variety of reasonable accommodations for candidates . Requesting an accommodation is completely voluntary. F5 will assess the need for accommodations in the application process separately from those that may be needed to perform the job. Request by contacting accommodations@f5.com.

Posted 1 month ago

Apply

0 years

0 Lacs

Bengaluru, Karnataka

Work from Office

Indeed logo

Regeneron is founded on the belief that the right idea, combined with the right team, can lead to significant transformations. Our growing global network is dedicated to inventing, developing, and commercializing medicines that change lives for those with serious diseases. In doing so, we are pioneering innovative approaches to science, manufacturing, and commercialization, as well as redefining our understanding of health. TVM Analysts focus on cybersecurity vulnerability identification, facilitate priority-based patching, and validate remediation efficiency. Operational requirements include leveraging TVM and information technology service management (ITSM) platforms to provide transparency, quantification, and accountability for remediation efficacy. This includes the utilization of reporting, executive summaries, and real-time dashboards. Additional responsibilities include chipping in to cybersecurity’s strategic maturity roadmaps, collection and analysis of cyber vulnerability intelligence, IT, and business unit partnership. A typical day might include the following: Manage cybersecurity vulnerabilities and risks across Regeneron including identifying, supporting application and system owners to manage risks and remediate vulnerabilities. Conduct vulnerability assessments of scans of servers, websites, workstations, serverless technology, network devices, cloud infrastructure, and other assets using various vulnerability management platforms and tools. Analyze enterprise cybersecurity policies and configurations to evaluate compliance with regulations and enterprise policies and standards. Assist with selection of industry best of breed cybersecurity controls to mitigate risk Collection, reporting, and metrics generation for multiple cyber TVM datasets. This includes patching efficiency, identifying system misconfigurations, and security hygiene assessments. Support the process of Security Compliance assessments of systems and multi-tenant cloud services, using industry standard processes, to include, Center for Internet Security (CIS) hardening guidelines Analysis and monitoring of cybersecurity feeds, cyber threat intelligence, and open-source intelligence on trending vulnerabilities and exploits. Partner with IT service providers to operate, maintain, and enhance TVM platforms. This includes native Operating System, cloud security, and data aggregation platforms Collaborate and partner with cross-departmental peers (technical and non-technical) to report, synthesize, and prioritize vulnerabilities and threats based on contextual assets and relationship data. Leverage industry and compute environment data to assess current and alternative technical solutions and processes for continuous enhancement and issue resolution. Supports and enables Regeneron’s, global (US (United States), EU (European Union), APAC) Science to Medicine business objectives through enriching the cybersecurity defense posture. Support Regeneron's TVM capability to identify, assign, and validate remediation of compute environment vulnerabilities. This encompasses Regeneron’s on-prem, hybrid, and multi-tenant cloud environments. This job might be for you if you: Possess a Bachelor’s Degree and 2+ years of relevant experience into Threat and Vulnerability Knowledge, proven track record, and skills in vulnerability assessment, prioritization, assignment, validation, and tracking. Experience and working knowledge of vulnerability management tools such as Nmap, Qualys, Tenable, Nessus, Microsoft Defender, Wiz, Rapid7, AWS Inspector, Orca. Familiarity with OWASP (Open Web Application Security Project) Top 10, CIS Security Controls, MITRE ATT&CK Framework Solid understanding of multi-tenant cloud environments (AWS, Azure, GCP), vulnerability mitigation techniques, and system hardening. Proven threat and vulnerability assessment skills or knowledge gained through experience or academia. Ability to understand threat modeling and apply technical, administrative, and security control risk mitigation. Organized, reliable, detail oriented. Proven or conceptual abilities to navigate levels through thought equity. Cybersecurity tool familiarity. E.g., SIEM (Security Information and Event Management), IDS/IPS, Email Protection, Firewalls, DLP (Data Loss Prevention), EDR (Endpoint Detection and Response), etc. Experience gained through a sophisticated organization and managed security providers and vendors. Excellent problem-solving skills and attention to detail. Demonstrable experience in customer service, communication, and relationship building. Ability to work independently and as part of a team. CISSP, CEH, Security+, Network+ or equivalent are preferred. Connect with us, so we can learn more about you, and you can learn more about our medicines. And join us in crafting the future of healthcare. Regeneron is an equal opportunity employer and all qualified applicants will receive consideration for employment without regard to race, color, religion or belief (or lack thereof), sex, nationality, national or ethnic origin, civil status, age, citizenship status, membership of the Traveler community, sexual orientation, disability, genetic information, familial status, marital or registered civil partnership status, pregnancy or parental status, gender identity, gender reassignment, military or veteran status, or any other protected characteristic in accordance with applicable laws and regulations. We will ensure that individuals with disabilities are provided reasonable accommodations to participate in the job application process. Please contact us to discuss any accommodations you think you may need. Does this sound like you? Apply now to take your first step towards living the Regeneron Way! We have an inclusive and diverse culture that provides comprehensive benefits, which often include (depending on location) health and wellness programs, fitness centers, equity awards, annual bonuses, and paid time off for eligible employees at all levels! Regeneron is an equal opportunity employer and all qualified applicants will receive consideration for employment without regard to race, color, religion or belief (or lack thereof), sex, nationality, national or ethnic origin, civil status, age, citizenship status, membership of the Traveler community, sexual orientation, disability, genetic information, familial status, marital or registered civil partnership status, pregnancy or parental status, gender identity, gender reassignment, military or veteran status, or any other protected characteristic in accordance with applicable laws and regulations. The Company will also provide reasonable accommodation to the known disabilities or chronic illnesses of an otherwise qualified applicant for employment, unless the accommodation would impose undue hardship on the operation of the Company's business. For roles in which the hired candidate will be working in the U.S., the salary ranges provided are shown in accordance with U.S. law and apply to U.S.-based positions. For roles which will be based in Japan and/or Canada, the salary ranges are shown in accordance with the applicable local law and currency. If you are outside the U.S, Japan or Canada, please speak with your recruiter about salaries and benefits in your location. Please note that certain background checks will form part of the recruitment process. Background checks will be conducted in accordance with the law of the country where the position is based, including the type of background checks conducted. The purpose of carrying out such checks is for Regeneron to verify certain information regarding a candidate prior to the commencement of employment such as identity, right to work, educational qualifications etc.

Posted 1 month ago

Apply

9 - 13 years

10 - 20 Lacs

Hyderabad

Hybrid

Naukri logo

Position : Lead Security Engineer Experience : 10-12 Years TO SUCCEED IN THIS ROLE: You'll have a Bachelor's degree OR equivalent. Expert level knowledge on AWS Cloud security NIST, ISO27001, PCI DSS Compliance: Hands-on experience with PCI-compliant environments and managing vulnerability cycles (identification, remediation, and mitigation) for OS and Non OS Patch. TSL/SSL and Cryptographic Standards: Have a hands-on experience with TSL/SSL and cryptography lifecycle (identify and mitigate risks from deprecated algorithms or vulnerabilities). DevSecOps: In-depth understanding and experience integrating security practices into the software development lifecycle, from secure coding to automated deployment of security measures. CI/CD Tools: Experience with CI/CD pipelines, preferably using Jenkins. GitFlow fluency: Experience with the gitflow process using any GIT like tool. Monitoring and Security: Familiarity with monitoring tools (CloudWatch, Dynatrace, Splunk, etc.) and vulnerability scanning tools (SonarQube, Qualys, etc.). Java Basic: It is important to have a nice basic knowledge of Java applications. Network Basic: PCI segmentation perspective and a good understanding of firewall rules regarding that are necessary for this position. WAF: Have some experience with WAF Management and configuration (Akamai solution) will be considered as a differential.

Posted 1 month ago

Apply

4 - 8 years

7 - 11 Lacs

Navi Mumbai, Chennai

Work from Office

Naukri logo

Conduct vulnerability assessments using industry-leading tools (e.g., Nessus, Tenable, Qualys). Develop and maintain vulnerability management processes, Analyze assessment results to identify and prioritize risks. Perform penetration testing.

Posted 1 month ago

Apply

2 - 7 years

5 - 12 Lacs

Mumbai

Work from Office

Naukri logo

Key Responsibilities: Tool Proficiency: Demonstrate expertise in security tools, including: • Qualys Vulnerability Scanner • Qualys Cloud Agent Having knowledge on below tools will be preferrable. • Imperva • Wallix Bastion • Microsoft PKI • Trellix Endpoint • SafeNet • CrowdStrike Operating System Knowledge: • Maintain a good understanding of Linux OS and its security features. Problem Solving & Feedback: • Provide valuable feedback on security tools and processes. • Analyze and solve complex cybersecurity issues. • Suggest and implement improvements to enhance security posture. Scripting & Automation: • Develop scripts for process automation and system integration. • Collaborate on creating efficient workflows to streamline operations. Development Skills: • Possess a solid understanding of Python development for automation and security tasks. • Utilize development tools, such as Git and VSCode, for version control and code management. Containerization Knowledge: • Have a basic understanding of Docker and its application in cybersecurity. Other Skills: • Proven experience with cybersecurity tools and practices. • Strong analytical and problem-solving skills. • Familiarity with scripting and process automation. • Basic knowledge of containerization using Docker is a plus. • Excellent communication and collaboration skills. • Scripting and process automation experience with any mentioned tools • Usage of development tools like Git, VSCode is mandatory. • Knowledge of data analytics library like pandas, will be added advantage Personal skills: • Good Team Player • Posses Positive and Learning attitude • Good Verbal and Witten communication skills • Sense of Ownership, Priorities and Autonomous Qualification: • Bachelors Degree in Computer Engineering, Information Technology or any relevant certifications • Familiar with basic understanding of TCP/UDP packets, security tools such IDS/IPS, Web proxies, DNS security, DDoS protection, firewalls

Posted 1 month ago

Apply

0 - 5 years

0 Lacs

Andhra Pradesh

Work from Office

Indeed logo

Req ID: 315027 NTT DATA strives to hire exceptional, innovative and passionate individuals who want to grow with us. If you want to be part of an inclusive, adaptable, and forward-thinking organization, apply now. We are currently seeking a Systems Integration Advisor to join our team in Hyderbad, Andhra Pradesh (IN-AP), India (IN). Key Responsibilities: Lead and manage incident and request handling for DLP, Tanium and Qualys Attain and maintain SLAs and KPIs, providing detailed reporting and the timely escalation when necessary to management Escalate complex issues to STO management and leadership as necessary Conduct log analysis to identify potential data loss issues Assist in advanced troubleshooting of system performance-related incidents Engage with stakeholders including Business Unit, Data Privacy and Data Protection Engineering teams Assist in the creation, configuration updates, and testing of DLP policies and Tanium workflows Support change request creation, representation, and implementation for the technology stack Provide general workstation and server troubleshooting support and support Lvl1 team members Participate in major incident management calls to provide support on active incidents Mentor and share advanced knowledge with Lvl1 analysts Identify and help implement automation and optimization opportunities Experience: Prior experience with and understanding of Data Loss Prevention terminology and processes 3-5 years of experience in a security operations role and fundamental knowledge of incident and service request handling Good understanding of Windows, MacOS, and *nix operating systems Proven advanced troubleshooting capabilities Familiarity with scripting languages such as PowerShell and batch files Exceptional communication skills and the ability to mentor junior team members About NTT DATA NTT DATA is a $30 billion trusted global innovator of business and technology services. We serve 75% of the Fortune Global 100 and are committed to helping clients innovate, optimize and transform for long term success. As a Global Top Employer, we have diverse experts in more than 50 countries and a robust partner ecosystem of established and start-up companies. Our services include business and technology consulting, data and artificial intelligence, industry solutions, as well as the development, implementation and management of applications, infrastructure and connectivity. We are one of the leading providers of digital and AI infrastructure in the world. NTT DATA is a part of NTT Group, which invests over $3.6 billion each year in R&D to help organizations and society move confidently and sustainably into the digital future. Visit us at us.nttdata.com NTT DATA endeavors to make https://us.nttdata.com accessible to any and all users. If you would like to contact us regarding the accessibility of our website or need assistance completing the application process, please contact us at https://us.nttdata.com/en/contact-us. This contact information is for accommodation requests only and cannot be used to inquire about the status of applications. NTT DATA is an equal opportunity employer. Qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability or protected veteran status. For our EEO Policy Statement, please click here. If you'd like more information on your EEO rights under the law, please click here. For Pay Transparency information, please click here.

Posted 1 month ago

Apply

5 - 8 years

7 - 10 Lacs

Hyderabad

Work from Office

Naukri logo

Hello, Urgent job opening for Application Security Analyst @ GlobalData(Hyd) :- Job Description given below please go through to understand requirement. (Looking for immediate joiners or who can join in less than 30 days.) if requirement is matching to your profile share your updated resume @ mail id (mehaboob.shaik@globaldata.com). Mention Subject Line :- Applying for Application Security Analyst @ GlobalData(Hyd) Share your details in the mail:- Your Full Name : Mobile # : Qualification : Total work experience : Company Name : Designation : Current CTC : Expected CTC : Notice Period : Current Location : Highest Qualification : Job Description :- Application Security Analyst :- Our company is looking for an experienced Application Security Analyst to join our team. The successful candidate will be responsible for ensuring the security of our company's applications and data by identifying vulnerabilities, assessing risks, and implementing security controls. Technical Skills required: Qualys, Nessus, SAST, DAST (Mandatory) & (Not looking for SOC, SIEM candidates) Experience: Minimum 4 to 10 years Responsibilities: 5+ years experience in application security, which includes vulnerability management, Pen Test, Secure Code Review. Performing code reviews and providing recommendations for improving security. Assess and enhance the Attack Surface management practices of the organization. Experience on attack surface management program to continually assess and manage the company's attack surface, including identifying new attack vectors, tracking changes to the infrastructure, and implementing controls to reduce the attack surface. Experience and knowledge in static application security testing (SAST) and dynamic testing (DAST). Plan and manage regular Pen Test and Red Team exercises to identify vulnerabilities in applications and infrastructure, and work with development teams to ensure adequate remediation. Review and monitor web application firewall (WAF) based on best security practices to ensure protection against common attacks such as SQL injection, cross-site scripting (XSS) etc. Collaborate with development teams to implement proper WAF rules and configurations to protect against OWASP Top 10 web application vulnerabilities. Conduct regular external vulnerability assessments and work with development teams to ensure that external-facing applications and systems are secure and resilient to external threats. Conduct regular application reviews to ensure that all applications are secure and meet the company's security standards. Develop and implement security policies and procedures related to application security. This includes collaborating with the development team to ensure that security policies are integrated into the software development life cycle Collaborate in regular reviews and testing of the company's business continuity and disaster recovery plans to ensure that they are up-to-date and effective in the event of a security incident or data. Enhance the Business Continuity Planning and Disaster Recovery (BCP/DR) plan for critical applications. Stay up to date with the latest application security trends, vulnerabilities, and attack techniques. Skills that you would need: Bachelor's or masters degree in computer science or a related field Strong knowledge of cyber security principles, best practices, and industry standards Proficiency in web application security Strong communication and collaboration skills to work with development teams and other stakeholders Knowledge of regulatory compliance frameworks such as ISO 27001, and GDPR Familiarity with business continuity and disaster recovery process Knowledge of security testing methodologies and tools such as vulnerability scanning, SAST, DAST and penetration testing, including OWASP Top 10 vulnerabilities and their remediation techniques Continuous learning mindset to stay up to date with emerging threats and new security technologies. Familiarity with secure coding practices and software development life cycle (SDLC) methodologies Familiarity with attack surface management tools Thanks & Regards, Mehaboob Shaik (Human Resources)

Posted 2 months ago

Apply

4 - 9 years

14 - 16 Lacs

Gandhinagar

Work from Office

Naukri logo

Job Summary A Security Analyst specializing in Vulnerability Assessment and Penetration Testing (VAPT) is responsible for evaluating and testing an organizations digital asset for vulnerabilities. This Role is responsible to manage organizations internal and external vulnerability management program from scan to resolution of identified vulnerabilities Roles and Responsibilities: Perform Static Application Security Testing (SAST), Dynamic Application Security Testing (DAST), and Interactive Application Security Testing (IAST) to identify vulnerabilities in software applications & IT Assets. Leverage threat modelling for applications to identify potential threats and suggest suitable mitigation strategies. Manage organization’s internal vulnerability management program execution, coordination, reporting and mitigation of vulnerabilities with various stakeholders. Work with external Vendor to plan, execute External VAPT on IT Assets, software applications, software code, mobile apps. Provide technical leadership in setting up SoW, complete External VAPT scan from start to closer of identified vulnerabilities. Work closely with cross function teams including IT and product development teams to close security findings, vulnerabilities. Develop and implement strategies to improve overall security posture. Knowledge And Skills Bachelor’s degree in computer science, Information Security, or a related field. Proven experience in vulnerability assessment and penetration testing. Good understanding of various Security standards like OWASP Top 10, OWASP Mobile Top 10, OWASP API Top 10, OWASP IoT Top 10, SANS Top 25, NIST. Good understanding of vulnerability severity calculation methods like CVSS Any of security certification related to VAPT, for example: Certified Security Analyst (ECSA); Licensed Penetration Tester (LPT); Offensive Security Certified Professional (OSCP); Offensive Security Certified Web Expert (OSWE); GIAC Penetration Tester (GPEN) Sound working experience with security scan products like Nessus, burp suits, Open VAS. Strong understanding of security principles, techniques, and technologies. Knowledge of application design and coding practices. Knowledge on any vulnerability management products like Qualys, Tenable, Rapid7 High level of initiative and self-direction Excellent communicator in English, both written and spoken while being able to convey information effectively at multiple levels of sensitivity and for various audiences

Posted 2 months ago

Apply

3 - 5 years

0 - 0 Lacs

Trivandrum

Work from Office

Naukri logo

Overview: We are seeking a skilled IT Security Engineer to manage patching, endpoint security, and automation across our infrastructure. The ideal candidate will be responsible for implementing security measures, ensuring compliance, and optimizing system performance through proactive security initiatives. Key Responsibilities: Patch Management: Develop and implement an effective patching strategy for Windows, Linux, and third-party applications. Utilize Endpoint Central (ManageEngine) to deploy patches, track compliance, and troubleshoot failures. Coordinate with teams to test and schedule patch rollouts with minimal business impact. Generate patch compliance reports and remediate non-compliant systems. Endpoint Central Management: Administer and optimize ManageEngine Endpoint Central for device management, patching, and software deployment. Monitor system health, enforce policies, and manage endpoint security configurations. Automate routine endpoint tasks using custom scripts. CrowdStrike Antivirus Management: Deploy, configure, and manage CrowdStrike Falcon for endpoint protection. Monitor security s, analyze threats, and take remediation actions. Ensure endpoint devices comply with security standards and company policies. Collaborate with SOC teams to investigate security incidents and fine-tune detection rules. Scripting & Automation: Develop and maintain PowerShell, Python, or Bash scripts to automate patching, compliance checks, and endpoint management tasks. Create dashboards and reports for patch status, endpoint security, and compliance tracking. Optimize security operations through custom automation solutions. Required Skills & Qualifications: 3+ years of experience in IT security, patch management, and endpoint protection. Hands-on experience with ManageEngine Endpoint Central for endpoint and patch management. Strong knowledge of CrowdStrike Falcon or similar EDR/XDR solutions. Proficiency in scripting (PowerShell, Python, or Bash) for automation and system management. Understanding of vulnerability management tools (Qualys, Nessus, Tenable, etc.). Familiarity with compliance frameworks like ISO 27001, NIST, or CIS benchmarks. Strong troubleshooting, analytical, and communication skills. Preferred Qualifications: Experience in security hardening and compliance auditing. Knowledge of cloud-based security solutions. Relevant certifications such as CISSP, CISM, CEH, or Security+. Required Skills Patch Management,Endpoint Management,CrowdStrike

Posted 2 months ago

Apply
cta

Start Your Job Search Today

Browse through a variety of job opportunities tailored to your skills and preferences. Filter by location, experience, salary, and more to find your perfect fit.

Job Application AI Bot

Job Application AI Bot

Apply to 20+ Portals in one click

Download Now

Download the Mobile App

Instantly access job listings, apply easily, and track applications.

Featured Companies