Estuate - Vulnerability Management Engineer - SIEM Tools

Estuate, Inc.

Kolkata District

On-site

INR 1,200,000 - 1,800,000

Full time

14 days+
Application generator

Turn this role into an interview — a resume and cover letter built around what this employer wants.

Get past ATS filters

Job summary

Estuate, Inc. seeks a Vulnerability Management Engineer to identify and drive remediation across enterprise environments, leveraging risk-based approaches to reduce the attack surface. You will manage scanning, triage findings, and coordinate with infrastructure, app, and cloud teams to improve security posture.

You will work with Tenable, Qualys, and Rapid7, integrate with ServiceNow CMDB, Tanium, and SIEM, and develop risk dashboards to track exposure, SLA adherence, and remediation progress.

Qualifications

  • Strong experience in vulnerability management and exposure management lifecycle.
  • Hands-on with Tenable, Qualys, or Rapid7.
  • Knowledge of CVEs, CVSS scoring, exploitability, and threat context.
  • Experience with enterprise environments (Windows, Linux, network, cloud).
  • Familiarity with Tanium Deploy/Comply, ServiceNow, and CMDB integrations.
  • Understanding of patching, configuration management, and remediation workflows.
  • Scripting/automation experience (Python, PowerShell, APIs).
  • Strong analytical and problem-solving skills.

Responsibilities

  • Perform and manage vulnerability scanning across infrastructure, endpoints, applications, and cloud environments
  • Analyze findings and prioritize remediation based on risk, exploitability, and business impact
  • Drive vulnerability lifecycle: discovery, validation, remediation, closure
  • Correlate vulnerabilities with threat intelligence and exposure context (CTEM approach)
  • Configure and manage exposure management tools (Tenable One, Tenable.io/sc, Qualys, Rapid7)
  • Integrate VM tools with Tanium, ServiceNow CMDB, SIEM, and asset management platforms
  • Support API integration and automation of scanning, ticketing, and reporting workflows
  • Partner with infrastructure, application, and cloud teams to drive remediation activities
  • Implement compensating controls where patching is not immediately feasible
  • Support patch management and configuration hardening initiatives
  • Develop risk-based dashboards and reports (exposure trends, SLA adherence, coverage)
  • Identify recurring vulnerabilities and root causes
  • Provide insights to support prioritization and decision-making
  • Support audit, compliance, and regulatory requirements (NIST, CIS, SOX)
  • Improve vulnerability prioritization using risk scoring, asset criticality, and exploit data
  • Enhance automation, coverage, and program maturity aligned to CTEM framework

Skills

Vulnerability management
Exposure management lifecycle
Tenable
Qualys
Rapid7
Windows
Linux
Tanium
ServiceNow
APIs
Python
PowerShell
MITRE ATT&CK

Tools

Tenable One
Tenable.io
Qualys
Rapid7
Tanium
ServiceNow CMDB
SIEM
APIs
Power BI
Tableau

Job description

Role Summary

The VM Engineer is responsible for identifying, analyzing, prioritizing, and driving remediation of vulnerabilities and security exposures across enterprise environments, leveraging risk-based approaches to reduce overall attack surface.

Job Title

Vulnerability Management (VM) Engineer

Key Responsibilities
Vulnerability & Exposure Management
  • Perform and manage vulnerability scanning across infrastructure, endpoints, applications, and cloud environments
  • Analyze findings and prioritize remediation based on risk, exploitability, and business impact
  • Drive vulnerability lifecycle: discovery, validation, remediation, closure
  • Correlate vulnerabilities with threat intelligence and exposure context (CTEM approach)
Tooling & Platform Management
  • Configure and manage exposure management tools (Tenable One, Tenable.io/sc, Qualys, Rapid7)
  • Integrate VM tools with Tanium, ServiceNow CMDB, SIEM, and asset management platforms
  • Support API integration and automation of scanning, ticketing, and reporting workflows
Remediation & Risk Reduction
  • Partner with infrastructure, application, and cloud teams to drive remediation activities
  • Implement compensating controls where patching is not immediately feasible
  • Support patch management and configuration hardening initiatives
Data Analysis & Reporting
  • Develop risk-based dashboards and reports (exposure trends, SLA adherence, coverage)
  • Identify recurring vulnerabilities and root causes
  • Provide insights to support prioritization and decision-making
Governance & Continuous Improvement
  • Support audit, compliance, and regulatory requirements (NIST, CIS, SOX, etc.)
  • Improve vulnerability prioritization using risk scoring, asset criticality, and exploit data
  • Enhance automation, coverage, and program maturity aligned to CTEM framework
Required Skills & Experience
  • Strong experience in vulnerability management and exposure management lifecycle
  • Hands‑on expertise with Tenable (preferred), Qualys, or Rapid7
  • Knowledge of CVEs, CVSS scoring, exploitability, and threat context
  • Experience with enterprise environments (Windows, Linux, network, cloud)
  • Familiarity with Tanium (Deploy/Comply), ServiceNow, and CMDB integrations
  • Understanding of patching, configuration management, and remediation workflows
  • Scripting/automation experience (Python, PowerShell, APIs)
  • Strong analytical and problem‑solving skills
Preferred Qualifications
  • Experience with Tenable One and CTEM (Continuous Threat Exposure Management)
  • Knowledge of MITRE ATT&CK, threat intelligence, and exploit frameworks
  • Exposure to cloud security (AWS, Azure) and container environments
  • Experience with Power BI/Tableau dashboards for VM reporting
  • Certifications: Security+, CEH, CISSP, GIAC VM certifications
Key Deliverables
  • Vulnerability scan reports and prioritized remediation plans
  • Risk‑based exposure dashboards and metrics
  • Automated workflows (scan, ticket, remediation tracking)
  • Integration artifacts (VM, Tanium, ServiceNow CMDB)
  • Root cause analysis and continuous improvement recommendations
Success Metrics
  • Reduction in critical/high vulnerabilities within SLA
  • Improved remediation cycle time and throughput
  • Increased asset coverage and scan completeness
  • Reduction in repeat/recurring vulnerabilities
  • Enhanced visibility into enterprise exposure and risk posture
Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Vulnerability Lead
Vulnerability Lead

SHI • Hyderabad

On-site
INR 1,800,000 - 3,600,000
Vulnerability Management
Vulnerability Management

Team1 Consulting Pvt. Ltd. • Mumbai

On-site
INR 900,000 - 1,300,000
Vulnerability / Devsecops / Network / SOC / Threat Analysis
Vulnerability / Devsecops / Network / SOC / Threat Analysis

NITYO • Dadri

On-site
INR 1,800,000 - 2,800,000
IT & Data Vulnerability Analyst
IT & Data Vulnerability Analyst

Infosys • Hyderabad

On-site
INR 900,000 - 1,300,000
Consultant - Vulnerability Management
Consultant - Vulnerability Management

YASH Technologies • Bengaluru

On-site
INR 800,000 - 1,200,000
Vulnerability Management
Vulnerability Management

Headsnminds Consultants • Mumbai

On-site
INR 1,800,000 - 2,400,000
Senior Vulnerability Management Analyst (Qualys)
Senior Vulnerability Management Analyst (Qualys)

UST • Gurugram District

Hybrid
INR 1,800,000 - 2,800,000
Vulnerability & Patch Management Engineer
Vulnerability & Patch Management Engineer

TechDefence Labs • Mumbai

On-site
INR 1,200,000 - 1,800,000
Cyber Threat Exposure Management Analyst
Cyber Threat Exposure Management Analyst

Version 1 • Bengaluru

On-site
INR 1,800,000 - 2,600,000
Full Stack Engineer
Full Stack Engineer

AagatiServe Pvt Ltd • Bengaluru

On-site
INR 2,600,000 - 4,200,000