VAPT Lead

SQ1 Security

Chennai District

On-site

INR 2,000,000 - 3,200,000

Full time

5 days ago
Be an early applicant

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

SQ1 Security is seeking a Senior Security Analyst with 8-10 years of experience to lead Vulnerability Management operations. You will continuously scan, identify, and analyze vulnerabilities across server infrastructure and end-user computing, interfacing directly with clients to drive remediation and explain risk impact.

You will use Tenable Nessus and Qualys for assessments, prioritize findings, and coordinate with IT teams to meet SLAs while producing detailed reports for engineers and

Qualifications

  • 8–10 years of vulnerability management experience.
  • Experience with server infrastructure and end-user computing (laptops/desktops).
  • Ability to interface with clients to drive remediation and explain risk impact.

Responsibilities

  • Vulnerability Assessment: Conduct scheduled and ad-hoc vulnerability scans on Server farms (Windows/Linux) and Laptops/Endpoints using Tenable Nessus and Qualys.
  • Analysis & Prioritization: Analyze scan results to identify false positives and prioritize vulnerabilities based on CVSS scores, threat intelligence, and business criticality.
  • Client Coordination: Act as the primary point of contact for clients/system owners. Explain the technical 'how-to' of fixing vulnerabilities and negotiate downtime for patching windows.
  • Remediation Management: Track the lifecycle of open vulnerabilities from discovery to closure. Collaborate with IT and Patch Management teams to ensure SLAs are met.
  • Reporting: Prepare detailed technical reports for engineering teams and high-level executive dashboards for client management, highlighting risk trends and remediation progress.
  • Configuration Review: Perform configuration compliance scanning (CIS Benchmarks) for servers and laptops to ensure hardening standards are met

Skills

Tenable Nessus
Qualys VM
Windows Server
Linux
Nmap
Burp Suite
Metasploit
Python
PowerShell
Bash

Tools

Tenable Nessus
Qualys VM
Nmap
Burp Suite
Metasploit
Python
PowerShell
Bash

Job description

Looking for a Senior Security Analyst with 8-10 years of experience to lead our Vulnerability Management operations. The ideal candidate will be responsible for the continuous scanning, identification, and analysis of vulnerabilities across server infrastructure and end-user computing (laptops/desktops). This role requires a strong communicator who can interface directly with clients to drive remediation efforts, explain risk impact, and ensure the security posture of the organization is maintained using industry-standard tools like Tenable Nessus and Qualys.

Key Responsibilities:
  • Vulnerability Assessment: Conduct scheduled and ad-hoc vulnerability scans on Server farms (Windows/Linux) and Laptops/Endpoints using Tenable Nessus and Qualys.
  • Analysis & Prioritization: Analyze scan results to identify false positives and prioritize vulnerabilities based on CVSS scores, threat intelligence, and business criticality.
  • Client Coordination: Act as the primary point of contact for clients/system owners. Explain the technical "how-to" of fixing vulnerabilities and negotiate downtime for patching windows.
  • Remediation Management: Track the lifecycle of open vulnerabilities from discovery to closure. Collaborate with IT and Patch Management teams to ensure SLAs are met.
  • Reporting: Prepare detailed technical reports for engineering teams and high-level executive dashboards for client management, highlighting risk trends and remediation progress.
  • Configuration Review: Perform configuration compliance scanning (CIS Benchmarks) for servers and laptops to ensure hardening standards are met
Required Skills/Technologies/Tools
  • Core Tools: Deep expertise in Tenable Nessus (Tenable.sc / Tenable.io) and Qualys VM.
  • Operating Systems: Strong administration knowledge of Windows Server (Active Directory, Registry, Group Policy) and Linux (RHEL/Ubuntu/CentOS) to understand patch application.
  • Validation Tools: Familiarity with Nmap, Burp Suite (for basic web validation), and Metasploit (for verifying exploitability).
  • Scripting: Basic proficiency in Python, Bash, or PowerShell to automate scan data processing or reporting.
Good to have Technologies/Tools
  • Cloud Security: Experience with AWS or Azure native security tools (Inspector, Defender for Cloud).
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

TECHNICAL LEAD - Vulnerability Assessment
TECHNICAL LEAD - Vulnerability Assessment

Happiest Minds Technologies • Bengaluru

On-site
INR 1,500,000 - 2,500,000
Security Vulnerability Analyst
Security Vulnerability Analyst

Experian Group • Hyderabad

On-site
INR 1,200,000 - 2,400,000
Cyber Security Vulnerability Assessment/ Management Specialist
Cyber Security Vulnerability Assessment/ Management Specialist

Sonata Software • Pune District

On-site
INR 1,200,000 - 2,000,000
Vulnerability Management & Assessment Lead
Vulnerability Management & Assessment Lead

Lonvec Technologies Private Limited • Delhi

Hybrid
INR 3,500,000 - 9,000,000
VAPT Lead
VAPT Lead

Adani Group • Ahmedabad District

On-site
INR 3,000,000 - 6,000,000
Consultant - Vulnerability Management
Consultant - Vulnerability Management

YASH Technologies • Bengaluru

On-site
INR 800,000 - 1,200,000
Vulnerability Management Analyst
Vulnerability Management Analyst

Zensar • Pune District

On-site
INR 1,200,000 - 1,800,000
Vulnerability Assessment and Penetration Testing Lead
Vulnerability Assessment and Penetration Testing Lead

adani capital pvt ltd • Ahmedabad District

On-site
INR 2,500,000 - 4,200,000
Senior Security Consultant
Senior Security Consultant

Eventus Security • Navi Mumbai

On-site
INR 1,500,000 - 2,500,000
IT Security Engineer
IT Security Engineer

Tekskills • Bengaluru

On-site
INR 1,800,000 - 3,200,000