Information Security Engineer, Technical Lead

Lam Research

Bengaluru

On-site

INR 800,000 - 1,200,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Lam Research is seeking a Vulnerability Management Analyst in Bengaluru, Karnataka. This role involves managing vulnerability management tools, executing operations, and classifying and prioritizing vulnerabilities. The ideal candidate will have experience with scanning tools, a bachelor's degree in a relevant field, and strong analytical skills. This position offers a hybrid work model, allowing flexibility between on-site and remote work.

Qualifications

  • Certification in a security discipline such as CEH, CISSP, or OSCP is preferred.
  • Prior experience in systems or network administration is beneficial.
  • Self-motivated with a high sense of urgency and integrity.

Responsibilities

  • Manage and execute day-to-day operations of vulnerability management tools.
  • Recommend improvements to the vulnerability management solution.
  • Classify and prioritize risks of new vulnerabilities.
  • Automate orchestration and scripting to improve efficiency.
  • Develop program metrics and performance reports.

Skills

Experience with scanning tools
Data-analytics experience
Strong attention to detail
Ability to automate tasks
Strong verbal and written communication skills

Education

Bachelor's degree in Computer Science, IT, Cyber Security or equivalent experience

Tools

Microsoft Defender
Tenable
Rapid7
Qualys

Job description

Job Summary

As a Vulnerability Management Analyst at Lam Research, you will play a critical role in the execution of the Vulnerability Management Program. You are a subject‑matter expert in the VM Lifecycle Process and Reporting, capable of self‑starting while supporting and improving the overall Vulnerability Management Program for Lam’s assets on‑prem or cloud‑hosted. Your understanding of modern attacker tools, techniques, and security frameworks such as NIST, OWASP Top 10, SANS TOP 25, and MITRE ATT&CK positions you to mitigate risks and drive security excellence across APAC, EMEA, and North America.

Job Responsibilities
  • Manage and execute day‑to‑day operations of our vulnerability management tools – ensuring overall tool health and compliance, scheduling and executing scans, compiling and distributing reports, and tracking findings through resolution. Monitor threat intelligence feeds to detect 0‑day vulnerabilities and coordinate timely response.
  • Own service, recommending improvements to the solution set – by vendor, capability, configuration, deployment, compliance, process, or other.
  • Own tool configuration – ensuring appropriate settings, scan sensor placement, compliance, timely scan cadence, coverage, and gap detection, then propose recommendations.
  • Report findings to stakeholders, ranging from regular scheduled‑scan updates to proactive critical 0‑day alerts, and provide ad‑hoc scans as needed.
  • Develop relationships with stakeholders in management and across business units to align on expectations and ensure smooth resolution execution when vulnerabilities are detected.
  • Classify and prioritize risks of new vulnerabilities based on our unique environment’s risk level, mitigating factors, and impact assessment of internal and external threats.
  • Participate in impact assessments to help define prioritization and proper monitoring coverage; provide recommendations and technical guidance for the program. Validate scan results, research mitigation methods, and retest findings, demonstrating understanding of infrastructure/cloud vulnerability scanning and configuration.
  • Automate orchestration and scripting to reduce manual processes, improve overall efficiency and enable new capabilities to meet changing needs.
  • Develop program metrics and performance reports; produce detailed reports and present metrics to key business stakeholders.
Who We’re Looking For
  • Experience with scanning tools such as Microsoft Defender, Tenable, Rapid7, Qualys, and their configurations.
  • Prior experience in systems or network administration, or understanding of such roles including enterprise configurations.
  • Certification in a security discipline such as CEH, CISSP, or OSCP.
  • Data‑analytics experience, with the ability to provide qualitative analysis and recommendations.
  • Strong working relationships with cross‑functional teams.
  • Strong attention to detail, data accuracy, and analytical skills.
  • Self‑motivated with a high sense of urgency, integrity, and a proactive attitude.
  • Ability to automate tasks using API or scripting.
  • Strong verbal and written communication skills.
Preferred Qualifications
  • Bachelor’s degree in Computer Science, Information Technology, Cyber Security, or 5+ years of cybersecurity experience with a focus on vulnerability management.
  • Understanding of networking, systems administration, application development, and information security practices.
Our Commitment

We believe it is important for every person to feel valued, included, and empowered to achieve their full potential. By bringing unique individuals and viewpoints together, we achieve extraordinary results.

Lam Research (“Lam” or the “Company”) is an equal‑opportunity employer. Lam is committed to and reaffirms support of equal opportunity in employment and non‑discrimination policies on the basis of race, religion, creed, color, national origin, ancestry, physical disability, mental disability, medical condition, genetic information, marital status, sex (including pregnancy, childbirth, and related medical conditions), gender, gender identity, gender expression, age, sexual orientation, military and veteran status, or any other category protected by applicable federal, state, or local laws. The Company’s intention is to comply with all applicable laws and regulations. Company policy prohibits unlawful discrimination against applicants or employees.

Lam offers a variety of work location models based on the needs of each role. Our hybrid roles combine the benefits of on‑site collaboration with colleagues and the flexibility to work remotely and fall into two categories – On‑site Flex and Virtual Flex. ‘On‑site Flex’ you’ll work 3+ days per week on‑site at a Lam or customer/supplier location, with the opportunity to work remotely for the balance of the week. ‘Virtual Flex’ you’ll work 1‑2 days per week on‑site at a Lam or customer/supplier location, and remotely the rest of the time.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Information Security Engineer, Technical Lead
Information Security Engineer, Technical Lead

LAM RESEARCH Corporation • Bengaluru

Hybrid
INR 800,000 - 1,200,000
Information Security Engineer, Technical Lead
Information Security Engineer, Technical Lead

Lam Research Salzburg GmbH • Bengaluru

Hybrid
INR 3,000,000 - 5,000,000
Software Engineer 4
Software Engineer 4

Lam Research • Bengaluru

Hybrid
INR 1,500,000 - 2,500,000
IT Engineer 3
IT Engineer 3

LAM RESEARCH Corporation • Bengaluru

Hybrid
INR 4,000,000 - 7,000,000
Hybrid work model
Remote work options
Sr. Mgr, Facilities Engineering
Sr. Mgr, Facilities Engineering

Lam Research • Bengaluru

Hybrid
INR 2,500,000 - 3,500,000
Software Technical Lead Engineer
Software Technical Lead Engineer

Lam Research • Bengaluru

Hybrid
INR 1,000,000 - 1,500,000
IT Engineer 3
IT Engineer 3

Lam Research • Bengaluru

On-site
INR 2,500,000 - 3,800,000
Hybrid work model
On-site Bengaluru
Software Engineer 2
Software Engineer 2

LAM RESEARCH Corporation • Bengaluru

Hybrid
INR 1,200,000 - 2,200,000
Software Engineer 2
Software Engineer 2

Lam Research • Bengaluru

Hybrid
INR 1,400,000 - 2,300,000
Hybrid work model
Sr. Mgr, Facilities Engineering
Sr. Mgr, Facilities Engineering

LAM RESEARCH Corporation • Bengaluru

Hybrid
INR 9,523,000 - 13,334,000