Get more replies from employers
Send a job-specific resume in minutes.
Talworx Solutions in Pune, India is seeking an experienced Vulnerability Management SME & Program Manager to lead the enterprise vulnerability management program across IT, OT, and cloud environments. The role requires expertise in Qualys, Rapid7, Nessus, and risk-based prioritization.
You will drive end-to-end VM lifecycle, design executive dashboards (Power BI), engage stakeholders, and align remediation with change management and incident response.
Role & responsibilities We are seeking an experienced Vulnerability Management SME & Program Manager to lead and manage the enterprise vulnerability management program across IT, OT, and cloud environments. The role requires expertise in Qualys, Rapid7, Nessus, and strong experience in risk-based prioritization, system hardening, and stakeholder engagement.
Lead Communication with application owners for crown jewel application vulnerability remediation.
SOPs template & KEDB’s, including documentation of remediation procedures, align with application ecosystem consideration.
Lead end-to-end vulnerability management lifecycle (scan, prioritize, remediate, report)
Implement risk-based prioritization frameworks (CVSS, threat intel, business impact)
Drive migration to the newly identified VM tool as directed by the senior management.
Manage and optimize tools: Qualys, Rapid7, Nessus or other open sources.
Design custom dashboards and executive reports and present them to secure management (Power BI / tool-based)
Drive secure configuration baselines (Golden Images) using NIST & CIS benchmarks
Provide impact analysis and remediation guidance to stakeholders
Manage vulnerabilities across manufacturing/OT, legacy systems, and hybrid cloud environments
Ensure integration with change management, patching, and incident response
Lead stakeholder communication, governance meetings, and executive presentations
10+ years in cybersecurity with a focus on vulnerability management
Strong expertise in NIST, CIS, and CISA best practices
Experience in manufacturing/OT and legacy environments
Knowledge of hybrid cloud (AWS/Azure/GCP/OCI)
Strong dashboarding, reporting, and communication skills
Experience in handling SAP, Engineering applications and database vulnerability management.
Experience in program management and cross-functional leadership