Talent.com
Vulnerability Management Analyst
Vulnerability Management AnalystConfidential • Pune, India
Vulnerability Management Analyst

Vulnerability Management Analyst

Confidential • Pune, India
8 days ago
Job description

Cybersecurity Vulnerability Management Analyst

SailPoint's Cybersecurity organization is seeking a Cybersecurity

Vulnerability Management Analyst with a passion for cybersecurity. This

role ensures the continuous discovery, accurate assessment, risk-based

prioritization, and successful remediation of vulnerabilities and

misconfigurations across all IT assets, directly reducing the organization's

exposure and maintaining regulatory compliance.

We are seeking a colleague with demonstrable technical expertise, strong

business acumen, and a proven track record of working in security

programs in complex environments . The ideal candidate will be part of the

team securing SailPoint's production environments from misconfigurations

and software vulnerabilities, cross-functional collaboration, and ensuring

that products meet the highest standards of security, availability, and trust.

Our new Vulnerability Management Analyst will join a growing and capable

threat and vulnerability management team of both emerging and

established talent. This potential team member will be comfortable with the

4 I's at SailPoint (individual, Impact, Innovation, and Integrity) even if

they're new to the concept. They will embrace new challenges, and by being

their authentic self they will be a positive contributor to an already positive

work culture and environment.

This is a challenging and impactful role where you will have the opportunity

to work with a variety of stakeholders, including our fantastic colleagues in

IT, DevOps, Product engineering, Security engineering, and Compliance.

This role reports directly to the Head of Vulnerability Management and will

be remote. Candidae must go to Pune office once a quarter.

Key Requirements :

 3-5 years experience, preferably in vulnerability management.

 Strong engineering experience with cloud, containers, open-source

code, deployment and misconfigurations.

 Intermediate experience with scripting languages (e.g., Python,

PowerShell) for automating data ingestion, reporting, or integrating

VM data into other security tools (SIEM / SOAR).

 Experience with regulatory frameworks (e.g., NIST, ISO 27001, SOC,

GDPR) and providing evidence for compliance and audit needs.  Experience tracking trends and configure systems as required to

reduce false positives from true events.

 Process Improvement : Drive continuous improvement in the efficiency

of vulnerability remediation through automation, ticketing system

integration (e.g., Jira), and process streamlining.

 Influence & Collaboration – Demonstrable experience building strong

partnerships in a matrixed organization.

 Technical – Intermediate understanding of product security issues

(like XXE, SSRF, Injections, etc.), modern software development (fully

automated CI / CD, REST, OAuth2) including multi-cloud (AWS, Azure,

GCP, Containers, Kubernetes) architectures, particularly Amazon Web

Services, Kubernetes, and Docker.

 Risk-Based Decision Making – Experience making informed decisions

through balancing business priorities, technical constraints, and risk

exposure.

 Certifications like CISSP, CISA, CySA+, AWS Certs, or CCNSE , or

other relevant certifications are preferred.

 If the candidate does not have the AWS Certified Cloud Practitioner or

AWS Certified Cloud Security – Specialty, they must take these

certifications within first year of employment.

Core Responsibilities :

 Collaborating in the enterprise-wide product security and resilience

strategy, aligning with business goals and regulatory requirements.

 Partnering with Dev / Ops, engineering, product management, and

infrastructure teams to integrate vulnerability management practices

into production environments.

 Identifying risk in a production environment comprised of a

sophisticated SaaS architecture consisting of dozens of microservices

 Maintain knowledge of the threat landscape for prioritization of

vulnerabilities, attack techniques, tool / exploit development, cyber

threat intelligence analysis and adversarial tactics.

 Explaining risks, identifing dependencies, and facilitating the

remediation process by providing necessary details and context.

 Enforce a prioritization framework that utilizes risk context beyond

standard CVSS scores, factoring in asset criticality, exposure to the

public internet, and internal threat intelligence (e.g., active

exploitation in the wild).

 Drive the adoption of security automation, vulnerability management

with product teams.

 Providing program performance reporting and metrics per business

unit and product. First 30 Days

 Learn the landscape, processes and technologies.

 Complete all tooling platform specific training assigned.

60 Days

 Take ownership of vulnerability analysis and reporting for a

designated environment

 Establish communication and follow-up cadence with the remediation

teams

 Identify and document an opportunity to improve the efficiency of the

current process

90 Days

 Manage full lifecycle for all production environment

 Collaborate with respective teams to address specific, frequent

occurring vulnerability, insecure coding, etc

 Have deep understanding of all core technologies, environments and

our cloud architecture.

 Contribute to the team internal knowledgebase on lessons learned

SailPoint is an equal opportunity employer and we welcome all qualified candidates to apply to join our team.  All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, protected veteran status, or any other category protected by applicable law.

Alternative methods of applying for employment are available to individuals unable to submit an application through this site because of a disability. Contact [HIDDEN TEXT] or mail to 11120 Four Points Dr, Suite 100, Austin, TX 78726, to discuss reasonable accommodations.  NOTE : Any unsolicited resumes sent by candidates or agencies to this email will not be considered for current openings at SailPoint.

Skills Required

Gdpr, Oauth2, Vulnerability Management, SOAR, Soc, Cisa, Jira, Rest, Iso 27001, Gcp, Docker, Cissp, nist, Siem, Azure, Kubernetes, Aws

Create a job alert for this search

Vulnerability Management Analyst • Pune, India

Related jobs
Cloud Vulnerability Detection and Remediation Analyst

Cloud Vulnerability Detection and Remediation Analyst

Confidential • Pune, India
The Cloud Vulnerability Detection, Response, and Remediation Subject Matter Expert (SME) is responsible for leading efforts to identify, assess, and remediate vulnerabilities across cloud environme...Show more
Last updated: 15 days ago • Promoted
Security Analyst

Security Analyst

ACL Digital • Pune, Maharashtra, India
Good experience in application and mobile security  Conduct vulnerability assessment that involves scanning IT assets and services, discovering vulnerabilities and remediation in data center and c...Show more
Last updated: 30+ days ago • Promoted
Lead PLM Engineer

Lead PLM Engineer

Varroc • Pune / Pimpri-Chinchwad Area, India
Product Lifecycle Management (PLM) : .Expertise in PLM processes and methodologies.Functional expertise in New Product Introduction (NPI), product engineering & Bill of Materials (BOM) management, pr...Show more
Last updated: 2 days ago • Promoted
Assistant Supervisor

Assistant Supervisor

Elite ConstructBuildcon • Pune / Pimpri-Chinchwad Area, India
We suggest you enter details here.This is a full-time on-site role for an Assistant Supervisor, located in the Pune / Pimpri-Chinchwad area. The Assistant Supervisor will oversee daily operations at p...Show more
Last updated: 2 days ago • Promoted
Vulnerability Management Sr. Analyst

Vulnerability Management Sr. Analyst

Confidential • Pune, India
Metro Global Solution Center (MGSC) is internal solution partner for METRO, a €29.Billion international wholesaler with operations in 31 countries through 661 stores & a team of 93,000 people globa...Show more
Last updated: 6 days ago • Promoted
Security Operations Center Analyst

Security Operations Center Analyst

Peoplefy • Pune, Maharashtra, India
Specialist for leading product based MNC in Pune, Kharadi.Kindly refer below JD & share your resume on.Experience with SOC, Threat Monitoring. Experience with Threat & vulnerability management.Exper...Show more
Last updated: 30+ days ago • Promoted
SynRadar - Senior Security Analyst - Vulnerability Management

SynRadar - Senior Security Analyst - Vulnerability Management

Confidential • Pune, India
Role : Senior Security Analyst - Appsec / VA / PT.Perform web application security testing and identify vulnerabilities.Conduct mobile application security testing for Android / iOS platforms.Scan networ...Show more
Last updated: 16 days ago • Promoted
Vulnerability Management Analyst

Vulnerability Management Analyst

SailPoint • Pune, Maharashtra, India
Cybersecurity Vulnerability Management Analyst.SailPoints Cybersecurity organization is seeking a Cybersecurity.Vulnerability Management Analyst with a passion for cybersecurity.IT assets directly ...Show more
Last updated: 10 days ago • Promoted
Security Analyst (vulnerability assessment tools - Qualys & Crowdstrike)

Security Analyst (vulnerability assessment tools - Qualys & Crowdstrike)

Confidential • Pune, India
We are seeking a talented Security Analyst to join our team, he / she would be responsible for identifying, assessing, and mitigating security vulnerabilities within an organization's IT systems, app...Show more
Last updated: 9 hours ago • Promoted • New!
Embedded Senior Crisis & Security Analyst (RSOC-Pune)

Embedded Senior Crisis & Security Analyst (RSOC-Pune)

Hill & Associates Limited • pune, maharashtra, in
H&A”) is a leading international enterprise security and risk management consultancy owned by the G4S group, an Allied Universal ®Company. H&A provides consulting services to major international cor...Show more
Last updated: 7 hours ago • Promoted • New!
Security Vulnerability Engineer

Security Vulnerability Engineer

Confidential • Pune
Cradlepoint is seeking a highly motivated.Security Vulnerability Engineer.This pivotal role is responsible for the end-to-end vulnerability management practice, encompassing identifying, researchin...Show more
Last updated: 30+ days ago • Promoted
Forward Deployed Analyst (Ex-IB / PE / HF / Buyside)

Forward Deployed Analyst (Ex-IB / PE / HF / Buyside)

Arcana • Pune, IN
Forward-Deployed Analyst – Portfolio Intelligence.Arcana builds institutional-grade analytics for leading hedge funds and asset managers. We’re hiring exceptional analysts to partner with portfolio ...Show more
Last updated: 30+ days ago • Promoted
Tech-Functional Business Analyst – Signal & Risk Management (Pharmacovigilance)

Tech-Functional Business Analyst – Signal & Risk Management (Pharmacovigilance)

vueverse. • Pune, IN
We are looking for a highly experienced IT / Tech-Functional Business Analyst (12+ years) with deep expertise in Pharmacovigilance (PV) systems, specifically Signal Management and Risk Management mod...Show more
Last updated: 4 days ago • Promoted
Network Lead

Network Lead

Thermax Limited • Pune / Pimpri-Chinchwad Area, India
Position : Lead Network Manager.Key Responsibilities (Highlights).Network Design & Implementation : .Build scalable, secure networks for factories & offices. OEMs, AMC partners, and communication provi...Show more
Last updated: 2 days ago • Promoted
Security Vulnerability Analyst

Security Vulnerability Analyst

Confidential • Pune
Cradlepoint is seeking a highly motivated.Security Vulnerability Analyst.This pivotal role is responsible for the end-to-end vulnerability management practice, encompassing identifying, researching...Show more
Last updated: 30+ days ago • Promoted
System Engineer

System Engineer

MIT Academy of Engineering, Alandi, Pune • Pune / Pimpri-Chinchwad Area, India
The Level 1 Network Engineer will be responsible for providing technical support and troubleshooting for network-related issues. This role involves monitoring network performance, resolving connecti...Show more
Last updated: 2 days ago • Promoted
Senior Vulnerability Management Analyst

Senior Vulnerability Management Analyst

Confidential • Pune, India
As a management consulting and technology firm focused on improving life and how we live it, we transform ideas into impact by. Here you'll work side-by-side with a powerful collective of thinkers a...Show more
Last updated: 24 days ago • Promoted
Vulnerability Assessment

Vulnerability Assessment

Confidential • Pune, India
Are you interested in automating the build and deployment process of the application with ensuring the application security If yes, then Payatu is the place for you. We are always in search of passi...Show more
Last updated: 16 days ago • Promoted