Role : Vulnerability Management Analyst.
Location : Bengaluru, IND.
Hybrid Working Arrangements.
Collabera is looking for a passionate Vulnerability Management Analyst for one of its largest banking customer in their security defects & COE team.
This individual will be responsible for managing cloud and container vulnerabilities using Wiz, driving remediation efforts, and collaborating across squads to reduce risk exposure.
Required Skills & Experience :
- Minimum 3 years of experience in vulnerability management or cloud / container security analysis.
- Hands-on experience with cloud / container security platforms (e.g., Sysdig, Prisma Cloud, Qualys, etc).
- Having experience with Wiz is preferred.
- Strong understanding of cloud platforms (AWS, Azure, GCP) and containerized environments (Kubernetes, Dockers).
- Solid grasp of DevSecOps principles and secure CI / CD practices.
- Demonstrated ability to coordinate vulnerability remediation, including assignment, follow-up, and escalation.
- Ability to explain technical concepts to both technical and non-technical stakeholders.
- Analytical and problem-solving skills with keen attention to detail.
- Organisational skills to manage multiple remediation tasks and deadlines.
- Self-starter with a proactive mindset and strong problem-solving abilities.
- Experience with Jira and ServiceNow is a plus.
Key Responsibilities :
Review, validate, and triage security findings from Wiz for cloud (AWS, Azure, GCP) and container workloads.Identify false positives, consolidate duplicate findings, and present clear actionable reports.Identify Critical impact findings and escalate for immediate remediation.Create and manage remediation tasks in the ticketing system, ensuring correct assignment groups and duedates.
Track remediation progress, monitor adherence to SLAs, and escalate overdue items to leadership.Communicate security issues and requirements to both technical and non-technical stakeholders.Support the implementation of security best practices across cloud and container environments.Maintain accurate documentation of vulnerabilities, actions, and outcomes for audit and reporting purposes.(ref : hirist.tech)