Talent.com
Attack Surface Management Specialist

Attack Surface Management Specialist

NMS ConsultantRepublic Of India, IN
1 day ago
Job description

Job description : -

Key Responsibilities : -

Vulnerability Intelligence (VI)

  • Monitor newly disclosed vulnerabilities (CVEs) and assess criticality and exploitability.
  • Publish timely and contextualized vulnerability assessments for software within environment.
  • Maintain a vulnerability knowledge base enriched with CVSS, EPSS, QDS, and other key metrics.
  • Maintain and regularly update the internal software inventory in scope for vulnerability assessment.

Attack Surface Management (ASM)

  • Continuously monitor external assets using ASM tools to detect exposures and misconfigurations.
  • Maintain and update the ASM tool scope by onboarding known domains and IP ranges.
  • Validate findings, eliminate false positives, and escalate high-risk issues to Blue Team for remediation.
  • Identify and track exposure trends and new threats targeting
  • external perimeter.
  • BlackBox Penetration Testing

  • Coordinate and manage the execution of BlackBox penetration tests for applications and infrastructure.
  • Collaborate with application managers for onboarding into the pentesting program.
  • Support tool maintenance, contract follow-ups, and findings remediation.
  • Vulnerability Management

  • Analyze and correlate vulnerability data from scanning tools.
  • Conduct vulnerability validation, false positive removal, and severity reclassification.
  • Provide actionable guidance to Security Officers (SOs) and CISOs for risk mitigation.
  • Summarize vulnerability data into concise reports for different stakeholders.
  • Scripting & Automation

  • Automate data extraction from VI and ASM tools into the DataLake.
  • Build automation workflows for vulnerability detection, classification, and reporting.
  • Collaborate with both offensive (Red Team) and defensive (Blue Team) units to improve testing coverage and threat visibility.
  • Required Qualifications & Experience

    Education

  • Bachelors degree in Computer Science, Information Security, Electronics & Telecommunication (EXTC), or a related field.
  • Relevant certifications are a plus : CISSP, CCSP, CompTIA Security+, OSCP, CEH .
  • Experience

  • Minimum 6 years of experience in Cybersecurity, with hands-on experience in :
  • Vulnerability Intelligence and Management
  • Attack Surface Monitoring
  • Penetration Testing (Web, Network, Infrastructure)
  • Security tool usage and customization
  • Technical Skills

  • Familiarity with industry standards and tools :
  • VI & ASM tools (e.G., Shodan, Censys, RiskIQ, etc.)
  • Pentesting tools : Burp Suite, SQLmap, Metasploit, Kali Linux
  • CVE analysis platforms (e.G., NIST NVD, EPSS)
  • Strong scripting skills in Python, PowerShell, Bash, or C# for automation
  • Solid understanding of :
  • OWASP Top 10
  • CVSS, EPSS scoring systems
  • Microsoft Security Bulletins
  • Experience with scanning tools and vulnerability management platforms
  • Create a job alert for this search

    Management Specialist • Republic Of India, IN

    Related jobs
    • Promoted
    Principal Identity and Access Management Engineer

    Principal Identity and Access Management Engineer

    AutodeskNagpur, IN
    At Autodesk, our Cyber Defense - IAM team is dedicated to securing and enhancing the organization’s digital ecosystem We lead impactful initiatives, such as strengthening enterprise identity standa...Show moreLast updated: 12 days ago
    • Promoted
    Security & Compliance IT Specialist / Engineer

    Security & Compliance IT Specialist / Engineer

    aecc - digital innovation hubNagpur, IN
    Support the organisation’s security posture through monitoring, incident response coordination, and compliance activities. Work closely with IT operations, engineering, and leadership to ensure syst...Show moreLast updated: 12 days ago
    • Promoted
    Voc Analyst - (Vulnerability Assessment & Attack Surface Management)

    Voc Analyst - (Vulnerability Assessment & Attack Surface Management)

    NMS ConsultantRepublic Of India, IN
    Vulnerability Intelligence (VI).Monitor newly disclosed vulnerabilities (CVEs) and assess criticality and exploitability. Publish timely and contextualized vulnerability assessments for software wit...Show moreLast updated: 1 day ago
    • Promoted
    Senior Security Consultant (Cloud Security)

    Senior Security Consultant (Cloud Security)

    Claranet Indianagpur, maharashtra, in
    Founded at the beginning of the dot.CEO Charles Nasser had a light bulb moment to develop a truly customer-focused IT business. Since then, Claranet has grown from an Internet Service Provider (ISP)...Show moreLast updated: 1 day ago
    • Promoted
    Remote Sr. Network Security Engineer

    Remote Sr. Network Security Engineer

    Nextbridge IT SolutionsNagpur, IN
    Remote
    We are seeking an experienced subject matter expertise.This critical role is centered on high-severity incident management, complex security troubleshooting, and architectural improvements to our n...Show moreLast updated: 1 day ago
    • Promoted
    • New!
    Cyber Security Specialist

    Cyber Security Specialist

    Maven Workforce Inc.Nagpur, IN
    We are seeking an experienced Cyber Security Specialist to strengthen our security posture and support our journey toward ISO 27001 and SOC 2 compliance. You will play a key role in designing, imple...Show moreLast updated: 9 hours ago
    • Promoted
    Senior Consultant

    Senior Consultant

    Proglitenagpur, maharashtra, in
    We are seeking a motivated and skilled.Network / Cloud / Security Engineer.AWS, Google Cloud Platform (GCP), Cisco Meraki, and Palo Alto firewalls. The ideal candidate will be responsible for design...Show moreLast updated: 22 days ago
    • Promoted
    Oracle Cloud Security and Risk Management (RMC) Consultant

    Oracle Cloud Security and Risk Management (RMC) Consultant

    AtomNagpur, IN
    Job Title : Oracle Cloud Security and Risk Management (RMC) Consultant.We are seeking an experienced Oracle Cloud Security and Risk Management (RMC) Consultant to join our team.The ideal candidate w...Show moreLast updated: 30+ days ago
    • Promoted
    • New!
    Senior Analyst - Cloud Security [T500-21293]

    Senior Analyst - Cloud Security [T500-21293]

    MUFGNagpur, IN
    Japan’s premier bank, with a global network spanning in more than 40 markets.Outside of Japan, the bank offers an extensive scope of commercial and investment banking products and services to busin...Show moreLast updated: 9 hours ago
    • Promoted
    Oracle Cloud Infrastructure (OCI) Observability and Management

    Oracle Cloud Infrastructure (OCI) Observability and Management

    ValueLabsnagpur, maharashtra, in
    Oracle Cloud Infrastructure (OCI) Observability and Management : .Implementation of observability solutions using OCI's native tools and Infrastructure as Code (IaC). Understanding and configuration k...Show moreLast updated: 1 day ago
    • Promoted
    Fortinet with Azure Migration

    Fortinet with Azure Migration

    Sonata SoftwareNagpur, IN
    Azure Network Security Engineer.The ideal candidate will have strong experience in designing, implementing, and migrating on-premise networks into. Design and implement secure and scalable.DNS serve...Show moreLast updated: 23 days ago
    • Promoted
    Palo Alto firewalls

    Palo Alto firewalls

    People Prime WorldwideNagpur, IN
    Primary Skill-Palo Alto, Prisma, Panorama.Secondary Skill-Strata Cloud, Global Protect, SDWAN.Experience in Palo Alto firewalls, Panorama / Strata cloud, Prisma. Expertise / Hands on experience in build...Show moreLast updated: 1 day ago
    • Promoted
    Sr Threat Detection Engineer

    Sr Threat Detection Engineer

    Insight GlobalNagpur, IN
    Exact compensation may vary based on several factors, including skills, experience, and education.We are seeking a highly experienced Senior Detection Engineer to lead the development and optimizat...Show moreLast updated: 14 days ago
    • Promoted
    Senior Software Engineer- Windows Sensor (XDR)

    Senior Software Engineer- Windows Sensor (XDR)

    Cyber Periscopenagpur, maharashtra, in
    Software Engineer- Windows Sensor (XDR Agent Development).Cyber Periscope is building a world-class Extended Detection & Response (XDR) platform to redefine cybersecurity for enterprises, critical ...Show moreLast updated: 22 days ago
    • Promoted
    Sr. Lead - Cloud Security

    Sr. Lead - Cloud Security

    Sycamore Informatics Inc.Nagpur, IN
    Cloud security framework; Strong scripting skills with PowerShell and.Solid understanding of version control tools, particularly Git. Experience with cloud platforms, including AWS, Azure and GCP.Pr...Show moreLast updated: 30+ days ago
    • Promoted
    Microsoft Security-SME

    Microsoft Security-SME

    TechnofocusNagpur, IN
    We are seeking a Subject Matter Expert (SME) specializing in Microsoft Security technologies to support our content development teams in creating high-quality technical training material.This inclu...Show moreLast updated: 1 day ago
    • Promoted
    Cloud Solution Architect

    Cloud Solution Architect

    Vista Applied Solutions Group IncNagpur, IN
    Title : Cloud Solution Architect.Services Description : To provide a remediation engagement to remediate Buyer’s Azure environment and security workflow within the guidance of Buyer’s CSS.Provide str...Show moreLast updated: 1 day ago
    • Promoted
    • New!
    Security Operations Center Architect

    Security Operations Center Architect

    Exela TechnologiesNagpur, IN
    Lead and mentor the incident response (IR) team, fostering a culture of continuous improvement and collaboration.Develop, implement, and maintain the organization’s incident response strategy, proc...Show moreLast updated: 9 hours ago