About the Role :
We are seeking an experienced Senior Specialist CyberSecurity to join our team as an Automated Security Scanning Business Analyst. This role focuses on vulnerability management, automated scanning, DevSecOps integration, and security testing across large enterprise environments. The ideal candidate should have hands-on expertise in industry-leading security tools, cloud vulnerability assessments, and strong communication skills to articulate risks to both technical and business Responsibilities :
- Conduct security testing, vulnerability scanning, and exploitation analysis using industry-standard tools.
- Perform cloud vulnerability assessments across platforms like AWS, Azure, GCP, AliCloud.
- Manage agent-based scanning and deployment in large-scale environments.
- Identify, evaluate, and track emerging threats, malware, and vulnerabilities.
- Translate vulnerability assessment results into actionable insights for technical and business
stakeholders.
Ensure compliance with industry frameworks and best practices such as CIS Controls, OWASP, NIST 800 Series, and Threat Modelling.Collaborate with development and operations teams to integrate DevSecOps automation into CI / CD pipelines.Provide subject matter expertise in application security architecture, secure SDLC, and remediation :Bachelors / Masters degree in Computer Science, Information Security, or related field (or equivalent practical experience).711 years of experience in CyberSecurity, Application Security, or Vulnerability Management.Strong background in operating systems, network protocols, and application development.In-depth knowledge of malware, threat intelligence, and vulnerability exploitation Technical Skills Tools & Vulnerability Management :Tenable, Nessus, Qualys, Cloud-native scanning toolsIndusFace AppTrana-WAAP, IndusFace WASMicrofocus Fortify (SCA, SAST, DAST)AcunetixBlack Duck / Sonatype IQCheckmarx / Synopsys / VeracodeBurp & Automation :Jenkins, Ansible, Terraform, GitLabDevSecOps / AppSec Automation & Maturity ProgramsSecure SDLC & CI / CD & Standards :CIS Critical Security ControlsOWASP Top 10NIST 800 SeriesThreat Modelling & Application Security Skills :Strong analytical and problem-solving abilities.Ability to articulate complex security risks to both technical and non-technical stakeholders.Good leadership skills to mentor juniors and influence cross-functional teams.(ref : hirist.tech)