BCG VM
Number of Openings |
1 |
ECMS ID in sourcing stage |
527090 |
Assignment Duration |
6 months |
Total Yrs. of Experience |
8-10 Yrs |
Relevant Yrs. of experience |
8+ |
Detailed JD (Roles and Responsibilities) |
Manage VM tool (Tenable.io) and on-premises VA scanners. Perform regular health check to ensure scanner are up and running with latest plugins. |
Ensure scans scopes are updated and proper scans are performed on assets as per desired frequency. Troubleshoot and fix scanning issues like authentication failure observed in scheduled scans. | |
Perform risk assessments on vulnerabilities identified by infrastructure scans to determine real risk and prioritizing vulnerabilities. | |
Report findings to teams / individual owners of assets and follow up to get the remediation completed within defined SLA. | |
Develop hardening configuration standards (CIS) document for windows and Linux operating systems and get them implemented with help of stakeholders. Ensure compliance scans are performed to validate hardening configuration as per desired frequency. | |
Report EC2 instances and lambda functions vulnerability findings from aws inspector to individual resource owners and follow up to get the remediation completed within defined SLA. | |
You should be good at performing vulnerability assessment and articulate the findings in an easily consumable manner to the asset owners. Hence it is expected to have good reporting skills as well. | |
•Configuration and maintenance of regular and ad-hoc vulnerability scans against internal and external IT infrastructure including Cloud | |
• Assessment, reporting and remediation tracking of identified vulnerabilities. | |
• Collaboration with Tribe/ Product owners and cross-functional stakeholders related to vulnerability management. | |
Mandatory skills |
Perform vulnerability assessment and articulate the findings in an easily consumable manner to the asset owners and good reporting skills. |
Configuration and maintenance of regular and ad-hoc vulnerability scans against internal and external IT infrastructure including Cloud | |
•Assessment, reporting and remediation tracking of identified vulnerabilities. | |
•Collaboration with Tribe/ Product owners and cross-functional stakeholders related to vulnerability management. | |
Desired/ Secondary skills |
· Knowledge on scripting (e.g. PowerShell) to write automation scripts. |
· Solid understanding of the Cloud terminology, windows platform, Active Directory, and networking protocols | |
· Sound knowledge of ITIL standards. Working experience of ITSM tool such as ServiceNow. | |
Domain |
Cyber Security |
Max Vendor Rate in Per Day (Currency in relevance to work location) |
INR 12000 |
Work Location given in ECMS ID |
Hyderabad |
WFO/WFH/Hybrid WFO |
Hybrid |
BG Check (Before OR After onboarding) |
Pre onboarding |
Is there any working in shifts from standard Daylight (to avoid confusions post onboarding) YES/ NO |
General shift - 5 days a week (as required) |