Skip to main content
Posted 16 June, 2026

Senior Vulnerability Management Engineer

Omnissa
Bengaluru, KA, IN Full Time
Reference: 5362367a426f6d5a

Job Description

Location: Bangalore, India (Hybrid — 3 days per week in office)\nDepartment: Security Engineering – Vulnerability Management\nExperience Required: 12+ years in Security / Vulnerability Management\nRole Type: Full-Time\nAbout the Role\nOmnissa is seeking a Senior Vulnerability Management Engineer (P5) to drive our global exposure management strategy. This expert-level role defines how Omnissa discovers, prioritizes, and remediates vulnerabilities across cloud, container, and traditional infrastructure environments.\nAs a Sr. Vulnerability Management Engineer, you will design enterprise-wide prioritization frameworks, define SLAs and accountability models, and partner directly with senior engineering and security leaders.

You will unify Cloud-Native security (Wiz), traditional infrastructure scanning (Tenable), and remediation orchestration (Seemplicity) into a cohesive, scalable vulnerability management program.\nThis role is ideal for someone who wants to influence technical direction, mentor teams, own risk-reduction outcomes, and operate at the intersection of cloud, infrastructure, and engineering workflows.\nKey Responsibilities\nHybrid Exposure Management\nOwn and evolve the vulnerability discovery and exposure model across Omnissa’s hybrid environment.\nUse Wiz for cloud, container, Kubernetes, and serverless risk identification.\nUse Tenable (io/sc) for deep infrastructure and endpoint scanning.\nMaintain unified risk scoring, deduplication logic, and visibility across all data sources.\nRemediation Operations (RemOps)\nUse Seemplicity as the centralized platform for routing, deduplication, normalization, and remediation workflows.\nEnsure engineering teams only receive prioritized, actionable findings.\nDevelop and maintain enterprise-level remediation SLAs, exception processes, and escalation paths.\nDeveloper Workflow & Automation\nIntegrate vulnerability checks into GitHub pipelines (Actions, Security Tab).\nManage automated Jira ticket creation, assignment, and status synchronization.\nBuild automation using Python or PowerShell to exchange data across APIs (Wiz, Tenable, Seemplicity, GitHub, Jira).\nCross-Functional Collaboration\nAct as the primary technical Vulnerability Management partner for India-based engineering teams.\nProvide clear remediation guidance for cloud misconfigurations, Kubernetes and container best practices, and Windows/Linux hardening.\nDrive accountability and influence remediation strategy across multiple engineering groups.\nReporting, Metrics, and Leadership Visibility\nCreate dashboards to measure MTTR, SLA compliance, and exposure trends across business units.\nPresent risk posture and remediation progress to senior leadership.\nLead initiatives that measurably reduce enterprise-wide risk.\nRequired Skills & Qualifications\nTechnical Expertise\nAdvanced experience with:\nTenable (Nessus, Tenable.io, Tenable.sc)\nWiz for cloud and container exposure management\nSeemplicity or similar remediation orchestration platforms\nDeep understanding of:\nAWS and Azure cloud security fundamentals\nKubernetes architecture and container hardening\nWindows and Linux server security baselines\nDependency management in software development\nStrong automation capabilities using Python or PowerShell .\nVulnerability Management Expertise\nStrong understanding of exploitability, risk scoring, compensating controls, and threat intelligence.\nExperience designing enterprise-scale exposure and prioritization frameworks.\nAbility to define and own remediation SLAs and exception workflows.\nDemonstrated impact driving measurable vulnerability reduction across large engineering organizations.\nLeadership & Collaboration\nAbility to influence across teams and guide senior engineering partners.\nComfortable presenting to leadership and driving decisions that impact multiple business units.\nWillingness to mentor junior analysts and raise the maturity of the overall program.\nPreferred Qualifications\nCertifications such as CISSP, CISM, GSEC, GMON, GRID, or cloud security specializations.\nExperience with GitHub-based secure development workflows.\nTrack record building vulnerability management programs at scale.\nExposure to attack surface management tools.\nWhy Join Omnissa\nHelp build a modern, cloud-first vulnerability management program.\nMeaningfully influence enterprise-wide security posture.\nWork with global teams and modern tooling.\nHybrid culture focused on collaboration, quality outcomes, and innovation.\n\nGithub Advanced Security would be helpful - not to own the platform but to be able to spot failures and understand when to accept FP, etc

Sign up for Job Alerts