Vulnerability Management Specialist - Qualys ( Cyber security -Tool)
As an vulnerability management specialist, you will support the SOC team in their daily activity and administrating Operational Security Processes. You will be asked to identify improvements in current processes and formalize it through clear documentation.
Among the ongoing administration of Processes, your main responsibilities will be to manage the vulnerability scan process. The process is based on Qualys Tools.
• Perform global infra vulnerability scanning along with change management process
• Help system administrators to deploy and troubleshoot Qualys agent on different operating systems (Windows, Linux, AIX, etc)
• Analyze scan results and deploy Qualys appliances(virtual and physical) to enhance scan coverage
• Responsible for understanding, reviewing, and interpreting assessment and scanning results, reducing false positive findings, and acting as a trusted security advisor to the client.
• Identify and prioritize all vulnerabilities in client environments and provide timely vulnerability assessment reports to key stakeholders
• Develop and report enterprise-level metrics for vulnerabilities and remediation progress
• User requests administration: manage users request on the platforms. Add Hosts, Assets Groups, create scan, report or Dashboard (using the standard and process delivered by SOC SG). Including Emergency stop of scan.
• Manage Vulnerability Scan for GTS: Manage the Change management process to request a scan on GTS infrastructure. Manage the change creation, the achievement of the change process following by the job creation on Qualys platform.
• Present Vulnerability Assessment Scanning and guidance, False Positive Validation, Compliance Scanning and, scan profile and policy creation.
• Analysis of vulnerability: based on group standards, manage the alerting on critical vulnerability found by a vulnerability scan and follow the mitigation with remediation teams
• Ability to identify false positives
• Knowledge of vulnerability management frameworks and concepts such as CVE, and CVSS scoring systems and attacking vectors
• Dashboard: generate monthly and quarterly reports and dashboards.
• Understanding of Qualys tags
• Manage Internal Qualys infrastructure: survey the status of Qualys appliances and manage the RMA process and deployment of new appliances.
• Implement automated, proactive security measures
• Hands on Qualys modules Vulnerability Management, Security Configuration Assessment(SCA)/Policy Compliance, Container Security, Cloud Agent, Container Security, Cloud security
• Knowledge and experience on Terraform, python and any scripting is required
Required
Profile required
• End to end understanding of Vulnerability management (scanning, remediation follow-up, false positive verification)
• Conduct Network and System Vulnerability assessments and documentation of corrective/remediation actions
• Drive the end-to-end vulnerability lifecycle from discovery to closure
• Identify internal and external threats that could result in unauthorized disclosure, misuse, alteration, or destruction of customer's information assets
• Identify and prioritize all vulnerabilities in client environments and provide timely vulnerability assessment reports to key stakeholders
Ensure timely follow up with patch management and vulnerability remediation in coordination with Countermeasures personnel
He/She has good knowledge in the Qualys Vulnerability assessment tool & Management .
He/she has to complete certification in Qualys Guard:
Vulnerability Management Specialist - Qualys ( Cyber security -Tool)
As an vulnerability management specialist, you will support the SOC team in their daily activity and administrating Operational Security Processes. You will be asked to identify improvements in current processes and formalize it through clear documentation.
Among the ongoing administration of Processes, your main responsibilities will be to manage the vulnerability scan process. The process is based on Qualys Tools.
• Perform global infra vulnerability scanning along with change management process
• Help system administrators to deploy and troubleshoot Qualys agent on different operating systems (Windows, Linux, AIX, etc)
• Analyze scan results and deploy Qualys appliances(virtual and physical) to enhance scan coverage
• Responsible for understanding, reviewing, and interpreting assessment and scanning results, reducing false positive findings, and acting as a trusted security advisor to the client.
• Identify and prioritize all vulnerabilities in client environments and provide timely vulnerability assessment reports to key stakeholders
• Develop and report enterprise-level metrics for vulnerabilities and remediation progress
• User requests administration: manage users request on the platforms. Add Hosts, Assets Groups, create scan, report or Dashboard (using the standard and process delivered by SOC SG). Including Emergency stop of scan.
• Manage Vulnerability Scan for GTS: Manage the Change management process to request a scan on GTS infrastructure. Manage the change creation, the achievement of the change process following by the job creation on Qualys platform.
• Present Vulnerability Assessment Scanning and guidance, False Positive Validation, Compliance Scanning and, scan profile and policy creation.
• Analysis of vulnerability: based on group standards, manage the alerting on critical vulnerability found by a vulnerability scan and follow the mitigation with remediation teams
• Ability to identify false positives
• Knowledge of vulnerability management frameworks and concepts such as CVE, and CVSS scoring systems and attacking vectors
• Dashboard: generate monthly and quarterly reports and dashboards.
• Understanding of Qualys tags
• Manage Internal Qualys infrastructure: survey the status of Qualys appliances and manage the RMA process and deployment of new appliances.
• Implement automated, proactive security measures
• Hands on Qualys modules Vulnerability Management, Security Configuration Assessment(SCA)/Policy Compliance, Container Security, Cloud Agent, Container Security, Cloud security
• Knowledge and experience on Terraform, python and any scripting is required
Required
Profile required
• End to end understanding of Vulnerability management (scanning, remediation follow-up, false positive verification)
• Conduct Network and System Vulnerability assessments and documentation of corrective/remediation actions
• Drive the end-to-end vulnerability lifecycle from discovery to closure
• Identify internal and external threats that could result in unauthorized disclosure, misuse, alteration, or destruction of customer's information assets
• Identify and prioritize all vulnerabilities in client environments and provide timely vulnerability assessment reports to key stakeholders
Ensure timely follow up with patch management and vulnerability remediation in coordination with Countermeasures personnel
He/She has good knowledge in the Qualys Vulnerability assessment tool & Management .
He/she has to complete certification in Qualys Guard:
He/She has good knowledge in the Qualys Vulnerability assessment tool & Management .
He/she has to complete certification in Qualys Guard:
At Zensar, we’re “experience-led everything” We are committed to conceptualizing, designing, engineering, marketing, and managing digital solutions and experiences for over 130 leading enterprises. We are a company driven by a bold purpose: Together, we shape experiences for better futures Whether for our clients, our people, or the world around us, this belief powers everything we do. At the heart of our culture is ONE with Client - a set of four core values that reflect who we are and how we work: One Zensar, Nurturing, Empowering, and Client Focus
Part of the $4.8 billion RPG Group, we’re a community of 10,000+ innovators across 30+ global locations, including Milpitas, Seattle, Princeton, Cape Town, London, Zurich, Singapore, and Mexico City. Explore Life at Zensar and join us to Grow. Own. Achieve. Learn. to be the best version of yourself.
We believe the best work happens when individuality is celebrated, growth is encouraged, and well-being is prioritized. We are an equal employment opportunity (EEO) and affirmative action employer, committed to creating an inclusive workplace. All qualified applicants will be considered without regard to race, creed, color, ancestry, religion, sex, national origin, citizenship, age, sexual orientation, gender identity, disability, marital status, family medical leave status, or protected veteran status.

Zensar stands out as a premier technology consulting and services company, embracing an ‘experience-led everything’ philosophy. We are creators, thinkers, and problem solvers passionate about designing digital experiences that are engineered into scale-ready products, services, and solutions to deliver superior engagement to high-growth companies. This full lifecycle capability – from experience to engineering to engagement – is what makes us unique. This integrated approach also means that we harness the power of technology, creativity, and insight to deliver impact — ensuring our work focuses not just on technology but also on the people who use it.
Part of the $4.4 billion RPG Group, Zensar is headquartered in Pune, India. Our 10,000+ employees work across 30+ locations worldwide, including Seattle, Princeton, Cape Town, London, Singapore, and Mexico City. As an organization, we are diverse and multi-dimensional and unite across geographies and skill sets to deliver products and services that are value-driven, environmentally conscious, and human-centered.
To know more, visit us at www.zensar.com.