Vulnerability Management & AWPT Security Analyst
HCL TechBee- Posted 2 hours ago
- Be among the first 10 applicants
Job Description
Role Summary
The Vulnerability Management Analyst will support the AWPT program through vulnerability triage, remediation validation, stakeholder coordination, and vulnerability lifecycle management. The role will ensure timely assessment, tracking, and closure of security findings generated through AI-powered penetration testing platforms.
Key Responsibilities
Vulnerability Triage & Analysis
- Review and triage findings from AI-based penetration testing tools.
- Assess exploitability, severity, technical impact, and business risk.
- Identify false positives and duplicate vulnerabilities.
- Recommend severity adjustments and risk acceptance decisions.
Remediation Validation
- Coordinate with application teams on remediation plans.
- Review code changes, logs, and supporting evidence.
- Retest vulnerabilities and validate fixes.
- Recommend closure upon successful remediation.
Automation & Reporting
- Enhance Jira-based triage workflows and automation.
- Develop dashboards and lifecycle tracking reports.
- Improve vulnerability correlation and tracking capabilities.
- Support integration with AI-powered testing platforms.
Governance & Stakeholder Management
- Manage vulnerability lifecycle tracking through Jira.
- Coordinate stakeholders and facilitate issue resolution.
- Escalate critical or overdue vulnerabilities.
- Produce governance metrics and executive reports.
Required Skills
- Vulnerability Management and Risk Assessment.
- Penetration Testing concepts and OWASP Top 10.
- Jira workflow management and reporting.
- Application Security and Secure Coding principles.
- Security analytics and dashboarding.
- Strong communication and stakeholder management skills.
Preferred Qualifications
- CEH, GWAPT, OSCP, CISSP, or equivalent certifications.
- Experience in vulnerability governance for large enterprises.
- Knowledge of AI-assisted security testing platforms
More Info
Key Skills
Penetration Testing concepts and OWASP Top 10
Vulnerability Management and Risk Assessment
Jira workflow management and reporting
Application Security and Secure Coding principles
Security analytics and dashboarding
AI-assisted security testing platforms
