Infosec Engineer

Spoke - Hyderabad

Gap Inc.

From company news to career opportunities, learn more about Gap Inc. and its portfolio of global brands including Old Navy, Gap, Banana Republic, and Athleta.

View all jobs at Gap Inc.

Apply now Apply later

About the Role

In this role you will be part of the Defensive Engineering team within Enterprise Security. Defensive Engineering comprises of Endpoint Protection, Vulnerability Management & Attack Surface Management is responsible to upkeep the security state of all the assets within the organization. You will build relationships and collaborate with senior members of technical and product teams to understand the technical & business context around applications and processes and influence decisions around improving the security state of the estate

What You'll Do

  • Coordinate internally within Defensive Engineering & develop a mitigation plan for TTP’s, IOC’s & Threat Advisories
  • Review Vulnerability information from multiple data sources to determine risk rating to organization assets
  • Analyze & Report Vulnerabilities to multiple stakeholders for remediation purposes
  • Partner with Product, Information Security & Patching teams in investigation & Response of Critical Incidents
  • Supports Compliance & Risk Management activities by flagging risks associated with Obsolete OS/Software
  • Ensure Rapid Response processes are rehearsed & kept up to date to handle any Zero Day Vulnerabilities or real time attacks
  • Maintain strong partnerships with people to drive end to end Vulnerability Management program
  • Monitor Organization Network for any potential Zero Day Vulnerabilities/Exploits
  • Provide support in resolving Vulnerability Scanning & Reporting issues
  • Perform continuous periodic scans across the estate to identify known & unknown vulnerabilities
  • Publish monthly Vulnerability Management bulletin to InfoSec Leadership

Who You Are

  • Bachelor s degree in related filed, to include computer science, or equivalent combination of education and experience
  • 3+ years of directly related experience as a Vulnerability Management SME or similar role
  • Technical Knowledge of other security technologies like EDR, SIEM, OS Hardening
  • Proven understanding of Common Vulnerability Frameworks (CVE, CVSS, OWASP Top 10)
  • Preferred Scripting or Programming experience
Apply now Apply later
  • Share this job via
  • 𝕏
  • or

* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰

Job stats:  0  0  0

Tags: Compliance Computer Science CVSS EDR Exploits OWASP Risk management Scripting SIEM Vulnerabilities Vulnerability management Zero-day

Region: Asia/Pacific
Country: India

More jobs like this

Explore more career opportunities

Find even more open roles below ordered by popularity of job title or skills/products/technologies used.