Senior Vulnerability Analyst
Bangalore, India - Bangalore, India
ECI
Explore ECI's robust solutions for IT infrastructure, app development, and cloud management, ensuring efficiency and scalabilityECI is the leading global provider of managed services, cybersecurity, and business transformation for mid-market financial services organizations across the globe. From its unmatched range of services, ECI provides stability, security and improved business performance, freeing clients from technology concerns and enabling them to focus on running their businesses. More than 1,000 customers worldwide with over $3 trillion of assets under management put their trust in ECI.
At ECI, we believe success is driven by passion and purpose. Our passion for technology is only surpassed by our commitment to empowering our employees around the world.
The Opportunity:
ECI has an exciting opportunity for Sr. Vulnerability Analyst, who will be responsible for ensuring a high level of security and protection for our client’s environments. They will be working on a wide range of technologies. The successful candidate should be a self-starter, must be comfortable working in a very fast paced, busy environment in the rapidly growing IT services industry.
This is an onsite role.
What you will do:
- Review reports of internal and external vulnerability scans and come up with a well thought out action plan on how to mitigate said vulnerabilities
- Drive vulnerability remediation using ECI tools where possible (i.e. LANDesk) or through other approved methods.
- Calculate risk of latest vulnerabilities and make suggestions on where risk can be accepted, when weighed against potential cost
- Keep up-to-date with latest 0-day exploits and make recommendations on how to mitigate risks associated with these exploits
- Orchestrate and coordinate patching activities, including device migrations in VMware and Exchange, backup and SQL verification, and other activities relate to preparing an environment.
- Serve as an escalation point for the NOC L1 Engineers
- Proactively look for opportunities to streamline the processes and implement process improvements to help the team members effectively execute their tasks
- Lead troubleshooting and root cause determination efforts and proactively identify opportunities to fix issues
- Create reports on capacity and compliance for patching
- Document client’s storage environments
- Work on P1/2 incidents as required
- Develop internal SOPs and standards for storage operations
- Create pre-patching and post-patching reports
- To continuously improve on their knowledge around information security as it relates to their job and identifying and preventing phishing attempts
Who you are:
- Candidate should have 6 years of total experience in technology
- Minimum 2 years patching Windows, VMware and Linux operating systems
- Experience with vulnerability remediation and security hardening
- Windows server 2008/2012/2012 R2/2016/2019 administrator
- Working Experience on an automated patching platform such as Ivanti LANDesk, SCCM, Altiris, Satellite server etc.
- Working Experience with vulnerability scanners such as Rapid7, Qualys, Crowdstrike, Nessus, etc..
- Experience in patching Windows clustered environments, Microsoft Exchange environments, and SQL Server environments
- Familiarity with VMware and ESX server infrastructure
- Troubleshooting patching failures, boot issues, disk space issues, etc.
- Experience and in depth understanding of Microsoft Active Directory
- Experience working with and patching Linux Operating Systems
- Experience working, patching and upgrading, Citrix and ADC’s.
- Knowledge on storage technologies and server hardware is desirable
- Experience with ITSM platforms. ServiceNow is preferred
- Ability to document existing and new environments
- Evaluate and improve on operational process, procedure manuals, and documentation
Bonus points if you have:
- Experience with pathing technologies and methodologies
- Passionate about IT security and must possess an in depth understanding of protocols such as TCP/IP, SSL, TLS, etc.
ECI’s culture is all about connection – connection with our clients, our technology and most importantly with each other. In addition to working with an amazing team around the world, ECI also offers a competitive compensation package and so much more! If you believe you would be a great fit and are ready for your best job ever, we would like to hear from you!
Love Your Job, Share Your Technology Passion, Create Your Future Here!
#LI-Onsite
* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰
Tags: Active Directory Citrix Compliance CrowdStrike Exploits Linux Nessus Qualys SQL SQL Server TCP/IP TLS VMware Vulnerabilities Vulnerability scans Windows Zero-day
Perks/benefits: Competitive pay
More jobs like this
Explore more career opportunities
Find even more open roles below ordered by popularity of job title or skills/products/technologies used.