Security Operations Specialist – Vulnerability Management
IND - IMS, India
Iron Mountain
No matter what your information management needs are, we’ve got you covered. Staffed with trained and vetted professionals, our Iron Mountain team is on a mission to help you protect, unlock, and extend the value of your work.At Iron Mountain we know that work, when done well, makes a positive impact for our customers, our employees, and our planet. That’s why we need smart, committed people to join us. Whether you’re looking to start your career or make a change, talk to us and see how you can elevate the power of your work at Iron Mountain.
We provide expert, sustainable solutions in records and information management, digital transformation services, data centers, asset lifecycle management, and fine art storage, handling, and logistics. We proudly partner every day with our 225,000 customers around the world to preserve their invaluable artifacts, extract more from their inventory, and protect their data privacy in innovative and socially responsible ways.
Are you curious about being part of our growth story while evolving your skills in a culture that will welcome your unique contributions? If so, let's start the conversation.
Security Operations Specialist – Vulnerability ManagementLocation: Remote (India)
Job Type: Full-Time
Department: Information Security / Security Operations
Job Summary
We are seeking a Security Operations Specialist to manage and oversee the vulnerability management lifecycle, ensuring the security of cloud, application, and endpoint environments. This role involves daily operations of Tenable, Prisma Cloud, Twistlock, AppOmni (SaaS Security Posture Management), and GitLab, focusing on identifying, prioritizing, and remediating critical, high, and medium vulnerabilities. The ideal candidate will collaborate with IT teams to drive remediation efforts and provide actionable security insights to executive leadership.
Key Responsibilities
1. Vulnerability Management & Monitoring
Manage the configuration, operation, and optimization of vulnerability management tools (Tenable, Prisma Cloud, Twistlock, AppOmni, GitLab).
Continuously scan, assess, and track vulnerabilities across cloud, application, and infrastructure environments.
Prioritize critical, high, and medium vulnerabilities based on business risk.
2. Remediation & Collaboration with IT
Work closely with IT and DevOps teams to remediate vulnerabilities efficiently.
Provide clear remediation steps and verify fixes after patching.
Ensure compliance with security policies and industry best practices.
3. Security Analysis & Reporting
Analyze vulnerability trends and risk exposure to proactively mitigate threats.
Develop dashboards, reports, and insights to communicate security risks to executives.
Track and report on remediation progress and security posture improvements.
4. Continuous Improvement & Process Automation
Automate security workflows for vulnerability detection, triage, and reporting.
Enhance vulnerability management processes and integrate security tools with SIEM and ITSM platforms.
Stay updated on emerging threats, zero-day vulnerabilities, and evolving security technologies.
Qualifications & Skills
Required:
3+ years of experience in vulnerability management or security operations.
Hands-on experience with Tenable, Prisma Cloud, Twistlock, AppOmni, GitLab.
Strong understanding of cloud security (AWS, Azure, GCP), container security, and application vulnerabilities.
Ability to analyze and prioritize vulnerabilities based on risk impact.
Experience working with IT teams for remediation and patch management.
Strong analytical and reporting skills to provide executive-level insights.
Preferred:
Certifications like CISSP, CEH, OSCP, or AWS Security Specialty.
Experience integrating vulnerability management tools with SIEM/ITSM platforms.
Familiarity with security frameworks (NIST, ISO 27001, CIS Controls).
* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰
Tags: Automation AWS Azure CEH CISSP Cloud Compliance DevOps GCP GitLab ISO 27001 Monitoring NIST OSCP Privacy SaaS Security analysis SIEM Twistlock Vulnerabilities Vulnerability management Zero-day
More jobs like this
Explore more career opportunities
Find even more open roles below ordered by popularity of job title or skills/products/technologies used.