GrepJob
Commvault

Lead Threat & Vulnerability Management Engineer

Commvault
Apply
about 5 hours ago
Bengaluru, India
Mid Level / Senior / Staff+
H1B Sponsor

Responsibilities

  • Act as the technical and operational lead for the Vulnerability Management program.
  • Mentor analysts through complex vulnerability analysis and remediation workflows.
  • Develop relationships with Engineering, IT, and application development teams.
  • Provide expert-level guidance on interpreting CVEs and assessing organizational impact.
  • Monitor KPI metrics and report on performance to security management.
  • Automate repetitive tasks and data flows through scripting.
  • Identify tooling, process, and training gaps for continuous improvement.
  • Stay updated on industry trends and recommend improvements.

Requirements

  • 7+ years of Vulnerability Management or security operations experience.
  • Ability to respond to critical zero-day exploits and incidents 24x7.
  • Demonstrated project management skills for managing multiple projects.
  • Hands-on experience with vulnerability management tools.
  • In-depth understanding of CVSS, CISA KEV, and vulnerability prioritization methodologies.
  • Experience across hybrid cloud environments and with containerization.
  • Proven ability to mentor others and influence teams.
  • Experience supporting regulatory compliance initiatives.
  • Strong scripting skills in Python, PowerShell, or equivalent.
  • Exceptional communication skills for non-security stakeholders.
  • Demonstrated self-direction and initiative in building solutions.
  • Up-to-date knowledge of current security threats.
  • Relevant certifications such as CISSP, GCIH, OSCP, GPEN, CCSP are a plus.

Benefits

  • Employee stock purchase plan (ESPP).
  • Continuous professional development and career pathing.
  • Annual health check-ups and tuition reimbursement.
  • Inclusive company culture with opportunities to join Community Guilds.
  • Personal accident cover and term life cover.

Tech Stack

AWSAzureBashDockerGoogle Cloud PlatformKubernetesPowerShellPython

Categories

Security