
Track Lead - NESSUS, Compliance Remediation
About the role
Job Summary
The Track Lead for Support & Operations is pivotal in managing operational excellence while focusing on continuous improvement, problem-solving, and client satisfaction. This role emphasizes empowering teams through effective people management, ensuring that all client SLAs are met while fostering innovation and collaboration within the team.
Summary The Vulnerability Management Specialist – Application Security is responsible for end to end management of application security vulnerabilities across the SDLC using SAST, DAST, and SCA tools, with a strong focus on risk based prioritization, remediation tracking, and posture visibility through ASPM platforms. Technical Skills Strong hands on experience with:
- SAST (e.g., App Scan, Checkmarx, GitHub Advanced Security) • DAST tools and runtime testing approaches • SCA / OSS security and dependency risk analysis Working knowledge of ASPM platforms and vulnerability aggregation. Understanding of OWASP Top 10, secure coding practices, and application threat models.
5-8 + years of experience in application security or vulnerability management roles.\\r\\n• Experience supporting enterprise scale App Sec programs with multiple applications and teams
Key Responsibilities
- Enhance Operational Systems By Leveraging Nessus And Vapt Tools To Improve Management Reporting, Streamline Information Flow, And Optimize Business Processes.
- Analyze Client Requirements Using Nessus Assessments To Ensure The Support Team Meets And Exceeds Client Expectations Consistently.
- Lead And Mentor Project Teams In Vapt Methodologies, Ensuring Transparent Communication Of Project Goals And Fostering A Collaborative Work Environment.
- Drive Innovation In Process Development By Implementing Best Practices Derived From Nessus And Vapt Insights To Promote Overall Organizational Progress.
- Develop Tailored Solutions Using Nessus And Vapt Frameworks To Address Customer Needs, Ultimately Leading To Improved Business Results And Client Satisfaction.
Interpret findings across SAST, SCA, Secrets, API and Mobile scanning (tools like GitHub Advanced Security, Traceable, etc) • Hand off findings to development teams for remediation • Provide technical remediation assistance to product development teams • Track and report remediation progress • Facilitate extension requests for remediation timelines • Collaborate across teams using JIRA for ticketing and dashboards • Familiarity with RBVM/ASPM tools like Armor Code, Seemplicity, Brinqa a plus.
Skill Requirements
- Proficient In Nessus For Vulnerability Assessments And Remediation Strategies.
- Strong Understanding Of Vapt Methodologies And Frameworks.
- Excellent Problem-Solving And Analytical Skills.
- Effective Leadership And Mentoring Abilities To Empower Team Members.
- Strong Communication Skills To Convey Project Goals And Expectations Clearly.
Interpret findings across SAST, SCA, Secrets, API and Mobile scanning (tools like GitHub Advanced Security, Traceable, etc) • Hand off findings to development teams for remediation • Provide technical remediation assistance to product development teams • Track and report remediation progress • Facilitate extension requests for remediation timelines • Collaborate across teams using JIRA for ticketing and dashboards • Familiarity with RBVM/ASPM tools like Armor Code, Seemplicity, Brinqa a plus.
Other Requirements
- Optional But Valuable Certifications: Certified Ethical Hacker (Ceh), Offensive Security Certified Professional (Oscp)
Interpret findings across SAST, SCA, Secrets, API and Mobile scanning (tools like GitHub Advanced Security, Traceable, etc) • Hand off findings to development teams for remediation • Provide technical remediation assistance to product development teams • Track and report remediation progress • Facilitate extension requests for remediation timelines • Collaborate across teams using JIRA for ticketing and dashboards • Familiarity with RBVM/ASPM tools like Armor Code, Seemplicity, Brinqa a plus
Benefits and perks
•Learning Budget
Required skills
Application security
Vulnerability management
SAST
DAST
SCA
Nessus
VAPT
OWASP Top 10
About HCL Technologies
Noida
Headquarters