
Vulnerability Management Engineer
- Gurgaon, Haryana
- Permanent
- Full-time
- OS Patching: Perform fortnightly OS patching for Mac and Windows systems.
- Vulnerability Mitigation: Address vulnerabilities through patching or configuration changes using scripting.
- Security Enhancement: Contribute to improving the security posture of dunnhumby.
- Reporting: Deliver regular updates to security leadership on remediation efforts.
- Monitoring: Oversee the Defender portal, addressing risks and planning mitigation strategies.
- Continuous Monitoring: Develop and implement a continuous monitoring approach for patching, hardening, and audit log configurations.
- Issue Remediation: Validate and remediate identified issues using various tools and techniques.
- Root-Cause Analysis: Assist in analysing and mitigating vulnerabilities weekly with security.
- Collaboration: Work with asset owners to prioritize and remediate vulnerabilities & comms with the business.
- Advisory Role: Advise on the prioritization of patch deployment.
- Risk Classification: Classify and prioritize vulnerabilities considering internal and external threats using our saas based app and reviews.
- Process Adherence: Follow ITIL and change management processes.
- Support: Provide secondary support to the team and assist with BAU demands from the end-user tech team.
- Project support, manage and assist on windows 11 and mac technologies with the team
- Experience: 5 to 8 years of experience with Windows & Mac operating systems and applications covering.
- Minimum 5 years in Desktop System support 3rd line
- Advanced OS troubleshooting (Level 2/3)
- Minimum 5 years in Deployment of Applications and systems management life cycle
- CIS Desktop security and implementation improvements
- Bluescreen and system logs,
- Debugging
- Windows System internals tools
- Wireshark & Fiddler
- System performance counters
- Certificates, Group Policy, SCCM agent health
- Vulnerability Scanning: Proficiency with tools like Qualys/Defender ATP across on-prem, Azure, and GCP.
- Patching Leadership: Lead weekly patching efforts for Mac, Windows, and core infrastructure.
- Automation Skills: Use scripting/automation to mitigate vulnerabilities. (Python, Powershell other)
- Security Tools: in depth administration of SCCM, ATP Defender Portal, Kandji, PatchMyPC, Intune, and manual scripting techniques.
- Continuous Learning: Adapt to evolving security objectives and capabilities.
- Business Acumen: Understanding of business and commercial aspects related to Mac, Windows 10/11, Windows Server 2019 in line with monthly reporting to stake holders.
- Technical Skills: Proficiency in Qualys, Defender ATP, SCCM, GCP, Azure, PowerShell, Intune, Batch, and automation tools.