
Threat Governance - Engineer I
- Bangalore, Karnataka
- Permanent
- Full-time
- Collaborate with FICO Cyber Security Team, Business and IT partners, and clients.
- Act as an internal subject matter expert with respect to Vulnerability and Compliance scanning and reporting. Implement new and iterate on existing technology to help identify and mitigate security issues.
- Validate and triage identified vulnerabilities.
- Contribute to team strategy in managing threats and vulnerabilities.
- Develop, evangelize, and iterate on threat & vulnerability management practices.
- Conducting required tasks for the vulnerability scanning program and publishing reported vulnerabilities to impacted teams for remediation.
- Triage and risk rank vulnerabilities according to severity and exposure. Work with Product and IT teams to risk rank and patch vulnerabilities related to the technology stack. Develop remediation plans for vulnerabilities.
- Initiate improvement activity to reduce risk, ensure compliance, lower cost, and improve quality within IT processes.
- Conduct/support periodic risk assessments and develop appropriate mitigation plans in support of deliverables.
- Continuous review of configuration management and vulnerability management posture inside the company and knowledge of all external developments that could bring new risks, including vendor patches, zero-day exploits, end-of-life systems or deprecated services.
- Strong thought process to enhance the current capabilities of Cloud asset management , Cloud vulnerability management & cloud patch management
- Bachelor’s Degree and 3+ years of experience in a related field.
- knowledge of the current threat landscape is a must have.
- Basic knowledge of malware operation, indicators or threats is required
- Demonstrates subject-matter expert level understanding in multiple IT, Security and Software disciplines.
- Ability to understand AWS cloud infrastructure and Cloud security
- Ability to understand the cause and effect of application vulnerabilities with Operating System Vulnerabilities.
- Must be able to multi-task and keep track of large amounts of information across disparate systems.
- Ability to keep making progress and define future strategy/policy with regards to Vulnerability Management.
- Adherent to ‘continuous monitoring’ and ‘continuous improvement’ thought process.
- Demonstrated technical security expertise in a variety of cloud platforms (AWS is preferred).
- Ability to effectively translate and present solutions in business or management terms.
- knowledge on any scripting language is nice to have.
- Moderate documentation and analytical skills; documenting processes, policies and standards.
- Moderate ability to provide end to end support to enterprise counterparts, identifying root cause of complex enterprise initiatives.
- An inclusive culture strongly reflecting our core values: Act Like an Owner, Delight Our Customers and Earn the Respect of Others.
- The opportunity to make an impact and develop professionally by leveraging your unique strengths and participating in valuable learning experiences.
- Highly competitive compensation, benefits and rewards programs that encourage you to bring your best every day and be recognized for doing so.
- An engaging, people-first work environment offering work/life balance, employee resource groups, and social events to promote interaction and camaraderie.
- Credit Scoring — FICO® Scores are used by 90 of the top 100 US lenders.
- Fraud Detection and Security — 4 billion payment cards globally are protected by FICO fraud systems.
- Lending — 3/4 of US mortgages are approved using the FICO Score.