Job Summary
JD:
Overall a SME of Qualys who has worked on various modules with in Qualys, Does have a thorough knowledge about Qualys architecture ( including implementation of tools in large enterprise like SCB) and how various module integrate and work. Has development mindset to work on API’s for cross product integration and understand the VM lifecycle for on prim and cloud resources.
Key Responsibilities
Job Description
- End‑to‑End Vulnerability Lifecycle Management: Own detection, assessment, prioritization and validation of vulnerabilities across enterprise assets.
- Understanding of Qualys VMDR Platform Administration & Optimization: Configure and manage VMDR modules (scanning, Cloud Agents, asset tagging) ensuring full asset coverage and data quality.
- Understanding of Asset Discovery & Risk Visibility: continuous asset discovery (on‑prem, cloud, endpoints) and maintain accurate inventory for risk exposure analysis.
- Understanding of Risk-Based Prioritization using TruRisk : Analyze vulnerabilities using exploitability, business criticality, and threat intelligence to prioritize true risk over raw CVSS scores.
- Understanding on tool Integration – API based integrations to ingest data from various source. Leverage ETM to unify risk data, correlate findings, and provide a consolidated enterprise-wide cyber risk view.
- Understanding of Threat Intelligence & Exposure Analysis: Utilize integrated threat feeds and exploit intelligence to identify actively exploitable vulnerabilities and emerging threats.
- Orchestration & Automation; Drive remediation lifecycle via ITSM integrations (ServiceNow/JIRA), automation workflows (QFlow), and patch management for faster closure
- Communication skills for cross-Functional Collaboration: Work with infrastructure, DevOps, AppSec, and SOC teams to ensure timely remediation and improve overall security posture.
Skill Requirements
Other Requirements