Cyber Security Vulnerability Assessment/ Management Specialist
Sonata Software · Pune District, Maharashtra
Sonata Software · Pune District, Maharashtra
**Vulnerability Assessment/ Management Specialist** **ABOUT THE ROLE** The Vulnerability Assessment Specialist will manage the end-to-end vulnerability lifecycle across the portfolio companies, from scanning and risk prioritization through to verified remediation. You will also plan and execute annual penetration tests, web application assessments, and cloud security reviews. **KEY RESPONSIBILITIES** Design and manage vulnerability scanning program across all portfolio companies Operate and tune scanning platforms (Tenable, Qualys, Rapid7) for continuous coverage Prioritize findings using CVSS scoring and business risk context Track remediation SLAs and escalate overdue critical vulnerabilities Conduct annual internal and external penetration tests per company rotation Perform web application security assessments (OWASP Top 10) Deliver cloud configuration reviews and CSPM gap analysis Produce executive-level and technical vulnerability reports Build and maintain vulnerability management KPIs and dashboards **REQUIREMENTS & SKILLS** Bachelor's in Cybersecurity, CS, or equivalent experience 4+ years invulnerability management or penetration testing roles Proficiency with Tenable (Nessus), Qualys, or Rapid7 InsightVM Hands-on penetration testing experience (network, web app, cloud) Familiarity with OWASP Top 10, CVE/NVD, and CVSS scoring Knowledge of cloud security(AWS, Azure, GCP) configuration review Scripting skills (Python, Bash) for automation of scanning workflows Certifications preferred: OSCP, CEH, CompTIA PenTest+, GPEN, GWAPT Excellent report writing skills for both technical and executive audiences