Cybersecurity Manager – Vulnerability & Asset Management
EY · Kochi
Job description
About the role
EY is seeking an experienced Cybersecurity Manager to lead Vulnerability Management and Cybersecurity Asset Management services across multiple client environments. You will oversee the administration, optimization and operation of leading security platforms while collaborating with infrastructure, cloud and application teams to reduce risk and improve cyber resilience.
Key responsibilities
- Administer enterprise vulnerability and exposure management solutions such as Qualys, Tenable, Rapid7 InsightVM, Microsoft Defender, CrowdStrike Falcon, Wiz, Orca Security and OpenVAS.
- Perform internal, external and authenticated vulnerability assessments, analyse findings and provide risk‑based remediation recommendations.
- Maintain accurate asset inventories across on‑premises, cloud and hybrid environments using Qualys CSAM, and drive remediation of unmanaged or unauthorized assets.
- Manage policy compliance modules, conduct assessments against standards (CIS, NIST, ISO 27001, PCI‑DSS) and produce compliance scorecards.
- Design and operate security awareness and phishing‑simulation programs using platforms like Proofpoint, KnowBe4, Microsoft Attack Simulation, Mimecast and SANS.
- Facilitate remediation review meetings, track SLA compliance and support audit and regulatory activities.
Required profile
- B.Tech or M.Tech in Cybersecurity, Computer Science, Information Security or related field.
- 12+ years of experience in vulnerability management, asset management, security operations or cybersecurity consulting.
- Proven ability to engage stakeholders, manage multiple client environments and lead remediation initiatives.
Required skills
- Hands‑on experience with Qualys VMDR, Tenable, Rapid7 InsightVM, Microsoft Defender Vulnerability Management, CrowdStrike Falcon, Wiz, Orca Security, Greenbone/OpenVAS.
- Security awareness platforms: Proofpoint, KnowBe4, Microsoft Attack Simulation, Mimecast, SANS.
- Knowledge of CVSS, CISA KEV, risk‑based prioritisation and threat‑intelligence integration.
- Understanding of operating systems, networks, cloud platforms (AWS, Azure, GCP) and enterprise infrastructure.
- Familiarity with compliance frameworks: CIS Benchmarks, NIST CSF, ISO 27001, PCI‑DSS.
Questions fréquentes
Why are you reporting this job?
Explore further
Salaries, guides and searches in India.
Salaries by job title
Apply in 30 seconds
Enter your email to apply. An account will be created automatically.
By continuing, you accept our terms of use.
Already have an account? Login
Published 14 hours ago
Expires 1 month from now
9 views · 0 interested
Boost your chances
Upload your CV — we will match you with relevant openings.
Analyzing your CV...
EY
Kochi