LOG IN
SIGN UP
Canary Wharfian - Online Investment Banking & Finance Community.
Sign In
or continue with e-mail and password
Forgot password?
Don't have an account?
Create an account
or continue with e-mail and password
By signing up, you agree to our Terms & Conditions and Privacy Policy.

FS - RISK CONSULTING - TPRM - Senior - Vulnerability And Platform Security

ExperiencedNo visa sponsorship
Ernst & Young logo

at Ernst & Young

Big Four

Posted 5 days ago

No clicks

**EY: Senior FS - RISK CONSULTING - TPRM - Vulnerability & Platform Security** - Senior role in EY's Risk Advisory team, focusing on global clients' vulnerability management, platform security, and security operations governance. - Key responsibilities: execute vulnerability management lifecycle, patch governance, platform security oversight, prioritize vulnerabilities, and strengthen remediation processes (Glasswing-aligned approach). - Required skills: strong vulnerability management experience, knowledge of tools like Qualys, Nessus, and Rapid7, patch management familiarity, and risk-based prioritization understanding. - Ideal candidate: BE/BTech/MCA graduate with 4-8 years of relevant experience, certified (CISSP, CISA), proficient in infrastructure security, cloud environments, and tools like Excel, Power BI. - Preferred skills: automation scripting (Python, PowerShell), large-scale enterprise experience, and consulting background.

Compensation
Not specified

Currency: Not specified

City
Not specified
Country
India

Full Job Description

At EY, were all in to shape your future with confidence. 

Well help you succeed in a globally connected powerhouse of diverse teams and take your career wherever you want it to go. 

Join EY and help to build a better working world. 

 

Digital Risk- Vulnerability & Platform Security Senior

 

Job purpose:

 

Senior in the Risk Advisory team to work on Vulnerability Management, Platform Security, and Security Operations governance engagements for global clients.

 

You will be responsible for executing vulnerability management lifecycle activities, patching governance, and platform-level security oversight in alignment with EY methodologies. You will help drive consistent visibility into vulnerability posture and remediation tracking across environments.

 

You will work closely with infrastructure, cloud, and security teams to strengthen remediation processes and leverage attack-driven insights (Glasswing-aligned approach) to prioritize vulnerabilities based on real-world exploitability.

 

You will contribute to scaling security hygiene practices and strengthening governance frameworks across environments.

 

 

Your client responsibilities:

 

  • Execute vulnerability management lifecycle including identification, assessment, prioritization, and remediation tracking
  • Support and oversee automated patching and remediation processes
  • Incorporate attack-driven prioritization and exposure validation (Glasswing-aligned approach)
  • Help prioritize vulnerabilities based on exploitability and potential business impact
  • Develop and review dashboards and reports for vulnerability posture
  • Engage with infrastructure and platform teams for remediation tracking and closure
  • Conduct platform security assessments across OS, network, and cloud environments
  • Support governance and compliance alignment for vulnerability and patch management programs
  • Assist in optimizing vulnerability management and patching processes
  • Contribute to proposal development and identify new opportunities in platform security
  • Provide regular updates and reporting to stakeholders.

 

 

Your people responsibilities:

 

  • Collaborate effectively across teams to deliver engagements on time and with quality
  • Mentor junior team members on vulnerability management tools and processes
  • Contribute to internal initiatives and process improvements
  • Participate in knowledge sharing and capability building sessions 

 

 

Mandatory skills: 

 

  • Strong understanding of vulnerability management lifecycle and governance
  • Experience with vulnerability scanning tools (Qualys, Nessus, Rapid7, etc.)
  • Knowledge of patch management processes and automation
  • Understanding of risk-based prioritization and vulnerability exposure
  • Familiarity with attack-driven validation concepts (Glasswing-aligned approach)
  • Strong knowledge of infrastructure security (Windows, Linux, network environments)
  • Understanding of CVSS scoring and risk classification
  • Experience in reporting, dashboards, and metrics (Excel, Power BI or similar)
  • Knowledge of cloud and hybrid environments
  • Certifications such as CISSP, CISA, or equivalent preferred
  • BE/BTech/MCA with 48 years of relevant experience 

 

 

Preferred skills: 

 

  • Exposure to automation scripting (Python, PowerShell)
  • Experience in large-scale enterprise environments
  • Client-facing and consulting experience

 

EY | Building a better working world

EY is building a better working world by creating new value for clients, people, society and the planet, while building trust in capital markets.

Enabled by data, AI and advanced technology, EY teams help clients shape the future with confidence and develop answers for the most pressing issues of today and tomorrow.

EY teams work across a full spectrum of services in assurance, consulting, tax, strategy and transactions. Fueled by sector insights, a globally connected, multi-disciplinary network and diverse ecosystem partners, EY teams can provide services in more than 150 countries and territories.

FS - RISK CONSULTING - TPRM - Senior - Vulnerability And Platform Security

Compensation

Not specified

City: Not specified

Country: India

Ernst & Young logo
Big Four

5 days ago

No clicks

at Ernst & Young

ExperiencedNo visa sponsorship

**EY: Senior FS - RISK CONSULTING - TPRM - Vulnerability & Platform Security** - Senior role in EY's Risk Advisory team, focusing on global clients' vulnerability management, platform security, and security operations governance. - Key responsibilities: execute vulnerability management lifecycle, patch governance, platform security oversight, prioritize vulnerabilities, and strengthen remediation processes (Glasswing-aligned approach). - Required skills: strong vulnerability management experience, knowledge of tools like Qualys, Nessus, and Rapid7, patch management familiarity, and risk-based prioritization understanding. - Ideal candidate: BE/BTech/MCA graduate with 4-8 years of relevant experience, certified (CISSP, CISA), proficient in infrastructure security, cloud environments, and tools like Excel, Power BI. - Preferred skills: automation scripting (Python, PowerShell), large-scale enterprise experience, and consulting background.

Full Job Description

At EY, were all in to shape your future with confidence. 

Well help you succeed in a globally connected powerhouse of diverse teams and take your career wherever you want it to go. 

Join EY and help to build a better working world. 

 

Digital Risk- Vulnerability & Platform Security Senior

 

Job purpose:

 

Senior in the Risk Advisory team to work on Vulnerability Management, Platform Security, and Security Operations governance engagements for global clients.

 

You will be responsible for executing vulnerability management lifecycle activities, patching governance, and platform-level security oversight in alignment with EY methodologies. You will help drive consistent visibility into vulnerability posture and remediation tracking across environments.

 

You will work closely with infrastructure, cloud, and security teams to strengthen remediation processes and leverage attack-driven insights (Glasswing-aligned approach) to prioritize vulnerabilities based on real-world exploitability.

 

You will contribute to scaling security hygiene practices and strengthening governance frameworks across environments.

 

 

Your client responsibilities:

 

  • Execute vulnerability management lifecycle including identification, assessment, prioritization, and remediation tracking
  • Support and oversee automated patching and remediation processes
  • Incorporate attack-driven prioritization and exposure validation (Glasswing-aligned approach)
  • Help prioritize vulnerabilities based on exploitability and potential business impact
  • Develop and review dashboards and reports for vulnerability posture
  • Engage with infrastructure and platform teams for remediation tracking and closure
  • Conduct platform security assessments across OS, network, and cloud environments
  • Support governance and compliance alignment for vulnerability and patch management programs
  • Assist in optimizing vulnerability management and patching processes
  • Contribute to proposal development and identify new opportunities in platform security
  • Provide regular updates and reporting to stakeholders.

 

 

Your people responsibilities:

 

  • Collaborate effectively across teams to deliver engagements on time and with quality
  • Mentor junior team members on vulnerability management tools and processes
  • Contribute to internal initiatives and process improvements
  • Participate in knowledge sharing and capability building sessions 

 

 

Mandatory skills: 

 

  • Strong understanding of vulnerability management lifecycle and governance
  • Experience with vulnerability scanning tools (Qualys, Nessus, Rapid7, etc.)
  • Knowledge of patch management processes and automation
  • Understanding of risk-based prioritization and vulnerability exposure
  • Familiarity with attack-driven validation concepts (Glasswing-aligned approach)
  • Strong knowledge of infrastructure security (Windows, Linux, network environments)
  • Understanding of CVSS scoring and risk classification
  • Experience in reporting, dashboards, and metrics (Excel, Power BI or similar)
  • Knowledge of cloud and hybrid environments
  • Certifications such as CISSP, CISA, or equivalent preferred
  • BE/BTech/MCA with 48 years of relevant experience 

 

 

Preferred skills: 

 

  • Exposure to automation scripting (Python, PowerShell)
  • Experience in large-scale enterprise environments
  • Client-facing and consulting experience

 

EY | Building a better working world

EY is building a better working world by creating new value for clients, people, society and the planet, while building trust in capital markets.

Enabled by data, AI and advanced technology, EY teams help clients shape the future with confidence and develop answers for the most pressing issues of today and tomorrow.

EY teams work across a full spectrum of services in assurance, consulting, tax, strategy and transactions. Fueled by sector insights, a globally connected, multi-disciplinary network and diverse ecosystem partners, EY teams can provide services in more than 150 countries and territories.