Project Role : Security Delivery Lead
Project Role Description : Leads the implementation and delivery of Security Services projects, leveraging our global delivery capability (method, tools, training, assets).
Must have skills : Infrastructure Security Vulnerability Management Operations
Good to have skills : NA
Minimum
5 year(s) of experience is required
Educational Qualification : 15 years full time education
Summary:
The Vulnerability Management Manager is responsible for overseeing the end-to-end lifecycle of vulnerability identification, assessment, prioritization, remediation tracking, and reporting. This role ensures proactive reduction of security risks across the organization and drives alignment with cybersecurity policies, compliance requirements, and industry best practices. The manager will lead a team of analysts and collaborate closely with IT, Infra, Cloud, Application, and Security teams to ensure timely remediation and improved security posture.
Roles & Responsibilities:
- Lead and manage the full vulnerability management lifecycle across on-prem, cloud, network, and application environments.
- Oversee periodic scanning using enterprise tools, CrowdStrike Exposure Mgmt, Seemplicity, Qualys and Rapid 7).
- Validate and analyze scan results, remove false positives, and ensure accuracy of vulnerability intelligence.
- Ensure vulnerabilities are classified, prioritized, and tracked as per defined SLAs based on business impact and criticality.
- Establish and maintain vulnerability management policies, standards, and procedures.
- Drive remediation governance with Infra/App owners through regular review meetings, dashboards, and risk acceptance
- Provide regular metrics, executive summaries, and compliance reports for leadership and auditors.
- Support regulatory and customer audits (ISO, SOC2, PCI-DSS, local cybersecurity regulations, etc.).
- Coordinate and engage with Infra, Cloud, Application, DevOps, Network, and SOC teams for vulnerability remediation.
- Work with asset owners to ensure timely patching, configuration updates, and security hardening.
- Escalate unresolved high-risk vulnerabilities to leadership with well-defined risk statements and action plans.
- Leverage threat intel, CVE trends, exploit availability, and asset criticality for risk-based prioritization.
- Drive continuous improvement by integrating intelligence sources and automation into the VM program.
- Identify and recommend compensating controls for non-patchable vulnerabilities.
- Lead and mentor a team of vulnerability analysts/engineers.
- Define resource allocation, skill development plans, and performance metrics for the team.
- Ensure operational efficiency through process optimization and automation.
Professional & Technical Skills:
- Must To Have Skills: Proficiency in Infrastructure Security Vulnerability Management Operations.
- Strong understanding of CVSS, CWE, SCAP, NVD, MITRE ATT&CK, and risk-based vulnerability assessment.
- Strong hands-on experience with at least one enterprise VM platform: CrowdStrike Exposure Mgmt, Seemplicity, Qualys and Rapid 7).
Experience leading cross-functional remediation efforts for infrastructure and applications.
- Strong knowledge of OS hardening, patching processes, network security, cloud security (AWS/Azure/GCP).
- Good understanding of ITIL processes, change management, and configuration management.
- Experience with dashboards & reporting (PowerBI, ServiceNow VR, Splunk, Excel).
- Excellent written and verbal communication skills.
Additional Information:
- The candidate should have minimum 8+ years of total experience in n Vulnerability Management.
- This position is based at our Bengaluru office.
- A 15 years full time education is required.
- Security certifications: CEH, CISSP, CISM, GCIH, Security+, PenTest+, GPEN, GWAPT (any relevant cert is a plus).
- Knowledge of container security, CI/CD pipeline scanning, and DevSecOps principles.
- Experience automating VM workflows using APIs or scripting (Python, PowerShell).
15 years full time education
About Accenture
Accenture is a leading global professional services company that helps the world’s leading businesses, governments and other organizations build their digital core, optimize their operations, accelerate revenue growth and enhance citizen services—creating tangible value at speed and scale. We are a talent- and innovation-led company with approximately 791,000 people serving clients in more than 120 countries. Technology is at the core of change today, and we are one of the world’s leaders in helping drive that change, with strong ecosystem relationships. We combine our strength in technology and leadership in cloud, data and AI with unmatched industry experience, functional expertise and global delivery capability. Our broad range of services, solutions and assets across Strategy & Consulting, Technology, Operations, Industry X and Song, together with our culture of shared success and commitment to creating 360° value, enable us to help our clients reinvent and build trusted, lasting relationships. We measure our success by the 360° value we create for our clients, each other, our shareholders, partners and communities.
Visit us at www.accenture.com
Equal Employment Opportunity Statement
We believe that no one should be discriminated against because of their differences. All employment decisions shall be made without regard to age, race, creed, color, religion, sex, national origin, ancestry, disability status, military veteran status, sexual orientation, gender identity or expression, genetic information, marital status, citizenship status or any other basis as protected by applicable law. Our rich diversity makes us more innovative, more competitive, and more creative, which helps us better serve our clients and our communities.