Overview
Staff Security Engineer in Enterprise Information Security (EIS) to strengthen and mature Wabtec’s cybersecurity risk management capabilities.
What you'll do
- Lead the enterprise vulnerability management program across on-premises, cloud, and M&A environments.
- Oversee vulnerability discovery, prioritization, remediation, and reporting.
- Develop risk-based vulnerability prioritization methodologies using threat intelligence and exploitability data.
- Partner with infrastructure, cloud, application, and business teams to drive timely remediation.
- Monitor remediation performance, establish service-level targets, and report risk reduction progress.
- Collaborate with Security Operations on critical vulnerabilities, active threats, and emerging risks.
- Provide Tier 3 escalation support for vulnerability management and related cybersecurity technologies.
What you'll need
- Bachelor’s degree in computer science/IT/cybersecurity (or related) or minimum 5 years of full-time cybersecurity experience.
- Demonstrated expertise leading enterprise vulnerability management programs across servers, endpoints, cloud, applications, and network infrastructure.
- Extensive experience with vulnerability assessment technologies, remediation workflows, risk prioritization, and security exposure management.
- Strong understanding of vulnerability scoring frameworks and risk-based remediation approaches.
- Hands-on experience securing public cloud platforms such as AWS and Azure.
- Experience supporting Security Operations functions including threat detection, incident response, threat hunting, or security monitoring.
- Experience developing metrics, reporting, and executive-level dashboards for security risk and remediation progress.
Details
- Location: Bengaluru, KA, India.
- Work environment: Hybrid work schedule (both on-site and remote).
- Must be willing to work weekends or off-shift hours as needed during cybersecurity incidents.
Read the full description and apply on the company’s own careers page.