Expert: Cybersecurity, Vulnerability Operations Center (VOC)

Place of work Work from home
Contract type Full-time
Start date -
Salary -

Job details

Job description, work day and responsibilities

Key Job Responsibilities: VOC - VI (Vulnerability Intelligence), ASM (Attack Surface Management) & VM (Vulnerability Management) Expert.

Environment / Context

Saint Gobain, world leader in the habitat and construction market, is one of the top 100 global industrial groups. Saint-Gobain is present in 68 countries with 171 000 employees. They design, manufacture and distribute materials and solutions which are key ingredients in the wellbeing of each of us and the future of all. They can be found everywhere in our living places and our daily life: in buildings, transportation, infrastructure and in many industrial applications. They provide comfort, performance and safety while addressing the challenges of sustainable construction, resource efficiency and climate change

Saint-Gobain GDI Group (250 persons at the head office, including 120 that are internal) is responsible for defining, setting up and managing the Group's Information Systems (IS) and Telecom policy with its 1,000 subsidiaries in 6,500 sites worldwide. The GDI Groupe also carries the common means (infrastructures, telecoms, digital platforms, cross-functional applications).

INDEC, the IT Development Centre of Saint-Gobain, is an entity with a vision to leverage India’s technical skills in the Information Technology domain to provide timely, high-quality and cost-effective IT solutions to Saint-Gobain businesses globally.Within the Cybersecurity Department, the Cybersecurity Vulnerability Operations Center mission is to Identify, assess and confirm vulnerability and threats that can affect the Group. The CyberVOC teams are based out of Paris and Mumbai and consist of skilled persons working in different Service Lines.

Mission

We are seeking a highly experienced cybersecurity professional to serve as an VOC Expert supporting the Vulnerability Intelligence (VI), Attack Surface Management (ASM), and Vulnerability Management (VM) teams. This role is pivotal in shaping the strategy, defining technical approaches, and supporting day-to-day operations—particularly complex escalations and automation efforts.

The ideal candidate will combine technical mastery in offensive security with practical experience in vulnerability lifecycle management and external attack surface discovery. The expert will act as a senior advisor and technical authority for the analyst teams, while also contributing to the design, scripting, and documentation of scalable security proceess.

The VOC Expert is responsible for:
• Vulnerability Intelligence (VI)
• Drive the qualification and risk analysis of newly disclosed vulnerabilities.
• Perform exploit PoC validation when needed to assess practical risk.
• Maintain and enhance the central VI database, enriched with (EPSS, CVSS, QVS, SG-specific scoring models, and EUVD)

Define and automate workflows for:
• Vulnerability qualification, exposure analysis, and prioritization
• Ingestion of qualified vulnerability data into the enterprise Data Lake
• Collaborate on documentation of VI methodology and threat intelligence integration
• Support proactive communication of high/critical vulnerabilities to asset and application owners

Attack Surface Management (ASM):
• Operate and enhance external asset discovery and continuous monitoring using ASM tools
• Integrate asset coverage data from CMDB, and other internal datasets

Design and implement scripts for:
• WHOIS/ASN/banner correlation Data enrichment and alert filtering
• Deploy and maintain custom scanning capabilities (e.g., Nuclei integrations)
• Provide expert input on threat modeling based on exposed assets and external footprint

BlackBox Pentesting:
• Maintain the service delivery of the BlackBox Pentesting platform
• Automate the export of pentest data and integrate into Data Lake and Power BI dashboards
• Define and document onboarding workflows for new applications
• Actively guide analysts in prioritizing pentest requests and validating results.

Vulnerability Management:
• Vulnerability review, recategorization, and false positive identification
• Proactive vulnerability testing and replay
• Pre-analyze and consolidate vulnerability data from various scanning tools
• Prepare concise syntheses of available vulnerabilities
• Offer guidance to the SO and CISO on vulnerabilities
• Collaborate with key stakeholders to develop strategies for vulnerability management
• Assist in defining vulnerability management KPIs and strategic goals
• Prepare concise, actionable summaries for high-risk vulnerabilities and trends

Automate testing actions:
• Develop scripts and tooling to automate repetitive and complex tasks across VI, ASM

and VM. Implement data pipelines to sync outputs from ASM/VI tools to dashboards and reporting

engines. Design streamlined workflows for vulnerability lifecycle—from detection to

closure. Collaborate with both offensive and defensive teams to support App managers and Asset managers in remediating vulnerabilities and issues.

Skills and Qualifications:
• Bachelor's degree in Computer Science, Information Security, EXTC or related field; relevant certifications (e.g., CISSP, CCSP, CompTIA Security+) are a plus
• Proven experience (10+ years) working within the Cybersecurity field, with a focus on offensive security, vulnerability intelligence and attack surface analysis.
• Proven experience on Penetration testing actions (web application, infrastructure, …)
• Proven expertise in: CVE analysis, exploit development/validationExternal asset discovery & mapping

Threat modeling and prioritizationAdvanced knowledge of tooling such as:
• ASM platforms Nuclei, Shodan, Open Source CTI, vulnerability scanners (Qualys, Tenable, …)
• Pentester tools (Burp, SQLmap, Responder, IDA and Kali environment)
• Experience in investigating newly published vulnerabilities, assessing their risks, severity.
• Strong scripting languages (e.g., Python, Bash, Powershell, C#, …) for automation and customization
• Experience with Pentester tools (Burp, SQLmap and Kali environment)
• Strong technical skills with an interest in open-source intelligence investigations
• Experience building dashboards in Power BI or similar tools.
• Familiarity with data lakes, API integrations, and ETL processes.
• Knowledge of NIST CVE database, OWASP Top 10, Microsoft security bulletins
• Excellent writing skills in English and ability to communicate complicate technical challenges in a business language to a range of stakeholders.

Personal Skills:
• Has a systematic, disciplined, and analytical approach to problem solving with Thorough leadership skills & experience
• Excellent ability to think critically underpressure
• Strong communication skills to convey technical concepts clearly to both technical and non-technical stakeholders
• Willingness to stay updated with evolving cyber threats, technologies, and industry trends
• Capacity to work collaboratively with cross-functional teams, developers, and management to implement robust security measures

Additional Information:
• The position is based in Mumbai (India)

The position is suitable for candidates with education

This position is suitable for fresh graduate
Company Name: Saint-Gobain International IT Delivery Centre
You will be redirected to another website to apply.
Offer ID: #1238220, Published: 1 week ago, Company registered: 1 month ago

Other offers

Fresher Female Staff Nurse
2198login
Apollo Athena is hiring Female Staff Nurse - Fresher - with DNC registered only. GNM/BSc Nursing. DNC Registration is mandatory. Good communication skill and pleasant personality required. Monthly CTC : 25000/ - PF, Grat...
Home Care Assistant Manager
2198login
Company Description Pacific BPO, an Access Healthcare company, is a premier provider of healthcare revenue cycle management services. We offer solutions that focus on cost and process optimization for healthcare industry...
ASHA Worker (Accredited Social Health Activist) Recruitment 2025 in ampc delivery, delhi , Apply Now
2198login
Government of delhi is hiring ASHA Workers in ampc delivery. Local women candidates who are 10th or 12th pass can apply to work in public health outreach programs.
Content Writer| Healthcare| | Turacoz Healthcare Pvt| Ltd | Delhi| Delhi
2198login
Turacaoz Healthcare Pvt LtdDelhi, Delhi₹2,00,000 - ₹5,00,000 a yearJob detailsSalary₹2,00,000 - ₹5,00,000 a yearJob TypeFull-timeFull Job DescriptionRequirements: Must be highly creative, enthusiastic and a quick thinker...
Home Care Nurse
2198login
GNM / BSC NURSING/ ANM ONLY FEMALE MINIMUM 2 YEAR EXPERIENCE IN ICU Pay: ₹30,000.00 - ₹40,000.00 per month • *Benefits**: - Food provided - Health insurance - Provident Fund Schedule: - Day shift - Rotational shift • *Ex...
Implementation interns
2198login
Dear All, We're currently seeking implementation interns to join our team immediately. The internship offers a stipend of ₹10,000 per month. We're looking for candidates with an MBA in Healthcare. If you're interested, p...
Home care Nurse-Medical
2198login
Job Description • Maintain professional standards of competence in line with current best nursing practices. • Evaluate patient needs and ensure that all care requirements are met in accordance with the care plan, promot...
Licensed Clinical Psychologist
2198login
Role Description This is a full-time on-site role for a RCI Licensed Clinical Psychologist at Athena Behavioral Health's Greater Noida location. The role involves conducting psychological testing, providing mental health...
Ophthalmologist | AKAK Healthcare | Delhi| Delhi
2198login
Job Requirements • An Ophthalmologist is a medical doctor who specializes in diagnosing and treating diseases and disorders of the eye. • They perform comprehensive eye exams, diagnose and treat eye diseases, prescribe m...
Supply Assistant
2198login
This role involves processing orders and issuing final documents with the objective of ensuring that our UK customers’ orders are safely delivered. The successful candidate will also organise importation of products and ...
Health Insurance Advisor
2198login
Salary Range : Rs. 12000 - Rs. 15000 , based on skills, experience, and interview performance Educational Requirement : 12th Pass Work Arrangement : Work From Office Gender Preference : Both male and female can apply Ski...
Medical Tourism Facilitator
2198login
**Position**: Medical Tourism Facilitator • *Location**: Delhi, India • *Experience**: Over 3 years in Business Development, Hospital Marketing, and Referral Sales • *Industry**: Healthcare, Hospitals, and Patient Referr...
Doctor Teleconsultation
2198login
We are looking for Freshers with internship experience Doctors to provide services to Patients from all over Globe. A reputable and well-rounded Ayurvedic Practitioner to join our hospital with minimum 1 year of internsh...
Community Health Officer (CHO) Recruitment 2025 in dilshad garden, delhi, Apply Now
2198login
The Government of delhi is hiring Community Health Officers (CHO) for public health outreach in dilshad garden. Candidates with a B.Sc. Nursing or similar qualifications can apply for these key roles in rural health prog...
Account Manager - Retail
2198login
About Us Visit Health is a pioneering health-tech platform, founded in 2016 by BITS Pilani alumni, dedicated to making healthcare accessible, affordable, and preventive. Originated as a telemedicine platform during the 2...