IN_Senior Associate –Vulnerability Management- End User Devices– IT Services Co. _ IFS – PAN India
PWC
5 - 10 years
Pune
Posted: 02/11/2025
Job Description
Line of Service
Internal Firm ServicesIndustry/Sector
Not ApplicableSpecialism
IFS - Internal Firm Services - OtherManagement Level
Senior AssociateJob Description & Summary
At PwC, our people in infrastructure focus on designing and implementing robust, secure IT systems that support business operations. They enable the smooth functioning of networks, servers, and data centres to optimise performance and minimise downtime.In infrastructure engineering at PwC, you will focus on designing and implementing robust and scalable technology infrastructure solutions for clients. Your work will involve network architecture, server management, and cloud computing experience.
Job Description & Summary:
We are seeking a hands-on Security Operations Analyst to lead vulnerability management for end user computing devices across Windows, macOS, and mobile platforms. You will own the endpoint vulnerability lifecycle—discovery, assessment, prioritization, remediation coordination, reporting, and continuous improvement—working closely with Desktop Engineering, IT Operations, and Incident Response to reduce risk and meet remediation SLAs.
Responsibilities:
- Operate and tune endpoint vulnerability tooling (e.g., Microsoft Defender Vulnerability Management, Tenable/Nessus, Qualys) to ensure full asset coverage and accurate findings.
- Maintain complete and accurate device inventory by integrating CMDB/UEM data and validating scanner/agent health.
- Define and enforce risk-based SLAs for remediation by severity, exploitability, and asset criticality
- Coordinate OS and third‑party application patching via Intune/Microsoft Endpoint Manager.
- Design and manage deployment rings, testing/pilots, change windows, rollback plans
- Implement and monitor security baselines and configuration compliance
- Ensure timely updates for high-risk third-party apps (browsers, collaboration tools, runtimes).
- Publish weekly/monthly reports and lead readouts with stakeholders to drive accountability.
- Provide vulnerability context to support Incident Response and Threat Hunting.
- Use scripting and APIs (PowerShell, Python, Bash) to automate data collection, reporting, and targeted remediation.
Mandatory skill sets:
- Hands-on experience with vulnerability scanners and endpoint risk platforms (e.g., MDVM in Microsoft Defender for Endpoint, Tenable/Qualys/Nessus).
- Practical experience with UEM/endpoint management tools (Intune/MEM, MECM/SCCM, Jamf Pro; optional: Workspace ONE).
- Strong understanding of OS and third-party application patching for Windows and macOS; exposure to mobile OS (iOS/Android) update compliance and MDM policies.
- Experience with ITSM workflows and remediation tracking in ServiceNow or Jira.
- Scripting skills for automation and data handling (PowerShell preferred; Python/Bash a plus).
- Strong analytical, communication, and stakeholder management skills.
Preferred skill sets:
- Curiosity: A natural curiosity and eagerness to learn, explore new ideas, and see past the status quo.
- Collaboration: A natural collaborator, suited to work in a collaborative culture with a diverse and talented team that values collaboration, constructive challenging and mutual respect. ·
- Challenge: Demonstrates the capability to question and challenge ideas, decisions, and processes in a constructive manner, fostering a culture of continuous improvement and innovation while maintaining respect and professionalism in all interactions.
- Value Driven: Demonstrates a strong commitment to ethical principles and organizational values, ensuring that all actions and decisions align with the company's mission and integrity standards.
- Life Learner: Proactively seeks out and identifies industry trends and stays up to date with certifications.
- Results Driven: Ability to develop and execute a long-term product strategy over time.
- Analytical: Strong analytical skills to interpret market data.
- Resilient: Ability to handle setbacks and remain focused on the product goals.
- Proactive: Willingness to discuss potential new product requirements and opportunities with stakeholders.
Years of experience required:
4+ Years of Exp
Education qualification:
Any Ug/Pg
Education (if blank, degree and/or field of study not specified)
Degrees/Field of Study required: Master Degree, Bachelor DegreeDegrees/Field of Study preferred:Certifications (if blank, certifications not specified)
Required Skills
Microsoft WindowsOptional Skills
Accepting Feedback, Accepting Feedback, Active Listening, Amazon Web Services (AWS), Analytical Thinking, Architectural Engineering, Business Continuity, Cloud Architectures, Cloud Compliance, Cloud Infrastructure, Cloud Migration, Cloud Virtualization, Communication, Continuous Deployment, Continuous Integration/Continuous Delivery (CI/CD), Creativity, Data Infrastructure, DevOps Practices, Disaster Recovery, Embracing Change, Emotional Regulation, Empathy, Google Cloud Platform, Hardware Troubleshooting, Hybrid Cloud {+ 31 more}Desired Languages (If blank, desired languages not specified)
Travel Requirements
Available for Work Visa Sponsorship?
Government Clearance Required?
Job Posting End Date
About Company
PricewaterhouseCoopers (PwC) is a global professional services firm providing audit, tax, and consulting services. PwC helps organizations manage financial risks, comply with regulations, and improve performance through its expertise in industries like finance, healthcare, and technology.
Services you might be interested in
Improve Your Resume Today
Boost your chances with professional resume services!
Get expert-reviewed, ATS-optimized resumes tailored for your experience level. Start your journey now.
