Your Job
Koch Industries is looking for an Information Security Engineer to join the Enterprise Vulnerability Management team in Bangalore, India. In this role, you will support and advance vulnerability management and application security capabilities across Koch's global technology environment. You will work closely with global cybersecurity teams, business stakeholders, and technology partners to identify, assess, prioritize, and remediate security vulnerabilities while driving automation and continuous improvement.
Our Team
The Enterprise Vulnerability Management team is responsible for protecting Koch's global infrastructure, cloud, and application environments. The team partners closely with Cyber Security, Application Development, Infrastructure, Cloud, Automation, and Business teams to improve security posture and reduce organizational risk.
What You Will Do
- Perform vulnerability assessment activities across infrastructure, cloud, and application environments.
- Review and analyze vulnerability data from internal and external scans, penetration tests, security assessments, and third party findings.
- Assist in determining risk ratings and prioritization of vulnerabilities based on business impact and technical severity.
- Conduct recurring and on demand scanning activities using enterprise vulnerability management platforms.
- Support vulnerability remediation efforts through validation, tracking, reporting, and stakeholder engagement.
- Support Application Security programs including SAST and DAST testing.
- Configure and onboard applications into security testing platforms.
- Identify and validate false positives and provide remediation guidance to development teams.
- Assist in improving and automating the vulnerability management lifecycle.
- Support data normalization, compliance reporting, asset discovery, and risk based prioritization initiatives.
- Partner with technology teams, vendors, and security stakeholders to improve security capabilities and operational efficiency.
- Support dashboard creation, reporting, and security metrics development.
- Participate in knowledge sharing activities and promote operational excellence and continuous improvement.
- Act as a PBM culture carrier and advocate in daily interactions and work.
Success Measures- Vulnerabilities are identified, prioritized, and communicated accurately.
- Scanning and remediation processes operate efficiently and effectively.
- Application security findings are validated and addressed in a timely manner.
- Automation opportunities are identified and implemented to improve operational efficiency.
- Stakeholders receive accurate reporting and meaningful security insights.
- The team demonstrates operational excellence, collaboration, and continuous improvement.
Who You Are (Basic Qualifications)- Bachelor's degree in Computer Science, Information Technology, Cyber Security, or equivalent experience.
- Experience in Vulnerability Management, Application Security, Security Operations, or related cybersecurity disciplines.
- Knowledge of vulnerability scanning technologies and risk assessment methodologies.
- Understanding of SAST and DAST concepts.
- Strong analytical, troubleshooting, and problem solving skills.
- Effective verbal and written communication skills.
- Ability to collaborate across global teams and multiple stakeholders.
What Will Put You Ahead- Experience with enterprise vulnerability management platforms such as Qualys, Invicti, or similar tools.
- Knowledge of cloud security and cloud native vulnerability management.
- Experience with scripting, automation, or data integration technologies.
- Understanding of security metrics, reporting, and dashboard development.
- Experience working within large enterprise environments.