Sr. Info Security Analyst
Current- Configuration scanning for the OS level vulnerabilities of all the Unix & Windows Servers/VMs under SOX, PCI, TD-SOC1, GLBA, HIPAA & SHR against the standard SCML baseline customised from the CIS benchmark using Tenable IO (Agent Scan)/Tenable SC (Credential Scan) to help the organisation maintain the audit compliance and raise eGRC Archer findings for the non-compliant servers.- Tenable scan audit file creation and modification based on the annual reviews or out of band reviews of the… Show more - Configuration scanning for the OS level vulnerabilities of all the Unix & Windows Servers/VMs under SOX, PCI, TD-SOC1, GLBA, HIPAA & SHR against the standard SCML baseline customised from the CIS benchmark using Tenable IO (Agent Scan)/Tenable SC (Credential Scan) to help the organisation maintain the audit compliance and raise eGRC Archer findings for the non-compliant servers.- Tenable scan audit file creation and modification based on the annual reviews or out of band reviews of the SCML baselines and their corresponding updates once approved by the platform owners.- Troubleshooting Nessus agent issues and getting them linked to the impacted servers/VMs so that they can be scanned by the agent based scan using Tenable IO- File integrity monitoring (FIM) on Unix & Windows servers/VMs under SOX and PCI by fetching the report from Tanium for server health and change report including the Auditbeat change report for the watchlisted directories and gather the relevant CR or incident as evidence from the impacted application team via ServiceNow incident, and also getting the host health fixed by the Tanium team if they are not reporting to Tanium.- Quarterly validation of the watchlist in Tanium to keep a track on the updated watchlisted directories for FIM Show less