Vulnerability Management
 Manage end-to-end vulnerability assessment and remediation activities across servers, databases, applications, and cloud
environments.
 Review vulnerability scan results and prioritize remediation based on risk and business impact.
 Track vulnerabilities to closure and ensure remediation within defined SLAs.
 Validate remediation and maintain accurate vulnerability records.

Patch Management
 Monitor and enforce patch compliance across Windows, Linux, databases, and applications.
 Coordinate with Infrastructure and Application teams to ensure timely deployment of security patches.
 Track patch exceptions and ensure appropriate approvals and risk acceptance.
 Monitor patch compliance metrics and identify gaps.

EOL / EOS Lifecycle Management
 Maintain an inventory of End-of-Life (EOL) and End-of-Support (EOS) systems.
 Drive upgrade or replacement plans for unsupported technologies.
 Assess risks associated with unsupported systems and recommend mitigation measures.

Risk & Compliance
 Support internal, external, and regulatory audits.
 Ensure compliance with organizational security policies and regulatory requirements (RBI, ISO 27001, etc.).
 Track remediation of audit observations related to vulnerabilities and patching.

Reporting & Governance
 Prepare vulnerability, patch compliance, and EOL/EOS dashboards and reports.
 Present security metrics and risk posture to management.
 Identify recurring issues and recommend process improvements.

Stakeholder Coordination
 Coordinate with Infrastructure, Cloud, Database, Network, and Application teams to drive remediation activities.
 Escalate critical issues and overdue vulnerabilities as required.
 Provide guidance on vulnerability remediation and patch prioritization.