Job Title: Lead Consultant - Vulnerability Operations
GCL : E
Introduction to role:
Are you ready to lead global vulnerability operations that safeguard critically meaningful platforms and keep life-changing science moving? Do you thrive in high-stakes orchestration where every hour matters and precision planning reduces risk across continents? In this role, you will set the rhythm for secure releases, coordinating sophisticated maintenance windows to protect availability for teams who rely on our technology to reach patients.
You will partner across regions and platforms to build release strategies that minimize business impact while accelerating vulnerability closure. Your leadership will turn fragmented schedules into a single, predictable operating cadence--aligning collaborators, removing blockers early, and ensuring our digital backbone stays resilient and audit-ready. This is an opportunity to own outcomes end-to-end: from calendar build and change control to war-room command and continuous improvement.
Accountabilities:
Define, publish, and continuously improve the worldwide patch management schedule. Align regional windows with business interruption periods. Architect scheduling in batches to minimize impact. act.
Scope, Baseline, and Readiness Leadership: Govern CMDB-driven scope for monthly CI and quarterly Non-CI cycles; be responsible for the baseline including server lists, batch allocations, exclusions, and special instructions with quality gates and peer reviews.
Cross-Platform Pre-Checks: Lead proactive pre-checks across Wintel, Unix, Database, and Middleware to remove execution blockers and improve first-pass success.
Business Downtime Planning and Sign-off: Run schema creation and readiness calls beginning approximately eight weeks prior; secure final schema sign-off four weeks before maintenance and chair Business Readiness meetings to resolve dependencies.
Change Governance at Scale: Direct creation and approval of Normal Change Requests in ServiceNow with complete impact, risk, backout, test, and communication plans; implement approval SLAs and bring up to protect timelines and compliance.
Execution Command and Control: Orchestrate phased deployments across Dev, Pre-Prod, and Prod for CI (N strategy) and Non-CI (N-3 strategy); lead war-room operations, live status, defect triage, rollback decisions, and post-check validation.
Collaborate with information security experts to evaluate threat posture for zero-day and ransomware events. Promptly initiate change requests, acquire executive approvals, and ensure auditability.
Exceptions and Risk Management: Govern exclusion categories with justification, approvals, and remediation plans; ensure off-cycle changes address excluded servers and track residual risk ownership.
Partner and Executive Communications: Apply standard templates for initial and final messages. Share clear executive updates during maintenance weekends and incident response calls. Offer application-specific mentorship and final completion summaries.
Metrics, Audit, and Continuous Improvement: Maintain repositories for baselines, schema reports, patch assessments, exceptions, and release metrics; define benchmarks and run improvement sprints; lead post-implementation reviews, root cause analyses, updates to standard operating procedures and workflows, and contribute to RACI and tooling roadmap.
Leadership and Mentoring: Coach release managers and developers; standardize guidelines and playbooks; influence platform, security, and application teams to align on risk-based priorities and automation opportunities.
Essential Skills/Experience:
MNCJobsIndia.com will not be responsible for any payment made to a third-party. All Terms of Use are applicable.