Relomote
Remote JobsRelocation Jobs
Add companySaved
Relomote

Relomote is a job board for remote, hybrid, and relocation jobs — every listing AI-classified for the countries it actually hires from, or the visa and relocation support it offers.

LinkedInCrunchbase

Remote jobs by category

  • Remote Engineering & Development jobs
  • Remote Customer Support jobs
  • Remote Design jobs
  • Remote Marketing jobs
  • Remote Sales jobs
  • Remote Product jobs
  • Remote Data & Analytics jobs
  • Remote People & Talent jobs
  • Remote Writing & Content Creation jobs
  • Remote Finance jobs
  • Remote Legal & Compliance jobs
  • Remote Operations & Admin jobs
  • Remote Data Entry jobs
  • Remote Virtual Assistant jobs
  • Remote Education/Training jobs
  • Remote Healthcare/Clinical jobs
  • Remote Other jobs

Remote jobs by location

  • Work from anywhere jobs
  • Remote jobs in Africa
  • Remote jobs in Asia
  • Remote jobs in Europe
  • Remote jobs in Latin America
  • Remote jobs in Middle East
  • Remote jobs in North America
  • Remote jobs in Oceania
  • All remote jobs →

Relocation & visa sponsorship

  • Visa sponsorship jobs
  • Relocation package jobs
  • Relocate to Europe
  • Relocate to Germany
  • Relocate to Netherlands
  • Relocate to Spain
  • Relocate to Portugal
  • Relocate to Greece
  • Relocate to United Kingdom
  • Relocate to Canada
  • Relocate to Australia
  • Relocate to Sweden
  • Relocate to Switzerland
  • Relocate to Japan
  • Relocate to United Arab Emirates
  • All relocation jobs →

© 2026 RelomoteAboutPrivacyTerms

Contact [email protected] · Built by Mahmoud

Relomote
Remote JobsRelocation Jobs
Add companySaved
Spectris logo

Vulnerability & Incident Response Analyst

Spectris
Posted 9 hours ago
🇮🇳India🏠Remote📁Engineering & Development
Is this job info correct?

Role Summary The Vulnerability & Incident Response Analyst will play a key role in supporting HBK's Product Security function by coordinating product vulnerability management activities, security incident reporting obligations, and cross-functional remediation efforts. The role acts as a central liaison between Product Security, Dev SecOps, and Product Teams to ensure vulnerabilities are effectively assessed, tracked, remediated, and reported in accordance with internal policies and regulatory requirements, including the EU Cyber Resilience Act (CRA). Key Responsibilities Vulnerability Triage & Analysis Perform initial triage, validation, and analysis of product vulnerabilities identified through vulnerability disclosures, internal testing, security assessments, penetration testing, or automated scanning tools. Assess vulnerability severity using CVSS, exploitability, product applicability, and business impact criteria. Review vulnerability reports and collaborate with product teams to determine applicability, exploitability, and remediation requirements and help to prioritize the vulnerabilities that need to be addressed considering the Risk. Maintain accurate vulnerability records, evidence, and audit trails to support governance and compliance requirements. Incident & Regulatory Reporting Coordination Support coordination of security incident and exploited vulnerability reporting activities in accordance with applicable regulatory obligations. Prepare and maintain the information required for regulatory notifications, working closely with Product Security, Legal, and Product Teams. Track incident reporting timelines and ensure escalation activities are completed within defined regulatory timeframes. Support incident readiness exercises and reporting process validation activities. Vulnerability Disclosure & Threat Intelligence Monitoring Monitor vulnerability disclosure channels, PSIRT mailboxes, public vulnerability disclosures, security advisories, and relevant threat intelligence feeds. Identify vulnerabilities and emerging threats that may impact HBK products and coordinate investigations with relevant stakeholders. Track Known Exploited Vulnerabilities (KEVs), industry alerts, and security advisories relevant to HBK products and technologies. Maintain awareness of evolving cybersecurity threats, attacker techniques, and regulatory developments. Prior experience of Bug bounty portals will be an added advantage. Remediation Coordination & Tracking Coordinate remediation activities with Product Teams, Dev Secops, and Product Security stakeholders. Track vulnerability remediation progress against defined remediation targets and service level objectives. Support review of proposed security updates, patches, and mitigation plans. Produce vulnerability status reports, metrics, and management updates to support governance forums and programme tracking. Cross-Functional Collaboration Serve as the operational liaison between Product Security, Dev SecOps, Customer Support, Legal, and Product Teams. Facilitate communication and issue resolution across stakeholders involved in vulnerability management and incident response activities. Support the implementation and continual improvement of vulnerability management and coordinated vulnerability disclosure processes. Contribute to regulatory readiness initiatives associated with the EU Cyber Resilience Act and related cybersecurity requirements. Qualifications Education Bachelor’s or master’s degree in cyber security, Computer Science, Information Security, Software Engineering, or a related technical discipline. Required Experience & Skills Experience in vulnerability management, security operations, incident response, PSIRT, application security, or a related cybersecurity discipline. Understanding of vulnerability assessment methodologies, CVSS scoring, exploitability analysis, and remediation workflows. Familiarity with vulnerability management platforms, ticketing systems, and security scanning tools. Knowledge of common vulnerability databases and threat intelligence sources (e.g., CVE, NVD, KEV). Understanding of software development lifecycles and secure development practices. Familiarity with cybersecurity regulations and standards such as EU CRA, ISO/IEC 30111, ISO/IEC 29147, IEC 62443, NIST SP 800 series, or ISO 27001. Strong analytical and problem-solving skills with the ability to prioritise and manage multiple activities simultaneously. Excellent stakeholder management and communication skills, with the ability to work effectively across technical and non-technical teams. Experience preparing security reports, metrics, and compliance evidence is desirable. Preferred Experience Experience working within a Product Security Incident Response Team (PSIRT). Exposure to regulatory reporting obligations and coordinated vulnerability disclosure programmes. Experience with vulnerability management automation, DevSecOps pipelines (SAST, DAST integration), SBOM tooling, or software composition analysis platforms. Familiarity with cloud, desktop, SaaS, embedded, or industrial control system products. Knowhow on Penetration testing

Similar jobs

Similar jobs

ProArch logo

L3 SOC Analyst / Incident Response Analyst

ProArch

🌍India, Latin AmericaJun 11, 2026, 9:24 PM UTC
Proarch 3 logo

L3 SOC Analyst / Incident Response Analyst

Proarch 3

🌍India, Latin AmericaJun 6, 2026, 8:49 AM UTC
Endava logo

Security Incident Response Analyst

Endava

🇮🇳IndiaMay 29, 2026, 6:39 PM UTC
AlphaSense logo

Staff Incident Response Analyst

AlphaSense

🇮🇳IndiaMay 27, 2026, 9:14 PM UTC
Walmart logo

(IND) Principal, Software Engineer

Walmart

🇮🇳India1 hour ago
Adobe logo

Software Development Engineer

Adobe

🌍India, Romania, Spain, United States1 hour ago