# Lead Consultant - Vulnerability Management at AstraZeneca

AstraZeneca is hiring a Lead Consultant - Vulnerability Management in Chennai, India. Level rates it Little AI ●○○○; you can [apply on Level](https://jobsbylevel.com/go/d0114084-bbb7-4f66-aba0-65d6660d3bd3).

AI Level 1, AI centrality 10 out of 100. India - Chennai.

## Details

- Company: [AstraZeneca](https://jobsbylevel.com/companies/astrazeneca)
- AI level: AI Level 1 (score 10 out of 100)
- Location: India - Chennai
- Posted: October 8, 2026
- Apply: https://jobsbylevel.com/go/d0114084-bbb7-4f66-aba0-65d6660d3bd3

## Description

Job Title: Lead Consultant - Vulnerability Management GCL:E Introduction to role: Are you ready to lead a risk-based vulnerability management program that protects the science behind life-changing medicines? As our senior individual contributor in Chennai, you will turn rich threat and asset data into decisive action. You will work across operational technology, virtual environments, and organizational platforms. This role safeguards the systems our scientists, engineers, and clinicians rely on every day. Here, you will shape how we discover, prioritize, and remediate vulnerabilities at global scale, translating complex realities into clear standards and measurable risk reduction. Do you thrive at the intersection of OT constraints and cloud speed, bringing order to ambiguity and accelerating outcomes that matter to patients and the business? Accountabilities: End-to-End Lifecycle Leadership: Maintain and continuously improve the vulnerability management lifecycle spanning operational technology, cloud environments, and on-premises infrastructure to increase coverage, quality, and time-to-remediation. Risk-Based Prioritisation: Identify, validate, triage, and prioritise vulnerabilities using severity, exploitability, threat intelligence, asset criticality, internet exposure, potential intrusion routes, and business impact to focus effort where it matters most. Remediation Orchestration: Coordinate mitigation with asset owners, OT engineering, cloud, infrastructure, Security Operations, Cyber Threat Intelligence, and service providers, removing blockers and accelerating durable fixes. Documentation Ownership: Convert operating practices into clear, controlled policies, guidelines, procedural manuals, detailed instructions, workflow diagrams, RACI charts, templates, and playbooks; drive adoption, training, review cycles, and continuous improvement. Governance and Exception Management: Run exception and risk-acceptance workflows with complete ownership, rationale, compensating controls, approvals, evidence, target dates, and scheduled reviews. Metrics and Insight: Build executive-ready dashboards, remediation ageing views, coverage measures, control indicators, and trends that reveal risk reduction and guide operational and governance decisions. Coverage and Data Quality: Improve asset onboarding, tagging, ownership, and tool configuration across approved platforms; close visibility and control gaps and validate effectiveness. Process Improvement and Automation: Streamline data ingestion, normalisation, correlation, prioritisation, workflow orchestration, evidence capture, reporting, and closure validation; champion automation to scale. Threat Monitoring and Rapid Response: Assess emerging vulnerabilities from trusted sources, determine relevance to our estate, and lead accelerated assessment and response where credible exploitation or high business exposure exists. Collaborator Influence and Enablement: Lead workstreams, workshops, and continuous-improvement initiatives using facilitation and subject-matter expertise. Ensure consistent standards across OT, cloud environments, and infrastructure while respecting detailed operational, safety, regulatory, or technical constraints. AI and Digital Tooling Adoption: Embrace and appropriately use artificial intelligence and technology-based tools to improve analysis, triage, reporting, and ways of working. Essential Skills/Experience: Significant hands-on experience managing vulnerabilities or coordinating threat exposure within a complex, multinational enterprise. Strong practical knowledge in handling vulnerabilities across OT, cloud, and enterprise infrastructure, including differences in asset discovery, scanning, risk assessment, patching, and remediation approaches. Demonstrated understanding of OT and industrial environments, including legacy platforms, operational availability, safety, network segmentation, maintenance windows, vendor dependencies, firmware, and compensating

The description is cut here. Read the full offer: https://jobsbylevel.com/jobs/lead-consultant-vulnerability-management-at-astrazeneca-f0777a

Source: https://jobsbylevel.com/jobs/lead-consultant-vulnerability-management-at-astrazeneca-f0777a

## Cite this page

Level. https://jobsbylevel.com/jobs/lead-consultant-vulnerability-management-at-astrazeneca-f0777a.

Get job alerts: https://jobsbylevel.com/newsletter
