Call Quest Solution is seeking a Senior Security Engineer with leadership experience to support vulnerability management and enterprise security initiatives. The ideal candidate will have strong hands-on expertise in Tenable Vulnerability Management and Microsoft Purview, contributing to SIEM initiatives and improving security posture.
Responsibilities:
- Design and deploy Tenable scanning templates, credentialed scans, and custom plugins to improve asset coverage
- Optimize vulnerability detection and reduce false positives
- Implement automated remediation workflows using Tenable One integrated with ServiceNow and patch orchestration tools (SCCM / Intune)
- Develop executive-level vulnerability dashboards and reporting including risk reduction metrics and remediation timelines
- Lead root-cause analysis and remediation of Purview DLP and sensitivity labeling issues
- Design and implement Microsoft Purview Information Protection solutions including auto-labeling, endpoint DLP, and encryption strategies
- Support data classification and compliance initiatives
- Develop and tune Trellix SIEM detection rules, correlation use cases, and automation playbooks
- Integrate Tenable, Microsoft Purview, and Trellix SIEM platforms through API-based integrations
- Collaborate with engineering teams to ensure closed-loop vulnerability remediation processes
- Develop operational documentation, runbooks, and best practices
- Conduct knowledge transfer sessions and workshops to support internal security teams
Requirements:
- Strong hands-on expertise with Tenable One / Tenable.io vulnerability management platform
- Experience with Nessus scanners and agent deployments across cloud and on-prem environments
- Experience with Trellix SIEM / Helix for rule creation, dashboards, and log management
- Automation experience using PowerShell or Python
- Experience with Microsoft Entra ID security features including Conditional Access and Privileged Identity Management
- Hands-on experience with REST API integrations across security platforms
- Experience integrating vulnerability workflows with ServiceNow
- Strong knowledge of risk scoring frameworks (CVSS, EPSS, CISA KEV) and vulnerability prioritization methodologies
- Experience with Microsoft Purview Compliance and Risk Suite
- Knowledge of DLP policies, sensitivity labeling, and auto-labeling strategies
- Experience with data protection and regulatory compliance frameworks
- Prior experience supporting healthcare security environments