Senior Vulnerability Management & Incident Response Analyst

LastPass
LastPass

IT

Bengaluru, Karnataka, India

Posted on Aug 27, 2026

Where you’ll work:

Bangalore, KA, IN

IT & Tech Ops at GoTo

GoTo’s IT & Tech Ops team enables a remote-first, high-performance workplace—powered by state-of-the-art AI technology. We’re dedicated to delivering seamless digital experiences that boost productivity and collaboration for every employee worldwide. By harnessing AI, we automate routine tasks, proactively identify solutions, and open new doors for global teamwork and problem-solving. Join our tech innovators and help reimagine the future of work for our teams and customers.


About Security at GoTo

At GoTo, security is at the core of empowering businesses in a 'work anywhere, secure everywhere' world. By embedding security and privacy into our processes by design and by default, we prioritize safeguarding business assets, customer data, and employee information without compromising usability. In a Security Operations role, our focus is on enabling rapid vulnerability identification, effective remediation, responding to incidents, and maintaining organizational resilience in an ever-evolving threat landscape.


Your Day to Day
As a Senior Vulnerability Operations and Incident Response Analyst your job responsibilities would be:

  • Own the end-to-end vulnerability management lifecycle - discovery, risk-based prioritization, remediation tracking, and verification across cloud, endpoint, network, and application environments.

  • Assist in building and maintaining automation for vulnerability scanning, ticketing, SLA tracking, and reporting to reduce manual effort and accelerate remediation velocity.

  • Lead the response to zero-day and critical vulnerabilities, coordinating rapid impact assessment, compensating controls, and cross-team remediation under time pressure.

  • Manage third-party and supply chain vulnerability risk, including SBOM analysis, and coordinated disclosure handling.

  • Support Security Operations Center (SOC) monitoring and incident response investigations as a secondary responsibility, assisting with triage, containment support, and documentation.

  • Actively participate in Purple Team exercises with SOC and Offensive Security teams to validate that identified vulnerabilities are properly detected and remediated.

  • Champion the adoption of AI and automation within the vulnerability management and Incident Response program to improve scanning coverage, prioritization accuracy, Incident handling and analyst productivity.

  • Provide structured feedback and mentorship to junior analysts on vulnerability management and Incident Response best practices.

  • Stay current with emerging vulnerabilities, exploit trends, and threat intelligence, translating findings into actionable prioritization and remediation guidance.


What We're Looking For
As a Senior Vulnerability Operations and Incident Response Analyst, your background will look like:

  • 5+ years of hands-on experience in vulnerability management, security operations, or a similar cybersecurity role, with a proven track record owning a VM program end-to-end.

  • Demonstrated experience automating vulnerability management workflows and strong understanding of risk-based prioritization frameworks (e.g., CVSS, EPSS) applied across cloud, on-prem, and application environments.

  • Experience handling zero-day vulnerability response and third-party/supply chain vulnerability risk, including SBOM analysis and vendor security assessments.

  • Beginner-to-intermediate working knowledge of SOC operations and incident response processes, with the ability to support IR investigations when needed.

  • Effective communication skills, with the ability to document vulnerability risks and translate technical findings for diverse audiences.

Additional Qualifications:

  • Experience with CI/CD pipeline security scanning (SAST, DAST, SCA) and secure software supply chain practices

  • Hands-on exposure to SOAR platforms or custom automation frameworks

  • Relevant certifications (e.g., GEVA, GCFR, GCFA, GPEN, AWS Security Specialty, CompTIA Security+)


What We Offer

At GoTo, we care about helping our people succeed at work and feel supported in life. Our employee benefits and programs are designed to support your well-being, growth, and sense of belonging. Here's what you can expect as part of our team:

  • Comprehensive health benefits
  • Generous paid time off, including paid holidays, volunteer days, quarterly self-care days, and company-designated no-meeting days
  • Tuition reimbursement and access to instructor-led and on-demand learning and development programs
  • The Thrive Global Wellness Program, a confidential Employee Assistance Program (EAP), a wellness app and one-on-one wellness coaching
  • Employee-led communities and programs, including Employee Resource Groups (ERGs), GoTo Gives, and charitable matching

We work hard to create an environment where everyone feels welcome, respected, and able to contribute. Building a culture of belonging isn't just something we talk about - it's part of how we work every day.

Specific benefits and offerings may vary by country in line with local regulations and market practices.


At GoTo, you’ll find the flexibility, resources, and support you need to thrive—at work, at home, and everywhere in between. You’ll work towards a shared goal with an open-minded, cohesive team that’s greater than the sum of its parts. We’re committed to creating an inclusive space for everyone, because we know unique perspectives make us a stronger company and community. Join us and be part of a company that invests in your future, where together we’ll Be Real, Think Big, Move Fast, Keep Growing, and stay Customer Obsessed. Learn more.