Execute and schedule vulnerability scans on servers, endpoints, and network assets, and report results to the responsible teams;
Produce reports and dashboards with KPIs and KRIs based on daily activities and challenges for presentation to leadership;
Track remediation of addressed vulnerabilities, follow up with responsible teams, and record evidence of remediation;
Assist in asset management, ensuring scans cover the entire technology estate;
Perform triage based on CVSS and business risk, and improve processes for remediation effectiveness and vulnerability reporting.
Requirements
Bachelor's degree in Information Technology (Security, Information Systems, Computer Networks, Computer Science) or related fields;
Familiarity with vulnerability scanners, preferably Qualys;
Understanding of CVSS, OWASP Top 10, and patch management;
Knowledge of operating systems (Windows and Linux) and computer networks (protocols and TCP/IP);
Experience with ITSM for opening and tracking tickets;
Proficiency with Microsoft Office suite;
Good communication skills to liaise with technical teams during cadences and to record evidence;
Desirable certifications: Security+, ISO 27001 Foundation, ITIL Foundation;
Desirable knowledge of Cloud Security, concepts of SAST, DAST, containers, IaC, Kubernetes, and Python programming for simple process automation;
Differentials: prior experience in a financial environment or managed service providers; experience with Power BI; participation in incident response involving vulnerability exploitation; knowledge of hardening.
Benefits
Health insurance
Dental insurance
Meal voucher
Food allowance
Life insurance
Total Pass
GymPass
PPR (Profit Sharing / Performance Bonus)
Applicant Tracking System Keywords
Tip: use these terms in your resume and cover letter to boost ATS matches.