
IT Security Specialist, Vulnerability Management Operations
Sonova Group
full-time
Posted on:
Location Type: Hybrid
Location: Barcelona • Spain
Visit company websiteExplore more
About the role
- Manage and monitor vulnerability scanning activities (scan, analyze, disposition) across global environments
- Coordinate remediation efforts with application and technology owners, ensuring prioritized backlog reduction
- Provide compliance scanning and process support in line with defined guidelines
- Deliver training and guidance on vulnerability management best practices to relevant stakeholders
- Support critical vulnerability resolution phases to ensure effective and timely remediation
- Enhance and continuously improve vulnerability management processes, tooling, and reporting
- Compile regular vulnerability status reports and escalate critical risks to senior management
Requirements
- Degree in Computer Science or equivalent practical experience
- Strong understanding of IT infrastructure, attack and defense techniques, and vulnerability management
- Hands-on experience with vulnerability management tools such as Nessus or Qualys
- Knowledge of OWASP, NIST, and CIS benchmarks
- Understanding of TCP/IP, DNS, VPNs, and major operating systems (Windows, Linux, Unix, macOS)
- Experience working with cloud services (IaaS, PaaS, SaaS)
- Strong written and verbal communication skills in English
- Professional security certifications (e.g. GIAC/GCIH, CISA, CompTIA Security+, CEH, CCNA) preferred
- CISSP or MCSE preferred
- Experience with web application security tools such as Burp Suite or OWASP ZAP preferred
- Familiarity with collaboration and workflow tools (e.g. JIRA, Confluence, Slack, Microsoft Teams) preferred
- Experience managing vendors and vulnerability management service providers preferred
Benefits
- Flexible hybrid working model
- Wide range of training opportunities for professional and personal development
- Exceptional growth opportunities with individual development plans
Applicant Tracking System Keywords
Tip: use these terms in your resume and cover letter to boost ATS matches.
Hard Skills & Tools
vulnerability managementvulnerability scanningIT infrastructureattack techniquesdefense techniquesTCP/IPDNSVPNsoperating systemscloud services
Soft Skills
communication skillstrainingguidancestakeholder managementreportingproblem-solvingcollaboration
Certifications
GIACGCIHCISACompTIA Security+CEHCCNACISSPMCSE