(Cybersecurity) Vulnerability Response Senior SME
100 - 200 PLN/ godz.B2B
SeniorFull-time·B2B
#442691·Dodano 2 dni temu·1
Źródło: AntalTech Stack / Keywords
TenableSASTDASTCI/CDWAFTLS
Wymagania
- 5+ years of experience in IT Security, Cybersecurity, Vulnerability Management, or a related area.
- Proven experience assessing and responding to critical and high-severity vulnerabilities.
- Strong understanding of common vulnerability types and attack techniques, including remote code execution, privilege escalation, and authentication bypass.
- Experience with vulnerability identification and assessment tools, ideally including Tenable.
- Understanding of application security testing approaches such as SAST and DAST.
- Good understanding of CI/CD processes and integration of security testing and remediation into software development and release pipelines.
- Solid technical knowledge of networking and application delivery technologies including WAFs, load balancers, certificates, and TLS.
- Understanding of security risks across both on-premises and cloud environments.
- Practical knowledge of vulnerability remediation including patching, upgrades, configuration hardening, and compensating controls.
- Strong stakeholder management skills with ability to work with technical teams and service owners.
- Excellent written and verbal communication skills for technical and non-technical audiences.
- Strong organizational skills and delivery-focused approach.
- Experience working in cybersecurity operations, risk management, or security governance within medium or large enterprises.
- Ability to work effectively in a hybrid and remote environment.
Obowiązki
- Review critical and high-severity vulnerabilities identified through sources such as NIST/NVD, vendor advisories, and security scanning tools.
- Assess whether vulnerabilities affect the technology environment and communicate their potential impact, exploitability, and risk clearly.
- Validate vulnerability findings using technical evidence such as software versions, configurations, logs, and scan results.
- Identify affected assets and collaborate with technical teams to establish ownership and scope.
- Recommend remediation and mitigation approaches including patching, upgrades, configuration changes, and compensating controls.
- Prepare technical documentation covering root cause, affected components, attack paths, business impact, and remediation guidance.
- Coordinate remediation activities with infrastructure, cloud, platform, and application teams.
- Track remediation progress, identify blockers, and escalate significant delays or risks.
- Verify remediation success through rescanning, validation testing, or review of evidence.
- Assess and document residual risk when full remediation is not immediately possible.
- Support cybersecurity governance activities such as risk reporting, management updates, and security metrics.
- Contribute to responses for audit and regulatory requests.
- Support wider cybersecurity operational activities, escalations, and ad-hoc vulnerability-related requests.
Benefity
- B2B contract
- Hybrid working model with 6 days per month from Kraków office
- Lux Med private medical care
- MyBenefit cafeteria
- Support from a dedicated Contractor Care specialist
- Opportunity to work on complex cybersecurity and vulnerability management challenges within a large-scale technology environment
Opieka zdrowotna
Firmowa stołówka
Antal
933 aktywne oferty