Application Security And Secure Development
- Discuss this with your agent
- Open in Claude
- Open in ChatGPT
Prepare application
- Draft this with your agent
- Open in Claude
- Open in ChatGPT
Role details
Tech stack
Job description
Application Security and Secure DevelopmentIf you want to takethe next step in your cybersecurity career,becoming a technical reference inVulnerabilityManagementwithin a large-scale service for a financial sectororganization, your place is with usWe ?ll get to the point; we’ll tell you what’s not on the web.If you want to know more about deGMVWHAT CHALLENGE WILL YOU BE TAKING ON?You will act as the technical reference for aVulnerability Managementservice, leading advanced analysis, risk-based prioritization andvulnerability treatment across infrastructure,applications, Cloud and container environments.Your mainresponsibilities will include:Acting as the technicalreference for Vulnerability Management operations and resolving technical escalations.Performing advanced analysisand risk-based prioritization, considering factors such asCVSS, EPSS,CISA KEV, exposure, criticality andThreat Intelligence.Defining and monitoring remediationactivities, mitigations and compensating controls.Coordinating with specializedHacking,Cloud, Hardening/Compliance, Threat Intelligence and Automationteams.Supervising critical oractively exploited vulnerabilities, including technicalverification and closure.MonitoringSLAs, KPIsand reporting,identifying opportunities for automation and service improvement.Contributing to the evolutionof the service and the safe and supervised use of AI inVulnerability Management.WHAT DO WE NEED IN OUR TEAM?We are looking for aprofessional with at least 5 years of experiencein cybersecurity, with significant experience in Vulnerability Management, and a technicaluniversity degree or equivalent qualification.You should have:Strong knowledge of the vulnerabilitylifecycle and risk-based prioritization, includingCVSS, EPSS, CISA KEVandThreatIntelligence.Experience with vulnerabilityscanning and management tools, preferablyQualys.Solid knowledge ofWindows,Linux, networking, applications, Cloudand container environments.Experience in exploitationanalysis, defining mitigations and compensating controls, as well asSLA, KPIandreporting management.Knowledge of scripting,REST APIs, JSONand automation.Strong technicalleadership, autonomy and multidisciplinary coordination skills.Security, Hardening/Compliance, Pentesting and tools such asPrisma Cloud, Qualys WAAS or Burp Suite, willbe valued.Knowledge of cybersecurity governance and risk.Technical English is required, with a B2 level being recommended.WHAT DO WE OFFER?Hybridworking model and 8 weeks per year of teleworking outside your usual geographical area.Flexible start and finish times, and intensive working hours Fridays and in summer.Personalizedcareerplan development, training and language learning support.National and international mobility.Do you come from another country?We can offer you a relocation package.Competitivecompensation with ongoing reviews, flexible compensation anddiscount on brands.Wellbeingprogram: Health, dental and accident insurance; free fruit and coffee, physical,mental and financial health training, and much more!In our recruitment processes youwill always have telephone and personal contact, face-to-face or online, withour talent acquisition team.In addition, bank transfers and bank cards will neverbe requested.If you are contacted through another process, please get in touch with the person responsible for the selection process.We promote equal opportunities inrecruitment, and we are committed to inclusion and diversity.#J-*****-Ljbffr
Requirements
We are looking for aprofessional with at least 5 years of experiencein cybersecurity, with significant experience in Vulnerability Management, and a technicaluniversity degree or equivalent qualification. You should have: Strong knowledge of the vulnerabilitylifecycle and risk-based prioritization, includingCVSS, EPSS, CISA KEVandThreatIntelligence. Experience with vulnerabilityscanning and management tools, preferablyQualys. Solid knowledge ofWindows,Linux, networking, applications, Cloudand container environments. Experience in exploitationanalysis, defining mitigations and compensating controls, as well asSLA, KPIandreporting management. Knowledge of scripting,REST APIs, JSONand automation. Strong technicalleadership, autonomy and multidisciplinary coordination skills. Security, Hardening/Compliance, Pentesting and tools such asPrisma Cloud, Qualys WAAS or Burp Suite, willbe valued. Knowledge of cybersecurity governance and risk. Technical English is required, with a B2 level being recommended.
Benefits & conditions
Hybridworking model and 8 weeks per year of teleworking outside your usual geographical area. Flexible start and finish times, and intensive working hours Fridays and in summer. Personalizedcareerplan development, training and language learning support. National and international mobility. Do you come from another country? We can offer you a relocation package. Competitivecompensation with ongoing reviews, flexible compensation anddiscount on brands. Wellbeingprogram: Health, dental and accident insurance; free fruit and coffee, physical,mental and financial health training, and much more! In our recruitment processes youwill always have telephone and personal contact, face-to-face or online, withour talent acquisition team. In addition, bank transfers and bank cards will neverbe requested. If you are contacted through another process, please get in touch with the person responsible for the selection process. We promote equal opportunities inrecruitment, and we are committed to inclusion and diversity. #J-*****-Ljbffr
Apply for this position
This job is hosted externally. Click below to view the full posting and apply.
Prepare application
- Draft this with your agent
- Open in Claude
- Open in ChatGPT
Good distractions
Talks and stories from around this role — technically off-topic, practically not.
Moments
Explore playlistsVideos
See allRelated articles
See all
Understanding and Mitigating Common Web Vulnerabilities
9 Ways to Make Money Hacking
The 8 Best Code Testing Tools
Spanish Business Culture and Etiquette