09 ago
|
Q-Tech
|
Barcelona
We are looking for aVulnerability & Exposure Management Analystto join a mature Cyber Defense Center within a global enterprise environment.This role sits at the core of the vulnerability lifecycle, acting as abridge between security, infrastructure, and development teams, ensuring that identified vulnerabilities are properly prioritised, communicated, and remediated.Rather than focusing on scanning or hands-on remediation, this position plays akey orchestration and advisory role, working closely with internal stakeholders across multiple countries.Your responsibilitiesManage the lifecycle of vulnerabilities and exposures:-triage, prioritisation, assignment and follow-upAnalyse vulnerabilities across different domains:-infrastructure, web applications, and (in the future) APIsApply risk-based prioritisation using frameworks such as CVSSProvideclear and actionable remediation guidanceto internal teamsCollaborate with infrastructure, cloud and development teams to support remediationAct as afirst point of contact for internal stakeholders, handling:-support requests-troubleshooting-clarification of findingsDevelop and maintain remediation guidelines for:-security misconfigurations (Non-CVE)-web application vulnerabilitiesContribute to process improvements,
automation and new initiativesMonitor and track remediation progress through dashboards and reportsHelp improve the overall vulnerability management operating modelWhat we’re looking forMust-have5+ years of experience in Cybersecurity OperationsHands-on experience inVulnerability Management / Exposure ManagementStrong understanding of:-CVEs and security misconfigurations-risk prioritisation (CVSS or similar)Experience across:-infrastructure environments-web applications (OWASP mindset)Solid understanding of:-networking, OS (Windows/Linux)Active Directory or IAM environmentsStrong communication skills and stakeholder managementExperience working with ticketing systems (Jira, Service Now, etc.)Fluent EnglishNice to haveExposure to cloud environments (AWS, Azure, GCP)Knowledge of CIS benchmarks or hardening standardsBasic scripting (Python / Power Shell)Familiarity with graph-based data (e.G., Neo4j)What makes this role differentYou willnot just detect vulnerabilities — you will drive their resolutionHighly collaborative role with strong exposure to international teamsOpportunity toinfluence processes and shape how vulnerability management is donePotential to grow intoleadership responsibilities over timeWorking environmentInternational and English-speaking environmentHybrid model (1–2 office days/week)Adaptable schedule with high autonomyOccasional travel within EuropeCompensation & benefitsSalary:51k-56k€(depending on experience)Flexible compensation package (~3.7k net/year)Private health insuranceRemote work allowance (1-2 days/week office) and flexible hoursWellbeing benefits
📌 Security Analyst (Vulnerability & Exposure) (Barcelona)
🏢 Q-Tech
📍 Barcelona