15 sep
|
GMV
|
Soto de Viñuelas
15 sep
GMV
Soto de Viñuelas
Application Security and Secure Development | Job DetailsIf you want to take
the next step in your cybersecurity career,
becoming a technical reference in Vulnerability
Management within a large-scale service for a financial sector
organization, your place is with usWell get to the point; we'll tell you what's not on the web.
If you want to know more about de GMVWHAT CHALLENGE WILL YOU BE TAKING ON?You will act as the technical reference for a Vulnerability Management
service, leading advanced analysis, risk-based prioritization and
vulnerability treatment across infrastructure,
applications, Cloud and container environments.Your main
responsibilities will include:Acting as the technical
reference for Vulnerability Management operations and resolving technical escalations.Performing advanced analysis
and risk-based prioritization, considering factors such as CVSS, EPSS,
CISA KEV, exposure, criticality and Threat Intelligence.Defining and monitoring remediation
activities, mitigations and compensating controls.Coordinating with specialized
Hacking,
Cloud, Hardening/Compliance, Threat Intelligence and Automation teams.Supervising critical or
actively exploited vulnerabilities, including technical
verification and closure.Monitoring SLAs, KPIs
and reporting,
identifying opportunities for automation and service improvement.Contributing to the evolution
of the service and the safe and supervised use of AI in Vulnerability Management.WHAT DO WE NEED IN OUR TEAM?We are looking for a
professional with at least 5 years of experience
in cybersecurity, with significant experience in Vulnerability Management, and a technical
university degree or equivalent qualification.You should have:Strong knowledge of the vulnerability
lifecycle and risk-based prioritization, including CVSS, EPSS,
CISA KEV and Threat
Intelligence.Experience with vulnerability
scanning and management tools, preferably Qualys.Solid knowledge of Windows,
Linux, networking, applications, Cloud and container environments.Experience in exploitation
analysis, defining mitigations and compensating controls, as well as SLA, KPI and
reporting management.Knowledge of scripting,
REST APIs, JSON and automation.Strong technical
leadership, autonomy and multidisciplinary coordination skills.Security, Hardening/Compliance, Pentesting and tools such as Prisma Cloud, Qualys WAAS or Burp Suite, will
be valued.Knowledge of cybersecurity governance and risk.Technical English is required, with a B2 level being recommended.WHAT DO WE OFFER? Hybrid
working model and 8 weeks per year of teleworking outside your usual geographical area.Adaptable start and finish times, and intensive working hours Fridays and in
summer. Personalized
career plan development, training and language learning support. National and international mobility. Do you come from another country?
We can offer you a relocation package.Competitive
compensation with ongoing reviews, flexible compensation and
discount on brands.Wellbeing
program: Health, dental and accident insurance; free fruit and coffee, physical,
mental and financial health training, and much more!️ In our recruitment processes you
will always have telephone and personal contact, face-to-face or online, with
our talent acquisition team. In addition, bank transfers and bank cards will never
be requested. If you are contacted through another process, please get in touch with the person responsible for the selection process.️ We promote equal opportunities in
recruitment, and we are committed to inclusion and diversity. WHAT ARE YOU WAITING FOR? JOIN US#LI-Hybrid
📌 Application Security and Secure Development (Soto de Viñuelas)
🏢 GMV
📍 Soto de Viñuelas