2 дня назад
Vulnerability & Patch Management (Associate) Manager (Cybersecurity)
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
Текст:
TL;DR
Vulnerability & Patch Management (Associate) Manager (Cybersecurity): Managing the end-to-end vulnerability lifecycle across cloud environments, from discovery and risk prioritization to remediation and verification, with an accent on Tenable One, GCP, AWS, and high-uptime environments. Focus on optimizing vulnerability scanning, coordinating patch processes, tracking remediation SLAs, and translating emerging threats into actionable remediation plans.
Location: Brussels, Belgium; hybrid work from home, the client, or the Brussels office
Company
is a global management consulting group combining strategy, management consulting, data science, and creativity across multiple sectors and services.
What you will do
- Own the end-to-end vulnerability lifecycle across cloud environments, primarily GCP and AWS.
- Operate and optimize the vulnerability and patch management platform for scanning, asset discovery, and exposure management.
- Lead risk-based vulnerability prioritization using Tenable One analytics and exposure scoring.
- Design, coordinate, and oversee patch management processes for a high-uptime trading environment.
- Track remediation SLAs, report on risk exposure, and drive closure with system and application owners.
- Collaborate with infrastructure, DevOps, and cloud teams to embed security into deployment and maintenance workflows.
Requirements
- 6–10 years of cybersecurity experience focused on vulnerability and patch management.
- Hands-on experience with Tenable One, Tenable.io, Tenable.sc, or Nessus, with willingness to transition to Tenable One where needed.
- Strong understanding of Windows and Linux operating systems, networking, and common attack vectors.
- Strong analytical, prioritization, and stakeholder-communication skills.
- Ability to work in Belgium and comply with the Brussels-based hybrid arrangement; a work permit cannot be provided.
Nice to have
- ISO 27001 knowledge or certification, such as Lead Implementer or Lead Auditor.
- Google Cloud Platform certification, such as Professional Cloud Security Engineer.
- Experience in critical infrastructure, energy, or other highly regulated and high-availability sectors.
Culture & Benefits
- Company car or flexible mobility plan.
- Structured yearly salary increases and bonuses.
- Flexible transport options.
- Training plan for professional development and subject-matter expertise.
- International environment with opportunities to share knowledge and work on international projects.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →