Назад
Company hidden
14 часов назад

Vulnerability & Patch Management (Associate) Manager (Cybersecurity)

Формат работы
onsite
Тип работы
fulltime
Английский
b2
Страна
Luxembourg
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Vulnerability & Patch Management (Associate) Manager (Cybersecurity): Managing the end-to-end vulnerability lifecycle across cloud environments, with an accent on Tenable One exposure analytics, risk-based prioritization, and patch coordination. Focus on balancing remediation with high-availability trading requirements, driving SLA closure, and embedding security into infrastructure, DevOps, and cloud workflows.

Location: Luxembourg

Company

hirify.global is a global management consulting group combining strategy, management consulting, data science, and creativity to support client transformation.

What you will do

  • Operate and optimize the vulnerability and patch management platform for vulnerability scanning, asset discovery, and enterprise exposure management.
  • Lead risk-based vulnerability prioritization using Tenable One analytics and exposure scoring.
  • Design, coordinate, and oversee patch management processes for cloud environments, primarily GCP and AWS.
  • Track remediation SLAs, report on risk exposure, and drive timely closure with system and application owners.
  • Collaborate with infrastructure, DevOps, and cloud teams to integrate security into deployment and maintenance workflows.
  • Monitor emerging threats, CVEs, and exploit trends while supporting audits and continuous improvement of security policies and standards.

Requirements

  • 6–10 years of cybersecurity experience, with a strong focus on vulnerability and patch management.
  • Hands-on experience with Tenable One, Tenable.io, Tenable.sc, or Nessus, with willingness to transition to Tenable One where needed.
  • Strong understanding of Windows and Linux operating systems, networking, and common attack vectors.
  • Strong analytical, prioritization, and stakeholder-communication skills.
  • Professional communication and presentation skills in English and French.
  • Work permit sponsorship is not available for this position.

Nice to have

  • ISO 27001 knowledge or certification, such as Lead Implementer or Lead Auditor.
  • Google Cloud Platform certification, such as Professional Cloud Security Engineer.
  • Experience in critical infrastructure, energy, or other highly regulated and high-availability sectors.

Culture & Benefits

  • Full-time employment within a global consulting organization.
  • Work on cybersecurity challenges involving cloud environments and a high-uptime trading environment.
  • Equal opportunity employment based on performance, competence, conduct, and business needs.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →