Назад
1 месяц назад

Vulnerability Operation Center Lead (Cybersecurity)

Формат работы
remote (только Europe)
Тип работы
fulltime
Грейд
lead
Английский
b2
Страна
Netherlands
Вакансия из списка Hirify.GlobalВакансия из Hirify RU Global, списка компаний с восточно-европейскими корнями
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Vulnerability Operation Center Lead (Cybersecurity): Building a comprehensive vulnerability management lifecycle from the ground up for a full-stack AI cloud platform with an accent on automated triaging, risk-based prioritization, and cross-functional remediation. Focus on designing internal security platforms, implementing AI-assisted triage workflows, and coordinating responses to zero-day vulnerabilities across complex GPU/HPC environments.

Location: Remote (Must be based in Europe)

Company

Nebius is a Nasdaq-listed AI cloud platform provider building high-performance infrastructure for the global AI economy.

What you will do

  • Establish and lead the full vulnerability management lifecycle from detection and triage to remediation across cloud, product, and hardware stacks.
  • Improve automated triaging capabilities using data enrichment, AI-assisted triage, and risk-based scoring frameworks (CVSS, EPSS, SSVC).
  • Perform hands-on validation and triaging of critical and zero-day vulnerabilities.
  • Collaborate with engineering teams to drive remediation accountability and improve patch management efficiency.
  • Develop internal security platforms, including the Unified Vulnerability Management (UVM) system, using Golang.
  • Define and report security KPIs and vulnerability trends to security leadership.

Requirements

  • 5–8 years in information security, with at least 3 years focused on vulnerability management or security operations.
  • Must be based in Europe.
  • Deep expertise in vulnerability scanning tools for cloud-native environments (AWS, GCP, Azure, or private cloud).
  • Ability to write and review code, specifically in Golang, for automation and exploit validation.
  • Strong understanding of CVE/NVD, CVSS, EPSS, and SSVC prioritization frameworks.
  • Track record of working cross-functionally with engineering teams to meet compliance and security goals.

Nice to have

  • Experience building a vulnerability management program from scratch.
  • Familiarity with container and Kubernetes security.
  • Experience with supply chain security (SBOMs, dependency scanning).
  • Bug bounty triage experience.

Culture & Benefits

  • Remote-first culture with high flexibility and ownership.
  • Competitive compensation package including equity upside in a Nasdaq-listed company.
  • Opportunity to lead a team and build a security program from the ground up.
  • Collaborative environment working with world-class engineers on frontier AI infrastructure.
  • International environment with strong career growth and learning opportunities.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →