Cybersecurity Vulnerability Management Specialist
- Conduct comprehensive vulnerability assessments using automated scanning tools including InsightVM, Nessus, and Qualys
- Perform manual security testing and penetration testing to identify complex vulnerabilities
- Analyze vulnerability scan results, false positives, and prioritize remediation based on risk scoring
- Track vulnerability lifecycle from discovery through remediation and verification
- Maintain vulnerability databases and generate executive-level security metrics and dashboards
- Evaluate vulnerability severity using CVSS scoring and business impact assessments
- Correlate vulnerability data with threat intelligence to identify active exploitation risks
- Conduct risk assessments considering asset criticality, environmental factors, and exposure levels
- Develop vulnerability treatment strategies including remediation, mitigation, and acceptance decisions
- Create risk-based remediation roadmaps and timeline recommendations
- Collaborate with IT teams to develop and implement remediation strategies and patch deployment schedules
- Coordinate emergency patching for critical vulnerabilities and zero-day exploits
- Validate remediation effectiveness through re-scanning and verification procedures
- Manage patch testing procedures and rollback plans for critical systems
- Implement compensating controls and temporary mitigations for systems that cannot be immediately patched
- Generate comprehensive vulnerability reports for technical teams, management, and audit purposes
- Create security metrics and KPIs to measure vulnerability management program effectiveness
- Support compliance audits and regulatory requirements (SOX, PCI-DSS, HIPAA, ISO 27001)
- Maintain vulnerability management documentation and standard operating procedures
- Present security posture updates to executive leadership and risk committees
- 6+ years experience in vulnerability management and cybersecurity operations
- Expert proficiency with vulnerability scanning tools (InsightVM, Nessus, Qualys, OpenVAS)
- Strong knowledge of common vulnerabilities (OWASP Top 10, CVE database, CWE framework)
- Experience with patch management systems and automated remediation tools
- Understanding of network security, web application security, and infrastructure hardening
- Proficiency in scripting languages (Python, PowerShell) for automation and data analysis
- Strong understanding of risk assessment methodologies and vulnerability prioritization frameworks
- Experience with penetration testing tools and manual security assessment techniques
- Knowledge of security frameworks (NIST, ISO 27001, CIS Controls) and compliance requirements
- Understanding of threat intelligence integration and attack vector analysis
- Bachelor's degree in Cybersecurity, Information Technology, or related field
- Security certifications (CISSP, CISM, CEH, GCIH, GIAC)
- Experience with cloud security assessments (AWS, Azure, GCP)
- Background in DevSecOps and secure software development lifecycle integration
- Knowledge of security orchestration and automated response (SOAR) platforms
Emplois Recommandés
Stage - Junior UX / UI research & design
Stage – Junior UX / UI research & design Paris 17, France Le Comité de Direction d'AXA pilote une initiative stratégique unique - la Digital Commercial Platform (DCP) – conçue pour transformer …
Retail Ambassador Intern
WatchFinder seeks a Retail Ambassador Intern for the holiday season in Paris. This role involves welcoming and assisting clientele, mastering sales procedures, and supporting sales operations. Fluency…
Auditeur Débutant en CDI - secteur Asset Management - Paris-Juillet 2025 F/H
Au sein du département FSO (Financial Services Office), 1 200collaborateurs en France combinent leurs expertises métiers et fonctionnelles, afin de répondre efficacement aux besoins de nos clients en …
Chargé(e) d'opérations H/F
Le poste : LTD, cabinet de recrutement et agence de travail temporaire, recherche pour le compte de son client un(e) chargé(e) d'opérations H/F en CDI. Le poste est basé à Paris 10ème. Ce poste né…
Responsable Grands Comptes Neurosciences - Gironde, Pyrénées-Atlantiques, Landes, Dordogne - CDD - H/F
Poste ouvert aux personnes en situation de handicap. Ipsen est un groupe biopharmaceutique mondial de spécialité, engagé à améliorer la vie des patients et à proposer des solutions thérapeutiques inn…
Business developer CHR
MD SKILLS, cabinet de conseil en recrutement et évaluation, recherche pour l'un de ses clients, distributeur d'équipements professionnels, un Business Developer CHR (F/H) en CDI. Au cœur de l'écosy…
Senior Full-Stack Engineer, Contract
Who Are We? Xcelirate develops technologically-advanced platforms which are accessed by thousands of users every minute! We are proud to offer a workplace where the sharpest developers come togethe…
Lead Data Engineer Snowflake
Lead Data Engineer Snowflake - Construisez et faites briller notre Data Platform ! Vous êtes passionné(e) par l'architecture data moderne, Snowflake n'a plus de secrets pour vous, et vous aimez autan…
Responsable Achats - Mobilité Électrique (H/F)
Notre client, start-up innovante de la mobilité urbaine électrique, développe une solution de microcar destinée à l’autopartage, 100 % électrique, connectée et pensée pour réduire l’empreinte carbone…