Job Openings
Vulnerability Management Expert (Prague)
About the job Vulnerability Management Expert (Prague)
We are looking for someone to take ownership of vulnerability management in a regulated financial environment. You will run the whole process, from rules and SLAs through escalations to reporting for senior management.
What you will be responsible for
- Owning and developing the Vulnerability Management process across the organisation, including rules, standards and remediation SLAs
- Connecting Vulnerability and Patch Management so that identified vulnerabilities are fixed within agreed timelines and systemic blockers are removed
- Running the escalation process for SLA breaches and the risk acceptance process, together with IT Risk Management and asset owners
- Maintaining a central vulnerability repository with consistent data across Tenable.SC, Orca, JIRA, ServiceNow and the CMDB
- Delivering reporting, dashboards and metrics for IT management, internal audit and regulatory reviews (DORA, regulator requirements)
- Proposing automation and integration improvements, and improving the quality of IT asset data and ownership
What we expect from you
- Experience in Vulnerability Management, cyber security or IT Risk Management
- Hands-on experience with Tenable and Orca, or comparable tools such as Qualys or Rapid7
- Working knowledge of ServiceNow, JIRA and CMDB
- Understanding of Patch and Asset Management and ITIL processes
- Experience with management reporting and KPIs
- Ability to drive change across teams and explain risk to both engineers and senior management
- Fluent Czech or Slovak and at least basic English
Nice to have
- Experience in banking or another regulated environment
- Knowledge of DORA, ISO 27001 or NIST, and experience remediating audit findings
- Cloud experience (AWS, Azure or OCI) and Power BI