Job Openings Vulnerability Management Expert (Prague)

About the job Vulnerability Management Expert (Prague)

We are looking for someone to take ownership of vulnerability management in a regulated financial environment. You will run the whole process, from rules and SLAs through escalations to reporting for senior management.

What you will be responsible for

  • Owning and developing the Vulnerability Management process across the organisation, including rules, standards and remediation SLAs
  • Connecting Vulnerability and Patch Management so that identified vulnerabilities are fixed within agreed timelines and systemic blockers are removed
  • Running the escalation process for SLA breaches and the risk acceptance process, together with IT Risk Management and asset owners
  • Maintaining a central vulnerability repository with consistent data across Tenable.SC, Orca, JIRA, ServiceNow and the CMDB
  • Delivering reporting, dashboards and metrics for IT management, internal audit and regulatory reviews (DORA, regulator requirements)
  • Proposing automation and integration improvements, and improving the quality of IT asset data and ownership

What we expect from you

  • Experience in Vulnerability Management, cyber security or IT Risk Management
  • Hands-on experience with Tenable and Orca, or comparable tools such as Qualys or Rapid7
  • Working knowledge of ServiceNow, JIRA and CMDB
  • Understanding of Patch and Asset Management and ITIL processes
  • Experience with management reporting and KPIs
  • Ability to drive change across teams and explain risk to both engineers and senior management
  • Fluent Czech or Slovak and at least basic English

Nice to have

  • Experience in banking or another regulated environment
  • Knowledge of DORA, ISO 27001 or NIST, and experience remediating audit findings
  • Cloud experience (AWS, Azure or OCI) and Power BI