CrawlJobs Logo

Vulnerability Management Specialist

welovesalt.com Logo

Salt

Location Icon

Location:
Saudi Arabia , Riyadh

Category Icon

Job Type Icon

Contract Type:
Not provided

Salary Icon

Salary:

Not provided

Job Description:

We are seeking a Vulnerability Management Specialist who will be responsible for identifying, validating, and supporting the remediation of security vulnerabilities across client environments to ensure strong cyber resilience. You should have hands-on experience with vulnerability management platforms, a strong understanding of security frameworks and threat methodologies, and the ability to work closely with client IT teams to drive remediation activities. In addition to technical vulnerability assessments, the role will also contribute to penetration testing activities, third-party cyber risk reviews, and cybersecurity awareness initiatives.

Job Responsibility:

  • Conduct regular vulnerability scans and assessments across client environments using tools such as Tenable, Qualys, and Microsoft Defender Vulnerability Management
  • Analyze scan results and prioritize vulnerabilities based on risk level, exploitability, and business impact
  • Work closely with client IT teams to support vulnerability remediation activities, including patch management and configuration hardening
  • Apply threat intelligence and frameworks such as MITRE ATT&CK to provide context and improve risk prioritization
  • Contribute to the continuous improvement of vulnerability assessment methodologies and processes
  • Conduct web application, mobile application, and network penetration testing across internal and external environments
  • Execute approved test cases, perform manual validation checks, and validate exploitability of identified vulnerabilities
  • Document technical findings with clear replication steps, impact assessments, and remediation recommendations
  • Participate in engagement scoping, rules of engagement discussions, and retesting activities
  • Develop and maintain testing scripts, checklists, and reusable security testing artefacts
  • Contribute to secure code review activities, identifying insecure coding patterns and validating findings from SAST tools
  • Review automated security findings and summarize issues in a clear, actionable format for development teams
  • Produce detailed vulnerability assessment reports, including metrics, trends, and risk insights
  • Ensure reports are aligned with client security requirements and regional compliance standards
  • Maintain high-quality documentation of findings and remediation guidance
  • Act as a trusted advisor to clients, ensuring vulnerability management activities align with their security objectives
  • Maintain clear and proactive communication with both technical and non-technical stakeholders

Requirements:

  • Hands-on experience with vulnerability management tools, particularly Tenable, Qualys, Microsoft Defender
  • Experience conducting vulnerability assessments, remediation support, and security testing
  • Understanding of vulnerability prioritization and scoring methodologies, including CVSS
  • Knowledge of industry security standards and frameworks such as ISO 27001, NIST, Cybersecurity Framework (CSF), CIS Controls, MITRE ATT&CK, OWASP Top 10
  • Experience conducting web and network penetration testing
  • Familiarity with secure code review practices and SAST tools such as Fortify, Veracode, or Checkmarx
  • Strong analytical skills to interpret vulnerability data and provide actionable recommendations
  • Excellent communication and reporting skills, with the ability to explain complex security findings to non-technical stakeholders

Additional Information:

Job Posted:
March 26, 2026

Work Type:
On-site work
Job Link Share:

Looking for more opportunities? Search for other job offers that match your skills and interests.

Briefcase Icon

Similar Jobs for Vulnerability Management Specialist

Vulnerability Management Specialist

We are seeking one Vulnerability Management Specialist w/ English for our client...
Location
Location
Portugal , Porto
Salary
Salary:
Not provided
https://www.inetum.com Logo
Inetum
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Minimum 5 years’ experience in IT field
  • Wide vision on IT field
  • Cybersecurity knowledge/experience is a plus
  • Very good oral and written English
  • Produce regular and on demand reports about all topics
  • MS Excel advanced knowledge
  • Fulltime
Read More
Arrow Right

Head of cyber threat exposure and attack surface management

Lead the enterprise-wide Continuous Threat Exposure Management (CTEM) strategy, ...
Location
Location
United Kingdom , Knutsford
Salary
Salary:
Not provided
barclays.co.uk Logo
Barclays
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Experience in cybersecurity with direct exposure to vulnerability management, red teaming, or threat exposure reduction
  • Proven track record leading programs integrating CSPM, SSPM, ASM, BAS, or exposure correlation technologies
  • Strong understanding of attack paths, adversary emulation, and continuous validation concepts
Job Responsibility
Job Responsibility
  • Own and drive the global CTEM strategy, establishing a continuous, threat-driven exposure management lifecycle aligned with NIST, MITRE, and CISA Secure-by-Design principles
  • Lead and develop a high-performing CTEM team, fostering collaboration, technical excellence, and an outcome-driven culture
  • Integrate and oversee key exposure management technologies, including Cloud Security Posture Management (CSPM), SaaS Security Posture Management (SSPM), Attack Surface Management (ASM), Breach & Attack Simulation (BAS), and other exposure correlation platforms
  • Correlate assets, identity, vulnerability, and configuration to identify high-impact, exploitable attack paths and inform prioritized remediation strategies
  • Collaborate with Application Security, Vulnerability Management, Red Team, and Security Operations to synchronize discovery, validation, and remediation of exposures across the enterprise
  • Align CTEM outputs with real-world adversary behaviors, leveraging Red Team and Threat Intelligence input to validate attack paths and focus on exploitable conditions
  • Drive automation and AI-enabled analytics to continuously map, assess, and measure reductions in the organization’s attack surface
  • Translate technical findings into business risk language, enabling senior leadership and risk committees to make data-driven investment decisions
  • Define and lead CTEM governance and operating models, ensuring exposure assessments, validation, and remediation tracking are embedded in operational processes
  • Establish clear KRIs and maturity metrics that demonstrate continuous improvement in visibility, validation, and response effectiveness
What we offer
What we offer
  • Competitive holiday allowance
  • Life assurance
  • Private medical care
  • Pension contribution
  • Fulltime
Read More
Arrow Right

Cloud Digital Security Ops Specialist

The Cloud Digital Security Ops Specialist will be responsible for driving improv...
Location
Location
India , Bengaluru
Salary
Salary:
Not provided
https://www.soprasteria.com Logo
Sopra Steria
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Engineering graduate
  • at least one certification preferred (AWS Cloud Certifications such as Cloud Practitioner, Security Specialty or Google Cloud Certifications such as Associate/Professional)
  • excellent English communication and problem-solving skills
  • ability to understand complex systems processes and programs
  • knowledge of cyber security best practices
  • mandatory knowledge of AWS and/or GCP
  • knowledge of Azure is a plus
  • cloud SecOps skills like vulnerability management and obsolescence management
  • technical capability and analytical problem-solving ability
  • passion for emerging technology
Job Responsibility
Job Responsibility
  • Driving IM-wide improvements
  • ensuring conformity with Organisation/Customer Enterprise Security Protection Baselines (ESPB)
  • analysing critical alerts and security findings
  • identifying systemic issues and launching remediation action plans
  • supporting application teams in understanding alerts and prioritising remediation
  • performing adhoc cyber audits
  • raising awareness on cyber security
  • identifying and addressing cyber security blind spots
  • deploying missing security capabilities
  • defining required security controls
What we offer
What we offer
  • inclusive and respectful work environment
  • positions open to people with disabilities
  • Fulltime
Read More
Arrow Right

Cyber Security Specialist

Cybersecurity is an always-on field, so you’ll stay advised of all the latest tr...
Location
Location
Netherlands , Nieuwegein
Salary
Salary:
Not provided
https://www.soprasteria.com Logo
Sopra Steria
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • A completed HBO or WO education with a focus on IT or Cybersecurity
  • At least 2 years of experience as a cybersecurity specialist in the field of security engineering, security monitoring and/or incident response
  • Certifications such as GSEC, GCIH, Security+ or certifications in Azure (e.g. AZ900 and AZ500), Microsoft SC-200, AWS, Splunk or Elastic
  • Languages: Dutch (required) and English
Job Responsibility
Job Responsibility
  • Conduct threat analysis, incident response
  • Ensure assets meet security standards, maintain confidentiality, and contribute to safeguarding the systems
  • Implement new solutions to protect companies against incidents
  • Share knowledge with colleagues
What we offer
What we offer
  • Mobility options (including a company car), insurance coverage, meal vouchers, eco-cheques
  • Continuous learning opportunities through the Sopra Steria Academy
  • Opportunity to connect with fellow Sopra Steria colleagues at various team events
Read More
Arrow Right

Vulnerability Management Specialist

We are seeking a Vulnerability Management Specialist to operate and manage secur...
Location
Location
India , Bangalore
Salary
Salary:
Not provided
vodafone.com Logo
Vodafone
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Minimum 7+ years of experience in vulnerability scanner management and vulnerability assessment
  • Expertise in tools such as Qualysguard VMDR, WAS, Nessus, OpenVAS, ACUNETIX, and penetration testing frameworks like Metasploit
  • Strong knowledge of operating systems (Linux, Windows), web applications, virtualisation (VMware), and network security
  • Familiarity with OWASP, CVE, SSL PKI, IAM, SIEM solutions, and penetration testing methodologies
  • Industry-recognised certifications such as CEH (Certified Ethical Hacker)
  • Degree in Computer Science, Information Technology, or Engineering
  • Excellent communication skills and ability to collaborate with global teams
Job Responsibility
Job Responsibility
  • Execute security assessments on technical devices and systems to identify and articulate risks
  • Manage and administer vulnerability scanners, ensuring effective controls are in place
  • Proactively discover vulnerabilities and ensure mitigation actions are implemented within defined timelines
  • Create detailed technical reports and collaborate with resolver teams for remediation
  • Research zero-day vulnerabilities and exploitation techniques, ensuring scans target emerging threats
  • Validate vulnerabilities manually and integrate findings to provide a holistic security posture
  • Document SOPs, processes, and procedures for vulnerability management
  • Support cyber incident response teams during crisis management for vulnerability identification
  • Coordinate with stakeholders to develop requirements for service enhancements
What we offer
What we offer
  • Opportunity to work on advanced vulnerability management projects in a global environment
  • Exposure to cutting-edge security tools and technologies
  • Collaborative work culture focused on innovation and continuous improvement
  • Hybrid work model offering flexibility and work-life balance
Read More
Arrow Right

IT Security Specialist

Amla Commerce is looking for an experienced IT Security Specialist to join our t...
Location
Location
United States , Milwaukee
Salary
Salary:
Not provided
amla.io Logo
Amla Commerce
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Bachelor's degree in Computer Science, Information Technology, or a related field
  • Minimum 2 Years of relevant work experience
  • Proven experience in infrastructure security, manual penetration testing, vulnerability assessment, and web application security
  • Strong knowledge of penetration testing tools and frameworks, including Burp Suite, Owasp Zap, and Metasploit Framework
  • Familiarity with OWASP Top 10 vulnerabilities and best practices for securing web applications
  • Experience with IDS/IPS tools for monitoring and preventing intrusions
  • Familiarity with wireless/Wi-Fi security protocols, encryption standards, and best practices
  • Knowledge of network and system security protocols, technologies, and best practices
  • Strong problem-solving skills and ability to think strategically about security risks and solutions
  • Excellent communication and interpersonal skills to effectively collaborate with cross-functional teams and stakeholders
Job Responsibility
Job Responsibility
  • Conduct manual penetration testing of infrastructure systems, networks, and applications to identify security vulnerabilities and potential risks
  • Utilize various penetration testing tools such as Nmap, Nessus, Burp Suite, Owasp Zap, and Metasploit Framework to identify and exploit vulnerabilities
  • Perform vulnerability assessments using both manual approaches and vulnerability assessment and penetration testing (VAPT) tools like Nessus, OpenVAS, and Qualys
  • Collaborate with the development team to enhance the security of web applications by implementing secure coding practices and addressing OWASP Top 10 vulnerabilities
  • Configure and manage web application firewalls (WAF) to protect against common web-based attacks
  • Implement and maintain infrastructure firewalls, ensuring that proper configurations are in place to protect the network and systems from unauthorized access
  • Manage IP access control lists and handle blocking/unblocking requests as per security policies
  • Ensure compliance with SOC (Security Operations Center) standards and participate in audits and assessments
  • Provide end user system security by deploying and managing antivirus solutions, conducting security awareness training, and responding to security incidents
  • Stay up-to-date with the latest security threats, vulnerabilities, and industry best practices to proactively identify potential risks and recommend mitigation strategies
Read More
Arrow Right
New

Vulnerability Management SME

Embark on a transformative journey as a Vulnerability Management SME – VP. At Ba...
Location
Location
United States , Whippany
Salary
Salary:
175000.00 - 225000.00 USD / Year
barclays.co.uk Logo
Barclays
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Proficiency with tools such as Nessus, Qualys, Rapid7, or OpenVAS for identifying and analyzing vulnerabilities
  • Understanding of patch deployment strategies, scheduling, and verification across various operating systems and applications
  • Knowledge of network architecture, firewalls, intrusion detection/prevention systems, and secure network protocols
  • Familiarity with Windows, Linux, and macOS platforms, including their respective security features and vulnerabilities
  • Experience with manual and automated penetration testing techniques to validate vulnerabilities
  • Ability to interpret threat feeds, CVEs, and emerging security trends relevant to vulnerability management
  • Understanding of relevant standards and frameworks such as NIST, ISO 27001, CIS Controls, and how they relate to vulnerability management
Job Responsibility
Job Responsibility
  • Allocation of the correct risk rating and remediation prioritisation to a vulnerability based on industry standards for assessment, available threat intelligence concerning exploitation, the reachability of the host (or asset) and the value of the service(s) running on the impacted host
  • Development of vulnerability management operating model, policies and procedures to ensure consistency in vulnerability identification, remediation and reporting
  • Communication of vulnerabilities to relevant parties including senior stakeholders, vendors, external security partners and affect business units using reports and dashboards and provide recommendations for improvement in vulnerability management practices
  • Collaboration with Threat intelligence and Cyber Operations teams to assess and contextualise exposure to latest threat trends and exploits and set appropriate remediation timescales
  • Definition of requirements and acceptance criteria for the implementation and maintenance of automation tools to streamline vulnerability management processes within operating systems and applications
  • Reporting of remediation status of Security Assurance Specialist team findings against Key Risk Indicators
What we offer
What we offer
  • medical, dental and vision coverage
  • 401(k)
  • life insurance
  • paid leave for qualifying circumstances
  • incentive award eligibility
  • competitive holiday allowance
  • private medical care
  • pension contribution
  • Fulltime
Read More
Arrow Right

Senior Cyber Security Specialist - Vulnerability Management

We are seeking a seasoned cyber security professional to lead the Vulnerability ...
Location
Location
India , Bangalore
Salary
Salary:
Not provided
vodafone.com Logo
Vodafone
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Possess over 10 years of IT experience with a strong focus on cyber security, vulnerability management, and remediation
  • Proficient in tools such as QualysGuard VMDR, WAS, and cloud scanning solutions
  • Skilled in web application penetration testing and knowledgeable in OWASP, Kali Linux, Burp Suite, CVE, SSL PKI, IAM, SIEM, and perimeter security
  • Experienced in managing large-scale vulnerability scanning operations and reporting
  • Strong stakeholder management and communication skills
  • Solid understanding of networking and cyber security policies, standards, and procedures
Job Responsibility
Job Responsibility
  • Lead the Vulnerability Management and Responsible Disclosure team to strengthen Vodafone’s cyber defence capabilities
  • Drive vulnerability management initiatives, ensuring timely identification, communication, and remediation of threats
  • Oversee penetration testing activities related to responsible disclosures and support incident response during crises
  • Research emerging threats, including zero-day vulnerabilities, and ensure targeted scans and mitigation actions
  • Champion continuous improvement through automation and cross-functional collaboration
  • Act as a technical expert in security scanning and penetration testing
  • Foster team development through individual growth plans and maintain high engagement levels
  • Contribute to administrative and delivery initiatives across domains
What we offer
What we offer
  • Opportunity to lead a high-impact domain within a global cyber security function
  • Exposure to cutting-edge vulnerability management tools and practices
  • Collaboration with international teams and stakeholders across Vodafone markets
  • A chance to influence Vodafone’s cyber risk strategy and operational resilience
  • A dynamic and inclusive work environment that values innovation and continuous improvement
  • Fulltime
Read More
Arrow Right