Ta lista zawiera jedynie kraje, dla których opublikowano oferty pracy w wybranym języku (np. we francuskiej wersji wyświetlane są tylko oferty pracy napisane po francusku, a w angielskiej – tylko te po angielsku).
VulnOps Specialist position at Techland, a major video game developer in Poland. The role involves performing vulnerability scans, analyzing results, prioritizing risks, working with IT/DevOps teams on remediation, and supporting security assessments and compliance.
Obowiązki:
Performing regular vulnerability scans across infrastructure, endpoints and applications using tools such as Qualys, Nessus or OpenVAS
Validating and analyzing scan results to identify exploitable or high-risk issues
Prioritizing vulnerabilities based on risk, exposure, and business impact
Working closely with IT, infrastructure and DevOps teams to ensure timely remediation or mitigation of findings
Maintaining and optimizing scanning configurations, asset groups and exception handling workflows
Supporting patch management monitoring and remediation tracking
Creating reports, dashboards and metrics for internal stakeholders and compliance use
Participating in security assessments, audits and hardening projects
Wymagania:
Strong understanding of vulnerability types (CVE, CVSS, CWE) and risk assessment methodologies
Hands-on experience with at least one vulnerability management platform (e.g. Qualys, Tenable, Rapid7)
Familiarity with patching processes and system configuration management in enterprise environments
Ability to analyze scan results and effectively communicate findings to both technical and non-technical stakeholders
Working knowledge of operating systems (Windows, GNU/Linux, macOS) and network protocols
Solid documentation skills and attention to detail
Very good command of English
Mile widziane:
Experience with CI/CD security and integration of scanners into pipelines
Familiarity with compliance frameworks (e.g. ISO 27001, NIST, SOC 2) and audit support
Understanding of configuration compliance (e.g. CIS Benchmarks, SCAP)
Exposure to container scanning tools (e.g. Trivy, Anchore, Aqua)
Experience working with ticketing/integration platforms (e.g. Jira, ServiceNow) and knowledge databases (Confluence)
Security certifications such as CompTIA Security+, GSEC, or vulnerability-related training (e.g. Tenable, Qualys certified)
Co oferujemy:
private medical care
life insurance
pro-health campaigns
gifts for different occasions
outstanding work atmosphere in a highly-skilled team of professionals
flexible working hours
no dress code
full support of the dedicated HR Business Partner
dedicated development budget for each employee
extra two paid days for training and CSR
stable career paths
extensive internal and external training
financing of English and Polish language classes
state-of-the-art offices filled with chillout zones
Używamy plików cookie, aby poprawić Twoje doświadczenia podczas przeglądania, analizować ruch i dostarczać spersonalizowane treści. Klikając „Akceptuję”, wyrażasz zgodę na używanie plików cookie.