
.png)
IT Infrastructure Vulnerability Manager
Our client is Edenred Digital Center, technology hub where digital initiatives across the business are powered up by a team of tech pros. Edenred is a leading services and payment platform, supporting employee benefits administration across 46 countries.
The Vulnerability Manager is a new role created in the IT Security Operations team which is managing the prevention, detection and response to the Cyber threats. This is a freshly centralized function in the Edenred Group, consolidating Security activities across all countries in order to come up with improved capacity and skills.
As an Infrastructure Vulnerability Manager, you'll work alongside IT Infra and Cloud teams, defining and contributing to the identification and remediation of vulnerabilities to cyber risks of all kinds.
This role best fits those candidates who feel at ease navigating into large corporate environments, finding their way and dealing with complexity and ambiguity that are inherent around large scale transformation programs.
Your main responsibilities will revolve around the following:
-
Work with all Edenred's business units and functions to identify vulnerabilities at infra and application level;
-
Run periodic security scans for internal and external infrastructure to identify systems and applications with unsecure configuration and missing patches;
-
Work with external parties and vendors to discover vulnerabilities exposed to Internet;
-
Perform risk analysis on each missing patch to develop plans for remediation - installation of patches or workarounds, if needed;
-
Raise a Risk Acceptance Form and lead the sign off from the application Owner to the validation of the Security Board;
-
Act as a security advisor when IT Infrastructure and Cloud team have any concerns around remediation plans;
-
Part of the IT Change management process by qualifying the security impact when a change must be validated by the CAB (Change Advisory Board);
-
Accountable for the progress of all topics in the remediation plan, working with stakeholders and setting up the right measures and KPIs;
-
Get involved in other projects that will be run within the Global IT Security community.
This role is for you if you have:
-
At least 3 years working in the IT security space;
-
Good knowledge of technical concepts and protocols related to Windows/Linux OS, Network, Cloud Platforms, Active Directory and associated field (PKI, DNS, Azure AD), etc;
-
Any project management skills will help the successful candidate coordinate the execution of remediation plans;
-
Any security certification is nice to have but not mandatory;
-
Fluent in English.
Why you should consider this role?
-
You'll operate at a global scale, being part of a central security hub;
-
You'll work in a very flexible hybrid model that allows you to use your energy and inspiration at your best;
-
Meal vouchers | Holiday vouchers | Benefit budget | Medical subscription | Life insurance | Extra days off
-
Budget for learning and certifications
If you feel you still need to fill some gaps for this position don't give up, let's talk first.
If interested: send your resume to recruitment@itworx.ro and we'll reach out to you shortly.
Else: you can refer an interested friend or acquaintance.