Vulnerability Management (Cloud Focus) - Senior


Paris
Contract
€500 - €600 EUR a day
Cybersecurity
CR/604103_1785751793
Vulnerability Management (Cloud Focus) - Senior

Location: Remote within Europe (France, or Poland preferred)
Contract: 6-Month Contract (Extension Likely)
Start Date: September 2026

About the Opportunity

We are seeking a Vulnerability Management Specialist to join a growing cybersecurity team responsible for building and scaling a new Vulnerability Operations Centre (VOC).

This is a unique opportunity to join at an early stage of the programme's development. The successful candidate will play a key role in helping define processes, governance, operating procedures and vulnerability management workflows, while supporting day-to-day vulnerability operations across a global technology environment.

The initial focus of the role will be approximately 80% programme build activities and 20% operational vulnerability management, with operational responsibilities increasing as the function matures.

Key Responsibilities

Vulnerability Management Programme Development

  • Contribute to the design and implementation of a new Vulnerability Operations Centre (VOC)
  • Help define and document operational procedures, workflows and standards
  • Support the development of vulnerability management governance frameworks
  • Assist in establishing vulnerability ownership, escalation paths and remediation processes
  • Contribute to operating model improvements and process maturity initiatives

Cloud Security & Vulnerability Management

  • Perform vulnerability analysis across cloud and on-premise environments
  • Support the rollout and optimisation of vulnerability management tooling
  • Analyse vulnerability data and prioritise risk based on business impact and exploitability
  • Assist with detection, assessment and reporting activities across enterprise technology environments
  • Support the implementation of risk-based vulnerability management practices

Stakeholder Management & Remediation

  • Work closely with infrastructure, cloud and application teams to drive remediation activities
  • Support security champions and technology teams in understanding and addressing vulnerabilities
  • Create and manage remediation tickets and track progress against agreed SLAs
  • Provide guidance and expertise to teams with varying levels of vulnerability management maturity

Reporting & Continuous Improvement

  • Produce operational and management reporting
  • Help improve data quality and reporting capabilities
  • Contribute to tooling strategy and vulnerability management optimisation initiatives
  • Support the ongoing maturity of the security programme

Required Experience

  • Experience in Vulnerability Management, Cyber Security Operations, Security Engineering or Cloud Security
  • Strong understanding of vulnerability management processes and remediation lifecycles
  • Experience working within cloud environments (AWS, Azure and/or GCP)
  • Familiarity with vulnerability scanning and exposure management tools
  • Experience engaging with technical stakeholders to drive remediation efforts
  • Strong analytical, communication and problem-solving skills
  • Ability to work within a growing or evolving security function

Highly Desirable

  • Experience with CNAPP/CSPM platforms
  • Experience building or enhancing vulnerability management programmes
  • Knowledge of CVSS, EPSS and risk-based prioritisation methodologies
  • Experience creating operational procedures, playbooks or security processes
  • Background in cloud security, infrastructure security or security operations
  • Experience working within large enterprise environments

What We're Looking For

We're interested in speaking with both:

  • Mid-level professionals with strong operational vulnerability management experience looking to take on broader programme responsibilities.
  • Senior professionals who have helped build, mature or transform vulnerability management functions and can contribute to strategy, governance and operational design.

This opportunity would suit someone who enjoys building security capabilities from the ground up while remaining close to day-to-day security operations.

FAQs

Congratulations, we understand that taking the time to apply is a big step. When you apply, your details go directly to the consultant who is sourcing talent. Due to demand, we may not get back to all applicants that have applied. However, we always keep your resume and details on file so when we see similar roles or see skillsets that drive growth in organizations, we will always reach out to discuss opportunities.

Yes. Even if this role isn’t a perfect match, applying allows us to understand your expertise and ambitions, ensuring you're on our radar for the right opportunity when it arises.

We also work in several ways, firstly we advertise our roles available on our site, however, often due to confidentiality we may not post all. We also work with clients who are more focused on skills and understanding what is required to future-proof their business. 

That's why we recommend registering your resume so you can be considered for roles that have yet to be created. 

Yes, we help with resume and interview preparation. From customized support on how to optimize your resume to interview preparation and compensation negotiations, we advocate for you throughout your next career move.

Handpicked roles for you