Job Description
📋 Description Support governance and improvement of enterprise Vulnerability Management. Monitor remediation across infrastructure, cloud, endpoints, and apps. Perform risk-based analysis using exploitability, asset criticality, and threat intel. Correlate vulnerability data with CMDB, BIA, SBOM/SCA, and ownership data. Prioritize vulnerabilities with a risk-based model considering KEV/EPSS and exposure. Coordinate remediation plans with Infrastructure, Cloud, Development, App Security, and Risk teams. 🎯 Requirements Master's degree in Cybersecurity, CS, or related field. 2-5 years in Vulnerability Management, Security Operations, or Governance. Understanding of vulnerability lifecycle and remediation practices. Familiarity with vulnerability assessment platforms and reporting solutions. Knowledge of CVSS, EPSS, CISA KEV, exploit intelligence, and threat intel feeds. SBOM/SCA concepts; DevSecOps familiarity; ISO 27001, NIST CSF, CIS Controls, DORA, or NIS2 risk management. 🎁 Benefits Permanent employment contract. CCNL Metalmeccanico labor contract. Career development in a leading international technology group. Exposure to enterprise-scale cybersecurity governance in a dynamic environment. International, cross-functional team in a global setting.