Vulnerability Management / Incident Response Specialist

Hhw Group

Deutschland

Vor Ort

EUR 70.000 - 90.000

Vollzeit

14 Tage+
Bewerbungsgenerator

Mach aus dieser Rolle ein Vorstellungsgespräch — ein Lebenslauf und ein Anschreiben, die darauf ausgerichtet sind, was dieser Arbeitgeber sucht.

Schaffe es an den ATS-Filtern vorbei

Zusammenfassung

Hhw Group is seeking a Vulnerability Management / Incident Response Specialist to identify, assess, and mitigate security vulnerabilities while effectively responding to security incidents. This role partners with IT, SOC, and security teams to reduce risk exposure and strengthen resilience.

The candidate will conduct regular vulnerability scans, analyze results, and prioritize remediation. They will investigate incidents, correlate alerts, and generate reports for management to drive

Qualifikationen

  • 3–5+ years of experience in vulnerability management or incident response.
  • Familiarity with vulnerability scanning tools (Qualys, Nessus, Rapid7, Tenable) and remediation workflows.
  • Knowledge of incident response frameworks, processes, and best practices.
  • Understanding of networking, endpoints, servers, cloud environments, and common attack vectors.
  • Strong analytical, investigative, and documentation skills.
  • Security certifications such as CISSP, CISM, GCIH, or CRISC (preferred).
  • Experience with SIEM, EDR, or other threat monitoring platforms.
  • Familiarity with scripting or automation for remediation or alert investigation.

Aufgaben

  • Conduct regular vulnerability scans on networks, systems, applications, and cloud environments.
  • Analyze scan results to identify critical vulnerabilities and exposures.
  • Prioritize vulnerabilities based on risk, business impact, and exploitability.
  • Collaborate with IT and application teams to remediate vulnerabilities and track resolution.
  • Maintain documentation and reporting on vulnerability trends and remediation progress.
  • Respond to security incidents, including malware infections and data breaches.
  • Investigate alerts from SIEM/EDR and contain, mitigate incidents per IR plans.
  • Document incident findings and participate in post-incident reviews.
  • Monitor threats and provide actionable recommendations for defenses.
  • Generate management reports on vulnerability trends and remediation effectiveness.

Kenntnisse

Vulnerability management
Incident response
Security analytics
Documentation

Tools

Qualys
Nessus
Rapid7
Tenable
SIEM
EDR
Scripting

Jobbeschreibung

Position Summary

The Vulnerability Management / Incident Response Specialist is responsible for identifying, assessing, and mitigating security vulnerabilities, as well as responding to and remediating security incidents. This dual-focused role ensures the organization maintains a proactive security posture while effectively managing and containing security events. Specialists collaborate with IT, SOC, and security teams to reduce risk exposure and strengthen the organization’s overall security resilience.

Key Responsibilities
Vulnerability Management
  • Conduct regular vulnerability scans on networks, systems, applications, and cloud environments using tools such as Qualys, Tenable, Rapid7, or Nexpose.
  • Analyze scan results to identify critical vulnerabilities, misconfigurations, or exposures.
  • Prioritize vulnerabilities based on risk, business impact, and exploitability.
  • Collaborate with IT and application teams to remediate vulnerabilities and track resolution.
  • Maintain documentation and reporting on vulnerability trends, metrics, and remediation progress.
Incident Response
  • Respond to security incidents, including malware infections, unauthorized access, data breaches, and policy violations.
  • Investigate alerts and anomalies from SIEM, endpoint protection, or other monitoring tools.
  • Contain, mitigate, and remediate incidents according to defined incident response plans.
  • Document incident findings, timelines, actions taken, and lessons learned.
  • Participate in post-incident reviews and recommend improvements to controls and processes.
Threat Analysis & Risk Assessment
  • Conduct root cause analysis to identify underlying vulnerabilities exploited during incidents.
  • Monitor emerging threats, exploits, and attack vectors to proactively improve defenses.
  • Provide actionable recommendations for security hardening and risk reduction.
Reporting & Collaboration
  • Generate reports for management on vulnerability trends, incident metrics, and remediation effectiveness.
  • Collaborate with SOC Analysts, SIEM Engineers, IT teams, and security leadership to address risks.
  • Assist in compliance reporting for frameworks such as HIPAA, SOC 2, ISO 27001, PCI DSS.
Continuous Improvement
  • Maintain knowledge of industry best practices for vulnerability management and incident response.
  • Recommend improvements to detection, monitoring, and response workflows.
  • Participate in security projects and patch management planning and system upgrades.
Qualifications
Required
  • 3–5+ years of experience in vulnerability management, incident response, or cybersecurity operations.
  • Familiarity with vulnerability scanning tools (Qualys, Nessus, Rapid 7, Tenable) and remediation workflows.
  • Knowledge of incident response frameworks, processes, and best practices.
  • Understanding of networking, endpoints, servers, cloud environments, and common attack vectors.
  • Strong analytical, investigative, and documentation skills.
Preferred
  • Security certifications such as CISSP, CISM, GCIH, or CRISC.
  • Experience with SIEM, EDR, or other threat monitoring platforms.
  • Familiarity with scripting or automation for remediation or alert investigation.
  • Experience in a SOC or Managed Security Services environment.
Hol dir deinen kostenlosen, vertraulichen Lebenslauf-Check.
oder ziehe deine Datei hierhin.
Similar jobs

Ähnliche Jobs, die dir auch gefallen könnten

Specialist - Information Security
Specialist - Information Security

Everise • Deutschland

Hybrid
EUR 65.000 - 95.000
Head of Cyber Defence & Incident Response
Head of Cyber Defence & Incident Response

Quadient • Deutschland

Hybrid
EUR 120.000 - 190.000
Vulnerability Operations Center Lead
Vulnerability Operations Center Lead

Nebius B.V. • Deutschland

Remote
EUR 90.000 - 120.000
Systems Engineer - SOC
Systems Engineer - SOC

Grohe • Deutschland

Vor Ort
EUR 60.000 - 90.000
Penetration Tester / Ethical Hacker
Penetration Tester / Ethical Hacker

Hhw Group • Deutschland

Vor Ort
EUR 65.000 - 100.000
Offensive Security Analyst
Offensive Security Analyst

Sonoco • Hub

Vor Ort
EUR 60.000 - 85.000
Senior Cyber Defense Analyst – SOC Analyst
Senior Cyber Defense Analyst – SOC Analyst

Jobtailor • Karlsruhe

Vor Ort
EUR 60.000 - 80.000
Application Security & VIPR Expert
Application Security & VIPR Expert

Armis • Deutschland

Vor Ort
EUR 120.000 - 160.000
Security Incident Manager - ICT Risk Department
Security Incident Manager - ICT Risk Department

MAM Gruppe • Frankfurt

Hybrid
EUR 70.000 - 90.000
Competitive compensation package
Performance-based bonus
Work-life balance
+1
(Senior) Incident Responder
(Senior) Incident Responder

Forensic Focus Limited • Hamburg

Hybrid
EUR 55.000 - 75.000