Lead Vulnerability Expert (F/M)

Equans France

Courbevoie

Sur place

EUR 70 000 - 90 000

Plein temps

14 jours+

Recevez plus de réponses des employeurs

Envoyez un CV adapté au poste en quelques minutes.

Résumé du poste

Equans France is seeking a Lead Vulnerability Expert (Player-Coach) to act as the technical lead for vulnerability management. The candidate will drive advanced vulnerability analysis and support Offensive Security initiatives.

The ideal candidate should have 5 years of relevant experience, a strong command of security tools like Tenable and WIZ, and the ability to mentor a team. This role is critical for maintaining security and driving technical excellence within the Active Defense team.

Qualifications

  • 5 years of experience in vulnerability management or related security functions.
  • Thorough knowledge of security equipment and methods.
  • Ability to analyze and investigate independently.

Responsabilités

  • Lead vulnerability detection, validation, and remediation.
  • Perform advanced vulnerability analysis and attack-path mapping.
  • Mentor and coach team members and foster technical growth.

Connaissances

Knowledge of security equipment methods
5 years’ experience in vulnerability management
Ability to work independently
Strong verbal and written English
Adaptability in a fast-paced environment

Outils

Tenable
WIZ

Description du poste

Job Description
POSITION & RESPONSIBILITIES

Position: Lead Vulnerability Expert (Player-Coach)

Responsibilities:

  • Act as the technical lead for vulnerability detection, validation, and remediation.
  • Perform advanced analysis: exploit reproduction, impact assessment, and attack-path mapping.
  • Optimize vulnerability scanning tools for accuracy and coverage.
  • Master Active Defense tools to enhance efficiency and develop automation capabilities.
  • Mentor and coach team members: review outputs, share best practices, and elevate technical skills.
  • Collaborate with infrastructure, Identity and local teams to optimize remediation efforts.
  • Stay ahead of zero-days, KEV advisories, and exploit trends; lead technical response during critical events.
  • Ensure communication with business units, track incidents, and follow up.
  • Support Offensive Security initiatives with vulnerability context and exploit validation.
MISSION

Technical Excellence

  • Act as the technical authority for vulnerability management within the Active Defense team.
  • Ensure continuous exposure reduction by applying the CTEM (Continuous Threat Exposure Management) framework to prioritize and address vulnerabilities based on real-world risk.
  • Drive advanced vulnerability analysis, including exploit reproduction in collaboration with the offensive security team, attack-path mapping, and impact assessment, to provide actionable insights for remediation.
  • Develop automation and tooling enhancements to improve efficiency and accuracy in vulnerability detection and validation.
Leadership & Enablement
  • Serve as a mentor and coach for a team of analysts and engineers, fostering technical growth and best practices.
  • Act as a bridge between technical teams and business units, ensuring clear communication of risks and remediation priorities.
  • Lead cross-functional collaboration to remove blockers and accelerate remediation efforts.
  • Support Offensive Security initiatives by validating exploitability and providing vulnerability context for attack simulations.
Strategic Contribution
  • Drive and animate community programs (Weekly Operational Cybersecurity Calls, seminars, and other initiatives).
  • Maintain situational awareness of emerging threats, zero-days, and KEV advisories, ensuring rapid technical response during critical events.
  • Contribute to the Active Defense vision by aligning vulnerability management activities with corporate security objectives.
RELATIONSHIPS
  • Reports to: Head of Active Defense
  • Works closely with:
  • Active Defense team members (Vulnerability Management, Offensive Security, SecOps Engineering)
  • CSIRT
  • Infrastructure, Cloud, and Application teams
  • Vulnerability Champions who are part of the local cyber teams
EXPERIENCE

The Lead Vulnerability Expert excels at simplifying and optimizing vulnerability management workflows, demonstrates strong understanding of IT architecture, and can propose effective vulnerability workarounds.

A thorough knowledge of Tenable and WIZ tools is highly appreciated.

The Lead Vulnerability Expert is familiar with intrusion methods on computer systems and networks and can determine the potential impact of a vulnerability according to multiple factors.

  • CVSS score
  • EPSS score
  • Popularity of the impacted hardware or software
  • Ease of exploitability
  • Existing PoC
  • Etc…
REQUIRED SKILLS
  • Have a thorough knowledge of the methods and functions of security equipment.
  • 5 years’ experience with vulnerability management or related security functions.
  • Participate in the improvement and development of process and procedure documentation.
  • Ability to work independently to perform analysis and investigations.
  • Possess an information security and operations mindset.
  • Keep a personal watch and share it with the security teams.
  • Ability to multi-task and prioritize.
  • Full proficiency in verbal and written English.
  • Adaptability and resilience in a fast-paced, evolving threat landscape.
Obtenez votre examen gratuit et confidentiel de votre CV.
ou faites glisser et déposez votre fichier ici.
Similar jobs

Postes similaires à comparer

Lead Vulnerability Strategist & Threat Response
Lead Vulnerability Strategist & Threat Response

Equans France • Courbevoie

Sur place
EUR 70 000 - 90 000
VIPR & VMDR Expert
VIPR & VMDR Expert

Armis • France

Hybride
EUR 90 000 - 130 000
Application Security & VIPR Expert
Application Security & VIPR Expert

Armis • France

Sur place
EUR 110 000 - 160 000
Vulnerability Architect
Vulnerability Architect

Turnkey Consulting Malaysia Sdn Bhd • Paris

Hybride
EUR 65 000 - 85 000
50% of mobile phone plan (capped at €15/month)
€15/month tax-free allowance for remote work
Meal vouchers worth €13 each, 50% covered by employer
+1
Expert Cybersécurité – Gestion des vulnérabilités
Expert Cybersécurité – Gestion des vulnérabilités

Onyx-Conseil • Ivry-sur-Seine

Sur place
EUR 65 000 - 90 000
Vulnerability Management Product Owner
Vulnerability Management Product Owner

AXA Group Operations • Paris

Sur place
EUR 60 000 - 80 000
Senior Security Engineer
Senior Security Engineer

Xpandium Coberon Ltd • Eu

Hybride
EUR 70 000 - 90 000
Solution Security Architect (W/M/NB)
Solution Security Architect (W/M/NB)

Ubisoft • Saint-Mandé

Sur place
EUR 60 000 - 80 000
Cybersecurity Offensive Analyst
Cybersecurity Offensive Analyst

IDEMIA Public Security • Courbevoie

Sur place
EUR 45 000 - 65 000
Vulnerability Lifecycle & Detection Expert
Vulnerability Lifecycle & Detection Expert

Armis • France

Hybride
EUR 90 000 - 130 000