Security Analyst - Vulnerability Analyst

Generali Italia SpA

Roma

Presencial

EUR 40.000 - 50.000

Jornada completa

Hace 2 días
Sé de los primeros/as/es en solicitar esta vacante
Generador de candidaturas

Consigue una respuesta de este empleador — un currículum y una carta de presentación adaptados exactamente a lo que busca para contratar.

Supera los filtros ATS

Ventajas ofrecidas por este puesto de trabajo

Smart working
Corporate welfare
Supplementary health insurance
Training and development
Internal mobility opportunities

Descripción de la vacante

Generali Italia SpA is seeking a Security Analyst and Vulnerability Analyst to join the Cyber Security team in Italy. You will perform vulnerability assessments, penetration testing, red teaming, and security impact analyses related to threats, zero-days, and advanced attack techniques.

You will leverage AI-driven solutions and OSINT to enhance findings. The role involves coordinating with the GOSP CSIRT, executing tests on internal and external infrastructures, and reporting remediation

Formación

  • Degree in CS or IT Security or equivalent experience.
  • 2–5 years in vulnerability assessment or pen tests.
  • Knowledge of vulnerability assessment, pen testing, red teaming, and vulnerability management.
  • Familiar with OWASP, MITRE ATT&CK, NIST, CVSS.
  • Experience with tools like Qualys, Nessus, OpenVAS, NMAP, etc.
  • Experience with tools like Zap, Burp Suite, Metasploit, Wireshark, John the Ripper, SQLmap.
  • Understanding of Threat Intelligence, OSINT, and AI-assisted security platforms.
  • Strong communication of findings to varied stakeholders.

Responsabilidades

  • Perform Red Teaming with CSIRT to validate detection and response.
  • Conduct WAPT and infrastructure tests to assess security posture.
  • Run periodic Vulnerability Assessments on internal/external infra.
  • Track and report findings through Vulnerability Management processes.
  • Analyze new vulnerabilities and CVEs from OSINT and threat intel sources.
  • Leverage Generative AI tools to aid threat intelligence and reports.
  • Support proactive threat hunting and attack surface monitoring.
  • Contribute to improvement of testing methodologies and processes.

Conocimientos

Vulnerability Assessment
Penetration Testing
Red Teaming
Threat Intelligence
OSINT
AI/ML in Security
Python
PowerShell
NIST/OWASP
English (B1)

Educación

Degree in Computer Science or IT Security

Herramientas

Qualys
Nessus
OpenVAS
NMAP
OWASP ZAP
Burp Suite
Metasploit
Wireshark
John The Ripper
SQLmap

Descripción del empleo

Security Analyst - Vulnerability Analyst

SALVA

CONDIVIDI

SEGNALA UN TALENTO

CANDIDATI

INFORMAZIONI
Job Description

As a Vulnerability Analyst and Penetration Tester, you will work closely with the Cyber Security Monitoring team to perform vulnerability assessments, penetration testing, red teaming activities, and security impact analyses related to emerging cyber threats, zero-day vulnerabilities, and advanced attack techniques.

The role also includes leveraging AI-driven cybersecurity solutions and Large Language Models (LLMs) to enhance information gathering, vulnerability analysis, attack surface monitoring, and the identification of indicators of compromise associated with evolving threat actors and attack campaigns.

Activities will include:

  • Execution of periodic Vulnerability Assessments across both internal and external perimeters using enterprise-grade security platforms and automated assessment tools.
  • Identification, validation, prioritization, and reporting of vulnerabilities to asset owners, with continuous tracking of remediation activities through the organization's Vulnerability Management platform.
  • Execution of Web Application Penetration Tests (WAPT), infrastructure penetration tests, and Red Teaming exercises based on internally defined threat scenarios and intelligence-driven attack simulations.
  • Collection and correlation of information from OSINT, CLOSINT, Threat Intelligence feeds, and AI-assisted research platforms to identify newly disclosed vulnerabilities, emerging threats, and zero-day exposures.
  • Security impact assessment of new vulnerabilities and threat campaigns affecting the organization, including risk evaluation, remediation prioritization, and stakeholder communication.
  • Utilization of AI and Machine Learning-based tools to support vulnerability triage, threat hunting, attack pattern analysis, anomaly detection, and proactive identification of emerging cyber risks.
MAIN TASKS
  • Perform Red Teaming activities in collaboration with the GOSP CSIRT team, based on agreed cyber threat scenarios, to validate detection, response, and prevention capabilities, identify security gaps, and define remediation actions.
  • Conduct Web Application Penetration Testing (WAPT) and infrastructure penetration testing activities to assess security posture, system hardening, configuration effectiveness, and resilience against real-world attack techniques.
  • Execute periodic Vulnerability Assessments on internal and external infrastructures to identify, validate, and prioritize security vulnerabilities.
  • Track, monitor, and report identified vulnerabilities through the GOSP Vulnerability Management process, ensuring remediation activities are appropriately managed and verified.
  • Analyze newly discovered vulnerabilities, CVEs, and zero-day threats collected from OSINT, CLOSINT, commercial threat intelligence sources, and AI-assisted intelligence platforms, assessing their potential impact on GOSP infrastructure and services.
  • Leverage Generative AI and AI-powered cybersecurity solutions to accelerate threat intelligence analysis, vulnerability research, attack path identification, security assessments, and the production of technical reports and remediation recommendations.
  • Support proactive threat hunting and attack surface monitoring activities by combining traditional security methodologies with AI-enhanced analytics and automation capabilities.
  • Contribute to the continuous improvement of security testing methodologies, adversary emulation techniques, and cybersecurity processes aligned with evolving threat landscapes.
Requirements
  • Degree in Computer Science, IT Security, or equivalent work experience in Information Security.
  • 2-5 years of experience in vulnerability assessment / penetration tests activities.
  • Knowledge of Vulnerability Assessment, Penetration Testing, Red Teaming, and Vulnerability Management methodologies.
  • Familiarity with security frameworks and standards such as OWASP, MITRE ATT&CK, NIST, and CVSS.
  • Knowledge of the main market tools and processes to perform vulnerability assessments (e.g: Qualys, Nessus, OpenVAS, NMAP, etc).
  • Knowledge on the main penetration testing tools available on the market (e.g: Zap, Burp suite, Metasploit, Wireshark, John The Ripper, SQLmap, etc).
  • Understanding of Threat Intelligence, OSINT techniques, and cyber threat analysis.
  • Familiarity with AI/ML technologies, Security Copilots, LLMs, and AI-assisted cybersecurity platforms applied to threat detection, vulnerability management, and security operations.
  • Strong analytical mindset, problem-solving skills, and ability to communicate technical findings to both technical and non-technical stakeholders.
  • Good knowledge of IT networks and protocols, Operating systems, web and application server architectures.
  • Good knowledge of Microsoft Active Directory architecture and .
  • Good knowledge of one or more programming languages (e.g: python, PowerShell, C/C++, etc)
  • Intermediate English (at least CEFR B1, written/spoken)
  • Availability of certifications is a plus (e.g., CEH, OSCP, GPEN, etc)
Soft Skills
  • Ability to work in team and to maintain deadlines on assigned tasks
  • Positive attitude and open to learn on the job
  • Passionate about offensive security
  • Proactive in identifying obstacles and problems that might impact your daily activities
  • Capability to perform periodical report to your manager
  • Very good problem-solving capabilities
  • Open to cooperation with other team within the organization
What we offer

We offer employment at the V level with the relevant salary, in accordance with the CCNL ANIA for non-executive employees and the Generali Group Company Agreement.

Gross annual salary ranging between 40K€ and 50K€. The final offer will be aligned with the candidate’s professional experience, technical and soft skills relevant to the role, and may include an individual variable component.

We also offer

  • Smart working and flexible hours
  • Corporate welfare system
  • Supplementary health insurance and discounted insurance policies
  • Training and development
  • Structured continuous learning paths (technical and managerial)
  • Career development programs within the Group
  • Access to learning platforms and internal mobility opportunities, including international
Why Join Generali

Joining Generali means becoming part of an international Group with a strong heritage and a forward-looking vision, where people are at the center of our sustainable growth strategy.

We foster a responsible, inclusive, and innovation-driven work environment, where everyone can contribute to creating value for customers, society, and the communities in which we operate. We believe that diversity, equity and inclusion are essential to building a stronger culture and driving sustainable growth.

At Generali, you will find opportunities to grow through continuous learning, career development paths, and internal mobility across the Group. We recognize talent and merit, and support flexibility as a key enabler of well-being and a sustainable work-life balance.

Working with us means sharing strong values and taking on meaningful challenges together to build a safer and more sustainable future every day.

As an Equal Opportunity Employer, Generali evaluates all applications based exclusively on objective and gender-neutral criteria, including skills, experience and potential, ensuring fairness and transparency throughout the selection process.

Company Profile

Joining Generali means becoming part of an international Group with a strong heritage and a forward-looking vision, where people are at the center of our sustainable growth strategy.

We foster a responsible, inclusive, and innovation-driven work environment, where everyone can contribute to creating value for customers, society, and the communities in which we operate. We believe that diversity, equity and inclusion are essential to building a stronger culture and driving sustainable growth.

At Generali, you will find opportunities to grow through continuous learning, career development paths, and internal mobility across the Group. We recognize talent and merit, and support flexibility as a key enabler of well-being and a sustainable work-life balance.

Working with us means sharing strong values and taking on meaningful challenges together to build a safer and more sustainable future every day.

As an Equal Opportunity Employer, Generali evaluates all applications based exclusively on objective and gender-neutral criteria, including skills, experience and potential, ensuring fairness and transparency throughout the selection process.

Security Monitoring
It & Transformation
Roma, Trieste
Consigue la evaluación confidencial y gratuita de tu currículum.

o arrastra y suelta tu archivo aquí

Similar jobs

Puestos de trabajo similares que vale la pena comparar

Security Analyst - Vulnerability Analyst
Security Analyst - Vulnerability Analyst

Generali • Roma

Presencial
EUR 40.000 - 50.000
Smart working and flexible hours
Corporate welfare system
Supplementary health insurance
+2
Security Governance specialist
Security Governance specialist

Generali • Trieste/Trst

Híbrido
EUR 45.000 - 55.000
Smart working
Flexible hours
Corporate welfare system
+5
Data scientist - Business Advanced Analytics Solutions
Data scientist - Business Advanced Analytics Solutions

Generali • Milano

Híbrido
EUR 35.000 - 45.000
Smart working
Corporate welfare system
Training and development
+1
Operation Optimization Specialist
Operation Optimization Specialist

Generali Italia SpA • Lombardia

Híbrido
EUR 40.000 - 45.000
Smart working and flexible hours
Corporate welfare system
Supplementary health insurance and etc
IAM Architect
IAM Architect

Generali • Milano

Presencial
EUR 50.000 - 55.000
Smart working and flexible hours
Corporate welfare system
Supplementary health insurance
+3
Data Engineer - AI & Data Products
Data Engineer - AI & Data Products

Generali Italia • Lombardia

Híbrido
EUR 36.000 - 42.000
Health insurance coverage
Supplementary pension scheme
Corporate welfare plan
+4
Technical Service Operations Manager
Technical Service Operations Manager

Generali • Milano

Híbrido
EUR 50.000 - 60.000
Smart working
Flexible hours
Corporate welfare
+5
Group Anti Financial Crime Analyst
Group Anti Financial Crime Analyst

Generali • Milano

Híbrido
EUR 43.000 - 53.000
Smart working and flexible hours
Corporate welfare system
Supplementary health insurance
+3
Security Governance specialist
Security Governance specialist

Generali Italia • Italia

Presencial
EUR 45.000 - 55.000
Smart working & flexible hours
Meal vouchers
Supplementary health insurance
+3
Senior Audio Video, Live Production & Digital Collaboration Specialist
Senior Audio Video, Live Production & Digital Collaboration Specialist

Generali • Milano

Híbrido
EUR 45.000 - 55.000
Smart working
Flexible hours
Supplementary health insurance
+4