CyberSecurity Vulnerability Management System Lead

Boehringer Ingelheim

Muntinlupa

Hybrid

PHP 1,000,000 - 1,800,000

Full time

4 days ago
Be an early applicant
Application generator

Get a reply from this employer — a resume and cover letter tailored to exactly what they’re hiring for.

Get past ATS filters

Job summary

Boehringer Ingelheim's Cyber Intelligence & Security Operations Center (CISOC) seeks a Network Vulnerability Management Engineer to own the organization’s vulnerability management platform and drive remediation across the enterprise.

The role combines hands-on vulnerability analysis with platform governance, collaborating with infrastructure teams, remediation squads and ITSM to strengthen BI's security posture through automation and robust reporting.

Qualifications

  • Hands-on experience in network vulnerability management.
  • Experience with Qualys VMDR or Qualys Vulnerability Management.
  • Python experience for automation and reporting.

Responsibilities

  • Own and operate the vulnerability management platform.
  • Plan internal scans, assess coverage, and investigate results.
  • Develop Python automation for platform administration and reporting.
  • Coordinate remediation, rescans, and vendor support.
  • Collaborate with ITSM for ticketing and reporting.
  • Act as escalation point for vulnerability-management issues.

Job description

The Position

Join Boehringer Ingelheim's Cyber Intelligence & Security Operations Center (CISOC) as a Network Vulnerability Management Engineer. In this role, you will serve as the technical owner and subject matter expert for the organization's network vulnerability management platform, ensuring effective identification, assessment, reporting, and remediation of infrastructure vulnerabilities across the enterprise.

You will combine platform ownership responsibilities with hands‑on technical analysis, working closely with infrastructure teams, System Leads, remediation teams, and service management stakeholders to strengthen BI's security posture through continuous improvement of vulnerability management processes and technologies.

Duties & Responsibilities

As a member of the Cyber Intelligence & Security Operations Center (CISOC) team, the role will be responsible for technical ownership, operation and continuous improvement of network vulnerability management. The system mainly supports internal network vulnerability scanning and the reporting of identified vulnerabilities. The engineer will combine platform ownership with hands‑on technical vulnerability analysis. Key responsibilities:

  • System Lead role, including service roadmap, lifecycle, configuration standards, access governance, documentation and continuous improvement.
  • Administer and maintain the vulnerability-management platform, including scanners, scanning scope, schedules, asset inventory, tags, authentication and scan quality.
  • Plan and monitor regular internal network vulnerability scans and investigate coverage gaps, failed scans, authentication issues and unexpected results.
  • Analyse vulnerability findings in technical depth and validate whether detections are true positives or false positives, documenting clear evidence and rationale.
  • Assess vulnerability severity, exploitability, exposure and business context to support prioritisation and escalation decisions.
  • Drive the vulnerability reporting process, ensuring findings are correctly enriched, assigned, tracked and communicated to System Leads and remediation teams.
  • Coordinate rescans and verification activities to confirm remediation or support exception and false‑positive decisions.
  • Develop and maintain Python automation for platform administration, data processing, quality checks, enrichment, reporting and workflow improvement.
  • Collaborate with ITSM stakeholders to improve vulnerability‑ticket creation, assignment, lifecycle, integrations and reporting.
  • Act as technical escalation point for vulnerability‑management issues and coordinate vendor support cases when required.Follow BI processes and maintain the required operational, compliance and audit documentation.
Requirements:

An ideal candidate will have

  • Strong hands‑on experience in infrastructure or network vulnerability management and technical vulnerability assessment.
  • Practical experience with Qualys VMDR, Qualys Vulnerability Management or a comparable enterprise vulnerability‑scanning platform.
  • Ability to investigate findings and prove false positives or true positives using technical evidence, including service, version, configuration and network analysis.
  • Solid knowledge of TCP/IP, operating systems, network services, authentication, asset discovery, vulnerability identifiers and remediation principles.
  • Python experience for automation, API integration, data analysis and reporting.
  • Experience managing a security platform as System Lead, service owner or senior technical administrator is highly desirable.
  • ServiceNow Vulnerability Response, SecOps or general ServiceNow knowledge is highly valuable but not mandatory.
  • Strong analytical, troubleshooting, documentation and problem‑solving skills.
  • Excellent spoken and written English and experience working in an international, multicultural environment.
  • Relevant security certifications are desirable but not mandatory.
JOB ID

37647

Job function

Information technology

Career level

Experienced professionals

Organization

BI Business Services PH

Working time

Full-Time

Job flexibility

Hybrid

Boehringer Ingelheim is an equal opportunity global employer who takes pride in maintaining a diverse and inclusive culture. We embrace diversity of perspectives and strive for an inclusive environment, which benefits our employees, patients, and communities. All qualified applicants will receive consideration for employment without regard to a person’s actual or perceived race, including natural hairstyles, hair texture and protective hairstyles; color; creed; religion; national origin; age; ancestry; citizenship status, marital status; gender, gender identity or expression; sexual orientation, mental, physical or intellectual disability, veteran status; pregnancy, childbirth or related medical condition; genetic information (including the refusal to submit to genetic testing) or any other class or characteristic protected by applicable law

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Principal Systems Engineer 1 1
Principal Systems Engineer 1 1

Boehringer Ingelheim • Muntinlupa

On-site
PHP 900,000 - 1,300,000
Head of IT EDP Data & Integration Operations
Head of IT EDP Data & Integration Operations

Boehringer Ingelheim • Manila

Hybrid
PHP 6,000,000 - 9,000,000
Network Vulnerability Mgmt Lead – Automation
Network Vulnerability Mgmt Lead – Automation

Boehringer Ingelheim • Muntinlupa

Hybrid
PHP 1,000,000 - 1,800,000
Senior Network Vulnerability Engineer & Platform Owner
Senior Network Vulnerability Engineer & Platform Owner

Boehringer Ingelheim • Muntinlupa

On-site
PHP 900,000 - 1,300,000
Senior SIEM Engineer for Cybersecurity Detection
Senior SIEM Engineer for Cybersecurity Detection

Boehringer Ingelheim • Muntinlupa

On-site
PHP 1,800,000 - 2,400,000
Senior Platform Security Engineer
Senior Platform Security Engineer

Boehringer Ingelheim • Muntinlupa

On-site
PHP 900,000 - 1,300,000
Senior Software Engineer - EDP
Senior Software Engineer - EDP

Boehringer Ingelheim • Muntinlupa

On-site
PHP 1,000,000 - 1,800,000
Cybersecurity Engineer for Network Security
Cybersecurity Engineer for Network Security

F. Hoffmann-La Roche Ltd • España

On-site
PHP 4,310,344 - 5,541,871
Senior Platform Security Engineer
Senior Platform Security Engineer

Boehringer Ingelheim Business Services Philippines, Inc. • Muntinlupa

On-site
PHP 900,000 - 1,500,000
Head of IT EDP Data & Integration Operations
Head of IT EDP Data & Integration Operations

Boehringer Ingelheim Business Services Philippines, Inc. • Manila

On-site
PHP 3,000,000 - 6,000,000