Engineer - Cybersecurity (Vulnerability & Threat Management)

Sysco Corporation

Poland

On-site

PLN 40,000 - 60,000

Full time

14 days+
Application generator

Don’t send a generic resume — generate a resume and cover letter tailored to this exact role.

Get past ATS filters

Benefits offered by this job

Professional development opportunities
Collaborative culture
Modern security technologies

Job summary

Sysco Corporation is hiring an Engineer for Cybersecurity specializing in Vulnerability & Threat Management in Kraków, Poland. This full-time position requires experience in vulnerability assessments and penetration testing, with modern security technologies available. You will be responsible for identifying vulnerabilities, managing assessment tools, and generating reports. The job offers a hybrid work model allowing two days in the office and three remote. Work with a collaborative team to enhance the security of critical systems.

Qualifications

  • At least 2 years of experience conducting vulnerability assessments.
  • Experience with vulnerability assessment tools like Nessus.
  • Knowledge of programming languages such as Python or Java.

Responsibilities

  • Plan and execute scans for vulnerabilities.
  • Manage enterprise vulnerability assessment tools.
  • Generate vulnerability assessment reports for management.

Skills

Vulnerability assessments
Penetration testing
Security devices (Firewalls, VPNs)
OS security (Unix, Linux, Windows)
Web development languages (Python, Java, etc.)

Tools

Nessus
Metasploit

Job description

Engineer - Cybersecurity (Vulnerability & Threat Management)

Location: Krakow, Poland (Hybrid)

Type: Full-time employment

Hybrid work: 2 days in office and 3 days remote

Working Hours: 9 am - 5 pm local time

Description

Duties will include providing vulnerability assessment and remediation activities through a comprehensive testing process, as well as identifying weaknesses and vulnerabilities within the systems and proposing countermeasures. Typical assignments will involve testing of the overall security of critical infrastructure components and applications to ensure they comply with internal policies, security architecture best practices, and industry standards; scanning and discovering rogue hosts, networks, and devices; and scanning and discovering vulnerable systems and applications.

Responsibilities
  • Plans, develops and executes scans for vulnerabilities and compliance with configuration standards
  • Manages enterprise vulnerability assessment and configuration assessment tools
  • Works to identify and resolve false positive findings in assessment results
  • Analyzes threat and vulnerability feeds and analyzes data for applicability to the environment
  • Works with applicable technical teams to ensure remediation of discovered vulnerabilities
  • Coordinates change control for remediation activities
  • Responsible for generating timely vulnerability assessment reports to management
  • Generate reports on assessment findings and summarizes to facilitate remediation tasks for other operational teams
  • Produces vulnerability, configuration, and coverage metrics to demonstrate assessment coverage and remediation effectiveness
  • Recommends security controls and/or corrective actions for mitigating technical and business risk
  • Assists in conducting security reviews of new and existing applications
  • Maintains an awareness of existing and proposed security standards, industry best practices, legislation and regulations pertaining to information security and recommends appropriate changes
  • Prevents/anticipates problems and focuses on continuous improvement of manual and automated processes
  • Optimizes existing workflows to enhance capabilities
  • Creates and updates documentation related to assessment processes
Qualifications

Candidates for this position should have at least 2 years of experience of the following:

  • Conducting vulnerability assessments and penetration testing (application and/or infrastructure) and articulating security issues to technical and non-technical audiences
  • Identifying, researching, validating, and exploiting various known and unknown security vulnerabilities on server and client side
  • Vulnerability assessment tools, e.g. Nessus, Nexpose, etc
  • Exploitation frameworks, e.g. Metasploit
  • Social engineering campaigns, e.g. email phishing, phone calls, SET
  • Security devices, e.g. Firewalls, VPN, Proxies
  • OS security, e.g. Unix, Linux, Windows, Cisco, etc
  • Understanding of common protocols, e.g. LDAP, SMTP, DNS, Routing Protocols
  • Web application infrastructure, e.g. Application Servers, Web Servers, Databases
  • Web development and programming languages i.e. Python, Perl, Ruby, Java, and/or .Net
  • Reporting information security vulnerabilities to businesses
  • Knowledge of tools and processes used to expose known and undocumented vulnerabilities in various systems
Knowledge / Skills / Abilities
  • Subject matter expert in a broad range of security concepts
  • Broad IT knowledge and experience, including an understanding of network devices and their role in a secure environment
  • Ability to work directly with team members and end-users in stressful situations
  • Ability to work in a dynamic environment
  • Ability to solve complex problems through research and technical detective work
  • Ability to learn new technologies and processes quickly
  • Ability to quickly adapt to changes in timelines and sequences
  • Able to work off hours when required
  • Excellent communication and interpersonal skills
  • Collaboration skills
Why Join Us
  • Be part of a global cybersecurity team protecting a dynamic enterprise environment.
  • Opportunity to work with modern security technologies and drive tool innovation.
  • Collaborative culture with professional development opportunities.
  • Hybrid work model with our Kraków office as the primary location.
Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Engineer - Cybersecurity (Vulnerability & Threat Management)
Engineer - Cybersecurity (Vulnerability & Threat Management)

Sysco Corp. • Kraków

On-site
PLN 191,164 - 276,125
Architect - Cybersecurity
Architect - Cybersecurity

Sysco • Polska

Hybrid
PLN 190,000 - 260,000
Hybrid work model
(Cybersecurity) Threat and Controls Assessment Consultant
(Cybersecurity) Threat and Controls Assessment Consultant

Antal Poland • Kraków

Hybrid
PLN 180,000 - 240,000
B2B contract
Hybrid work model – 6 days per month
Lux Med private medical care
+2
Penetration Tester
Penetration Tester

Antal Poland • Kraków

Hybrid
PLN 180,000 - 240,000
Hybrid work model
Private medical care (LuxMed)
MyBenefit platform
+1
Senior Vulnerability Management Specialist
Senior Vulnerability Management Specialist

Antal Poland • Kraków

Hybrid
PLN 180,000 - 280,000
Hybrid working model
Lux Med private medical care
Contractor Care specialist
+1
Cyber Security Engineer (Vulnerability Management)
Cyber Security Engineer (Vulnerability Management)

Kion Group AG • Kraków

On-site
PLN 190,000 - 270,000
Hybrid work model
International projects
Private medical care
+9
Cyber Security Engineer (Vulnerability Management)
Cyber Security Engineer (Vulnerability Management)

KION Business Services Polska • Kraków

On-site
PLN 180,000 - 260,000
Private medical care
MyBenefit Cafeteria Platform
Group Life Insurance
+3
Cybersecurity Senior Consultant - Senior Pentester
Cybersecurity Senior Consultant - Senior Pentester

EY • Katowice

On-site
PLN 180,000 - 280,000
Cybersecurity Senior Consultant - Senior Pentester
Cybersecurity Senior Consultant - Senior Pentester

EY • Warszawa

On-site
PLN 120,000 - 180,000
Security Engineer (SecOps)
Security Engineer (SecOps)

inFakt • Kraków

On-site
PLN 111,600 - 167,400
Private medical care for you and your family/partner
MultiSport Benefit card for you and a loved one
Daily lunches, fresh fruit, and good coffee
+2