Lead Engineer, Vulnerability & Exposure Management (f/m/d)

Danaher

Poland

On-site

PLN 180,000 - 280,000

Full time

14 days+
Application generator

An application made for this job — a tailored resume and cover letter that speak straight to the posting.

Get past ATS filters

Job summary

Danaher is seeking a Lead Engineer, Vulnerability & Exposure Management, to own engineering implementations within the CTEM program at the Kraków site. You will build and optimize scanning, ingestion, normalization, prioritization, ticketing, and reporting pipelines, collaborating with cloud, endpoint, app, and remediation teams.

The role emphasizes hands-on tooling, automation via Python/SQL/APIs, and risk-based prioritization using threat intel.

Qualifications

  • 5+ years of experience in vulnerability management or security engineering.
  • Hands-on experience engineering vulnerability/exposure tooling (such as Tenable, Qualys, Rapid7, CrowdStrike FEM, or Defender), including scan coverage, authenticated scanning, and data normalization.
  • Experience building automation and integrations (such as Python, SQL, and REST APIs) across vulnerability, ticketing (e.g., ServiceNow/Jira), and cloud or endpoint data sources.
  • Experience applying risk-based prioritization beyond CVSS using threat intelligence such as EPSS and CISA KEV and asset context.

Responsibilities

  • Engineer scan coverage, data ingestion/normalization, prioritization logic, ticketing, and reporting pipelines.
  • Build automation (Python/SQL/APIs) for prioritization, SLA logic, exception processes, and validation.
  • Contribute to the CTEM operating-model design owned by the Global Lead; implement and refine it.
  • Support the sustainability model: pipeline runbooks, data-quality checks, and service-ownership mapping.

Skills

Vulnerability management
Security engineering
Automation
Python
SQL
REST APIs
Threat intelligence

Education

Bachelor's degree in Cybersecurity/CS/IT/Engineering

Tools

Tenable
Qualys
CrowdStrike FEM
Rapid7
Microsoft Defender

Job description

Bring more to life.

At Danaher, our work saves lives. And each of us plays a part. Fueled by our culture of continuous improvement, we turn ideas into impact - innovating at the speed of life.

Our 60,000+ associates work across the globe at more than 15 unique businesses within life sciences, diagnostics, and biotechnology.

Are you ready to accelerate your potential and make a real difference? At Danaher, you can build an incredible career at a leading science and technology company, where we’re committed to hiring and developing from within. You’ll thrive in a culture of belonging where you and your unique viewpoint matter.

Learn about the Danaher Business System which makes everything possible.

At Danaher, the Lead Engineer, Vulnerability & Exposure Management engineers the scanning, ingestion, normalization, prioritization, ticketing, reporting, and automation workflows for vulnerability and exposure data. Program strategy and prioritization framework are set by leadership and the Global Lead, VEM; the Lead Engineer owns the engineering implementation and works independently to build it, integrating with cloud, endpoint, app, and remediation teams that each own their own systems.

This position reports to the Senior Manager, Exposure Management (CTEM) and is part of the Danaher Information Security located in Krakow, Poland and will be an on-site role.

This is a Danaher Corporate role, hosted by our Cytiva operating company in Kraków.

In this role, you will have the opportunity to:
  • Engineer scan coverage, data ingestion/normalization, prioritization logic, ticketing, and reporting pipelines.

  • Build automation (Python/SQL/APIs) for prioritization, SLA logic, exception processes, and validation.

  • Contribute to the CTEM operating-model design owned by the Global Lead; implement and refine it.

  • Support the sustainability model: pipeline runbooks, data-quality checks, and service-ownership mapping.

The essential requirements of the job include:
  • CrowdStrike CCFA, Tenable VM Specialist, Qualys VMDR, GIAC GSEC/GMON, or a cloud security certification.

  • 5+ years of experience in vulnerability management or security engineering

  • Hands-on experience engineering vulnerability/exposure tooling (such as Tenable, Qualys, Rapid7, CrowdStrike FEM, or Defender), including scan coverage, authenticated scanning, and data normalization.

  • Experience building automation and integrations (such as Python, SQL, and REST APIs) across vulnerability, ticketing (e.g., ServiceNow/Jira), and cloud or endpoint data sources.

  • Experience applying risk-based prioritization beyond CVSS using threat intelligence such as EPSS and CISA KEV and asset context.

It would be a plus if you also possess previous experience in:
  • Bachelor's degree in Cybersecurity, Computer Science, Information Technology, Engineering, or related field.

  • Experience with attack surface management, cloud posture, or container/Kubernetes exposure.

  • Experience with patch/remediation orchestration tooling (such as BigFix, SCCM/MECM, or Red Hat Satellite).

#LI-KK1

Join our winning team today. Together, we’ll accelerate the real-life impact of tomorrow’s science and technology. We partner with customers across the globe to help them solve their most complex challenges, architecting solutions that bring the power of science to life.

For more information, visit www.danaher.com.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Lead Engineer, Vulnerability & Exposure Management (f/m/d)
Lead Engineer, Vulnerability & Exposure Management (f/m/d)

Danaher • Kraków

On-site
PLN 180,000 - 300,000
Director, Enterprise Vulnerability & Exposure Management (Kraków on-site OR Poland - remote)
Director, Enterprise Vulnerability & Exposure Management (Kraków on-site OR Poland - remote)

Danaher • Kraków

Hybrid
PLN 360,000 - 540,000
Global Lead, Attack Surface Management (f/m/d)
Global Lead, Attack Surface Management (f/m/d)

Danaher • Poland

On-site
PLN 250,000 - 450,000
Lead Engineer, Vulnerability & Exposure Automation
Lead Engineer, Vulnerability & Exposure Automation

Danaher • Kraków

On-site
PLN 180,000 - 300,000
Global Lead, Attack Surface Management (f/m/d)
Global Lead, Attack Surface Management (f/m/d)

Danaher • Kraków

On-site
PLN 240,000 - 360,000
Lead Vulnerability & Exposure Engineer | Automation & Cloud
Lead Vulnerability & Exposure Engineer | Automation & Cloud

Danaher • Poland

On-site
PLN 180,000 - 280,000
Global Lead, Red Teaming (f/m/d)
Global Lead, Red Teaming (f/m/d)

Danaher • Poland

On-site
PLN 420,000 - 640,000
Manager, Cybersecurity Automation
Manager, Cybersecurity Automation

Danaher • Kraków

On-site
PLN 220,000 - 360,000
Global Lead, Red Teaming (f/m/d)
Global Lead, Red Teaming (f/m/d)

Danaher • Kraków

On-site
PLN 180,000 - 240,000
Engineer - Cybersecurity (Vulnerability & Threat Management)
Engineer - Cybersecurity (Vulnerability & Threat Management)

Sysco Corporation • Poland

Hybrid
PLN 40,000 - 60,000
Professional development opportunities
Collaborative culture
Modern security technologies