Senior Vulnerability Management Specialist

Antal Poland

Kraków

Hybrid

PLN 180,000 - 280,000

Full time

2 days ago
Be an early applicant
Application generator

Get a reply from this employer — a resume and cover letter tailored to exactly what they’re hiring for.

Get past ATS filters

Benefits offered by this job

Hybrid working model
Lux Med private medical care
Contractor Care specialist
Office onsite 6 days/month in Kraków

Job summary

Antal Poland is seeking a Senior Vulnerability Management Specialist to join the cybersecurity team in Kraków on a B2B contract. You will drive remediation of critical and high-severity vulnerabilities across a large-scale technology environment.

You will validate findings, coordinate with infrastructure, cloud and application teams, and contribute to governance reporting. A hybrid work setup with six onsite days per month in Kraków is offered.

Qualifications

  • 5+ years of experience in IT Security, Cybersecurity, Vulnerability Management or a related area.
  • Proven experience assessing and responding to critical and high-severity vulnerabilities.
  • Strong understanding of common vulnerability types and attack techniques (e.g., remote code execution, privilege escalation, authentication bypass).
  • Experience with vulnerability identification and assessment tools, including Tenable.
  • Understanding of SAST and DAST and how security testing integrates in CI/CD pipelines.

Responsibilities

  • Review critical and high‑severity vulnerabilities from sources such as NIST/NVD, vendor advisories and security scanning tools.
  • Assess whether vulnerabilities affect the environment and communicate their impact, exploitability and risk clearly.
  • Validate findings using technical evidence (versions, configurations, logs, scan results).
  • Identify affected assets and coordinate ownership and scope with technical teams.
  • Recommend remediation and mitigation approaches including patching and configuration changes.
  • Prepare technical documentation covering root cause, components, and remediation guidance.
  • Coordinate remediation activities with infrastructure, cloud, platform and application teams.
  • Track remediation progress and escalate delays or risks.
  • Verify remediation via rescanning and evidence review.
  • Assess residual risk where full remediation isn't possible.
  • Support governance activities, risk reporting and security metrics.
  • Contribute to audits and vulnerability-related requests.

Skills

Vulnerability management
Security risk assessment
Stakeholder management
Hybrid work experience

Tools

Tenable

Job description

Senior Vulnerability Management Specialist

Contract: B2B

About the role

We are looking for an experienced Vulnerability Response Senior SME to join a cybersecurity team responsible for identifying, assessing and driving the remediation of security vulnerabilities across a large-scale technology environment.

In this role, you will focus on responding to newly identified critical and high-severity vulnerabilities, assessing their potential impact, validating exposure, and working with technical teams to ensure vulnerabilities are effectively remediated.

You will combine strong technical cybersecurity knowledge with stakeholder management and communication skills. The role requires the ability to understand complex technical issues, translate them into clear business impact, and coordinate remediation activities from initial assessment through to closure.

What you will do
  • Review critical and high‑severity vulnerabilities identified through sources such as NIST/NVD, vendor advisories and security scanning tools.
  • Assess whether vulnerabilities affect the technology environment and communicate their potential impact, exploitability and risk in a clear and structured way.
  • Validate vulnerability findings using technical evidence such as software versions, configurations, logs and scan results.
  • Identify affected assets and work with relevant technical teams to establish ownership and scope.
  • Recommend appropriate remediation and mitigation approaches, including patching, upgrades, configuration changes and compensating controls.
  • Prepare clear technical documentation covering root cause, affected components, potential attack paths, business impact and remediation guidance.
  • Coordinate remediation activities with infrastructure, cloud, platform and application teams.
  • Track remediation progress, identify blockers and *escalate* significant delays or risks where appropriate.
  • Verify that remediation has been successfully completed through rescanning, validation testing or review of supporting evidence.
  • Assess and document residual risk where immediate full remediation is not possible.
  • Support cybersecurity governance activities, including risk reporting, management updates and security metrics.
  • Contribute to responses to audit and regulatory requests.
  • Support wider cybersecurity operational activities, escalations and ad‑hoc vulnerability‑related requests.
What you will bring
  • 5+ years of experience in IT Security, Cybersecurity, Vulnerability Management or a related area.
  • Proven experience assessing and responding to critical and high‑severity vulnerabilities.
  • Strong understanding of common vulnerability types and attack techniques, including remote code execution, privilege escalation and authentication bypass.
  • Experience with vulnerability identification and assessment tools, ideally including Tenable.
  • Understanding of application security testing approaches such as SAST and DAST.
  • Good understanding of CI/CD processes and how security testing and remediation are integrated into software development and release pipelines.
  • Solid technical knowledge of networking and application delivery technologies, including WAFs, load balancers, certificates and TLS.
  • Understanding of security risks and exposure points across both on‑premises and cloud environments.
  • Practical knowledge of vulnerability remediation, including patching, upgrades, configuration hardening and compensating controls.
  • Strong stakeholder management skills and the ability to work effectively with technical teams, service owners and other stakeholders.
  • Excellent written and verbal communication skills, with the ability to explain complex technical topics to both technical and non‑technical audiences.
  • Strong organisational skills and a delivery‑focused approach.
  • Experience working in cybersecurity operations, risk management or security governance within a medium or large enterprise environment.
  • Ability to work effectively in a hybrid and remote environment.
What we offer
  • B2B contract
  • Hybrid working model with 6 days per month from our Kraków office
  • Lux Med private medical care
  • Support from a dedicated Contractor Care specialist
  • Opportunity to work on complex cybersecurity and vulnerability management challeng
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Engineer - Cybersecurity (Vulnerability & Threat Management)
Engineer - Cybersecurity (Vulnerability & Threat Management)

Sysco Corporation • Poland

Hybrid
PLN 40,000 - 60,000
Professional development opportunities
Collaborative culture
Modern security technologies
Risk & Vulnerability Management Lead
Risk & Vulnerability Management Lead

Experis ManpowerGroup Sp. z o.o. • Katowice

Hybrid
PLN 180,000 - 260,000
Multisport card
Private healthcare (Medicover)
Access to an e learning platform
+1
Senior Vulnerability Response Lead - Hybrid
Senior Vulnerability Response Lead - Hybrid

Antal Poland • Kraków

Hybrid
PLN 180,000 - 280,000
Hybrid working model
Lux Med private medical care
Contractor Care specialist
+1
(Cybersecurity) Threat and Controls Assessment Consultant
(Cybersecurity) Threat and Controls Assessment Consultant

Antal Poland • Kraków

Hybrid
PLN 180,000 - 240,000
B2B contract
Hybrid work model – 6 days per month
Lux Med private medical care
+2
Penetration Tester
Penetration Tester

Antal Poland • Kraków

Hybrid
PLN 180,000 - 240,000
Hybrid work model
Private medical care (LuxMed)
MyBenefit platform
+1
Vulnerability Management Analyst & Automation specialist
Vulnerability Management Analyst & Automation specialist

Euroclear • Poland

Hybrid
PLN 120,000 - 170,000
Vulnerability Management Analyst & Automation specialist
Vulnerability Management Analyst & Automation specialist

Euroclear • Województwo małopolskie

Hybrid
PLN 60,000 - 80,000
Cyber Security Remediation Manager (IT Risk & Security)
Cyber Security Remediation Manager (IT Risk & Security)

emagine • Warszawa

Hybrid
PLN 124,000 - 187,000
Cybersecurity Specialist / Administrator
Cybersecurity Specialist / Administrator

RMM Consulting Group • Warszawa

On-site
PLN 65,000 - 100,000
Flexible hours
Initial 230 working days
Potential extensions up to 920 days
Lead Engineer, Vulnerability & Exposure Management (f/m/d)
Lead Engineer, Vulnerability & Exposure Management (f/m/d)

Danaher • Poland

On-site
PLN 180,000 - 280,000