Specialist, Posture & Exposure Management

Outokumpu Oyj

Katowice

On-site

PLN 180,000 - 280,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Outokumpu Oyj is seeking a senior security professional to define and execute a comprehensive security posture strategy across IT and OT. You will manage end-to-end vulnerability lifecycles for IT, OT, and web apps, while mapping the attack surface with EASM & IASM and collaborating with threat hunting teams.

The role also involves governing OT and supplier security postures, hosting governance meetings with external vendors, and driving CSPM improvements in cloud environments.

Qualifications

  • Several years of hands-on experience in vulnerability, exposure, or attack surface management.
  • Experience with enterprise vulnerability management platforms and app sec testing suites.
  • Experience in governance with external suppliers and vendors.

Responsibilities

  • Define and execute a comprehensive security posture strategy across IT and OT.
  • Manage end-to-end vulnerability lifecycle for IT, OT, and web apps.
  • Map and monitor attack surface using EASM & IASM; collaborate with threat hunting.
  • Govern OT and supplier security postures; host governance meetings with unmonitored vendors.
  • Optimize CSPM and continuously improve cloud security posture scores.
  • Validate controls via automated testing and breach simulations.
  • Mentor and grow security team.

Skills

Vulnerability scanners
Attack surface mapping
Cloud security
ICS/OT monitoring
Threat hunting

Education

Bachelor's degree in Cybersecurity, Computer Science, or related field

Tools

Enterprise vulnerability management platforms
Application security testing suites

Job description

Your key responsibilities include: Defining and executing a comprehensive security posture strategy across both IT and OT environments, shifting the focus from simple vulnerability scanning to holistic exposure management. Managing end-to-end vulnerability lifecycle operations across IT infrastructure, OT systems, and web applications utilizing enterprise vulnerability management platforms and application security testing suites. Mapping and monitoring the attack surface (EASM & IASM) to identify external and internal blind spots, collaborating closely with threat hunting teams. Governing OT and supplier security postures, including hosting security governance meetings with unmonitored vendors and suppliers. Optimizing Cloud Security Posture Management (CSPM) by continuously monitoring and improving our security and compliance posture scores in the cloud. Validating security controls and exposures through continuous automated testing and breach simulation platforms to prove threat resilience. Mentoring and supporting team members, actively fostering a culture of knowledge sharing, continuous growth, and collective skill development across the security team.

Benefits may vary depending on your location.

What we expect from you:

Suitable academic degree in Cybersecurity, Computer Science, or a related field, alongside several years of hands-on experience in vulnerability, exposure, or attack surface management. A highly curious and growth-oriented mindset, with a natural drive to continuously learn, experiment, and stay ahead of the rapidly evolving threat landscape. A collaborative team player with a positive, constructive attitude and a genuine desire to help others succeed and grow. Strong technical expertise with enterprise security tools, particularly vulnerability scanners, attack surface mapping tools, and cloud security suites. Solid understanding of OT security frameworks and experience with specialized industrial control systems (ICS/OT) monitoring tools. Experience in web application security testing, including familiarity with web application scanners and crowdsourced security/bug bounty models. Proven stakeholder management skills, with the ability to lead governance conversations with external suppliers and vendors. Strong analytical mindset with the ability to translate technical exposures into actionable remediation plans for IT and business teams.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Specialist, Exposure & Posture Management
Specialist, Exposure & Posture Management

Outokumpu Chrome Oy • Katowice

On-site
PLN 180,000 - 260,000
Strategic Exposure & Posture Security Lead
Strategic Exposure & Posture Security Lead

Outokumpu Oyj • Katowice

On-site
PLN 180,000 - 280,000
Cybersecurity Lead: Exposure & Posture Management
Cybersecurity Lead: Exposure & Posture Management

Outokumpu Chrome Oy • Katowice

On-site
PLN 180,000 - 260,000
Vulnerability Management Analyst & Automation specialist
Vulnerability Management Analyst & Automation specialist

Euroclear • Województwo małopolskie

Hybrid
PLN 60,000 - 80,000
OT/IoT Security SME
OT/IoT Security SME

Capgemini • Województwo pomorskie

Hybrid
PLN 180,000 - 300,000
Vulnerability Management Analyst & Automation specialist
Vulnerability Management Analyst & Automation specialist

Euroclear • Poland

Hybrid
PLN 120,000 - 170,000
Cybersecurity Solution Architect
Cybersecurity Solution Architect

SoftServe • Poland

On-site
PLN 260,000 - 380,000
CyberSecurity Specialist
CyberSecurity Specialist

SEIDOR • Warszawa

On-site
PLN 180,000 - 260,000
Cyber Security Engineer
Cyber Security Engineer

Interact Software • Poland

On-site
PLN 120,000 - 180,000
Senior Pentester (Security Engineer)
Senior Pentester (Security Engineer)

DEVTALENTS Sp. z o.o. • Województwo mazowieckie

On-site
PLN 80,000 - 100,000
Influence over security architecture
Supportive culture for professional growth