Vulnerability Management Assessments & Operations Specialist (Claude & GitHub Copilot)

ALTEN Polska

Kraków

On-site

PLN 180,000 - 260,000

Full time

33 hours ago
Be an early applicant

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

Certification and training potential
Medicover medical care with dental
Medicover Benefits / Medicover Sport
Group life insurance
Opportunity to relocate within ALTEN
Employee referral program
Work equipment provided

Job summary

ALTEN Polska is hiring a Vulnerability Management professional to protect HSBC by delivering high-quality assessments, remediation governance and accurate reporting. You will partner with Cyber Security teams and risk stakeholders, operating as part of the 1LoD within the risk framework.

Key activities include using Claude, Copilot and AI to improve workflows, tracking end-to-end remediation, and driving governance through audits.

Qualifications

  • Experience in threat & vulnerability management or similar.
  • Understand LLMs, including core inference concepts.
  • Knowledge of Attack Surface Management and attack paths.
  • Strong data analytics to improve insight and reporting quality.
  • Experience with Claude, Frontier and other LLMs, plus Copilot.
  • Understanding of Cloud technologies and security practices.
  • Proficient with Teams, JIRA, ServiceNow, SharePoint, GitHub and Confluence.
  • Knowledge of CVEs, CWEs, CISA, NVD, MITRE and CVSS.
  • Strong stakeholder management and ability to present to senior leadership.

Responsibilities

  • Lead vulnerability management assessments and governance activities.
  • Coordinate remediation with cross-functional teams and stakeholders.
  • Maintain documentation for governance, audit, and continuous improvement.
  • Track remediation end-to-end with central planning and regular reviews.
  • Enhance VM operating models and define uplift roadmaps.
  • Apply automation and AI to streamline processes.
  • Engage with Red Team to strengthen remediation approaches.
  • Respond to emerging threats with relevant intelligence and analysis.
  • Provide consultancy across infrastructure and SDLC security checks.

Skills

Threat & vulnerability management
LLMs knowledge
Attack surface management
Data analytics
AI tooling experience
Stakeholder management
Decision making under pressure

Tools

Teams
JIRA
ServiceNow
SharePoint
GitHub
Confluence

Job description

This role combines Vulnerability Management Assessment and Vulnerability Management Operations responsibilities. You will help protect HSBC by delivering high-quality assessments, effective remediation governance, accurate reporting, and strong cross-team coordination.

You will partner with Cyber Security Assessment Testing Teams, Cyber Threat Intelligence, Incident Management & Response, Perimeter Security, Cloud teams, Federated Control Owners and CCO Technology stakeholders. The role operates as part of the 1LoD in relation to the risk management framework.

As part of maintaining strong governance, support internal and external audits and regulatory responses, working with the VM Governance team and 2LoD providing clear, well‑evidenced documentation.

Key accountabilities:
  • Use Claude and GitHub Copilot to support delivery and productivity.
  • Understanding of the NIST AI Risk Management approved Framework.
  • Have knowledge of agent/harness fundamentals and how they enable repeatable workflow automation.
  • Apply strong data analytics to improve insight, prioritisation and reporting quality.
  • Support vulnerability growth driven by Frontier AI models.
  • Track remediation end-to-end, ensuring plans are maintained by key stakeholders within the central planning platform and driving actions via regular discussions.
  • Improve VM operating models; identify gaps and define uplift plans, roadmaps and future state to improve customer satisfaction.
  • Look for opportunities to utilise Automation and AI to enhance and streamline existing processes.
  • Monitor operational channels, triage issues and coordinate updates with Cybersecurity Engineering and stakeholders.
  • Engagement with the Red Team to strengthen the remediation approach.
  • Respond promptly to emerging threats using relevant intelligence and analysis.
  • Apply knowledge and or experience of application security scanning techniques aligned to attacker tactics, techniques and procedures.
  • Perform reviews and provide consultancy across Infrastructure, SDLC Platforms (SAST, MAST, DAST, FOSS)
  • Ensure outcomes are satisfactory, managed and documented for governance, audit and continuous improvement.
  • Lead stakeholder consultancy to ensure requirements are understood end-to-end, bridging technical and non-technical perspectives to drive effective assessment outcomes. For both infrastructure and application related weaknesses.
Essential Knowledge, Skills and Experience:
  • Experience in threat & vulnerability management (or similar).
  • Understand LLMs, including core inference concepts and practical use.
  • Understand Attack Surface Management and attack paths.
  • Business analytical skills to improve insight, prioritisation and reporting quality.
  • Experience with using AI such as Claude, Frontier and other LLMs, plus Copilot.
  • Understanding of Cloud technologies.
  • Experience with Teams, JIRA, ServiceNow, SharePoint, GitHub, Confluence.
  • Knowledge of standards and sources: CVEs, CWEs, CISA, NVD, MITRE, CVSS.
  • Strong stakeholder management and communication; ability to produce Senior Management-ready updates.
  • Work accurately under pressure; sound judgement and decision-making.
  • High integrity and strong ethical values.
We offer:
  • A full-time contract (B2B also possible)
  • All necessary work equipment is provided by us (computer, monitor etc).
  • Certification and training opportunities
  • After completion of the project, opportunity to engage in a subsequent one within the company.
  • Medicover medical care with dental care
  • Medicover Benefits platform / Medicover Sport card
  • Collaboration with Mistral AI
  • Employee referral program
  • Group life insurance
  • Opportunity to relocate and work in different ALTEN Polska branches
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Vulnerability Management: Assessments & Operations Lead
Vulnerability Management: Assessments & Operations Lead

ALTEN Polska • Kraków

On-site
PLN 180,000 - 260,000
Certification and training potential
Medicover medical care with dental
Medicover Benefits / Medicover Sport
+4
Vulnerability Management Operations Analyst
Vulnerability Management Operations Analyst

Mindbox Sp. z o.o. • Kraków

Hybrid
PLN 120,000 - 180,000
Flexible cooperation model
Hybrid work setup
Training platforms
+2
Risk & Vulnerability Management Lead
Risk & Vulnerability Management Lead

Experis Manpower Group • Kraków, Katowice

Hybrid
PLN 190,000 - 270,000
Multisport card
Private healthcare (Medicover)
Group life insurance
DevSecOps Security Consultant
DevSecOps Security Consultant

ALTEN Polska • Kraków

On-site
PLN 180,000 - 240,000
Full-time contract
Work equipment provided
Conferences and trainings
+2
Vulnerability Management Analyst & Automation specialist
Vulnerability Management Analyst & Automation specialist

Euroclear • Województwo małopolskie

Hybrid
PLN 60,000 - 80,000
Risk & Vulnerability Management Lead
Risk & Vulnerability Management Lead

Experis ManpowerGroup Sp. z o.o. • Katowice

Hybrid
PLN 180,000 - 260,000
Multisport card
Private healthcare (Medicover)
Access to an e learning platform
+1
Cyber Security Resilience Operations Specialist
Cyber Security Resilience Operations Specialist

SIX • Warszawa

Hybrid
PLN 150,000 - 220,000
Hybrid work model
Private medical care
Meal and transport allowance
+4
Engineer - Cybersecurity (Vulnerability & Threat Management)
Engineer - Cybersecurity (Vulnerability & Threat Management)

Sysco Corporation • Poland

Hybrid
PLN 40,000 - 60,000
Professional development opportunities
Collaborative culture
Modern security technologies
SME - Cryptography (Cybersecurity)
SME - Cryptography (Cybersecurity)

ALTEN Polska • Kraków

On-site
PLN 180,000 - 240,000
Full-time contract or B2B
Medicover medical care
Relocation opportunities
+2
CyberSecurity Specialist
CyberSecurity Specialist

SEIDOR • Warszawa

On-site
PLN 180,000 - 240,000