Junior Vulnerability Manager

2 semanas atrás


Lisboa, Portugal Devoteam Tempo inteiro

Company Description Devoteam Cyber Trust is the specialized cybersecurity unit of the Devoteam Group. With over 800 experts across the EMEA region, our mission is to position cybersecurity as a business enabler, not a barrier. We take a comprehensive approach to Cyber Resilience, Applied Security, and Security Service Management to safeguard the digital journey of large and mid-sized enterprises across all sectors and industries. Since 2009, previously known as INTEGRITY, our Portugal-based team has specialized in delivering cutting-edge Managed Security Services. By combining expertise with proprietary technology, we consistently and effectively reduce our clients' cyber risk. Our wide range of services includes Persistent Penetration Testing, ISO 27001, PCI-DSS, GRC Consulting and Solutions, and Third-Party Risk Management. Certified in ISO 27001 (Information Security) and ISO 9001 (Quality), PCI-QSA, and members of CREST and CIS (Center for Internet Security), we serve a significant number of clients in over 20 countries. Job Description The Junior Vulnerability Manager will join the Security team and will be responsible for supporting the management of the vulnerability lifecycle, with a particular focus on the operation and improvement of the scanning process. Key Responsibilities: 1. Operation and Maintenance of Vulnerability Scans: - Scan Execution: Perform vulnerability scans using Nessus, including preparing network files to be scanned and validating scan status (often automated; occasional weekend work may be required). - Troubleshooting: Diagnose and resolve issues when scans fail, including: - Network diagnostics (connectivity, port issues, Layer 2/3, next-hop configuration, routing, VLANs/Trunks). - Diagnosing issues in Nessus and the Operating System. - Analyzing and improving Python scripts responsible for scanning processes. 2. Automation and Data Handling: - Script Development (Python/Bash/SQL): Develop, modify, and maintain scripts to automate vulnerability management tasks. - Code Migration: Participate in converting Python 2 scripts to Python 3. - Database Management (SQL): Retrieve and correlate asset lists with scan database information, create data insertion queries, and process results. - Data Processing: Use tools such as Regex, Excel (Pivot Tables), and Bash to process, correlate, and prepare scan results for various purposes. - Quarterly Preparation: Support automation for folder creation in Nessus and asset list processing. 3. Post-Scan and Vulnerability Management: - Result Handling: Analyze scan results, improving scripts to prevent known false positives. - Vulnerability Closure: Use Burp (or develop alternative Python scripts) to automate batch closure of resolved vulnerabilities. - Security Analysis: Assess vulnerabilities to determine if they are false positives (requires basic security knowledge). - Validation: Perform basic security validations (entry-level pentesting skills) to confirm vulnerability resolution. - Risk Management: Apply basic risk management knowledge to evaluate and propose vulnerability parking timeframes. 4. Infrastructure and Planning: - Planning: Map networks and schedule scans, considering average execution times and restrictions. - System Configuration: Reinstall the operating system and configure Nessus on dedicated laptops (requires Unix knowledge). - Asset Validation: Correlate new CMDB assets with the networks configured in planned scans (SQL, Bash, Python). Qualifications Security Knowledge (for example knowledge of pentesting) - Programming skills (Python) - Network Knowledge - Unix (important to know network commands, bash commands) - SQL knowledge - Brief knowledge of risk management - Fluency in English and Portuguese. Additional information What we offer: - Professional development and monitoring talent; - Commitment to our employees' development; - Collaboration in a company that is constantly growing and evolving; - Strong organizational culture: collaboration, sharing, flexibility, integrity and low ego. The Devoteam Group works for equal opportunities, promoting its employees based on merit and actively fights against all forms of discrimination. We are convinced that diversity contributes to the creativity, dynamism and excellence of our organization. All of our vacancies are open to people with disabilities. Does this sound like you? Come build with us, innovative solutions that actively change things for the better. Apply today Send your CV to Poderá encontrar o anúncio original publicado em: https://www.itjobs.pt/oferta/507957/devoteam-cyber-trust-junior-vulnerability-manager-fintech-sector



  • lisboa, Portugal Bitsight Tempo inteiro

    The Vulnerability Research team within Bitsight’s Security Research department develops and deploys techniques to remotely detect the presence of recently disclosed vulnerabilities. These techniques are integrated into the company’s Internet scanning infrastructure which enables Bitsight to measure the rate at which organizations patch and remediate...

  • Vulnerability Management

    3 semanas atrás


    lisboa, Portugal Empiric Tempo inteiro

    Vulnerability Manager – Leading Telco Client - Long Term Contract Location: Porto/Lisbon (Flexible onsite working) Type: Freelance My client, a major name in the telecommunications sector, is expanding its Cybersecurity organisation and is looking for a Vulnerability Management Consultant to help shape and run a brand-new vulnerability management program....


  • Lisboa, Portugal Devoteam Tempo inteiro

    Devoteam Cyber Trust is the Cybersecurity specialist arm of the Devoteam Group. With our 800+ experts located across EMEA, we aim to establish cybersecurity as an enabler of business success rather than a gatekeeper. We leverage an end-to-end approach to Cyber Resilience, Applied Security, and Managed Security services to secure the tech journey of large and...

  • Vulnerability Manager

    1 semana atrás


    Lisboa, Portugal Devoteam Tempo inteiro

    Devoteam Cyber Trust is the specialized cybersecurity unit of the Devoteam Group. With over 800 experts across the EMEA region, our mission is to position cybersecurity as a business enabler, not a barrier. We take a comprehensive approach to Cyber Resilience, Applied Security, and Security Service Management to safeguard the digital journey of large and...


  • Lisboa, Portugal Siemens Tempo inteiro

    **Cybersecurity Professional for Vulnerability Analysis & Reporting** Modern enterprise IT environments are growing rapidly and change constantly. This leads to ever-increasing complexity and vulnerabilities. The Vulnerability Management team within Siemens’ Cybersecurity department takes this challenge. **If you.** - know how to build data ingestion and...


  • Lisboa, Portugal Amgen Tempo inteiro

    Specialist Information Security Engineer – Vulnerability Management Analyst Join to apply for the Specialist Information Security Engineer – Vulnerability Management Analyst role at Amgen. Where we are The Amgen Capability Center in Lisbon, Portugal (ACCP) will be home to over 300 multi‑national employees. The offices are currently located at Maleo...


  • Lisboa, Portugal Amgen Tempo inteiro

    Career Category Information Systems Job Description HOW MIGHT YOU DEFY IMAGINATION? The Amgen Capability Center in Lisbon, Portugal (ACCP ) will be home to over 300 multi-national and multi-cultural employees, representing a broad range of cross-functional capabilities, including Commercial, General and Administrative, Information Systems, Research and...


  • Lisboa, Portugal Devoteam Tempo inteiro

    Gerir a conformidade, monitorizar alertas de segurança, analisar vulnerabilidades, propor mitigação e melhorar os processos de gestão.

  • Junior Incident Manager

    2 semanas atrás


    Lisboa, Portugal Onrising Tempo inteiro

    Descrição Empresa Descrição da posição Com o foco de desenvolver novas e desafiantes experiências, procuramos um perfil Junior Incident Manager para se juntar a uma das nossas dinâmicas equipas de projeto. Aqui, o Incident Manager será responsável pelo processo de Gestão de Incidentes, garantindo a Triagem, resolução de problemas e...


  • Lisboa, Portugal Winprovit Tempo inteiro

    A Winprovit procura Junior Account Manager (M/F) para a equipa de Lisboa. O que procuramos: - Formação na área de Gestão de Recursos Humanos ou similar - Gosto pela área de tecnologias de informação - Forte capacidade de relacionamento interpessoal e de comunicação - Capacidade para gerir temas relacionados com colaboradores e a motivação dos...