via ats_lever · 16 juillet 2026 ·il y a 5 jours

Vulnerability Operation Center Lead

jobgether
France Temps plein
284 autres offres à France.
Importez votre CV et voyez lesquelles vous correspondent vraiment.
Importer mon CV

Accountabilities

  • Build and lead the Vulnerability Operations Center, defining processes, governance, and best practices for the complete vulnerability management lifecycle.

  • Manage vulnerability detection, validation, triage, remediation tracking, and reporting across cloud infrastructure, products, and hardware environments.

  • Improve automated vulnerability triage capabilities through data enrichment, AI-assisted workflows, contextual risk scoring, and vulnerability correlation techniques.

  • Perform hands-on validation and prioritization of critical and zero-day vulnerabilities to support rapid response efforts.

  • Collaborate closely with engineering, security, compliance, and operations teams to ensure timely remediation and continuous risk reduction.

  • Drive improvements in patch management processes and oversee remediation initiatives across multiple engineering teams.

  • Manage vulnerability intake from scanners, penetration testing, bug bounty programs, and threat intelligence sources.

  • Prioritize findings using industry-standard risk frameworks, including CVSS, EPSS, SSVC, exploitability, asset criticality, and business impact.

  • Contribute to the development and automation of internal vulnerability management and security orchestration platforms.

  • Define key vulnerability management metrics, monitor trends, and present actionable insights and KPIs to security leadership.

  • Coordinate organizational responses to critical security events and maintain integrations across the broader security ecosystem.

Requirements
  • 5–8 years of experience in information security, including at least 3 years focused on vulnerability management or security operations.

  • Strong expertise in vulnerability management processes across cloud-native and enterprise infrastructure environments.

  • Deep knowledge of vulnerability assessment methodologies, including CVE, NVD, CVSS, EPSS, SSVC, and risk-based prioritization frameworks.

  • Experience working with cloud platforms such as AWS, Google Cloud, Azure, or private cloud infrastructure.

  • Solid understanding of vulnerability scanning technologies, their capabilities, and their limitations in modern cloud environments.

  • Ability to write and review code, with experience or willingness to develop automation using Golang or similar programming languages.

  • Strong understanding of software and infrastructure vulnerability classes, exploitability analysis, and remediation validation.

  • Experience collaborating with engineering teams to drive remediation while balancing technical risk and operational priorities.

  • Excellent analytical, communication, and stakeholder management skills, with the ability to translate complex technical risks into business-focused recommendations.

  • Experience with Kubernetes security, container security, software supply chain security, SBOMs, dependency scanning, or bug bounty programs is considered an advantage.

  • Previous experience building or scaling a vulnerability management program from the ground up is highly desirable.
Benefits
  • Competitive compensation package, including equity participation opportunities.

  • Flexible remote-first working environment.

  • Opportunity to build and lead a strategic cybersecurity function from its inception.

  • High level of ownership and influence over security strategy, tooling, and operational processes.

  • Career growth, continuous learning, and professional development opportunities.

  • Collaborative, engineering-driven culture focused on innovation and technical excellence.

  • Opportunity to contribute to AI-powered security technologies and next-generation cloud infrastructure.

  • International work environment with highly experienced engineering and security professionals.

  • Fast-paced organization offering meaningful technical challenges and significant business impact.

Le marché pour ce type de poste

Offres similaires
284
offres à France
Temps plein
83%
des offres en France
Télétravail possible
4%
des offres
jobgether

200 postes ouverts · Argentina, Austria, Belgium, Denmark, France +11

📊 Marché de l'emploi · France
363 851
offres actives
4.1%
Remote
Ø 1d
Ø en ligne

Questions fréquentes

Combien d'offres sont disponibles à France ?
Actuellement 284 postes à France sur AlmostHired, dans 94 entreprises différentes. Nos données sont mises à jour quotidiennement.
Les offres en France offrent-elles du télétravail ?
4% des offres en France permettent le télétravail, partiel ou total. Pour filtrer spécifiquement les postes en remote, utilisez AlmostHired.
Comment savoir si je corresponds à cette offre ?
Déposez votre CV — notre IA compare votre profil aux exigences du poste et vous donne un score de compatibilité précis, avec les compétences qui correspondent et celles qui manquent.