Vulnerability Management Security Engineer

hace 1 semana


Barcelona, España Adevinta 2021 A tiempo completo

As a Vulnerability Management Engineer, you will be a vital part of Adevinta's Information Security team. You'll manage proactive security programs, conduct in-depth technical assessments, and lead strategic security planning sessions. Your responsibilities will include driving automation initiatives for security processes, integrating advanced security tools, and leveraging threat intelligence to enhance our defensive capabilities. You will be key in ensuring that Adevinta's security strategy covers industry-relevant security standards, leaving no gaps open to be exploited. The Vulnerability Management team is part of the Information Security department, where you'll collaborate closely with other services such as Secure Product Lifecycle, Incident Response and Governance. You may also be called on to interact with product development teams to help them secure their products. What you will do: You will own the vulnerability management lifecycle, including identifying vulnerabilities (via scanning, penetration testing, bug bounties, configuration reviews, etc.), analyzing risks, prioritizing remediation, and coordinating fixes. You will drive DevSecOps practices by integrating and managing automated security tools (SAST, DAST, SCA, etc.) within CI/CD pipelines, interpreting results, and collaborating with Development and Operations teams to embed security throughout the development lifecycle. You will define and automate security controls and best practices for containerized environments (Docker, Kubernetes) and cloud infrastructure (IaC security scanning, configuration management). You will ensure our assets are properly reporting events to the SIEM, and support the definition of rules for generating alerts. You will support the other Infosec teams as a subject-matter expert. You will work in a hybrid environment (remote/on-site at Adevinta hubs in Barcelona or Amsterdam), with occasional EU travel required and will have the possibility of being on-call. Who you are: You combine a passionate, open, and hacker mindset with strong analytical, technical, and problem-solving with the ability to synthesise complex data into actionable insights. You recognize the need for automation to handle problems at scale, and you have proven experience implementing security automation. (e.g., Python, Go, etc.) You are proficient in securing cloud environments (preferably AWS) and containerized workloads (Docker, Kubernetes); experienced in integrating security into CI/CD pipelines (e.g., GitHub Actions, Jenkins) and Infrastructure as Code (e.g., Terraform). You possess a deep and broad understanding of core cybersecurity principles, common attack vectors (e.g., OWASP Top 10), mitigation techniques, cryptography, standard frameworks, and security across network, protocol, system, and application layers.. You have in implementing DevSecOps practices, including integrating security tools (SAST, DAST, SCA) into pipelines and guiding development teams on secure coding and vulnerability remediation. You are an effective communicator and collaborator who takes ownership of problems, builds relationships, influences others, and thrives in a multicultural environment. You are fluent in English (spoken and written). Nice to have: Proficiency in threat modelling. Notions of incident response. Public or private presentations. Open source contributor. Participation in conferences and training. Certifications. Membership in bug bounty programs, CTF player or member of ethical hacking communities, recognition in the Hall of Fame, CVE mentions or vulnerability reporter. d364c79397a5a57 4e31636d6c c59584e30 5a a57646e4c6e4d7a4c57 56314c58646c d d 39744c a c636c39 6c5a c6d64360a #J-18808-Ljbffr



  • Barcelona, España BSP executive A tiempo completo

    **¿Dónde trabajarás?**: Large multinational company, world leader in integrated electronic technology. **¿Qué harás?**: We are looking for an experienced vulnerabilty manager to: - Perform vulnerability scans to identify, evaluate report the root cause of the vulnerabilities using scanning tools like Tenable’s Nessus. - Compile and tracks...


  • Barcelona, España Adevinta 2021 A tiempo completo

    As a Vulnerability Management Engineer, you will be a vital part of Adevinta's Information Security team. You'll manage proactive security programs, conduct in-depth technical assessments, and lead strategic security planning sessions. Your responsibilities will include driving automation initiatives for security processes, integrating advanced security...


  • Barcelona, España Adevinta A tiempo completo

    Vulnerability Management Security Engineer Join to apply for the Vulnerability Management Security Engineer role at Adevinta. We’re Adevinta, a global leader in digital marketplaces. Our household name brands, including Marktplaats in the Netherlands, mobile.de in Germany and leboncoin in France, reach hundreds of millions of people every month. We’re...


  • Barcelona, España King.com A tiempo completo

    **Craft**: Technology & Development This role reports into the Director, Risk Management and maintains good relationships with all line - of Priorities can often change in a fast - paced environment like ours, so this role includes, but is not limited to, the following responsibilities: - Reviewing any recent vulnerabilities made public to ensure we...


  • Barcelona, España Adevinta 2021 A tiempo completo

    A leading global technology firm in Barcelona is seeking a Vulnerability Management Engineer to enhance security frameworks, drive automation initiatives, and manage bug bounty programs. This role requires a hacker mindset and proficiency in cloud operations, particularly in AWS, alongside strong analytical skills. You will collaborate with product...


  • Barcelona, Barcelona, España Adevinta A tiempo completo

    We'reAdevinta,a global leader in digital marketplaces. Our household name brands, including Marktplaats in the Netherlands, in Germany and leboncoin in France, reach hundreds of millions of people every month.We're all about matchmaking, and our sites help people find whatever they're looking for in their local communities – whether it's a car, an...


  • barcelona, España Gelato A tiempo completo

    A leading global printing technology firm is seeking a Senior Security Engineer to enhance the security of the Gelato platform for millions of users. The role involves collaborating with product and tech teams, conducting vulnerability assessments, and promoting a security-sensitive culture. Candidates should have significant experience in cybersecurity and...


  • Barcelona, España Gelato A tiempo completo

    A leading global printing technology firm is seeking a Senior Security Engineer to enhance the security of the Gelato platform for millions of users.Todos los posibles candidatos deben leer con atención los siguientes detalles de este trabajo antes de presentar una candidatura.The role involves collaborating with product and tech teams, conducting...


  • Barcelona, España Novartis A tiempo completo

    **Summary**: Location: Barcelona, Tel Aviv The role is part of DDIT ISC Security Operations in Vulnerability Services team. The person will focus on reducing risk exposure from security vulnerabilities with major focus on high risk, theme based and 0-day vulnerabilities emergency response and remediation. This role is part of a pool of security...


  • Barcelona, España Wolters Kluwer A tiempo completo

    Promote DevSecOps in the organization by helping automate security testing in our SDLC, managing code reviews, vulnerability scans and penetration test of our digital solutions. Your responsibilities include, but are not limited to: - Collaborate with DevOps teams to incorporate strong security controls, apply/improve security best practices in our SDLC,...