Vulnerability Management Specialist

11 ore fa

genova, liguria, Italia Reply Tempo pieno
Overview

As a Vulnerability Management Specialist at Reply, you own the full vulnerability lifecycle across networks, apps, cloud, and AI systems. You will collaborate with customers to design and run risk-based programs, leveraging AI-driven analytics to reduce exposure. You’ll build tooling, tune processes, and guide remediation to reduce risk. This role combines hands-on technical work with client engagement in a forward-thinking team. You’ll join a mission to advance security through AI-enabled, scalable vulnerability management.

Retribuzione / Benefits
  • Structured career path
  • Continuous learning environment
  • Competitive compensation
  • Opportunities for growth into technical specialist or leadership
  • Equal opportunity employer
  • Industry-wide benefits of being a Replyer
Responsabilità
  • Design and run end-to-end vulnerability management programs across networks, applications, cloud, and AI systems
  • Perform scanning, risk scoring, remediation follow-up, and reporting
  • Assess AI-based applications and models to map exposure
  • Engage with clients to scope activities, present findings, and guide remediation
  • Design and refine vulnerability management processes with a risk-based mindset
  • Develop scripts and tooling to speed detection, correlation, and prioritization
  • Apply AI/ML models to triage vulnerabilities and reduce false positives
  • Produce clear, actionable reports for IT teams and collaborate on challenging engagements
Requisiti fondamentali
  • Bachelor or Master in Information Technology, Information Security or Computer Science
  • Scripting and automation skills (e.g., Python)
  • Knowledge of Windows, Linux/Unix and cloud environments
  • Familiarity with vulnerability scanning and IT asset management tools
  • Knowledge of OWASP and networking concepts; hands-on vulnerability assessment and CVSS/risk-based prioritization
  • Familiarity with security of AI/ML systems and LLM risk considerations; OWASP Top 10 for LLM Applications is a plus
  • Certifications in network security or vulnerability management (e.g., CompTIA Security+, eJPT, CEH) a plus
  • Experience with CVSS scoring and risk-based prioritization methodologies
  • Strong communication and presentation abilities
  • Italian native and fluent English
  • Interest in AI and GenAI security themes
  • Strong communication and presentation abilities
  • Collaborative and flexible attitude
  • Curiosity and enthusiasm for solving new problems
  • Python scripting and automation
  • Windows and Linux/Unix administration
  • Cloud environments (e.g., public cloud)