Logo CANCOM SE

Security Engineer - Vulnerability & Exposure Management

New

Job

  • Level
    Experienced
  • Job Field
    IT, Security
  • Employment Type
    Full Time
  • Contract Type
    Permanent employment
  • Location
    Hamburg, Stuttgart, Berlin, Munich, Cologne, Frankfurt, Aachen, Leipzig, Hanover
  • Working Model
    Hybrid, Onsite
  • Job Summary

    In this role, you will develop vulnerability management in a multi-tenant environment, analyze scan results, and automate processes using Python or PowerShell, collaborating closely with SOC teams.

    Job Technologies

    Your role in the team

    • Our Cyber Defense Center provides security services for clients ranging from medium-sized companies to large corporations, staffed by over 50 specialists.
    • Our Vulnerability Management is currently being revamped - and you will help shape it: from Multi-Tenant environment and onboarding to scan strategies and reporting, as well as automation.
    • This role offers short communication channels and a high degree of personal responsibility, supported by SOC, Incident Response, Detection Engineering, and Security Consulting.
    • There are no on-call, night, or weekend shifts.
    • Your work model: three days in the office, two days mobile office - at one of over 60 locations in Germany.
    • You will help design our multi-tenant environment for vulnerability management, oversee its ongoing operation, onboard new customers, and further develop the underlying architecture.
    • You analyze scan results, prioritize based on risk (CVSS, EPSS, KEV, actual exposure), and distinguish the urgent from the noise.
    • You are the technical point of contact, deriving concrete measures, supporting the remediation, and representing your assessment even when it is uncomfortable.
    • You build reports and dashboards that are understandable by both the IT department and executive management - and present them remotely as well as on-site.
    • You automate recurring tasks by replacing them with scripts and API integrations (Python, PowerShell).
    • Onboarding, data export, ticket integration, reporting - we have more ideas than time.
    • You refine our processes, SLAs, and service modules together with the team and work closely with our SOC and incident response colleagues.

    This text has been machine translated. Show original

    Our expectations of you

    Education

    • Approximately 2-5 years of professional experience in IT security or IT operations - we don't mind how you got there; university and vocational training are equally welcome.

    Qualifications

    • Solid understanding of Windows, Linux, and network infrastructures: You know why a scan result occurs and what a patch triggers at the customer's site.
    • You can explain technical matters in a way that even non-technical people can take action.
    • Business-fluent German for working with our clients - consulting, reporting, and meetings are conducted in German.
    • In the team itself, English is the everyday language, so good English skills in speaking and writing are just as necessary.

    Experience

    • Practical experience with vulnerability management solutions (e.g., Tenable, Rapid7, Qualys, Greenbone) or with comparable security platforms that you have administered - we do not specify a particular product.
    • Initial automation experience with Python, PowerShell, or Bash and enjoyment of APIs.
    • Ideally, experience in multi-tenant or managed service environments, touchpoints with cloud and container security (Azure, AWS, Kubernetes), or knowledge of regulatory requirements such as NIS2, DORA, and ISO 27001 — all not mandatory.

    This text has been machine translated. Show original

    What we offer

    • Flexible working hours and mobile office in coordination with the supervisor.
    • Discounts through the "Corporate Benefits" portal.
    • Free drinks & fruit.

    This text has been machine translated. Show original

    Benefits

    Work-Life-Integration

    Food & Drink

    Topics You Will Work On

    Job Locations

    • Location Munich

      Bayern

      Germany

    • Location Stuttgart

      Baden-Württemberg

      Germany

    • Location Frankfurt

      Hessen

      Germany

    • Location Aachen

      Nordrhein-Westfalen

      Germany

    • Location Cologne

      Nordrhein-Westfalen

      Germany

    • Location Leipzig

      Sachsen

      Germany

    • Location Hanover

      Niedersachsen

      Germany

    • Location Berlin

      Germany

    • Location Hamburg

      Germany

    About Your Employer

    CANCOM SE

    CANCOM SE

    As a digital transformation partner, CANCOM accompanies companies into the digital future. We help our customers reduce the complexity of their IT and expand their business success through the use of state-of-the-art technology.

    Description

  • Company Size
    250+ Employees
  • Company Type
    Established Company
  • Working Model
    Hybrid, Onsite
  • Industry
    Industry, Production, Consulting
  • Employer reviews

    by devworkplaces.com

    Total

    (1 Review)
    3.3
    • Engineering

      2.6
    • Workingconditions

      4.2
    • Culture

      3.6
    • Career Growth

      2.7
    Show all reviews
    Logo CANCOM SE

    Security Engineer - Vulnerability & Exposure Management

    Location
    Hamburg, Stuttgart, Berlin, Munich, Cologne, Frankfurt, Aachen, Leipzig, Hanover
    Working Model
    Hybrid, Onsite
    Diversity
    Open for all genders

    More Jobs