04 ago - Bardi
Experteer Italy
Experteer OverviewIn this role you help safeguard Amplifon's digital assets and customer data as part of a cross-country Global IT — Cyber Security team.
You will perform hands?on penetration testing, security assessments, and vulnerability management while supporting security monitoring, incident response, and governance programs.
Your work modernizes asset management and strengthens the security of endpoints, networks, and identities.
This is an impact?driven opportunity to shape security practices at a global scale.
Retribuzione / BenefitsPlan and conduct penetration tests and security assessments on web/mobile apps, internal systems, and externally facing infrastructure; identify vulnerabilities and misconfigurations
Own remediation: produce risk?based reports and drive fixes through to closure with owners, then re?test
Support red?team style validation activities to confirm real?world exploitability
Manage vulnerability lifecycle: discovery, triage, prioritization, remediation tracking and verification
Collaborate on developing and executing robust vulnerability management strategies across the global estate
Operate and tune security platforms across endpoint, network, and identity (EDR, patch management, firewalls) ensuring policy compliance
Strengthen access and credential hygiene on shared/critical systems (reviews, deprovisioning, credential rotation, minimizing data exposure)
Contribute to security monitoring and incident response across SOC and external partners; assist in post?incident hardening
Support ISMS and regulatory alignment (ISO/IEC *****, NIS2, GDPR) and asset management KPI tracking
Oversee supplier engagement for penetration testing, vulnerability and security services, ensuring scope and delivery meet expectations
ResponsabilitàBachelor's degree in a STEM field with focus on cybersecurity or equivalent hands?on experience
Solid knowledge of penetration testing tools and methodologies (network and web/mobile testing; OWASP)
Working knowledge of vulnerability management and common attack techniques (e.g., authentication weaknesses, pass?the?hash, lateral movement)
Experience with security platforms across xysqume endpoint, network, and identity (EDR, patch management, firewalls)
Awareness of information security frameworks/regulations (ISO/IEC *****, NIS2, GDPR)
Proactive mindset and ability to drive transformational initiatives
Strong problem?solving, process?oriented approach, and multi?country collaboration
Excellent communication and collaborative skills; fluent in English
Requisiti fondamentali750 Annual Welfare plan
Health Insurance: Fondo Est and Accident Insurance
Supplementary pension scheme option
On?site canteen and free company parking
BeWellProgram with learning platforms and training
Corporate discounts and wellbeing initiatives
#J-*****-Ljbffr
08 ago - Italia
Altro
08 ago - Italia
WAICO
08 ago - Italia
Altro
08 ago - Italia
Altro