Pubblica annuncio gratuito
Ricevi nuove offerte di lavoro

Crea una Job Alert gratuita per vulnerability governance analyst, italy / bardi

Vulnerability Governance Analyst, Italy

Pubblicato il 27-09-2026 - Ion Group in Bardi

About us:We are a community of visionary innovators, dedicated to providing pioneering software and consultancy services to financial institutions, trading firms, central banks, governments, and corporations around the world.
We strive to simplify the way people work.
We do that by providing workflow and process automation software, as well as providing real-time data and business intelligence to help people make better decisions.
We are 13,000+ employees, we operate globally with 80+ global offices, and we serve over 4,800+ customers worldwide.Ha le carte in regola per avere successo?
Le seguenti informazioni devono essere lette attentamente da tutti i candidati.For the strengthening of the Chief Information Security Office (CISO) function within Cedacri's companies, part of ION Group, we are looking for talented professionals to grow their career as Vulnerability Governance Analyst.
This position is targeted at candidates with 2–5 years of relevant experience in Cybersecurity, Vulnerability Management, or Information Security Governance.
Selected candidates will be placed in a dynamic and innovative environment and will collaborate with cross-functional teams to strengthen the organization's vulnerability governance framework and security posture.Learn more at roleYour key duties and responsibilitiesSupport the governance and continuous improvement of the enterprise Vulnerability Management program.Monitor vulnerability remediation activities across infrastructure, cloud, endpoint, and application environments, ensuring compliance with established remediation targets and governance requirements.Perform risk-based vulnerability analysis considering exploitability, asset criticality, exposure, business impact, and threat intelligence.Correlate vulnerability intelligence with CMDB,



BIA, SBOM/SCA and application ownership data to identify exposed services, impacted customers, remediation owners and urgency of action.Prioritize vulnerabilities using a risk-based model that goes beyond technical severity, considering exploitability, evidence of active exploitation, CISA KEV/EPSS, Internet exposure, asset criticality, client impact and multi-tenant blast radiusCoordinate remediation plans and follow-up activities with Infrastructure, Cloud, Development, Application Security, and Risk teams.Manage remediation exceptions, compensating controls, and risk acceptance processes.Develop and maintain vulnerability dashboards, KPIs, operational metrics, and executive reports.Support the escalation and governance of critical vulnerabilities and high-risk exposure scenarios.Contribute to the definition and continuous improvement of vulnerability management policies, standards, and governance processes.Support audits, regulatory assessments, and compliance activities related to cyber risk and vulnerability management.Other dutiesWe might ask you to perform other tasks and duties as your role expands.Your skills, experience, and qualifications requiredMaster's degree in Cybersecurity, Computer Science, Computer Engineering, Information Technology, or a related field (with honors)At least 2-5 years of experience in Vulnerability Management,



Security Operations, Cyber Risk, Security Governance, or related areas.Understanding of vulnerability lifecycle management, remediation processes, and exposure management practices.Familiarity with vulnerability assessment platforms and reporting solutions.Knowledge of vulnerability prioritization methodologies and industry references such as CVSS, EPSS, CISA KEV, exploit intelligence, and threat intelligence feeds.Familiarity with software supply chain security concepts, SBOMs, SCA practices, and DevSecOps environments.Knowledge of ISO *****, NIST CSF, CIS Controls, DORA, and NIS2 requirements related to vulnerability and ICT risk management.Ability to communicate technical findings through clear risk-based reporting and executive-level summaries.Strong analytical, organizational, and stakeholder management skills.Excellent knowledge of Italian and English.Relevant certifications such as Security+, CySA+, CISSP, ISO *****, or equivalent would be considered a plus.What we offer:Permanent employment contractItalian National Collective Labour Agreement for the Metalworking Industry (CCNL Metalmeccanico)Gross Annual Salary (RAL) ranging from €40,000 to €50,000, depending on experience, skills, and qualificationsJob grade to be determined upon completion of the selection process, with final assessment between B2 and B3 levelOpportunity to join a leading international technology group operating in the financial services industryExposure to enterprise-scale cybersecurity governance activities within a dynamic and international environmentLocation:Milan.
xysqume Important notes:According to the Italian Law (L.*****), candidates belonging to the protected categories list will be given priority.
#J-*****-Ljbffr

» RISPONDI A QUESTO ANNUNCIO
Altri Annunci
RESPONSABILE SEGRETERIA GENERALE
2026-09-29 09:39:45 - Fondazione Lavoro - Roma
La Fondazione Consulenti per il Lavoro - Agenzia per il Lavoro del Consiglio Nazionale dell’Ordine dei Consulenti del Lavoro è alla ricerca per la Fondazione Studi Consulenti del Lavoro di un/a responsabile segre [...]
Estetista Junior (f,m,nb)
2026-09-29 09:39:41 - Randstad Italia - Roma
"Hai una forte passione per il mondo del beauty e desideri avviare la tua carriera in un contesto dinamico? Randstad Italia, filiale di Roma Tiburtina, per un'importante azienda cliente operante nel settore dell'est [...]
Ricevi nuove offerte di lavoro

Crea una Job Alert gratuita per vulnerability governance analyst, italy / bardi

COMUNE DI TRIESTE - CONCORSO PUBBLICO PER ESAMI PER 2 POSTI A TEMPO PIENO E INDET. DI ''FUNZIONARIO DIRETTIVO (TECNICO)'' CATEGORIA D, ADDETTO A ELABORAZIONI CARTOGRAFICHE E GESTIONE DATI TERRITORIALI
2026-09-29 09:39:40 - Dipartimento della Funzione Pubblica - Trieste
CONCORSO PUBBLICO PER ESAMI PER LA COPERTURA DI 2 POSTI A TEMPO COMPLETO E INDETERMINATO NEL PROFILO DI ''FUNZIONARIO DIRETTIVO (TECNICO)'' CATEGORIA D, DA DESTINARE AD ATTIVITA’ PREVALENTE FINALIZZATA AD ELABORAZ [...]
Barista/Cameriere
2026-09-29 09:39:36 - presta&camelia - Arona
si ricerca barista cameriere/a per lavoro in bar pasticceria sito in ARONA, con esperienza. lavoro su turnazioni, compreso week end, 25/30 ore settimanali mansioni: preparazione bevande calde e fredde serviz [...]