Vulnerability Management Engineer & Ops Senior Manager

Grant Thornton Global Delivery Center PolandPoznańnofluffjobsavaldatud 01.10.2026
Nõutav:AWSAzureGoogle CloudCloudAISecuritySeniorRemoteHybrid

We are looking for an experienced Vulnerability Management Engineering and Operations Senior Manager with strong hands-on expertise in Wiz (including Wiz UVM) and, additionally, Qualys, secure configuration assessments, policy compliance scanning, CrowdStrike exposure management , and enterprise vulnerability management. The ideal candidate will also have experience working with these and other cloud security platforms to identify , prioritize, and help remediate vulnerabilities across hybrid environments , using technology platforms and innovative automation solutions using AI . What we offer: Hybrid working model (2 days in the office and 3 days working remotely) Stable employment with an employment contract, private medical care, and a benefits package including MultiSport and a benefits platform Opportunity to work in an international environment and collaborate with experienced Grant Thornton experts and professionals from around the world A culture based on teamwork, trust, and knowledge sharing A well-structured onboarding program to support a smooth start and successful integration into your new role Clear career development paths and access to learning and certification programs Access to training platforms and tools that support professional growth An inclusive workplace that welcomes people with disabilities A modern office in Poznań, located in Malta Office Park

Why join Grant Thornton Global Delivery Center Poland

At Grant Thornton Global Delivery Center Poland (GDC), you’ll contribute to meaningful work that moves businesses forward. From day one, you’ll help deliver value for clients while helping shape the future of a growing delivery center in Poland.

Through supporting operations of our growing multinational platform, you’ll have opportunities to tackle complex projects, work with advanced technologies and develop new skills while expanding your experience. You’ll collaborate across countries, markets and time zones, learning from different perspectives and building experience beyond their roles.

At GDC Poland, you’ll be part of a team that succeeds together. Knowledge is shared, diverse perspectives are valued, and team members support one another in doing their best work.

Clear career paths, learning opportunities and international exposure will help you continue building your skills, expanding your capabilities and growing a rewarding career.

About Grant Thornton

Grant Thornton provides audit and assurance, tax and advisory services through the member firms of the Grant Thornton International Ltd (GTIL) network. Wherever business operates, the network is there, with member firm capabilities in more than 150 markets worldwide.

Within the network, the Grant Thornton Advisors multinational platform is a group of firms that connects priority markets and operates with aligned standards, technology and delivery expectations. For work that crosses borders, this helps support collaboration and coordination across markets. Platform firms operate as separate legal entities.

Why choose a career with Grant Thornton

At Grant Thornton, we help ambitious organizations make their most important decisions across audit, tax and advisory. Our scale doesn’t create distance. You work in smaller teams, with senior people who stay involved from start to finish. You take on real work early, help shape it and see it through.

You get access to capabilities across disciplines, clients in almost every industry and colleagues around the world who are only a message away.

Build a career with meaningful work, multinational opportunities and the support to make a lasting impact.

Join our team! We are searching for IT professionals across multiple specialties and experience levels. Click on the arrow to see current job offers.

Daily tasks

  • Administer and enhance the organization's vulnerability management program, ensuring vulnerabilities are identified, assessed, and remediated across on-premises, cloud, and hybrid infrastructures.
  • Execute vulnerability assessments, secure configuration reviews, and policy compliance scans using Wiz, Qualys, and related security tools.
  • Investigate, prioritize, and remediate vulnerabilities identified by Qualys, Wiz, and other Cloud Security Posture Management (CSPM) platforms.
  • Hands-on experience in generating actionable vulnerability reports for patch management teams, enabling timely and efficient remediation of security vulnerabilities.
  • Partner with relevant teams to prioritize remediation activities based on business risk and compliance requirements.
  • Experience in patch management and creating patch jobs, and coordinating with relevant teams to execute patch management processes.
  • Integrate vulnerability management solutions with SIEM, ITSM, and other platforms to improve operational efficiency and remediation workflows.
  • Create and maintain dashboards, reports, and security metrics for leadership, compliance, and audit purposes.
  • Monitor emerging security threats, newly disclosed vulnerabilities, and industry best practices to continuously improve the vulnerability management process.
  • Assist with compliance initiatives, including PCI-DSS, ISO 27001, and SOC 2, by providing vulnerability assessment results and configuration compliance reporting.
  • Design and implement AI-powered automation solutions to streamline workflows, reduce manual tasks, improve operational efficiency, and automate repetitive business processes.

Requirements

Required Qualifications

10 – 1 2 years of experience in vulnerability management, cybersecurity, or a related information security role. Practical experience with Wiz, Qualys , including vulnerability scanning, secure configuration assessment, and policy compliance modules. Working knowledge of Wiz UVM and other comparable CSPM solutions for cloud vulnerability and misconfiguration management. Hands-on experience integrating vulnerability management platforms with SIEM, ITSM, and patch management solutions. Strong understanding of Windows and Linux operating systems, networking fundamentals, and cloud platforms including AWS, Azure, and GCP. Solid knowledge of CVSS scoring, risk-based vulnerability prioritization, and remediation methodologies. Familiarity with AI tools, workflow automation platforms, and integrating AI into existing systems is preferred. Fluency in Polish and English.

Preferred Qualifications

Experience developing automation using Copilot or other Agentic AI frameworks Industry certifications such as Qualys Certified Specialist, Wiz Certified Professional, CISSP, CEH, or CompTIA Security+ are highly desirable.

Soft Skills

Excellent communication, collaboration, and stakeholder management abilities. Strong analytical and problem-solving skills with the ability to manage multiple priorities in a fast-paced environment. Experience working within multinational environments with complex IT asset landscapes . Attention to detail and accuracy . Strong problem-solving and analytical abilities . Ability to translate compliance requirements into technical controls . Commitment to continuous improvement and maturity enablement of the program .

Must have: Cybersecurity, Security, Cloud, Windows, Linux, Operating system, Networking, Cloud platform, AWS, Azure, AI

Nice to have: CISSP, Stakeholder management