Vulnerability Management Officer
il y a 20 heures
Vulnerability Management Officer OECD – the Organisation for Economic Co‑operation and Development is an international organisation comprised of 38 member countries that works to build better policies for better lives. Its mission is to promote policies that will improve the economic and social well‑being of people around the world. It provides a unique forum and knowledge hub for data and analysis, exchange of experiences, best‑practice sharing, and advice on public policies and international standard‑setting. In the Executive Directorate, the Digital, Knowledge and Information Service (EXD/DKI) designs and provides secure digital solutions, IT and information management services, and the technologies to deliver efficient corporate services, meet business partners’ needs and support the OECD’s global role. The Digital Security Office (EXD/DKI/DSO) leads the OECD’s cyber security capability and information management policy. Position Overview Reporting to the Head of Digital Security Assurance and Vulnerability Management, you will be contributing to improving the Organisation’s digital security posture, reducing the attack surface through vulnerability identification and management, recommending mitigation options, and advising on best‑practice digital security controls. Main Responsibilities Lead vulnerability identification and remediation: proactively identify, assess, and track vulnerabilities across all OECD digital assets and systems, and coordinate remediation efforts with relevant technical teams. Specialised security assessments: plan and execute advanced security assessments, including annual Red Teaming exercises and penetration tests. Support Digital Solution Risk Assessments (DSRA): advise on control recommendations during risk reviews for digital solutions (SaaS, PaaS, on‑premise, web platforms, bespoke projects). Develop and maintain security and privacy controls: issue mandatory notifications for vulnerability remediation and oversee patching and controls implementation. Policy and compliance oversight: contribute to the development, implementation, and continuous improvement of digital security policies and vulnerability management protocols. Performance monitoring and reporting: establish and maintain regular metrics and reporting mechanisms for vulnerability management activities. Stakeholder Engagement & Change Management Communications and change management: develop and deliver communications and change management strategies to promote a culture of digital security and privacy by design. Workshops and training: organise, facilitate, and participate in workshops with stakeholders to raise awareness, build capacity, and ensure alignment with digital security objectives. Collaboration and support: assist with stakeholder interaction and support directorates in fulfilling their digital security responsibilities. Qualifications Ideal Candidate Profile Academic Background Post‑secondary education in Information Security or a related field, or equivalent practical experience. Qualifications or education in Vulnerability Management would be an advantage. Professional Background Minimum of 3 years of relevant vulnerability management experience. Experience delivering vulnerability management strategies in public or private sector organisations. Experience with vulnerability management methodologies and frameworks such as ISO 27001 & 27002, NIST SP 800‑40r4, SANS, OWASP, CVSS. Demonstrated knowledge of the Microsoft 365 technological environment. Experience drafting vulnerability management and patching documentation and user guidance. Excellent communication skills, with the ability to explain complex technical ideas in plain or easy‑to‑understand language. Experience with data protection‑related matters and strategies would be an advantage. Tools Rapid7 Insight Vulnerability Management / Nexpose. Microsoft Defender for Endpoint. Microsoft Office. M365 suite of applications. Microsoft Azure. ServiceNow. Languages Fluency in one of the two OECD official languages (English or French) and a willingness to learn the other. Knowledge of other languages would be an asset. Core Competencies Vision and Strategy (Level 1). Enable People (Level 1). Ethics and Integrity (Level 2). Collaboration and Horizontality (Level 2). Achieve Results (Level 2). Innovate and Embrace Change (Level 2). Additional Information Applications should reach us no later than 4 January 2026 23:59 (Paris time). Fixed‑term contract of 3 years. Depending on level of experience, the monthly salary starts at €7 644.78, plus allowances based on eligibility, exempt of French income tax. The OECD is an equal opportunity employer and welcomes applications from all qualified candidates who are nationals of OECD member countries, irrespective of their racial or ethnic origin, opinions or beliefs, gender, sexual orientation, health or disabilities. #J-18808-Ljbffr
-
Vulnerability Management Officer
il y a 2 semaines
Paris, Île-de-France OECD - OCDE Temps pleinCompany DescriptionTHE OECD – Who we are, what we doThe Organisation for Economic Co-operation and Development (OECD) is an international organisation comprised of 38 member countries, that works to build better policies for better lives. Our mission is to promote policies that will improve the economic and social well-being of people around the world. ...
-
Vulnerability Management Analyst
il y a 15 heures
Paris, France Alignerr Temps pleinOverviewAt Alignerr, we partner with the world’s leading AI research teams and labs to build and train cutting-edge AI models. We’re looking for practitioners who understand vulnerabilities, exposure management, and remediation in real environments. You’ll work with real-world data and scenarios that reflect how security teams actually discover,...
-
Security Product Owner – Vulnerability Management
il y a 17 heures
Paris, France AXA Group Operations Temps pleinA global insurance company based in Paris is seeking a Vulnerability Management Product Owner to lead product vision and strategy, manage the product backlog, and liaise with stakeholders. Ideal candidates will have significant cybersecurity experience, especially in vulnerability management, and should hold a post-graduate degree in IT. The role requires...
-
Vulnerability Management Product Owner
il y a 15 heures
Paris, France AXA Group Operations Temps pleinJoin to apply for the Vulnerability Management Product Owner role at AXA Group Operations As a key member of the Cyberdefense Product team, the Product Owner (PO) will lead a team of technical subject matter experts to define and deliver a clear product vision aligned with AXA’s security and compliance objectives. The PO acts as the primary liaison between...
-
Vulnerability Management Product Owner
il y a 15 heures
Paris, France AXA Group Operations Temps pleinA leading insurance company in Paris is seeking a Vulnerability Management Product Owner to lead a team in defining product vision aligned with security objectives. The ideal candidate will have extensive experience in cybersecurity, strong stakeholder engagement skills, and a proven background as a Product Owner in an Agile environment. This is a full-time...
-
Vulnerability Manager
il y a 4 semaines
Paris, France BEHIVE Temps pleinBEHIVE est un cabinet de conseil en recrutement, par approche directe, positionné sur les métiers de la Banque, de l’Assurance, de la Finance, de l'AEC et de l'IT. Nous recrutons (CDI + client final) un Vulnerability Manager (F/H) au sein d’une entreprise internationale.Vos missions :Rattaché(e) au Responsable des Opérations de Sécurité, vous...
-
Vulnerability Manager
il y a 15 heures
Paris, France BEHIVE Temps pleinConsultante en Recrutement IT, Tech et Digital chez BEHIVE 💻 BEHIVE est un cabinet de conseil en recrutement, par approche directe, positionné sur les métiers de la Banque, de l’Assurance, de la Finance, de l'AEC et de l'IT. Nous recrutons (CDI + client final) un Vulnerability Manager (F/H) au sein d’une entreprise internationale. Rattaché(e) au...
-
Vulnerability Manager
il y a 15 heures
Paris, France BEHIVE Temps pleinUn cabinet de conseil en recrutement recherche un Vulnerability Manager à Paris. Le poste nécessite un diplôme de Master en cybersécurité, avec au moins 7 ans d'expérience, dont 3 dans un rôle similaire. Le candidat devra gérer les vulnérabilités au sein d'une entreprise internationale et collaborer avec diverses équipes. Le travail inclut...
-
Vulnerability Research Manager
il y a 17 heures
Paris, France Apple Temps pleinSummary Apple's Security Engineering & Architecture team (SEAR) focus on security needs. Passionate about safeguarding, we believe the best defense is a good offense. When it comes to securing more than a billion devices running the world's most sophisticated operating systems, that means finding vulnerabilities first. Can you make a difference on this...
-
Vulnerability Research Manager
il y a 1 semaine
Paris, Île-de-France Apple Temps pleinApple's Security Engineering & Architecture team (SEAR) focus on security needs. Passionate about safeguarding, we believe the best defense is a good offense. When it comes to securing more than a billion devices running the world's most sophisticated operating systems, that means finding vulnerabilities first. Can you make a difference on this scale? Join...