Salary
≈ $62k – $110k per year (Estimated)
Location
Remote/Hybrid (Warsaw, Poland)
Seniority
Senior · 5+ years exp
Employment
Full-Time
Overview
Company
Impact
Profile match
Arhs Group is a Luxembourg information technology company founded in 2003. It builds custom software, data platforms and digital systems largely for European Union institutions and public administrations. The group employs thousands of specialists and was acquired by Accenture.
Arηs Group, Part of Accenture, specializes in the management of complex public sector IT projects, including systems integration, informatics and analytics, solution implementation and program management. Our team helps lead clients through digital and information systems design, bringing expertise in a variety of areas ranging from software development, data science and security management to machine learning, cloud, and mobile development. Arηs Group was acquired by Accenture in July 2024.
- Receiving information and reports about hardware and software vulnerabilities; analysing the nature, mechanics, and effects of the vulnerabilities; and developing response strategies for detecting and repairing the vulnerabilities.
- Proactively managing vulnerabilities by performing vulnerability assessments, penetration tests and reviewing the technical security compliance (deviation from a baseline configuration) of systems and services.
- Managing response to disclosed vulnerabilities for which no countermeasure is yet available.
- This service can involve communicating with vendors, other CSIRTs, technical experts, consultant members, and the individuals or groups who initially discovered or reported the vulnerability.
- Evaluates results of security audits and tests, security findings, priorities, plans, and implements remediation controls.
- Provides forensic analysis in response to information security incidents.
- Assesses security controls of new applications to establish compliance level and appropriate configuration.
- Performing vulnerability watch.
- Processing of incoming vulnerability warnings, alerts and reports.
- Oversee the management of known vulnerabilities through established processes and procedures.
- Triage based on verification, level of exposure and impact assessment.
- Analysing and examining vulnerabilities in hardware or software.
- Validating the existence of suspected vulnerabilities by determining where they are located and how they can be exploited.
- Reviewing source code, using a debugger to determine where the vulnerability occurs, or trying to reproduce the problem on a test system.
- Notifying the various parts of the Agency about the vulnerability and shares information about how to fix or mitigate the vulnerability.
- Verifying that the vulnerability response strategy has been successfully implemented.
- Performing regular vulnerability scans of system and applications, writing reports including recommendations for improvements and following-up the remediation process for identified vulnerabilities.
- Providing regular reports and dashboards (based on KPIs) to monitor security improvements.
- Performing penetration tests and writing reports including recommendations for improvements.
- Reviewing the technical security compliance of systems against defined security baselines (gold configuration), writing reports and following-up the remediation process for identified non-compliance.
- Participating in the definition of security baselines.
- Provide activity reports to management to demonstrate service SLA and service quality.
- Bachelor's degree plus8 years of IT relevant professional experience
- Minimum 5 years of experience at similar position
- Active EU Security Clearance is required
- Minimum English language skills (CEFR) : B2
- Knowledge of systems development life cycle
- Knowledge of operating systems security
- Knowledge of computer networks security
- Knowledge of security controls
- Knowledge of offensive and defensive security practices
- Knowledge of secure coding practices
- Possesses hands-on experience in ICT in the role of Cybersecurity Vulnerability Analyst
- Knowledge of system security vulnerabilities, threats and exploit mechanisms, penetration testing, remediation techniques and risk analysis methodologies
- Knowledge of OWASP family standards
- Practical knowledge of designing and performing security tests
- Practical knowledge of Tenable vulnerability management suite, NMAP, Wireshark, BurpSuite
- Analytical mind, attention to details and an ability to pick things up quickly; problem solving skills
- Document, report, present and communicate with various stakeholders
- Develop codes, scripts and programmes
- Identify and exploit vulnerabilities
- Conduct ethical hacking
- Think creatively and outside the box
- Identify and solve cybersecurity-related issues
- Communicate, present and report to relevant stakeholders
- Use penetration testing tools effectively
- Conduct technical analysis and reporting
- Decompose and analyse systems to identify weaknesses and ineffective controls
- Review codes, assess their security, integrate cybersecurity solutions to the organisation's infrastructure
- Configure solutions according to the organisation's security policy
- Assess the security and performance of solutions
- Develop and test secure code and/or scripts
- Identify and troubleshoot cybersecurity-related issues
Specific requirements:
- Experience in vulnerabilities analysis
- Knowledge of risk assessment in the context of given vulnerability and its environment
- Experience in coordination and execution of PenTests
- Experience in implementing protections against the most common types of exploits for web apps
- Proficient in writing reports covering vulnerabilities and patch management
- Experience in reviewing current security controls and proposing improvements
- Experience in writing security procedures/policies with emphasis in information protection and data privacy
- Experience in administering security solutions - Vulnerability platform, WAF, EDR
- Innovative approach to new technologies
Required certificates (At least 3 certifications among):
- GCED (GIAC Certified Enterprise Defender)
- GPPA (GIAC Certified Perimeter Protection Analyst)
- GCWN (GIAC Certified Windows Security Administrator)
- GCUX (GIAC Certified UNIX Security Administrator)
- GCCC (GIAC Certified Critical Controls)
- SSCP (ISC² Certified Systems Security Practitioner)
- GCWN (GIAC Certified Windows Security Administrator)
- GCUX (GIAC Certified UNIX Security Administrator)
- GCCC (GIAC Certified Critical Controls)
- GPEN (GIAC Certified Penetration Tester)
- GXPN (GIAC Certified Exploit Researcher and Advanced Penetration Tester)
- GMOB (GIAC Certified Mobile Device Security Analyst)
- NDS (EC-Council Certified Security and Vulnerability Assessor)
- ECSA (EC-Council Certified Security Analyst)
- GSNA (GIAC Certified Systems and Network Auditor)
- GSEC (GIAC Certified Security Essentials)
- ECSA (EC-Council Certified Security Analyst)
- SCPO (SABSA Certified Security Operations & Service Management Practitioner)
- ECSA (EC-Council Certified Security Analyst)
- or for any listed above, an equivalent alternative certification recognized internationally (subject to acceptance as a valid credential by the Contracting Authority).
Free account
Stop reading job ads. Get the ones that fit.
One free account turns this page into a shortlist built around your stack, your level and your pay.
Match on every job. Stack, seniority, pay and location, scored against your profile.
368,611 open roles. Read straight off company career pages, refreshed every day.
Unlimited applications. Every one you send is tracked in one place, on-site or on a company board.
3 tailored CVs a month. Rewritten for the exact job you are applying to. Included free.
Free forever. No card. Under a minute.
Your match
How well do you fit this role?
Two answers are enough for a real match. No account needed.
Check my fit
Answers stay in this browser until you create an account.
Recommended for you based on this role
Similar stack
Same company
Warsaw
Ведущий специалист технической поддержки
12 hours ago
≈ $14k – $39k per year (Estimated) • In office • Full-Time • Saint Petersburg
SQL
DevOps
SLI/SLO/SLA
Cybersecurity
ISO 27001
Apply
Director, Platform Engineering
1 day ago
≈ $34k – $83k per year (Estimated) • Remote/Hybrid • Full-Time • Bengaluru
Node JS
JavaScript
Databases
Apache Kafka
DevOps
ArgoCD
Azure
Azure AKS
Azure DevOps
CI/CD
Datadog
FinOps
GitHub Actions
Grafana
Istio
Kubernetes
Platform Engineering
Prometheus
SLI/SLO/SLA
Terraform
GitHub
IAM
Cybersecurity
GDPR
Microsoft Defender
Microsoft Defender for Cloud
Okta
PCI DSS
Management
ServiceNow
Apply
≈ $32k – $64k per year (Estimated) • Remote • Contractor • Saint Petersburg
Python
DevOps
CI/CD
GitLab CI
Kubernetes
SLI/SLO/SLA
GitLab
Apply
Remote/Hybrid • Full-Time • Riga
Go
Python
Rust
Databases
ElasticSearch
OpenSearch
AI/ML
Anomaly Detection
DevOps
AIOps
AWS
Cortex
eBPF
Grafana
Incident Management
Jaeger
Kubernetes
Loki
Mimir
OpenTelemetry
Platform Engineering
Prometheus
SLI/SLO/SLA
Splunk
Thanos
HPC
Apply
Remote/Hybrid • Full-Time • Sofia
Go
Python
Rust
Databases
ElasticSearch
OpenSearch
AI/ML
Anomaly Detection
DevOps
AIOps
AWS
Cortex
eBPF
Grafana
Incident Management
Jaeger
Kubernetes
Loki
Mimir
OpenTelemetry
Platform Engineering
Prometheus
SLI/SLO/SLA
Splunk
Thanos
HPC
Apply
.NET Developer
3 days ago
≈ $85k – $178k per year (Estimated) • Remote • Full-Time • 9+ years exp • The Hague
C#
SQL
C#
.NET
Databases
ActiveMQ
Apache Kafka
ElasticSearch
Neo4j
RabbitMQ
Redis
DevOps
Azure
Azure DevOps
CI/CD
Docker
Docker Swarm
Git
Gitflow
Helm
Kibana
Kubernetes
Rest API
Apply
Solution Architect
7 days ago
≈ $79k – $117k per year (Estimated) • In office • Full-Time • 8+ years exp • Master's Degree • Warsaw
Apply
DevOps Automation (Platform) Engineer
10 days ago
≈ $52k – $132k per year (Estimated) • Remote • Full-Time • 5+ years exp • Bachelor's Degree • The Hague
DevOps
Azure
Azure DevOps
CI/CD
Helm
Kubernetes
Puppet
Rancher
Terraform
Apply
Solutions Architect
10 days ago
≈ $79k – $117k per year (Estimated) • In office • Full-Time • 12+ years exp • Bachelor's Degree • Warsaw
Apply
Automation Test Analyst
12 days ago
≈ $64k – $139k per year (Estimated) • Remote • Full-Time • 9+ years exp • Bachelor's Degree • The Hague
C#
Mobile
Dependency Injection
DevOps
Azure
Azure DevOps
gRPC
QA
Playwright
Rest-Assured
Selenium
Apply
Loan Documentation and Processing Analyst
3 hours ago
≈ $35k – $77k per year (Estimated) • Remote/Hybrid • Full-Time • Warsaw
Apply
DevOps Engineer
4 hours ago
≈ $49k – $88k per year (Estimated) • Remote/Hybrid • Full-Time • Bachelor's Degree • Warsaw
Bash
Python
DevOps
AWS
Azure
Azure AKS
CI/CD
Docker
GCP
Git
GitHub
GitHub Actions
GitOps
Grafana
Kubernetes
Loki
Prometheus
Terraform
Thanos
Apply
Senior Data Scientist
8 hours ago
≈ $54k – $88k per year (Estimated) • Equity • Remote/Hybrid • Full-Time • 4+ years exp • Master's Degree • Warsaw
Python
SQL
Databases
Databricks
Google BigQuery
AI/ML
Spark
DevOps
Azure
GCP
GitHub
Kubernetes
Analytics
Power BI
Tableau
Management
Confluence
Jira
Apply
EMEA E-prep Analyst (Health & Safety)
10 hours ago
≈ $18k – $41k per year (Estimated) • In office • Full-Time • 1+ year exp • Bachelor's Degree • Warsaw
AI/ML
Aider
Apply
≈ $72k – $114k per year (Estimated) • Remote/Hybrid • Full-Time • 5+ years exp • Bachelor's Degree • Warsaw
Go
Rust
SQL
Rust
Axum
SQLx
Tonic
Databases
PostgreSQL
AI/ML
InfiniBand
NVLink
DevOps
AWS
Cilium
gRPC
Kubernetes
KubeVirt
KVM
OpenTelemetry
Platform Engineering
Rest API
Splunk
Cybersecurity
Calico
Keycloak
Apply
This is one of many
368,611 more open roles from verified company boards, updated every day.

