We are seeking a Senior Vulnerability Management Engineer to lead and enhance our vulnerability detection and remediation capabilities across on-prem and cloud environments. This role is highly technical and sits at the core of our cyber defense function, ensuring full alignment with FINMA, DORA and MAS requirements in this key area of cyber risk.
You will serve as our technical authority for Tenable instances, on prem and cloud, and drive engineering improvements, integration with ITSM system, and regulatory-grade reporting.
Your Key Tasks
- Lead engineering, architecture, and advanced configuration of Tenable.io / Tenable.sc / Nessus across hybrid infrastructures.
- Oversee authenticated scanning across servers, cloud workloads, network appliances, databases, and container platforms.
- Integrate Tenable with enterprise systems (CMDB, SIEM, ITSM) using APIs and scripting (Python/PowerShell).
- Engineer cloud vulnerability coverage via connectors, agents, and container registry scans.
- Enhance detection accuracy through custom plugins, scan policy tuning, and automation pipelines.
- Provide technical leadership and guidance to remediation teams, ensuring adherence to CIS/NIST/SWIFT/ISO standards.
- Produce regulator-ready metrics, dashboards, and audit evidence for FINMA and MAS reviews.
- Contribute to security architecture, hardening initiatives, and continuous improvement of the vulnerability management program.