Professional

Security Engineer – Vulnerability & Exposure Management (m/f/d)

CANCOM Karriere

Professional

Security Engineer – Vulnerability & Exposure Management (m/f/d)

At CANCOM, you can expect an innovative, agile and sustainable environment. More than 4,000 employees work every day to improve collaboration and exchange in various areas of life with the help of modern IT solutions. Do you want to be a part of it and take the next step in your career? Why don't you become part of our Digital Journey. We are looking forward to people from a wide range of disciplines who are open to new things, have innovative ideas and want to advance goals together as a team.

What you will do

Our Cyber Defense Center, with over 50 specialists, provides security services to clients ranging from small and medium-sized businesses to large corporations. Our vulnerability management program is currently being restructured—and you’ll help shape it: from multi-tenant environments and onboarding to scanning strategies, reporting, and automation.

You’ll enjoy direct lines of communication and a high degree of autonomy, supported by the SOC, Incident Response, Detection Engineering, and Security Consulting teams. Plus: there are no on-call duties, night shifts, or weekend shifts. Your work model: three days in the office, two days working remotely—at one of over 60 locations across Germany.

Your New Responsibilities:

  • Design and operate the platform: You’ll help design our multi-tenant vulnerability management environment, oversee its day-to-day operations, onboard new customers, and further develop the underlying architecture
  • Assess vulnerabilities rather than just reporting them: You’ll analyze scan results, prioritize based on risk (CVSS, EPSS, KEV, actual exposure), and separate urgent issues from noise
  • Advising clients: You’ll serve as the technical point of contact, identify specific actions, support the remediation process, and stand by your assessment even when it’s uncomfortable
  • Reporting that gets read: You build reports and dashboards that both the IT department and executive management can understand—and present them remotely or in person
  • Automation: You identify repetitive tasks and replace them with scripts and API integrations (Python, PowerShell). Onboarding, data export, ticket integration, reporting—we have more ideas than time
  • Further developing our service: You’ll refine our processes, SLAs, and service modules together with the team, working closely with our SOC and incident response colleagues

Who you are

  • About 2–5 years of professional experience in IT security or IT operations—we’re flexible about how you gained that experience; both academic degrees and vocational training are equally welcome
  • Hands-on experience with vulnerability management solutions (e.g., Tenable, Rapid7, Qualys, Greenbone) or comparable security platforms that you’ve administered—we’re not tied to any specific product
  • Solid understanding of Windows, Linux, and network infrastructures: You understand why a scan result occurs and what a patch triggers at the customer’s site
  • Basic automation experience with Python, PowerShell, or Bash, and an interest in APIs
  • You can explain technical issues in a way that allows non-technical people to take action
    Business-level German for working with our customers—consulting, reporting, and meetings are conducted in German. Within the team itself, English is the everyday language, so you’ll need strong written and spoken English as well
  • Ideally, experience in multi-tenant or managed service environments, exposure to cloud and container security (Azure, AWS, Kubernetes), or knowledge of regulatory requirements such as NIS2, DORA, and ISO 27001—none of which are mandatory

Our Benefits

  • Flexible working hours and mobile office in coordination with the manager
  • State-of-the-art equipment including company phone, which may also be used privately
  • Discounts thanks to the "Corporate Benefits" portal
  • Bike leasing
  • Free beverages & vitamins (fruit)
  • Further training opportunities
  • Employee events

Contact

Sascha Sturm
Team Leader Recruiting

+49 89 540 54-5454

Share