Vulnerability Management Engineer & Ops Senior Manager

Grant Thornton Capability Center Poland POZNAŃ 2026-10-01

Required Qualifications

  • 10–12 years of experience in vulnerability management, cybersecurity, or a related information security role.
  • Practical experience with Wiz, Qualys, including vulnerability scanning, secure configuration assessment, and policy compliance modules.
  • Working knowledge of Wiz UVM and other comparable CSPM solutions for cloud vulnerability and misconfiguration management.
  • Hands-on experience integrating vulnerability management platforms with SIEM, ITSM, and patch management solutions.
  • Strong understanding of Windows and Linux operating systems, networking fundamentals, and cloud platforms including AWS, Azure, and GCP.
  • Solid knowledge of CVSS scoring, risk-based vulnerability prioritization, and remediation methodologies.
  • Familiarity with AI tools, workflow automation platforms, and integrating AI into existing systems is preferred.
  • Fluency in Polish and English.

Preferred Qualifications

  • Experience developing automation using Copilot or other Agentic AI frameworks
  • Industry certifications such as Qualys Certified Specialist, Wiz Certified Professional, CISSP, CEH, or CompTIA Security+ are highly desirable.

Soft Skills

  • Excellent communication, collaboration, and stakeholder management abilities.
  • Strong analytical and problem-solving skills with the ability to manage multiple priorities in a fast-paced environment.
  • Experience working within multinational environments with complex IT asset landscapes.
  • Attention to detail and accuracy.
  • Strong problem-solving and analytical abilities.
  • Ability to translate compliance requirements into technical controls.
  • Commitment to continuous improvement and maturity enablement of the program.

We are looking for an experienced Vulnerability Management Engineering and Operations Senior Manager with strong hands-on expertise in Wiz (including Wiz UVM) and, additionally, Qualys, secure configuration assessments, policy compliance scanning, CrowdStrike exposure management, and enterprise vulnerability management. The ideal candidate will also have experience working with these and other cloud security platforms to identify, prioritize, and help remediate vulnerabilities across hybrid environments, using technology platforms and innovative automation solutions using AI.

What we offer:

  • Hybrid working model (2 days in the office and 3 days working remotely)
  • Stable employment with an employment contract, private medical care, and a benefits package including MultiSport and a benefits platform
  • Opportunity to work in an international environment and collaborate with experienced Grant Thornton experts and professionals from around the world
  • A culture based on teamwork, trust, and knowledge sharing
  • A well-structured onboarding program to support a smooth start and successful integration into your new role
  • Clear career development paths and access to learning and certification programs
  • Access to training platforms and tools that support professional growth
  • An inclusive workplace that welcomes people with disabilities
  • A modern office in Poznań, located in Malta Office Park

Why join Grant Thornton Capability Center Poland?

At Grant Thornton Capability Center Poland (GTCC), employees contribute to meaningful work that moves businesses forward. From day one, team members help deliver value for clients while helping shape the future of a growing delivery center in Poland.

Through supporting operations of our growing multinational platform, employees have opportunities to tackle complex projects, work with advanced technologies and develop the skills needed for what's next. Team members collaborate across countries, markets and time zones, learning from different perspectives and building experience beyond their roles.

At GTCC Poland, teammates succeed together. Knowledge is shared, diverse perspectives are valued, and employees support one another in doing their best work.

Clear career paths, learning opportunities and international exposure help employees continue building skills, expanding capabilities and growing rewarding careers.


About Global Delivery Centers (enterprise description)

Grant Thornton Capability Center (GTCC) support the operations of the Grant Thornton Advisors multinational platform.

We bring together people, technology and delivery capabilities that help teams work across markets and time zones. By supporting shared standards, technology and delivery expectations GTCC help keep work moving, connect teams across the platform and create consistency across the way work is delivered.

We are part of a multinational platform that brings together more than 25,000 professionals across 20+ firms. As organizations grow, enter new markets and face increasing complexity, our centers help provide the scale, coordination and operational support needed to keep work moving forward.

For our people, that means working with colleagues across markets, contributing to work with international reach and helping teams deliver consistently in an environment built on collaboration, accountability and quality.

,[Administer and enhance the organization's vulnerability management program, ensuring vulnerabilities are identified, assessed, and remediated across on-premises, cloud, and hybrid infrastructures., Execute vulnerability assessments, secure configuration reviews, and policy compliance scans using Wiz, Qualys, and related security tools., Investigate, prioritize, and remediate vulnerabilities identified by Qualys, Wiz, and other Cloud Security Posture Management (CSPM) platforms., Hands-on experience in generating actionable vulnerability reports for patch management teams, enabling timely and efficient remediation of security vulnerabilities., Partner with relevant teams to prioritize remediation activities based on business risk and compliance requirements., Experience in patch management and creating patch jobs, and coordinating with relevant teams to execute patch management processes., Integrate vulnerability management solutions with SIEM, ITSM, and other platforms to improve operational efficiency and remediation workflows., Create and maintain dashboards, reports, and security metrics for leadership, compliance, and audit purposes., Monitor emerging security threats, newly disclosed vulnerabilities, and industry best practices to continuously improve the vulnerability management process., Assist with compliance initiatives, including PCI-DSS, ISO 27001, and SOC 2, by providing vulnerability assessment results and configuration compliance reporting., Design and implement AI-powered automation solutions to streamline workflows, reduce manual tasks, improve operational efficiency, and automate repetitive business processes.] Requirements: Cybersecurity, Security, Cloud, Windows, Linux, Operating system, Networking, Cloud platform, AWS, Azure, AI, CISSP, Stakeholder management Additionally: Sport subscription, Private healthcare, Training budget, Free coffee, Bike parking, Mobile phone, In-house trainings, Modern office.