Schwarz Gruppe

Vulnerability and Exposure Management Specialist

Schwarz Gruppe  •  Barcelona, ES (Onsite)  •  2 hours ago
Apply
AI can make mistakes so check important info. Chat history is never stored.

Job Description

Schwarz Digits creates the technological foundation for digital sovereignty in Europe. As the IT and digital division of the Schwarz Group, we develop and manage the IT infrastructures for the retail divisions Lidl and Kaufland, as well as Schwarz Production and PreZero. At the same time, we operate as an independent provider in the external market to support companies across Europe in their digital transformation. We bundle our core services in the areas of Cloud, Cyber Security, Data & AI, Communication, and Workspace.

Join us and contribute to digital sovereignty in Europe. With us, you will work at the intersection of agility and security: You will benefit from fast decision-making processes, enjoy genuine creative freedom in your projects, and be able to build upon the stable foundation of the Schwarz Group.

Your Tasks

  • Join our dynamic Vulnerability & Exposure Management Operations team, where we proactively strengthen the organization's security posture. We are a strategic partner dedicated to prioritising, assigning, advising, addressing and monitoring vulnerabilities and exposures in a structured and collaborative way. Our approach is founded on two core principles: robust governance to ensure our processes are consistent and reliable, and unwavering customer centricity to foster strong, collaborative partnerships with technical and business teams.
  • Manage, maintain and optimize our already established processes and services to prioritise, assign, advise, address and monitor detected vulnerabilities and exposures.
  • Actively work on new services, processes and projects, helping to define action plans and improvements, contributing with their operationalization and automatization.
  • Analyze and triage vulnerabilities and exposures, applying risk-based prioritization and environment context using different frameworks like CVSS.
  • Collaborate with asset owners, infrastructure teams, and other relevant stakeholders, providing clear, actionable guidance on secure configuration standards and best practices to facilitate effective remediation activities.
  • Work on the operationalization of the findings detected by our web application scanning tool, working and supporting directly the development teams on how to resolve web application based vulnerabilities and exposures.
  • Develop and maintain remediation guidelines for security misconfigurations (Non-CVE’s) in different environments (eg. Active Directory) and web applications related vulnerabilities and exposures to ensure consistent and effective risk reduction across multiple environments.
  • Generate and present metrics, reports, and dashboards to communicate the effectiveness of current security and risk posture to stakeholders at all levels.
  • Act as the primary (1st level) point of contact for stakeholders, providing timely support, troubleshooting guidance, and driving engagement through targeted workshops, training sessions, and enablement initiatives.
  • Stay updated on emerging threats, misconfigurations, and best practices for securing enterprise environments.

Your Profile

  • 5–6 years of working experience on Cybersecurity Operations as a Security Analyst or similar role, with a focus on Vulnerability and Exposure Management.
  • Strong hands-on experience with vulnerability and exposure management tools (e.g., Tenable, Burp Suite, XM Cyber).
  • Solid understanding of security misconfigurations (Non-CVE’s) and CVE’s, and their remediation techniques.
  • Knowledge of security industry-standard frameworks and methodologies, such as OWASP for web applications and APIs.
  • Knowledge of operating systems (Windows, Linux), networking principles, web application architecture and IAM environments (eg. Active Directory).
  • Excellent communication and interpersonal skills, with a proven ability to translate complex technical issues for diverse audiences.
  • Proficiency with IT service management or ticketing systems (e.g., Jira, ServiceNow).
  • Fluent English, written and spoken.
  • Love to work with customers and satisfy their needs.
  • Good work quality.
  • Tasks prioritization.
  • Independent working ability.
  • Ability to document.
  • Professional behaviour.
  • Capacity of team work.
  • Self-critical thinking and acting.
  • Independence.
  • Initiative.
  • Willingness to learn.
  • Flexibility to changes.


Nice to Have

  • Knowledge of security best practices in cloud environments (AWS, Azure, GCP).
  • Familiarity with assessing and remediating security misconfigurations based on frameworks like CIS Benchmarks.
  • Basic scripting skills (Python, PowerShell) for task automation or data analysis.
  • Relevant security certifications (e.g., CISSP, CEH, Security+).
Schwarz Gruppe

About Schwarz Gruppe

Wir sind die Unternehmen der Schwarz Gruppe: Wir produzieren, handeln, entsorgen, recyceln und digitalisieren. Mit den Sparten Lidl, Kaufland, Schwarz Produktion, PreZero und Schwarz Digits sowie den Schwarz Corporate Solutions sind wir eine international führende Handelsgruppe. Wir schaffen Lösungen, die das Leben von Milliarden Menschen heute und in Zukunft nachhaltiger, gesünder und sicherer machen.

Lidl und Kaufland bilden die Säulen im Lebensmitteleinzelhandel. Viele Eigenmarkenprodukte und nachhaltige Verpackungen in deren Regalen kommen direkt von der Schwarz Produktion. Der Umweltdienstleister PreZero fördert mit seinem Wertstoffmanagement eine funktionierende Kreislaufwirtschaft. Schwarz Digits bietet als IT- und Digitalsparte überzeugende digitale Produkte und Services an, die den hohen deutschen Datenschutzstandards entsprechen, und garantiert so größtmögliche digitale Souveränität. Als partnerschaftliche Dienstleister unterstützen die Schwarz Corporate Solutions die Unternehmen der Schwarz Gruppe bei allen Themen über Verwaltung, Personal bis hin zu operativen Tätigkeiten.

Wir existieren, um das Leben heutiger und kommender Generationen zu verbessern. Deshalb warten wir nicht, bis Herausforderungen zu Problemen werden. Wir nutzen Chancen und handeln voraus.

#Voraushandeln statt nur vorausdenken – die Unternehmen der Schwarz Gruppe.

Impressum: https://gruppe.schwarz/impressum

Industry
Retail & Ecommerce
Company Size
51-200 employees
Headquarters
Neckarsulm, DE
Year Founded
Unknown
Social Media