Skip to content
MVPeople Group Logo
MVPeopleGroup
Vulnerability Management

Vulnerability Management Analyst

Amsterdam, NHConsultancyHybridMedioroverige

About the assignment

Your organisation faces constant threats from unpatched systems and misconfigurations. You own the vulnerability management programme, ensuring critical exposures are discovered and fixed before attackers exploit them.

You work with multiple teams—development, infrastructure, security operations—to translate technical findings into business-focused remediation plans. Your work directly reduces the attack surface and strengthens the overall security posture.

Your responsibilities

  • Configure and maintain vulnerability scanning tools across on-premises and cloud environments
  • Analyse scan results, prioritise findings by severity and business context, and report to stakeholders
  • Track remediation progress through ticketing systems and follow up with responsible teams
  • Develop and refine vulnerability assessment policies aligned with industry standards
  • Conduct risk assessments for critical vulnerabilities and recommend mitigation strategies
  • Collaborate with incident response teams to validate vulnerabilities during security incidents
  • Prepare executive dashboards and monthly vulnerability trends for leadership

Tech Stack & Tools

Platforms & Tooling

NessusQualysRapid7 InsightVMTenable.ioOpenVAS

Frameworks & Standards

CVSS scoringOWASP Top 10CIS BenchmarksNIST SP 800-53

Cloud & Infrastructure

AWS Security HubAzure DefenderGCP Security Command Center

Methodologies

Risk-based vulnerability prioritisationRemediation tracking and reportingVulnerability lifecycle management

Certifications (preferred)

CISSPGIAC Vulnerability Assessor (GEVA)Certified Ethical Hacker (CEH)

Must-haves

  • 3+ years in vulnerability assessment or security operations
  • Hands-on experience with at least two enterprise scanning tools
  • Understanding of CVSS scoring and risk prioritisation
  • Strong communication skills to explain technical findings to non-technical stakeholders
  • Familiarity with ticketing systems and remediation workflows

Nice-to-haves

  • Experience managing vulnerability programmes across hybrid or multi-cloud environments
  • Knowledge of container security scanning and infrastructure-as-code vulnerability detection
  • Certifications: GEVA, CEH, or CISSP

What we offer

  • Shape your organisation's vulnerability strategy with hands-on impact
  • Work with cutting-edge scanning and orchestration platforms
  • Collaborate across technical and business teams
  • Structured learning path in risk management and threat analysis
  • Flexible working arrangements and modern tooling
  • Personal guidance from a dedicated MVPeople consultant who knows your niche

The process

1

Introduction

Phone call with your MVPeople consultant (within 24 hours)

2

Match & Brief

We discuss the assignment in detail and prepare you

3

Client meeting

Introduction to the client

4

Start

Contracting and onboarding

Details

Type

Consultancy

Location

Amsterdam, NH

Work model

Hybrid

Level

Medior

Industry

overige

Posted

19 June 2026


Contact

Apply nowMore information
Apply now