Overview
In this role you will drive vulnerability management across applications and cloud environments, combining discovery, assessment and remediation to reduce risk. You will partner with Cybersecurity, IT, product and cloud teams to prioritise fixes by business impact and drive timely remediation. You will build dashboards and reports for technical and leadership audiences and contribute to process improvements in the VM program. This is a hands-on, cross-functional position at Digital Realty that strengthens our security posture and supports incident response when needed. You will work in a collaborative, risk-informed culture with opportunities to influence security practices at scale.
Pay / Benefits
- development opportunities
- supportive and inclusive environment
- cross-functional collaboration
Responsibilities
- Execute vulnerability management end-to-end lifecycle (discovery, assessment, prioritization, tracking, remediation validation).
- Analyze vulnerability and threat data to identify high-risk exposures and remediation priorities across applications and cloud environments.
- Review vulnerabilities across web applications, APIs, cloud services, VMs, containers, and cloud-native platforms for risk-based prioritization.
- Coordinate with application teams, cloud engineering, DevOps, infrastructure, cybersecurity, and business stakeholders to drive timely remediation and validate fixes.
- Develop and maintain dashboards, metrics, and reports; prepare briefs for technical and leadership audiences.
- Support policy and process adherence related to vulnerability management and risk treatment; coordinate complex issues.
- Participate in incident response or urgent risk mitigation when needed.
- Contribute to continuous improvement of VM processes, workflows, and reporting, especially for application and cloud security.
Key requirements
- 3–5+ years in threat and vulnerability management or related cybersecurity roles
- Experience with vulnerability scanning tools (Tenable/Nessus, Qualys, Wiz, Cloudflare) and cloud/endpoint security platforms
- Experience prioritizing and tracking vulnerabilities through remediation in enterprise app and cloud environments
- Strong understanding of CVSS and interpreting severity in business impact terms
- Familiarity with vulnerabilities in web apps, APIs, OS, cloud platforms, containers, and cloud-native misconfigurations
- Ability to translate technical findings into actionable insights for technical and non-technical stakeholders
- Strong analytical, organizational and communication skills; able to collaborate across multiple teams
- Preferred certifications: CISSP, CEH, OSCP, CISM, CCSP, AWS/Azure security certifications
- Proactive, independent worker with focus on process maturity and risk-informed security culture
- Bachelor’s degree in Information Technology, Computer Science, or related field
- strong communication
- analytical mindset
- collaborative
- Tenable/Nessus
- Qualys
- Wiz
…
