VIPR & VMDR Expert
17 hours ago
Madrid
ppArmis is the leading unified asset visibility and cybersecurity intelligence platform — trusted by Fortune 100 enterprises and governments to protect unmanaged, IoT, OT, and IT environments. /p pOur AI-powered Armis Centrix™ platform delivers real-time asset intelligence to secure the unseen — enabling organizations to understand their entire attack surface and act fast against emerging threats. /p pWe are expanding our Vulnerability Intelligence, Prioritization Detection Response (VIPR/VMDR) capability to elevate Armis’ cyber defense posture globally. /p pThis role will lead the integration of vulnerability discovery, detection, intelligence enrichment, prioritization, and coordinated response into a unified, high-impact customer program across APJ/APAC. /p h3Role Overview /h3 pThe VIPR VMDR Expert serves as an architect,, strategic analyst and technical operator — combining vulnerability lifecycle management with exploit intelligence, detection automation, and cross-functional coordination (ITSM). /p pYou’ll lead how Armis detects, prioritizes, and responds to vulnerabilities across customer environments, infrastructure, SaaS ecosystems, and the Armis platform — ensuring our customers stay ahead of emerging exploits, threats, and exposures. /p h3Key Responsibilities /h3 ul liOwn the end-to-end vulnerability and detection lifecycle — from discovery, triage, and prioritization through remediation and reporting. /li liLead the Vulnerability Intelligence, Prioritization Detection Response (VIPR/VMDR) function, integrating threat intel, exploit data, and asset context to drive data-backed decisions. /li liCorrelate internal vulnerability telemetry with external feeds (NVD, CISA KEV, EPSS, Mandiant, Shodan, VulnDB, Centrix for Early Warning) to assess exploitability and exposure. /li liOperate and tune vulnerability and detection tools (e.g., Tenable, Qualys, Rapid7, Wiz, Prisma Cloud, ServiceNow VR) across hybrid customer environments. /li liAutomate vulnerability scoring, detection correlation, and reporting pipelines using Python, PowerShell, REST APIs, or automation rules within AMS/VIPR. /li liPartner with Customer Success, Security Engineering, and Cloud Infrastructure teams to track remediation SLAs, exposure metrics, and MTTR improvements. /li liBuild and publish risk dashboards, customer-facing reports, and executive briefings using Splunk, Power BI, Elastic, or AMS/VIPR. /li liDevelop and maintain the Armis Vulnerability Prioritization Model (VPM) — aligning exploit intelligence, CVSS/EPSS scoring, Armis Proprietary Risk Scoring, and business criticality to guide customer risk posture. /li liSupport penetration test remediation, red team findings, and customer security audits. /li liAuthor weekly vulnerability intelligence reports, zero-day summaries, and leadership briefings for APJ/APAC stakeholders. /li liCollaborate with Product Security and Threat Intelligence teams to integrate vulnerability and detection data into Armis platform insights. /li liDeliver training sessions and enablement workshops for customers, engineers, and analysts on vulnerability trends, tools, and operational best practices. /li /ul h3Qualifications /h3 ul li6–10+ years of experience in Vulnerability Management, Threat Intelligence, or Security Detection Engineering. /li liDeep expertise in CVSS, CWE/CVE, NVD, KEV, and exploit prediction (EPSS) frameworks. /li liHands-on experience with vulnerability and detection management platforms (Tenable, Qualys, Rapid7, Wiz, Prisma Cloud, ServiceNow VR, Centrix for VMDR). /li liProven ability to develop automation scripts and data pipelines (Python, PowerShell, Bash, REST APIs, JSON). /li liFamiliarity with risk-based vulnerability management (RBVM) and prioritization scoring models. /li liStrong understanding of cloud-native security, container scanning, and hybrid infrastructure (AWS, Azure, GCP). /li liExceptional data storytelling skills — turning technical findings into actionable executive insights. /li liDemonstrated ability to work independently and as part of a team. /liliExceptional communication skills across all levels of technical, middle management, and executive leadership personnel. /li liBachelor’s or Master’s degree in Information Security, Computer Science, or related discipline. /li liPrevious experience operating in a "Voice of the Customer" (VoC) technical role directly embedded with Product Engineering pods. /li liA track record of mentoring senior technical staff (TCMs, TAMs, or Solutions Engineers) and developing scalable knowledge-sharing frameworks. /li /ul h3Preferred Experience /h3 ul liPrior experience in enterprise SaaS, cybersecurity, or customer-facing technical programs. /li liFamiliarity with Armis Centrix™ or similar asset intelligence and exposure management tools. /li liCertifications such as CISSP, GCCC, GCTI, CEH, or CySA+. /li liExperience supporting compliance frameworks (SOC 2, ISO 27001, FedRAMP) in enterprise environments. /li liStrong cross-cultural communication and collaboration skills across global and regional teams (APJ/APAC). /li /ul /p #J-18808-Ljbffr