Vulnerability Management Security Engineer

Reposted 4 Days Ago
Be an Early Applicant
Barcelona, Cataluña
In-Office
Mid level
eCommerce • Marketing Tech
The Role
The Vulnerability Management Security Engineer will drive security programs, perform assessments, automate security processes, and integrate security tools while collaborating with various teams to enhance Adevinta's security posture.
Summary Generated by Built In

We’re Adevinta, a global leader in digital marketplaces. Our household name brands, including Marktplaats in the Netherlands, mobile.de in Germany and leboncoin in France, reach hundreds of millions of people every month. 

We’re all about matchmaking, and our sites help people find whatever they’re looking for in their local communities – whether it’s a car, an apartment, a sofa or a new job. Every connection made or item found makes a difference by creating a world where people share more and waste less. 

Our brands are supported by global Tech Hubs in Barcelona, Amsterdam, Paris and Berlin. Their goal is to develop common global products and innovation platforms which all of our brands can use. This means using cutting edge technology to create highly scalable, customisable and secure products and components that free up development time and leverage our access to global data.

What you’ll do ​& Who you are

As a Vulnerability Management Engineer, you will be a vital part of Adevinta's Information Security team. You'll manage proactive security programs, conduct in-depth technical assessments, and lead strategic security planning sessions. Your responsibilities will include driving automation initiatives for security processes, integrating advanced security tools, and leveraging threat intelligence to enhance our defensive capabilities.

You will be key in ensuring that Adevinta's security strategy covers industry-relevant security standards, leaving no gaps open to be exploited. The Vulnerability Management team is part of the Information Security department, where you'll collaborate closely with other services such as Secure Product Lifecycle, Incident Response and Governance. You may also be called on to interact with product development teams to help them secure their products.

What you will do:

  • You will conduct and manage bug bounty programs, perform and manage penetration testing, and lead threat modelling sessions

  • You will automate internal flows for security data aggregation.

  • You will integrate security tools by automated means.

  • You will automate the handling of threat intelligence and environment data in order to enhance security controls.

  • You will ensure our assets are properly reporting events to the SIEM, and support the definition of rules for generating alerts.

  • You will support the other Infosec teams as a subject-matter expert.

  • You will work in a hybrid remote/on-site environment, with the team physically spread across different geolocations (Adevinta’s hubs: Barcelona & Amsterdam).

  • You may be required to travel occasionally, mainly inside the EU, to our main hubs.

  • You will have the possibility of being on-call.

Who you are:

  • You have a hacker mindset, an open mindset, with technical skills and a passion for security.

  • You have strong analytical and problem-solving skills, with the ability to synthesise complex data into actionable insights.

  • You recognize the need for automation to handle problems at scale, and you can implement that automation.

  • You are proficient in cloud operations, particularly in AWS but ideally also in GCP.

  • You have excellent fundamental knowledge of network, protocol, system and application security, as well as of the industry-standard strategies and frameworks that apply.

  • You have software development skills and database knowledge.

  • You have excellent communication and interpersonal skills, with the ability to build relationships and influence others.

  • You deal with problems by taking ownership and by collaborating with others.

  • You are fluent in English (spoken and written).

  • You are comfortable in a multicultural environment.

Nice to have:

  • Proficiency in threat modelling.

  • Proficiency on Secure Development Lifecycle principles.

  • Experience with cloud security services like AWS GuardRails, SCPs, Security Groups, IAM, WAF.

  • Notions of incident response.

  • Public or private presentations.

  • Open source contributor.

  • Participation in conferences and training.

  • Certifications.

  • Membership in bug bounty programs, CTF player or member of ethical hacking communities, recognition in the Hall of Fame, CVE mentions or vulnerability reporter.

6148523063484d364c79397a5a57

4e31636d6c306553316c59584e30

5a5849745a57646e4c6e4d7a4c57

56314c58646c633351744d533568

625746366232356864334d755932

39744c3256680a6333526c636c39

6c5a326375644746794c6d64360a

Benefits

Life at Adevinta comes with its perks! Our Adevintans enjoy the following benefits:

  • An attractive Base Salary 💸

  • Participation in our Short Term Incentive plan (annual bonus) 🏆

  • Work From Anywhere: Enjoy up to 20 days a year of working from anywhere! Maybe not from the moon🌛well why not! just make sure you have internet connection! 🌍

  • A 24/7 Employee Assistance Program for you and your family, because we care ❤️

  • Win together, lose together is one of our key behaviours. At Adevinta you will find a collaborative environment with an opportunity to explore your potential and grow 🌱

On top of these, we also provide a range of locally relevant benefits. Wanna know more? Apply and ask our recruiters! ✨

Adevinta is an equal opportunity employer and we value diversity. We do not discriminate on the basis of race, religion, colour, national origin, gender, sexual orientation, age, marital status or disability status.
If you feel like you don’t meet all of the requirements for this role but are interested, please consider applying anyway. Research suggests that women and individuals from underrepresented groups may self-select out of opportunities if they don’t meet 100% of the job requirements. We strongly encourage people from historically excluded groups to apply and look forward to speaking with you.

Top Skills

AWS
GCP
Security Tools
SIEM
Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
Barcelona, Catalonia
5,443 Employees

What We Do

Adevinta is a leading online classifieds group and champion for sustainable commerce with a focus on Europe.

Our portfolio of 25+ digital marketplaces spans consumer goods, mobility, real estate, holiday rentals and jobs. Every month, our industry-leading technology enables more than 120 million people and over a million businesses across Europe to connect and trade. Loved local brands include leboncoin in France; mobile.de and Kleinanzeigen in Germany; Fotocasa and InfoJobs in Spain, Subito in Italy; Marktplaats in the Netherlands and the Canadian marketplace Kijiji.

Our international team of diverse individuals are united in their purpose to make a positive impact on the environment, the economy and society every single day.

Adevinta. Changing Commerce Together

Similar Jobs

Kyndryl Logo Kyndryl

Observability Specialist

Cloud • Information Technology • Consulting
In-Office
3 Locations
46070 Employees
In-Office
Santpedor, Barcelona, Cataluña, ESP
7500 Employees

Similar Companies Hiring

ClickMint Thumbnail
Marketing Tech • Generative AI • eCommerce • AdTech
Malibu, CA
9 Employees
PRIMA Thumbnail
Travel • Software • Marketing Tech • Hospitality • eCommerce
US
15 Employees
Scotch Thumbnail
Software • Retail • Payments • Fintech • eCommerce • Artificial Intelligence • Analytics
US
25 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account