Vulnerbility Engineer- REMOTE

Prague, Czech Republic

Apply by 17 Oct 2026

€500 - €550 per day

Job Ref.: BH-58193

Job Description

Senior Vulnerability Management Specialist Application Security | DevSecOps | Snyk | Automation- Remote - ideally from Czech Republic but open to remote EU 

We are seeking an experienced Senior Vulnerability Management Specialist to design, own, and continuously improve our application vulnerability management programme.

You'll be responsible for driving vulnerability remediation across development and DevOps teams, ensuring security risks are prioritised, tracked, remediated, and reported through a scalable and automated process.

Key Responsibilities
  • Own the end-to-end application vulnerability management lifecycle.
  • Triage and prioritise vulnerabilities using risk-based methodologies including CVSS, EPSS, exploitability, business criticality, and data sensitivity.
  • Manage findings from SAST, DAST and SCA security tooling, with a strong focus on application security.
  • Drive remediation activities with engineering, DevOps, and application owner communities.
  • Create and manage Jira workflows, tickets, SLAs, escalations, and exception processes.
  • Verify remediation through rescanning and reporting.
  • Develop automation for vulnerability tracking, ownership assignment, notifications, reporting, and governance.
  • Produce management dashboards and security risk reporting.
  • Continually improve vulnerability coverage, remediation efficiency, and developer engagement.
Required Experience
  • 5+ years' experience in Vulnerability Management, Application Security, DevSecOps, or a related security discipline.
  • Strong experience operating enterprise-scale application vulnerability management programmes.
  • Experience working with Snyk or equivalent application security platforms.
  • Strong understanding of secure software development, CI/CD pipelines, and modern DevSecOps practices.
  • Experience working closely with software engineering and DevOps teams to drive remediation.
  • Hands-on experience with Jira workflow design and automation.
  • Ability to communicate technical risks clearly to both technical and non-technical stakeholders.
Desirable Skills
  • GitLab, GitHub, Azure DevOps, or Bitbucket.
  • OWASP Top 10, CVE, CVSS, CWE, and EPSS.
  • AWS and Infrastructure-as-Code automation (Terraform).
  • Experience in regulated environments such as ISO 27001 or NIS2.
Ideal Candidate A senior security professional with a blend of Application Security, Vulnerability Management, DevSecOps, stakeholder engagement, and automation expertise. You'll be comfortable influencing engineers and application owners, driving remediation without direct authority, and building a scalable, risk-driven security programme that supports modern software delivery


By applying for this role, you consent to SGI contacting you by telephone regarding recruitment services, market updates, and relevant business opportunities

We believe in equal opportunity for all and actively encourage applications from diverse backgrounds, experiences, and perspectives.
Source Group International Ltd is acting as an Employment Business in relation to this vacancy 

APPLY NOW

Similar Jobs.

Snyk Vulnerbility Engineer
Madrid, Czech Republic

Senior Vulnerability Management Specialist Application Security | DevSecOps | Snyk | Automation We are seeking an experienced Senior Vulnerability Management Specialist to design, own, and continuo

IT Security Analyst
Antwerpen, Belgium

Location: Antwerp, Belgium (hybrid working may be available) Rate: €600/day Industry: Life Sciences Role Overview You will strengthen the organisation’s cyber defence capability across enterprise and

Security Threat Assessment & Analysis Senior Professional
Milan, Italy

Cybersecurity Governance, Risk & Compliance ConsultantLocation: Milan, Italy Work Model: Hybrid (3 days on-site per month in Milan) Workload: 100% We are seeking an experienced GRC Professional to sup