Non renseigné
1. Vulnerability Intelligence (VI) Support and drive the qualification and risk analysis of newly published vulnerabilities (PoC and validate if needed) Help build and maintain a centralized database of qualified vulnerabilities including enrichment with EPSS, QVS, EUVD, SG VI Score. Automate bulletin workflows (qualification, exposure analysis, prioritization, ingestion into the datalake). Contribute to documenting the vulnerability assessment methodology and CTI-based monitoring processes. Leverage SG inventory tools and to identify affected asset and proactively communicating them to App and Asset managers (Critical and Highly Critical vulnerabilities) 2. Attack Surface Management (ASM) Leverage available tools such as to map the external digital attack surface. Develop scripts for automated data extraction and correlation with internal tools (CMDB, Minerva). Assist VI and ASM teams in building searchable datasets using banners, WHOIS, ASN, etc. Integrate and maintain an external Nuclei-based scanner that consumes outputs from DFP (Digital Footprint) sources. 3. Patrowl Platform Support Maintain the operational delivery of the Patrowl service (blackbox pentest). Automate exports of vulnerabilities into the datalake and build Power BI dashboards for SOs/CISOs (including asset ownership, vulnerability status, pentest coverage). Document a standard onboarding process for new applications into the platform, including contractual steps. Your role will also be helping the Vulnerability Management teams into assessing, challenging and confirming Qualys, Patrowl, and other vulnerability / ASM tools outputs. Profil recherché Nous recherchons un : consultant vulnérabilité opérationnel pour notre client basé qui opère dans le secteur industriel : You will report to the VOC Manager and act as a technical enabler across several key workstreams. Your role will include operational support, process documentation, automation, and Scirpt development. You will also contribute to offensive security testing (through Offensive CTI) and help analyze, validate, and enrich vulnerability data from multiple tools like Qualys, Patrowl, Shodan, WIZ, Local Nuclei, and others. Environnement de travail Taches et missions : Within that context, you missions are to: 1. Enhance Vulnerability Intelligence (VI) Capabilities 2. Build Attack Surface Management (ASM) 3. Ensure Patrowl Platform Efficiency 4. Operational Support and Enablement
Non renseigné
Autres
Courbevoie
Plein temps (> 32 heures)
Paiement horaire
100€ min - 100€ max
20/06/2025
Freelance
Notre plateforme gratuite rassemble des milliers de missions freelance mises à jour régulièrement.