Brussels, Brussels-Capital, Belgique
Watchmen
Temps plein
2 500 € - 7 500 € CDD
Watchmen is one of the fastest-growing IT consultancy companies in the Benelux (FD Gazellen Award 2024 & 2025). 100% by engineers, for engineers. We are a collective of subject-matter experts in Cloud, Network & Security, guiding enterprise and governmental clients in realising Zero Trust.
Work for this role is carried out at client locations in Belgium, with as much flexibility as possible regarding working from home.
What we offer
• An above-average monthly base salary depending on your education, experience and certification level (Junior up to €2,500 | Medior up to €5,000 | Senior up to €7,500 | Lead from €7,500)
• A lease and mobility budget generous enough for a BMW i4, Polestar 2, Tesla Model 3, etc., including a fuel/charging card for all of Europe, for both professional and private use
• Unlimited study budget (no study contract or any other form of payback obligation)
• Personal development and growth opportunities through our internal Academy and 1-on-1 mentorship from our Principal Engineers
• Up to 35 days of annual leave (26 standard days + 9 optional days available for purchase)
• Transparent bonus and participation scheme Overview As a Vulnerability Management Consultant, you play a key role in strengthening our client's ability to identify, prioritise and remediate vulnerabilities across their entire environment. You own the complete vulnerability lifecycle, not just the scanning tools, and act as the bridge between technical findings and risk-based business decisions. You excel both independently and in a team setting, drawing on a collective of experts around you. With strong communication skills, a structured approach and a focus on modern security practices, you are the ideal candidate for this role. Responsibilities
• Assess the current vulnerability management approach, tooling and processes
• Coordinate vulnerability scanning across infrastructure, networks, endpoints, applications and cloud environments
• Analyse and validate findings, including false positives and duplicate vulnerabilities
• Prioritise vulnerabilities based on technical severity, exploitability, asset criticality and operational impact
• Translate findings into clear remediation actions for technical teams
• Track remediation, exceptions and accepted risks through to closure
• Establish or improve SLAs according to vulnerability severity and business criticality
• Support patching and remediation campaigns
• Produce operational dashboards, management reports and risk indicators
• Assist with vulnerability disclosure, zero-day vulnerabilities and urgent security advisories
• Improve governance, ownership and escalation procedures
• Coordinate with SOC, incident response, asset management, infrastructure and application teams
• Support audits and compliance reporting
• Transfer knowledge to internal employees Qualifications and requirements
• Strong practical experience in vulnerability management within a large organisation
• Experience managing the complete vulnerability lifecycle, not only operating scanning tools
• Good understanding of infrastructure, networking, operating systems, applications and cloud security
• Ability to translate technical vulnerabilities into risk-based priorities
• Experience coordinating remediation across multiple technical teams
• Strong stakeholder-management and reporting skills
• Able to work in a regulated, public-sector or security-sensitive environment
• Nationality of a country within the European Economic Area (EEA) Tools and knowledge we value
• Tenable/Nessus, Qualys, Rapid7 InsightVM or comparable platforms
• CVE, CVSS, CISA KEV and exploit intelligence
• Patch and remediation management
• Risk-based vulnerability management
• ServiceNow Vulnerability Response or similar workflow tools
• SIEM, SOC and incident-response processes
• CMDB and asset inventories
• NIS2, ISO 27001, CIS Controls or NIST frameworks
• Cloud and container vulnerability management Certifications (an advantage, not a requirement)
• CISSP, CISM or Security+
• GIAC certifications
• CEH or OSCP
• ISO 27001-related certification
• Vendor certifications for Qualys, Tenable, Rapid7 or ServiceNow Interested in this vacancy? Get in touch with us and we will respond within 48 hours.
What we offer
• An above-average monthly base salary depending on your education, experience and certification level (Junior up to €2,500 | Medior up to €5,000 | Senior up to €7,500 | Lead from €7,500)
• A lease and mobility budget generous enough for a BMW i4, Polestar 2, Tesla Model 3, etc., including a fuel/charging card for all of Europe, for both professional and private use
• Unlimited study budget (no study contract or any other form of payback obligation)
• Personal development and growth opportunities through our internal Academy and 1-on-1 mentorship from our Principal Engineers
• Up to 35 days of annual leave (26 standard days + 9 optional days available for purchase)
• Transparent bonus and participation scheme Overview As a Vulnerability Management Consultant, you play a key role in strengthening our client's ability to identify, prioritise and remediate vulnerabilities across their entire environment. You own the complete vulnerability lifecycle, not just the scanning tools, and act as the bridge between technical findings and risk-based business decisions. You excel both independently and in a team setting, drawing on a collective of experts around you. With strong communication skills, a structured approach and a focus on modern security practices, you are the ideal candidate for this role. Responsibilities
• Assess the current vulnerability management approach, tooling and processes
• Coordinate vulnerability scanning across infrastructure, networks, endpoints, applications and cloud environments
• Analyse and validate findings, including false positives and duplicate vulnerabilities
• Prioritise vulnerabilities based on technical severity, exploitability, asset criticality and operational impact
• Translate findings into clear remediation actions for technical teams
• Track remediation, exceptions and accepted risks through to closure
• Establish or improve SLAs according to vulnerability severity and business criticality
• Support patching and remediation campaigns
• Produce operational dashboards, management reports and risk indicators
• Assist with vulnerability disclosure, zero-day vulnerabilities and urgent security advisories
• Improve governance, ownership and escalation procedures
• Coordinate with SOC, incident response, asset management, infrastructure and application teams
• Support audits and compliance reporting
• Transfer knowledge to internal employees Qualifications and requirements
• Strong practical experience in vulnerability management within a large organisation
• Experience managing the complete vulnerability lifecycle, not only operating scanning tools
• Good understanding of infrastructure, networking, operating systems, applications and cloud security
• Ability to translate technical vulnerabilities into risk-based priorities
• Experience coordinating remediation across multiple technical teams
• Strong stakeholder-management and reporting skills
• Able to work in a regulated, public-sector or security-sensitive environment
• Nationality of a country within the European Economic Area (EEA) Tools and knowledge we value
• Tenable/Nessus, Qualys, Rapid7 InsightVM or comparable platforms
• CVE, CVSS, CISA KEV and exploit intelligence
• Patch and remediation management
• Risk-based vulnerability management
• ServiceNow Vulnerability Response or similar workflow tools
• SIEM, SOC and incident-response processes
• CMDB and asset inventories
• NIS2, ISO 27001, CIS Controls or NIST frameworks
• Cloud and container vulnerability management Certifications (an advantage, not a requirement)
• CISSP, CISM or Security+
• GIAC certifications
• CEH or OSCP
• ISO 27001-related certification
• Vendor certifications for Qualys, Tenable, Rapid7 or ServiceNow Interested in this vacancy? Get in touch with us and we will respond within 48 hours.