The posting
Are you a Vulnerability & Exposure Management Specialist? Think bigger about your next move!
Build your future with QnR Group. JOIN THE NEXT EUROPEAN TECHNOLOGY POWERHOUSE 🚀
Vulnerability & Exposure Management Specialist | SysteCom, member of QnR Group
Role overview
We are looking for a Vulnerability & Exposure Management Specialist to help organisations continuously discover, assess, prioritise and reduce vulnerabilities and security exposures across their technology estate.
About QnR Group
QnR Group is a technology group with 35 years of experience, 8 companies, 4 delivery centers and 210+ professionals across Greece, Belgium, Cyprus and Poland. Listed on the Athens Stock Exchange since 2000, we deliver mission-critical digital transformation projects for the public and private sector. The Group’s capabilities covers software engineering, enterprise and generative AI, cybersecurity, cloud infrastructure, SAP and ServiceNow solutions, core banking and maritime intelligence.
About SysteCom
SysteCom, a member of QnR Group, specializes in cybersecurity, digital resilience and IT infrastructure. The company delivers solutions and services that help organizations protect their systems and data, strengthen operational continuity and modernize their technology environments. Bringing together security and infrastructure expertise, SysteCom supports businesses across sectors in building secure, reliable and resilient digital operations.
Requirements
What you'll work on:
- Operate vulnerability and exposure-management platforms
- Validate findings and prioritise remediation using technical and business context
- Coordinate remediation with infrastructure, application and cloud owners
- Track exceptions, risk acceptance, service levels and recurring weaknesses
- Produce operational and executive reporting on exposure trends and progress
What you bring:
- Experience operating vulnerability-scanning, exposure-management, attack-surface or remediation-tracking capabilities
- Knowledge of CVE, CVSS, EPSS, exploitability, asset criticality, compensating controls and risk-based prioritisation
- Ability to validate findings, identify false positives and translate technical exposure into remediation actions
- Experience coordinating remediation with infrastructure, application, network and cloud owners
- Understanding of authenticated scanning, asset coverage, exception management, service levels and risk acceptance
- Strong analytical and reporting skills, including operational dashboards and management-level summaries
- Familiarity with cloud posture, external attack surface and vulnerability intelligence sources
- For senior candidates, experience defining governance, metrics, tooling strategy and continuous-improvement processes
Required certifications:
Mid-level and Senior: at least one relevant certification, such as CompTIA CySA+, CISSP, GIAC GSEC or a recognised Tenable, Qualys, Rapid7 or exposure-management vendor certification
Nice to have:
- Tenable, Qualys, Rapid7 or exposure-management platform experience
- Cloud-security posture or attack-surface management experience



