Senior Security Operations & Vulnerability Management Engineer
at SolarWinds (View all jobs)
Brno, Czech Republic
Req ID: 202616
At SolarWinds, we’re a people-first company. Our purpose is to enrich the lives of the people we serve—including our employees, customers, shareholders, partners, and communities. Join us in our mission to help customers accelerate business transformation with simple, powerful, and secure solutions.
The ideal candidate thrives in an innovative, fast-paced environment and is collaborative, accountable, ready, and empathetic. We’re looking for individuals who believe they can accomplish more as a team and create lasting growth for themselves and others. We hire based on attitude, competency, and commitment. Solarians are ready to advance our world-class solutions in a fast-paced environment and accept the challenge to lead with purpose. If you’re looking to build your career with an exceptional team, you’ve come to the right place. Join SolarWinds and grow with us!
We work in a hybrid mode 3+2, with a minimum of 3 days at the office (with mandatory Tuesdays and Wednesdays) and a maximum of 2 days at the home office.
The location of our office is Holandská 873/6, Brno – Štýřice, 639 00.
We employ only via an employment contract – full-time employment (HPP).
Role Overview
We are looking for a Senior Engineer who views Vulnerability Management as a risk-reduction craft, not a compliance checkbox. While you will be involved in high-level security operations, your primary focus is to evolve our Threat & Vulnerability Management (TVM) program from “running scans” to “driving impactful remediation of real risk.”
This isn’t a role for someone who just forwards PDF reports. We need a technical leader who can cut through the noise of thousands of alerts, translate CVSS scores into actual business risk, and work as a peer with our Engineering and IT teams to get things fixed. You’ll be the bridge between technical telemetry and executive-level risk decisions.
Key Responsibilities
- Risk-Based Vulnerability Management: Own the full lifecycle of vulnerability discovery and remediation. You’ll move beyond “Critical/High” labels to prioritize based on reachability, exploitability-in-the-wild (EPSS/KEV), and the specific context of our environment.
- Stakeholder Diplomacy: Act as the primary technical point of contact for Engineering and DevOps. You’ll be responsible for explaining the “why” behind a fix, helping teams navigate technical debt, and negotiating remediation timelines that balance security with product velocity.
- Threat Hunting & Intel: Use MITRE ATT&CK® to pivot from vulnerability data to proactive hunting. If a new Zero-Day drops, you’re the one identifying our exposure surface and drafting the “what this means for us” brief within hours.
- Detection & Automation: We don’t want you doing the same manual task twice. You’ll build and tune detection logic and design SOAR playbooks to automate ticket routing, asset tagging, and evidence collection.
- Incident Leadership: Act as a Tier 3 escalation point and Incident Commander for major security events. You’ll lead the “deep dive” after an incident to ensure the root cause is addressed in the TVM roadmap.
- Strategic Reporting: Stop reporting on “number of vulnerabilities” and start reporting on “risk reduction over time.” You’ll develop KPIs that actually matter to executive leadership, such as Mean Time to Remediation (MTTR) for exploited flaws and burn-down rates on mission-critical assets.
Qualifications
- 5–7+ years in SecOps and TVM: You’ve lived through the “log4j” style fire drills and know how to keep a cool head when things get messy.
- TVM Tooling Expertise: Deep, hands-on experience with enterprise-grade scanners (Qualys, Tenable, or Rapid7) and, more importantly, the ability to integrate them into CI/CD pipelines and cloud workflows.
- Cloud Security Expertise: You’re fluent in AWS/Azure/GCP security and understand why scanning a container image is different from scanning a VM.
- Data & Scripting: You can use Python, PowerShell, or SQL to pull data from an API, smash two datasets together, and find the one outlier that actually matters.
- Risk Translation: You can explain the difference between a theoretical vulnerability and a functional exploit to both a kernel engineer and a VP of Product.
- Framework Fluency: Strong command of NIST CSF and MITRE ATT&CK. You don’t just know the frameworks; you know how to apply them to prioritize your week.
- The “Attacker Mindset”: You understand exploit development and penetration testing methodologies. You know which vulnerabilities are “low hanging fruit” for an attacker, even if the scanner says they’re “Medium.”
Certifications & Education
While we value experience over paper, professional certifications like CISSP, GCIH, or GEVA (GIAC Enterprise Vulnerability Assessor) are highly regarded.
Specialized cloud certs (CCSP, AWS Security) or a degree in Cybersecurity/CS are a plus, but your ability to solve complex problems is what we’re really looking for.
Why you’ll love this role
You won’t be a cog in a machine. You’ll have the autonomy to rebuild our TVM processes and a seat at the table to influence how the entire organization approaches security risk.
Our benefits:
- 25 days of vacation per year
- 3 sick days per year
- 10 study days per year
- 2 volunteering days per year
- 4 weeks’ holidays after 5-year tenure, Sabbatical Leave
- Up to 48 300CZK personal education budget per year
- Pension or life insurance matching donation up to 3% of the salary or 4000 CZK per month
- Cash allowance for meals of 95 CZK per working day
- Unlimited access to LinkedIn Learning
- English/Czech classes
- Multisport card
- Solarian Referral Program
- SolarWinds Appreciation Program
- Giving – Donation Matching
- Employee Assistance
- Competitive Race Reimbursement
- Breakfast on Wednesdays
- Fresh fruits and snacks on Mondays
- On-site gym
- Twice-weekly workout classes at the office
- Once a week yoga sessions at the office
SolarWinds is an Equal Employment Opportunity Employer. SolarWinds will consider all qualified applicants for employment without regard to race, color, religion, sex, age, national origin, sexual orientation, gender identity, marital status, disability, veteran status or any other characteristic protected by law.
All applications are treated in accordance with the SolarWinds Privacy Notice: https://www.solarwinds.com/applicant-privacy-notice