
Vulnerability Operations Center Lead
Hover or tap a row for full statistics (EUR / month on this chart).
Salary analysis
Compared with the selected benchmark ("Company in Remote - Europe"), this listing's salary midpoint is about 89% lower. The offer sits below the benchmark range (€1,667–€6,000). The listed pay band (€319–€500) is tighter than the benchmark, which suggests lower salary variability. This benchmark is based on 6 comparable listings.
| Market | Lower bound (25th percentile) | Median | Upper bound (75th percentile) |
|---|---|---|---|
| All roles in Remote - Europe | €1,978/per month | €4,914/per month | €13,713/per month |
| Company in Remote - Europe | €1,667/per month | €2,056/per month | €6,000/per month |
| Pay in our data — not quoted in ad (Senior) | €319/per month | €410/per month | €500/per month |
The role\nWe're building a Vulnerability Operations Center from the ground up and need a senior practitioner to lead it. You'll own the full vulnerability management lifecycle - from detection through triage to remediation tracking and reporting - across Nebius' cloud infrastructure, product and hardware stack. This is a high-impact role with big ownership: you'll define processes, select tooling, work directly with engineering teams, and set the standard for how Nebius responds to vulnerabilities.\nWhat You'll Do\nImprove and maintain automated vulnerability triaging capabilities and vulnerability data quality through data enrichment (internal and external intelligence feeds), quality metrics, AI-assisted triage, context-aware risk scoring, and vulnerability correlation/chaining.\nHands-on validation and triaging of most critical/zero-days vulnerabilities\nWork closely with vulnerability data consumers and stakeholders across the organization to meet engineering, compliance, and regulatory requirements by delivering high-quality, actionable findings and driving effective remediation.\nContribute to the development of internal platforms, including the Unified Vulnerability Management (UVM) system and the security orchestration platform, to automate core vulnerability management workflows and reduce manual effort.\nIdentify current deficiencies in patch management, drive and oversee improvements across engineering teams and business units to improve remediation efficiency and reduce organizational risk\nOwn vulnerability intake from all sources - scanners, bug bounty, threat intel feeds, and penetration tests\nPrioritize findings using risk-based frameworks (CVSS, EPSS, SSVC, asset criticality, exploitability context, business impact) and reduce false positive noise\nDrive remediation accountability across infrastructure, platform, and product engineering teams\nIdentify, track and report vulnerability management metrics, present KPIs and trends to security leadership\nCoordinate response to critical/zero-day vulnerabilities, acting as the primary point of contact across security, engineering, and operations\nDefine and maintain integration between VOC tooling and the broader security ecosystem.\nWhat We're Looking For\n5–8 years in information security with at least 3 years focused on vulnerability management or security operations\nDeep familiarity with vulnerability scanning tools and their strengths/limitations in cloud-native environments\nStrong grasp of CVE/NVD, CVSS scoring, EPSS, SSVC and how to apply them to real-world prioritization\nExperience managing vulnerabilities across IaaS/cloud infrastructure (AWS, GCP, Azure, or private cloud) - experience with GPU/HPC environments is a plus\nDeep understanding of vulnerability sources limitations and corner cases for different vulnerability classes\nAble to write and review code (ability or willingness to develop in Golang) - well enough to assess exploitability, validate fixes, and build lightweight automation (e.g., variant-detection scripts, triage tooling, data pipelines for trend analysis)\nStrong grasp of common vulnerability classes at the code and infrastructure level.\nComfortable feeding well-documented vulnerability patterns into AI-assisted code review workflows and critically evaluating the output\nTrack record of working cross-functionally with engineering teams and holding stakeholders accountable to timelines without being a bottleneck\nStrong written and verbal communication - able to translate technical risk into business impact for non-security audiences\nNice to Have\nExperience building vulnerability management program from scratch\nFamiliarity with container and Kubernetes security\nExperience with supply chain security (SBOMs, dependency scanning)\nBug bounty triage experience\nPublic talks or research articles\nWhy this role at Nebius\nBuild a Platform Security Vulnerability program from scratch and get to build and lead your own team while doing it\nThe potential to evolve an in-house AI-powered vulnerability management platform into a cloud security offering for Nebius customers\nWork alongside world-class engineers on infrastructure that powers frontier AI.\nCompetitive compensation with equity upside in a Nasdaq-listed, high-growth company.\nFlexible, remote-first culture
Job Details
Responsibilities
- Lead the Vulnerability Operations Center and own the full vulnerability management lifecycle from detection to remediation tracking and reporting across Nebius' stack
- Develop and optimize automated vulnerability triaging capabilities and data quality
- Validate critical/zero-day vulnerabilities hands-on
- Collaborate with engineering, compliance, and regulatory teams to deliver high-quality findings and drive remediation
- Contribute to developing internal platforms like the Unified Vulnerability Management system and security orchestration platform
- Oversee patch management improvements and drive remediation efficiency across teams
- Own vulnerability intake from scanners, bug bounty, threat intel, and pen tests
- Prioritize findings using risk-based frameworks and reduce false positives
- Drive remediation accountability across infrastructure, platform, and product engineering
- Report metrics and KPIs to security leadership; communicate risk to non-security audiences
- Coordinate response to critical vulnerabilities as primary contact across security, engineering, and operations
- Define and maintain integration between VOC tooling and broader security ecosystem
Requirements
- 5–8 years in information security with at least 3 years focused on vulnerability management or security operations
- Deep familiarity with vulnerability scanning tools and their strengths/limitations in cloud-native environments
- Strong grasp of CVE/NVD, CVSS scoring, EPSS, SSVC and how to apply them to real-world prioritization
- Experience managing vulnerabilities across IaaS/cloud infrastructure (AWS, GCP, Azure, or private cloud) - experience with GPU/HPC environments is a plus
- Deep understanding of vulnerability sources limitations and corner cases for different vulnerability classes
- Able to write and review code (ability or willingness to develop in Golang) - well enough to assess exploitability, validate fixes, and build lightweight automation
- Strong grasp of common vulnerability classes at the code and infrastructure level.
- Comfortable feeding well-documented vulnerability patterns into AI-assisted code review workflows and critically evaluating the output
- Track record of working cross-functionally with engineering teams and holding stakeholders accountable to timelines without being a bottleneck
- Strong written and verbal communication - able to translate technical risk into business impact for non-security audiences
Skills & Technologies

Related Opportunities
Discover more opportunities that match your interests and skills