TRCI-26-05144
Cybersecurity Implementation & Vulnerability Management Lead
Lead the operational rollout of Saint-Gobain’s Information Systems Security Policy (ISSP) across data and analytics environments, enable and govern the PSAT (Project Security Assessment Tool) lifecycle for projects (from initiation through Go Build/Go Live readiness), and run end-to-end vulnerability lifecycle management using security tooling (e.g., scanners, SAST, SCA). The role partners with application owners, infrastructure and project teams, and Security Officers to embed secure-by-design controls, ensure compliance checks, and prioritize/remediate vulnerabilities within SLA based on severity and business impact.
Position summary
- Location
- Portugal
- Workplace
- On-site
- Employment
- Contract
- Experience
- Minimum 5 years and Maximum 10 years
Role overview
Why This Role Matters.
Lead the operational rollout of Saint-Gobain’s Information Systems Security Policy (ISSP) across data and analytics environments, enable and govern the PSAT (Project Security Assessment Tool) lifecycle for projects (from initiation through Go Build/Go Live readiness), and run end-to-end vulnerability lifecycle management using security tooling (e.g., scanners, SAST, SCA). The role partners with application owners, infrastructure and project teams, and Security Officers to embed secure-by-design controls, ensure compliance checks, and prioritize/remediate vulnerabilities within SLA based on severity and business impact.
Your Impact
Deliver Enterprise Value
Help organisations solve complex business problems through modern technology, consulting expertise and measurable outcomes.
Collaboration
Work Across Teams
Collaborate with consultants, architects, engineers and client stakeholders throughout the project lifecycle.
Growth
Learn Continuously
Gain exposure to enterprise technologies, certifications, mentoring and real-world project experience.
Career Path
Grow With Ubique
Build a long-term consulting career with opportunities to take on greater responsibility and leadership over time.
Responsibilities
What You'll Be Doing.
Every role at Ubique contributes directly to solving meaningful business challenges for our clients.
Collaborate with application owners, infrastructure teams, and project leads to embed ISSP controls into daily operations.
Monitor implementation progress and identify areas requiring additional support or clarification.
Support the completion of the Security Interview and ensure accurate classification of project criticality.
Coordinate with Security Officers (SO) to review responses and define applicable requirements.
Facilitate compliance checks and ensure readiness for Go Build / Go Live milestones.
Promote reuse of validated PSATs and ensure versioning is properly managed for evolving applications.
Monitor and assess vulnerabilities using Saint-Gobain’s security tooling (e.g., scanners, SAST, SCA).
Prioritize vulnerabilities based on severity and business impact, ensuring remediation within SLA.
Certified Information Systems Security Professional (cissp
Technology stack
Tools & Technologies.
The platforms and technologies you'll use to build modern, enterprise-grade solutions.
ISSP
PSAT
vulnerability management
vulnerability scanners
SAST
SCA
IT risk management
secure-by-design
security controls
compliance checks
Go Live
Go Build
SLA remediation
Requirements
Skills & Experience.
We value curiosity, collaboration and continuous learning. If you don't meet every requirement but believe you can make an impact, we'd still love to hear from you.
Essential
Required Qualifications
Vulnerability analysis
Threat and vulnerability management
Vulnerability lifecycle management (prioritization, remediation, SLA tracking)
IT risk management
Security policy implementation/operationalization (ISSP)
PSAT enablement (Project Security Assessment Tool)
Security assessment/interview facilitation and project criticality classification
Stakeholder coordination with application owners, infrastructure teams, project leads, and Security Officers
Use of security tooling such as vulnerability scanners, SAST, and SCA
Preferred
Nice to Have
CISSP certification
Security awareness/training enablement
Dashboards/templates/tooling rollout support
Secure-by-design practices enablement
What you'll gain
More Than Just A Job.
We're committed to helping every team member grow professionally, personally and technically while working on meaningful projects.
Global Exposure
Collaborate with international clients and multicultural teams on enterprise programmes.
Continuous Learning
Expand your expertise through mentoring, certifications and hands-on project experience.
Career Growth
Take ownership, develop leadership skills and grow your consulting career over time.
Flexible Working
Hybrid and remote collaboration designed around trust and delivering exceptional outcomes.
People First
Join a supportive culture where collaboration, respect and long-term relationships come first.
Enterprise Projects
Work on meaningful technology initiatives for leading organisations across industries.
Apply
Apply for Cybersecurity Implementation & Vulnerability Management Lead
One page, about two minutes. We only ask for what we actually need to have a first conversation.