
Job Overview
Location
Zurich
Job Type
Full-time
Category
Data Science
Date Posted
June 22, 2026
Full Job Description
đź“‹ Description
- • Own and evolve the vulnerability management strategy, roadmap, and SLAs/KPIs for a cloud-native SaaS platform.
- • Continuously assess vulnerabilities across cloud environments, applications, containers, Kubernetes, endpoints, and third-party services.
- • Prioritize security risks using asset criticality, exploitability, threat intelligence, and business context to guide remediation efforts.
- • Drive remediation programs in close partnership with Engineering, Platform, Cloud Operations, and Product Security teams.
- • Build and maintain automation and integrations across vulnerability scanners, ticketing systems, CMDBs, and cloud platforms to eliminate manual triage.
- • Leverage AI and LLM-based tools to enhance vulnerability analysis, investigation workflows, and analyst productivity, while evaluating emerging AI security tools.
- • Secure cloud-native architectures across AWS, Azure, and/or Google Cloud, including CI/CD pipelines and infrastructure-as-code deployments.
- • Contribute to security architecture reviews and embed security practices into DevSecOps initiatives.
- • Operate enterprise vulnerability management platforms such as Tenable, Qualys, Rapid7, Wiz, or Orca Security to monitor and manage exposure surfaces.
- • Translate complex security findings into actionable insights for engineering teams with strong communication and influence skills.
- • Maintain a builder mindset focused on engineering-driven security solutions rather than manual compliance checks.
- • Stay current with evolving cloud-native threats, attack surface management techniques, and cloud security posture management (CSPM) best practices.
- • Collaborate cross-functionally to embed risk-based decision-making into product and platform development lifecycles.
- • Evaluate and implement security automation platforms to scale vulnerability management across global engineering teams.
🎯 Requirements
- • 5+ years in security engineering with hands-on ownership of vulnerability management programs.
- • Strong understanding of modern vulnerability management methodologies, CVSS, threat intelligence, and exploitability analysis.
- • Experience with enterprise vulnerability management platforms (e.g., Tenable, Qualys, Rapid7, Wiz, Orca Security).
- • Proven experience securing cloud-native environments on AWS, Azure, and/or Google Cloud, including containers and Kubernetes.
- • Demonstrated ability to build automation using APIs and workflow orchestration tools.
- • Strong communication skills and experience influencing engineering teams to prioritize and remediate security risks.
🏖️ Benefits
- • Annual personal growth budget and mentorship programs for continuous learning and development.
- • Work from anywhere in the world for up to 30 days per year.
- • Hybrid working model with three in-office days (Monday, Tuesday, Thursday) and two optional remote days.
- • Discounts on GetYourGuide activities for employees, friends, and family.
- • Health and wellness benefits.
- • Opportunities to collaborate and socialize through quarterly team events and yearly company-wide events.
Skills & Technologies
See exactly how your profile matches this role — strengths, skill gaps, and what to do about them.
About GetYourGuide AG
GetYourGuide AG is a Berlin-based online travel platform founded in 2009 that connects travelers with tours, attractions, and activities worldwide. Operating as a marketplace, it offers booking services for skip-the-line tickets, guided tours, cooking classes, and local experiences in over 150 countries. The company partners with local operators, handling reservations, payments, and customer support while earning commissions. It targets independent travelers seeking curated activities, emphasizing mobile-first booking and real-time availability. The platform supports multiple languages and currencies, serving millions of users annually through its website and mobile apps.
Subscribe to the weekly newsletter for similar remote roles and curated hiring updates.
Newsletter
Weekly remote jobs and featured talent.
No spam. Only curated remote roles and product updates. You can unsubscribe anytime.
Similar Opportunities
1 month ago
2 months ago

Hangar Aviation Technologies, Inc.
2 months ago

Singular Intelligence Ltd.
17 days ago

