Gen Digital Inc.

Security Controls Engineer - Vulnerability management at Gen Digital Inc. (Brno, Czech Republic)

Gen Digital Inc.· Brno, Czech Republic·

Role details

Work type
Hybrid
Employment
Full-Time
Skills
Vulnerability ManagementSecurity EngineeringDevOpsCloud EnvironmentsAWSAzureGCPCI/CDInfrastructure as CodeJiraAzure DevOpsISO 27001
Benefits

Flexible Working Options · Generous Time Off · Competitive Pay · Benefits · Well-Being Programs

Gen Digital Inc. at a glance

Consumer Cyber Safety and financial-wellness company behind Norton, Avast, LifeLock, and MoneyLion.

Gen Digital is a public consumer Cyber Safety company that sells cybersecurity, online privacy, identity protection, and financial wellness through a portfolio of well-known brands including Norton, Avast, AVG, Avira, LifeLock, CCleaner, ReputationDefender, and MoneyLion. It serves nearly 500 million users across more than 150 countries.

· latest: Public (NASDAQ: GEN); ~$1B MoneyLion acquisition closed April 2025

Summary

Translate legal and security framework requirements into actionable vulnerability management programs across DevOps and security teams. Design, operationalize, and improve the vulnerability lifecycle including identification, triage, remediation, and reporting while ensuring compliance with regulatory frameworks.

Job description

About Us: Gen is a global company dedicated to powering Digital Freedom through its trusted consumer brands including Norton, Avast, LifeLock, MoneyLion and more. Our combined heritage is rooted in financial empowerment and cyber safety for the first digital generations, and today we deliver award-winning cybersecurity, online privacy, identity protection and financial wellness solutions to nearly 500 million users in more than 150 countries. Together, we share a collective passion and vision to protect consumers and help them grow, manage and secure their digital and financial lives. We’re always looking for smart, fearless and high-impact talent who see AI as a teammate – leveraging it to move faster and deliver meaningful results. When you’re part of Gen, you’ll have the flexibility, tools and support to do your best work and grow your career – from flexible working options and time off to competitive pay, benefits and well-being programs. At Gen, we are scrappy and relentlessly customer driven. We create room for healthy debate, experimentation and continuous learning, and we seek out people with different experiences, identities and ideas to join our team. You’ll work with people who back each other, respect each other and understand that our differences are a competitive advantage. If this sounds like you, we’d love you to be part of Gen.

About The Role: We are a team that brought you Norton, Avast, LifeLock, Avira, AVG, ReputationDefender, and CCleaner, dedicated to providing cybersecurity, privacy, and identity protection to over 500 million users in 150 countries. At Gen, we offer flexible working options, generous time off, and competitive benefits in a diverse and inclusive environment where every team member is valued and celebrated. If you are smart, fearless, and dedicated, join us to power Digital Freedom and help consumers take control of their digital lives. We’re looking for an independent, driven security professional who thrives at the intersection of security, DevOps, and delivery. In this role, you will translate legal and security framework requirements into clear, actionable vulnerability management and remediation programs that operate across multiple Security and DevOps teams. You’ll help design, operationalize, and continually improve our vulnerability management lifecycle, from identification and triage through prioritization and remediation to validation and reporting. This includes secure development practices within regulatory frameworks guiding vulnerability handling, coordinated disclosure, SBOM transparency, patch management, and post-deployment monitoring. You will track, report, and escalate progress, risks, and dependencies, partnering closely with a Senior Project Manager and reporting to senior leadership. If you enjoy making complex requirements practical, measurable, and delivered—this is for you.

About You: Practical exposure or experience (typically 3–5 years) in vulnerability management, security engineering, or security program delivery in a cloud/software environment. Demonstrated ability to work independently and drive outcomes across multiple teams. Working understanding of regulatory security requirements and demonstrated experience with common frameworks/regulations implementation (e.g., ISO 27001, NIS2, SOC 2, GDPR, PCI DSS). Strong translation skills: turn policy and control language into developer-ready user stories, acceptance criteria, remediation tasks, and runbooks. Hands-on experience using work tracking tools (Jira, Azure DevOps, etc.) and crafting status reports/dashboards for leadership. Strong communication skills: comfortable analyzing vulnerability trends, including ageing, patch latency, and systemic root causes, supported by concise writing ability, clear meeting facilitation, and demonstrated experience with stakeholder alignment. Understanding of modern SDLC/DevOps practices (CI/CD, IaC, pipelines, change management). Experience in cloud environments (AWS/Azure/GCP), including shared responsibility and guardrail patterns. Wry sense of humor is a plus

What’s Next: Our interview process consists of two stages: First round: You’ll meet Andrej Valentovič, the Hiring Manager for this role, to discuss your experience and the position in more detail. Second round: You’ll have an online interview with his manager to further explore your fit and expectations.

Why work at Gen Digital Inc.

  • Culture: Emphasizes collaboration, innovation, a giving mindset, and customer obsession. Values include “Think Big. Be Bold.”, “Be Scrappy. Make it Happen.”, and “Play to Win. Together.”
  • Work model: Hybrid – choose which days to be in the office with an expectation of three days per week; unlimited paid time off; recognized holidays; parental leave and leaves of absence
  • Benefits:
    • Employee Stock Purchase Plan (ESPP)
    • Performance-based bonuses
    • Learning & development (Learn@Gen, mentorship, degree/certification reimbursement, 24/7 eLearning)
    • Wellness: virtual fitness, on-site gyms, Employee Assistance Program (EAP) extending to dependents
    • Adoption, foster care, fertility, and surrogacy benefits in 15+ countries
    • Global recognition program (“Inspire”) and diverse employee communities
  • Interview process: Transparent – 15-30 min recruiter chat, 2-3 skill/team interviews (may include a task), then offer. Reflects the company’s collaborative culture.

Application questions