Vulnerability Management SPOC in Home Journey Domain
Gdynia, PL, 81-537 Gdańsk, PL, 80-309 Helsinki, FI, 00500 Warszawa, PL, 02-460
Job ID: 5973
Welcome to Group Technology, where we pride ourselves on engineering solutions and direct Nordea’s transformation by providing a holistic technological view and structured understanding of the bank, and its surrounding environment to enable the Customer Vision and the Business Strategy.
We are looking for a Vulnerability Management SPOC for a permanent, full-time position to lead and coordinate vulnerability remediation across applications and infrastructure. You will be the central point of contact connecting Cyber Security, Application Owners, Providers, Operations and Development teams, ensuring that security findings are prioritised, acted on and followed through to closure.
Nordea is a place where traditions meet tomorrow. We’re not just a bank; we’re a tech employer on a mission to evolve finance securely and responsibly. Together, we impact millions of people’s daily lives by ensuring they can access our solutions anytime, anywhere, while safeguarding their personal data and wealth. Join us in making an impact on the banking industry.
About our team
You will join a collaborative technology team responsible for helping application and infrastructure teams reduce security risk. We coordinate work across organisational boundaries, strengthen ownership and turn security findings into clear, achievable remediation plans.
This role in based in Finland and Poland.
What you’ll be doing
In this role, you will:
- Own and coordinate vulnerability remediation across applications and infrastructure, prioritising and tracking security findings through to closure.
- Drive compliance with vulnerability governance processes and remediation timelines, including clear communication and escalation of overdue findings.
- Coordinate with Development and Operations teams to assess findings and safely test, deploy and verify security fixes.
- Support risk-management processes and the implementation of compensating controls when permanent remediation cannot be completed within the required timeframe.
- Provide management reporting and actionable insights on vulnerability status and remediation progress, while collaborating with Group Technology and Cyber Security on upgrades, requirements and process improvements.
Who you are
This is the right role for you if you take ownership, create momentum and enjoy bringing people together around a shared goal. You communicate complex security topics clearly, work in a structured way and can challenge constructively while maintaining strong working relationships. You are comfortable coordinating across several stakeholders and keeping focus on delivery, risk reduction and continuous improvement. You actively identify opportunities to simplify and standardise ways of working, and you drive efficiency through automation and the responsible use of AI—for example, by improving vulnerability triage, tracking, reporting and management insights—while ensuring appropriate human oversight, data protection and security controls.
Your background and skills include:
- Relevant IT education or equivalent practical experience, together with a background in software development, IT operations or a closely related area.
- Strong understanding of vulnerability management, patch management and cybersecurity governance.
- Experience working with application development and infrastructure teams and driving remediation across multiple stakeholders.
- Strong communication, coordination and reporting skills, with the ability to turn findings into clear actions and follow them through.
It would be ideal if you also:
- Have hands-on experience with security-scanning, risk-management or vulnerability-tracking tools.
- Have experience improving vulnerability-management processes, reporting or remediation workflows in a complex organisation.
If this sounds like you, get in touch!
Next Steps
Submit your application no later than 05/10/2026.
What we offer
Collaboration. Ownership. Passion. Courage. These are the values that guide us in how we work and how we make decisions – and that we imagine you share with us.
People are driven by many different factors. For some, it’s to take their career to the next level. For others, it’s to break new ground within their area of expertise – in other words, with us, you will always move forward.
A culture that fosters performance and growth in one of the largest Nordic banks, offering various opportunities to evolve, develop and learn from brilliant colleagues with diverse backgrounds in a vibrant working environment.
Hybrid working model – we believe in the value of bringing people together and at the same time we embrace the freedom of flexibility.
Diversity and inclusion are a natural part of our daily work. We know that an inclusive workplace is a sustainable one. We genuinely believe that our diverse backgrounds, experiences, characteristics and traits make us stronger together. Every day we strive to find new ways to improve diversity and inclusion within our community e.g. we have signed the European Diversity Charters in the countries where we operate to show our commitment and engage with others to continue learning and improving.
We enable dreams and aspirations for a greater good.
We build relationships. We add a personal touch to everything we do – when advising our customers, collaborating with colleagues, and meeting our potential candidates.
We learn and develop. We take pride in being experts and thinking ahead. We use our expertise to meet our customers’ needs, from the simplest to the most complex. We bring a growth mindset to our work that enables us to focus on a broader perspective in our daily challenges.
We lead change. We are responsible and aware of the impact of our decisions, both for our customers and for our local and global communities. Mindful of our responsibility towards current and future generations, we have made sustainability an integrated part of our business strategy.
We are Nordea. We have a 200-year history of supporting and growing the Nordic economies and our values are deeply rooted in these open, progressive and collaborative societies. As one of the biggest employers in the Nordics, Poland and Estonia, you have excellent opportunities to evolve, develop and move forward with us.
Studies show that members of underrepresented communities don’t apply for jobs unless they tick all the qualification boxes. If this is part of why you hesitate to apply, we would like you to reconsider and give it a chance. Maybe your profile fits our needs much better than you think."
Only for candidates in Finland: A security clearance will be performed for the person selected for this position.
Only for candidates in Poland: Please include permit for processing personal data in CV as following:
In accordance with art. 6 (1) a and b. Regulation (EU) 2016/679 of the European Parliament and of the Council of 27 April 2016 on the protection of natural persons with regard to the processing of personal data and on the free movement of such data, and repealing Directive 95/46/EC (General Data Protection Regulation) hereinafter ‘GDPR’. I agree to have: my personal data, education and employment history proceeded for the purposes of current and future recruitment processes in Nordea Bank Abp.
The administrator of your personal data is: Nordea Bank Abp operating in Poland through its Branch, address: Aleja Edwarda Rydza Śmiglego 20, 93-281 Łodź. Your personal data will be processed for the recruitment processes in Nordea Bank Abp. You have a right to access your personal data, right to rectify and right to delete. Disclosing the personal data in the scope specified by the provisions of Polish Labour Code from 26 June 1974 and executive acts are mandatory. Providing personal data is necessary to conduct the recruitment processes. The request for the deletion of your personal data means resignation from further participation in recruitment processes and causes the immediate removal of your application. Detailed information concerning processing of your personal data can be found at: https://www.nordea.com/en/doc/nordea-privacy-policy-for-applicants.pdf
We reserve the right to reply only to selected applications.