Job Description:
DXC Technology is a global professional services company whose mission is to lead the digital transformation of our clients by advising and guiding them in the application of technology to obtain the best results and increase the competitiveness of their companies. With more than 130,000 professionals and expert technologists, collaborating in more than 70 countries together with an exceptional network of partners, we offer advanced IT services and solutions.
In Spain, we are one of the main leaders in the IT market. We have nearly 8,000 professionals, distributed in thirteen locations, with centers of excellence in cutting-edge technologies such as Cloud, Business Intelligence, AI, or Automation among many others, serving more than 200 customers from all industries in the public and private sectors. We work with leading companies in the country that trust us to guide their digital transformation.
We develop active policies of diversity and inclusion of people with disabilities and we are proud to have a representation of approximately 49% of female professionals.
We are looking for a customer-facing Security Run Lead to oversee the delivery of vulnerability scanning services using Qualys, on behalf of a key client. This role is responsible for managing the vulnerability scanning services at a governance level—ensuring timely delivery, clear reporting, and effective coordination between our operational teams and the customer’s stakeholders.
You will not run scans directly but will play a central role in ensuring quality, consistency, and transparency in service delivery, acting as the main point of contact for the client on all vulnerability scanning matters.
Requirements:
Experience:5+ years in cybersecurity or service delivery rolesExperience in customer-facing roles within managed security services or IT operationsKnowledge of:Vulnerability management frameworks and lifecycleQualys VMDR platform (functional understanding)Common vulnerabilities (CVEs, CVSS scoring, patching workflows)Governance and reporting best practicesSkills:Strong client communication and stakeholder managementProven ability to coordinate across operational and customer teamsAnalytical mindset with a focus on data quality and process consistencyExcellent reporting, presentation, and documentation skillsTasks:
Act as the primary liaison between the customer and internal delivery teams for vulnerability scanning services.Oversee the execution of vulnerability scans using Qualys, ensuring that operational teams meet service expectations and SLAs.Facilitate vulnerability lifecycle governance, including scan planning, exception handling, and remediation tracking.Prepare and deliver regular reports, dashboards, and service reviews to customer stakeholders.Monitor the status of vulnerability scanning activities and escalate risks, delays, or issues as needed.Coordinate with internal technical teams, client IT/security staff, and third-party vendors to ensure alignment and resolution of findings.Drive improvements in delivery processes, scan accuracy, and remediation responsiveness.Ensure services are aligned with client’s compliance frameworks and internal security policies.Maintain accurate documentation, runbooks, and service delivery records in support of audits and service quality reviews.What will you find at DXC?
Professional development.Leading projects in market reference clients.Excellent work environment.Flexibility and work-life balance.Work with leading technologies within the IT sector.Access to DXC University with unlimited certifications.Social and responsible commitment.Stable employment.Social benefits.Recruitment fraud is a scheme in which fictitious job opportunities are offered to job seekers typically through online services, such as false websites, or through unsolicited emails claiming to be from the company. These emails may request recipients to provide personal information or to make payments as part of their illegitimate recruiting process. DXC does not make offers of employment via social media networks and DXC never asks for any money or payments from applicants at any point in the recruitment process, nor ask a job seeker to purchase IT or other equipment on our behalf. More information on employment scams is available here.