Are you technically minded, hungry to stay ahead in the cybersecurity and vulnerability scene, and ready to grow fast? At Arctic Security, we offer a unique opportunity to become a subject matter specialist supporting national-level cybersecurity efforts worldwide.
We build tools that help national cybersecurity centers, Computer Security Incident Response Teams (CSIRTs), and large enterprises protect entire societies from cyber threats. Our products, Arctic Hub and Arctic EWS, are used to build cybersecurity Early Warning Services in national and commercial environments.
We are now seeking a Cyber Exposure and Vulnerability Lead to work on our NCSC Feed and with our customers and prospects. We are looking for a person who aims to excel in developing our NCSC feed. In this position, you would be increasing the coverage of vulnerabilities and exposures on our feed and aiming to stay ahead of the emerging threats. Arctic NCSC feed addresses issues on internet-facing assets that pose a risk if not addressed and will lead to a better security posture when remediated. The position also involves working with our worldwide customer base of National Cyber Security Centers and our EWS customers and prospects with our sales team.
Technical Skills
Networking fundamentals: TCP/IP, DNS, HTTP/S, routing protocols, web technologies.
Internet scanning & enumeration tools: Shodan, Censys, Masscan, Nmap, amass, ProjectDiscovery.
Scripting: Python (for automation, data parsing, and prototyping), Bash, jq.
Vulnerability identification & assessment: CVE, KVE, CWE, CVSS.
Other Security tooling: Metasploit, Burp Suite / ZAP, Wireshark, Nessus.
Threat intelligence frameworks: MITRE ATT&CK, STIX/TAXII, OCSF.
Cloud security knowledge: Exposure detection across AWS, Azure, GCP.
Soft & Strategic Skills
Clear technical writing: To document vulnerabilities and communicate them to non-technical audiences.
Presentation and customer communication skills: Explaining complex issues clearly and credibly.
Curiosity and investigative mindset: To proactively uncover overlooked risks.
Collaboration with product and engineering teams: To help translate findings into product features, detection logic, or positioning.
Additional skills that you might benefit for
Experience with bug bounty programs or CVE submissions.
Knowledge of [security] data pipelines and dashboards (e.g., Elasticsearch/Kibana, Grafana).
Experiences from the security data feeds and the feed ecosystem.
Familiarity with regulatory or compliance impacts of known vulnerabilities.
Prior work in a Cybersecurity company, SOC, or CERT/CSIRT.
You might not tick every box, and that’s okay. If you're excited by the mission and eager to grow, we want to hear from you.
Work on meaningful, high-impact challenges that make companies and countries safer.
Join a small, expert team with a flat structure and freedom to make decisions and take initiative.
Get broad exposure to national-level cybersecurity challenges—this isn’t your average SaaS role.
Flexible hybrid work setup based in either Helsinki or Oulu.
Opportunities for rapid learning, skill development, and global customer engagement.
Apply by Aug 31st
We will conduct interviews as we get applications and fill the position when the right candidate is found.
This job comes with several perks and benefits