126 to 150 of 1,133 Vulnerability Management Jobs

devops engineer for defence environments

Location
Greater London, England, United Kingdom
third-party tooling for monitoring, logging, alerting, diagnostics, and service health reporting Implement DevSecOps practices, including shift-left security, policy as code, secrets management, vulnerability management, and secure software supply chain controls Troubleshoot complex infrastructure, networking, identity, security, pipeline, and production issues to maintain reliable business-critical … networking, identity, compute, storage, monitoring, and governance Deep experience with Azure DevOps or GitHub for source control, pull requests, CI/CD pipelines, release management, deployment automation, and environment controls Proven experience delivering infrastructure as code using Bicep, Terraform, ARM templates, or similar technologies Strong understanding of Docker, Kubernetes ...

Cyber Security Analyst

Location
Quintrell Downs, England, United Kingdom
Cornwall. The role will support the Cyber Security team and wider service more generally, with a specific focus toward security investigations, forensics and vulnerability management, with other daily activities as laid out in the following descriptions. Some travel may be required for meetings and training (predominately between … university campuses in London). Accountabilities & Responsibilities You will be responsible for: Queue Management – day-to-day management of the security incident/service request queue in alignment with SLA, identifying recurring issues, inefficiencies and opportunities for process improvement. Security Incident Response & Digital Investigations – Providing timely analyst services ...

Vulnerability & Threat Exposure Manager (Contract, Inside IR35)

Location
Greater London, England, United Kingdom
Vulnerability & Threat Exposure Manager (Contract, Inside IR35) Location: London (1–2 days per week in office, remainder remote) Contract: Initial 6 months, with potential to extend IR35 Status: Inside IR35 Our client, a large, complex enterprise organisation, is urgently seeking a manager to lead their vulnerability and exposure … management capability, with a mandate to expand into threat intelligence and enhanced security testing over time. You'll join a lean, focused team and play a hands-on leadership role from day one, with genuine scope to shape process, tooling, and maturity over a six-month roadmap. The immediate ...

WAF Engineer

Location
Greater London, England, United Kingdom
facing applications. Provide subject matter expertise for web application security, secure application delivery and WAF best practices. Provide technical support to Audit & Compliance, Capacity Management, Lifecycle Management, Vulnerability Management and Risk Management Functions. Provide technical leadership during major incidents and drive to quick resolutions. Coach … preferred, or equivalent industry experience. Strong industry expertise within IT or Telecommunications environments. Financial Services experience preferred. Advanced expertise in Azure WAF and network management within complex enterprise environments. Deep technical expertise in Network Security, with exposure to technologies such as Azure Firewall, Palo Alto Firewall/ ...

Cyber Security Lead - Vulnerability & Exposure Management

Hiring Organisation
Cadence Resourcing Limited
Location
London, United Kingdom
Employment Type
Permanent
Cyber Security Lead - Vulnerability & Exposure Management An established organisation operating within a highly regulated environment is looking for a Cyber Security Lead to strengthen its approach to identifying, assessing and reducing technical security risk. You will take ownership of the vulnerability management function, developing it into … proactive, intelligence-led exposure management capability. This will include: * Establishing an effective CTEM framework and longer-term security roadmap. * Improving vulnerability scanning across cloud, on-premises and externally accessible technology. * Prioritising remediation using asset importance, active threats, EPSS, attack paths and business impact. * Coordinating patching and remediation activity ...

Senior Cyber Security Engineer

Hiring Organisation
Addition
Location
London, South East England, United Kingdom
Employment Type
Full-Time
Salary
£600.00 per day
CyberArk will be your deepest area of expertise, complemented by hands-on experience across the wider modern security stack, including Zscaler, EDR, SIEM and vulnerability management. The Opportunity As Senior Cyber Security Engineer, you’ll take ownership of CyberArk and privileged access management solutions throughout their lifecycle—from … central role in strengthening clients’ security environments by: Owning the design, deployment and operation of CyberArk solutions across managed client environments. Managing vaulting, session management, secrets management and privileged threat analytics. Designing PAM onboarding programmes covering discovery, scoping, policy design and rollout. Integrating PAM with Entra ID, conditional ...

GCP Identity & Access Management & RBAC Engineer

Hiring Organisation
Reed Technology
Location
London, United Kingdom
Employment Type
Temporary
Salary
£475/day POSSIBLY NEGOTIABLE
/RBAC Engineer to join its Data Platform team. This role sits at the intersection of cloud platform engineering, identity and access management, governance and security. The successful candidate will be responsible for implementing and improving access controls, governance frameworks and security practices across a large-scale Google Cloud … environment. Responsibilities Design and implement IAM and RBAC controls across GCP Manage service accounts, permissions and access governance Support data governance, classification and access management initiatives Implement and maintain least-privilege access models Conduct access reviews and support audit requirements Work with engineering teams to improve platform security ...

Information Security Consultant

Location
United Kingdom
beyond. Our clients rely on us to own the parts of their security programme they cannot resource internally — from regulatory compliance and risk management through to board-level reporting and incident readiness. As an Information Security Consultant you will act as the vCISO lead on a portfolio of client … maintaining an ISMS, including policy authorship and risk assessment. Strong working knowledge of technical security controls across firewalls, endpoint protection, identity and access management, patch and vulnerability management, and email and web security. Experience producing and presenting security reporting to board or executive audiences. Excellent written English ...

Lead Product Security Engineer

Hiring Organisation
Morson Edge
Location
Luton, Bedfordshire, South East, United Kingdom
Employment Type
Contract, Work From Home
Contract Rate
£92.50 - 92.50 per hour
corporate IT or enterprise cyber security position. Key Responsibilities Undertake security risk assessments and develop risk mitigation plans and gap analyses. Produce Security Management Plans and security documentation supporting product development and assurance. Define and derive product security requirements , working directly with engineering teams on their implementation. Provide security … advice throughout product design, development, testing and manufacturing. Produce technical assurance artefacts including Security Cases, Security Operating Procedures, Testing Security Instructions and Key Management Plans . Liaise with internal and external security assurance authorities to demonstrate product compliance. Apply MOD Secure by Design principles throughout the engineering lifecycle. Work ...

GCP IAM / RBAC Engineer

Hiring Organisation
Reed
Location
London, South East England, United Kingdom
Employment Type
Full-Time
Salary
£475.00 per day
/RBAC Engineer to join its Data Platform team. This role sits at the intersection of cloud platform engineering, identity and access management, governance and security. The successful candidate will be responsible for implementing and improving access controls, governance frameworks and security practices across a large-scale Google Cloud … environment. Responsibilities Design and implement IAM and RBAC controls across GCP Manage service accounts, permissions and access governance Support data governance, classification and access management initiatives Implement and maintain least-privilege access models Conduct access reviews and support audit requirements Work with engineering teams to improve platform security ...

Vice President, Risk and Control - Digital Engineering

Location
Greater London, England, United Kingdom
department’s controls design and effectiveness, ensuring controls are proportionate and embedded in day‐to‐day department activity* Provide proactive assurance around risk management through appropriate data driven monitoring and through the implementation of structured sampling techniques to validate that controls are functioning as intended before failure* Educate … with industry and company standards* Work in partnership with the Digital Engineering Solutions and Services Product and Platform owners, challenging and advising on risk management for new products, processes and change programmes. Provide risk-based decision making, supporting the department to make informed, risk-based decisions by providing ...

Cyber Security Consultant

Hiring Organisation
Circle Group
Location
London, United Kingdom
Employment Type
Permanent, Work From Home
Salary
£70,000
security policies, procedures and governance frameworks. Establish and maintain risk registers and support security governance forums. Support incident response planning, tabletop exercises and crisis management activities. Provide advice across areas including vulnerability management, identity and access management, cloud security, security operations and supplier assurance. Support Secure … SDLC and broader security transformation initiatives. Provide vCISO/outsourced security management support where required. Design and facilitate client workshops, discovery sessions and stakeholder interviews. Translate technical security issues into clear business risks and practical recommendations. Produce high-quality, client-ready reports, assessments, roadmaps and presentations. Manage multiple client ...

Cyber Operations Analyst - Internal Applicants Only

Location
Greater London, England, United Kingdom
service-led banking powered by modern technology. Job Purpose Support the Bank's operational cyber security capability through cyber security monitoring, incident response coordination, vulnerability management, supplier assurance and operational reporting activities. To place the interests of customers at the centre of all activities … alerts, incidents and escalations, ensuring actions, decisions and outcomes are appropriately recorded and tracked. Act as Incident Coordinator during cyber security incidents, supporting incident management, communications, action tracking and post-incident activities. Maintain incident, vulnerability, threat intelligence and operational cyber security registers, ensuring records remain accurate ...

Security Engineer

Location
Greater London, England, United Kingdom
amongst its teams and divisions provides its customers with clear advantage, and its technology-led service provides access to all major exchanges, order-flow management via screen, voice and DMA, plus award-winning data, insights and analytics. The Technology Department delivers differentiation, scalability and security for the business. Technology … will be responsible for engineering, administering, and continually improving security capabilities across the Marex Group, with a primary focus on Identity Protection, Privileged Access Management, and associated access control environments. The role will support the secure management of privileged accounts, access workflows, credential rotation, platform onboarding, incident response ...

Information Security Manager

Location
Bedford, England, United Kingdom
Security responsibilities. Strong GRC and audit experience is essential. You'll need practical experience across ISO 27001, ISMS, internal/external security audits, risk management, policies, controls and compliance, combined with the technical credibility to work effectively with Infrastructure, IT Operations and Software Engineering teams. The Role Working closely … support and improve the ISMS and ISO 27001, lead/support security audits, risk and assurance activities, and work with technical teams across vulnerability management, patching, penetration testing, incident response and infrastructure security. You'll also have involvement across supplier assurance, Cyber Essentials, business continuity, disaster recovery, DPIAs ...

Application Security Specialist

Location
Greater London, England, United Kingdom
coding training, workshops and awareness sessions. Mentor development teams and promote security-first engineering practices. Drive adoption of secure development standards and methodologies. Threat & Vulnerability Management Support application vulnerability management activities. Assist development teams with vulnerability triage and remediation planning. Identify recurring weaknesses and opportunities … DAST and Software Composition Analysis (SCA) tools. Experience integrating security controls into CI/CD pipelines. Strong understanding of OWASP Top 10 and common vulnerability classes. Experience with API and web application security. Knowledge of threat modelling techniques and methodologies. Experience working closely with software engineering teams in enterprise ...

SOC Analyst

Location
Farnborough, England, United Kingdom
enables faster, safer decision‐making for critical operations. Your work may include: Leading shifts throughout 24/7 SOC Service Delivery Providing oversight and management to Junior Analysts Monitoring of Systems for Security Alerts, Intrusions or activity considered to be unauthorised, unexpected or illegal Responding to incidents, utilising … incidents to Tier 2 Incident Response Teams Review and develop existing security controls in line with a constantly growing technical environment Triage and Review Vulnerability Scanning Reports, feeding results back into technical teams Review Secure Configurations, feeding back into technical teams for remediations of issues Generate recurring service ...

Senior DevSecOps Engineer

Location
Greater London, England, United Kingdom
classifications and segmented development environments • Implement automated CI/CD security controls including static analysis, dependency scanning, container scanning, secrets detection, software composition analysis, vulnerability management, and policy enforcement • Champion a DevSecOps culture emphasizing security, reliability, deployability, and operational performance ownership Requirements BS or MS in Computer Science … understanding of the UK Ministry of Defence/NATO approach to DevSecOps and Secure by Design, including the integration of cyber security and risk management throughout the capability lifecycle Experience applying MOD security policies, security assurance processes, and technical security requirements to software intensive defence programmes Experience developing ...

Cyber Security Lead

Hiring Organisation
Chambers and Partners
Location
London, South East England, United Kingdom
Employment Type
Full-Time
Salary
Competitive salary
information security strategy, policies, standards, and procedures in alignment with business objectives and regulatory requirements. Lead the development and implementation of an Information Security Management System (ISMS), based on ISO 27001 Conduct regular security risk assessments, identify vulnerabilities, and recommend appropriate mitigation strategies. Provide expert advice and guidance … operation of security systems and tools, including firewalls, intrusion detection/prevention systems (IDS/IPS), antivirus, anti-malware, SIEM (Security Information and Event Management), vulnerability scanners, and data encryption solutions. Manage vulnerability management programs, including regular scanning, penetration testing, and remediation of identified weaknesses. Lead ...

Senior Application Engineer (SIEM)

Hiring Organisation
Hackajob Ltd
Location
Yeovil, Somerset, South West, United Kingdom
Employment Type
Permanent, Work From Home
service-level objectives. Contribute to application architecture, integration, and lifecycle activities under the guidance of senior engineers. Collaborate with stakeholders across engineering, service management, and business teams to resolve technical issues. Mentor junior engineers and specialists, supporting their development and promoting best practices. Participate in continuous improvement initiatives, including … platforms (e.g. SIEM, EDR, or similar) Ability to solve moderately complex application-related issues and contribute to secure, scalable solutions. Understanding of application lifecycle management, integration patterns, and secure-by-design principles. Strong communication and collaboration skills across engineering and business teams. A proactive mindset with a passion ...

Senior Application Engineer (SIEM)

Location
Yeovil, England, United Kingdom
service-level objectives.* Contribute to application architecture, integration, and lifecycle activities under the guidance of senior engineers.* Collaborate with stakeholders across engineering, service management, and business teams to resolve technical issues.* Mentor junior engineers and specialists, supporting their development and promoting best practices.* Participate in continuous improvement initiatives, including … platforms (e.g. SIEM, EDR, or similar)* Ability to solve moderately complex application-related issues and contribute to secure, scalable solutions.* Understanding of application lifecycle management, integration patterns, and secure-by-design principles.* Strong communication and collaboration skills across engineering and business teams.* A proactive mindset with a passion ...

Head of Cyber Protection

Location
Greater London, England, United Kingdom
home life, wherever possible. What you will do: Lead Metro Bank's Cyber Protection capability, including Cyber Risk Assessment, Cyber Awareness & Training, Identity & Access Management (IAM), and Data Loss Prevention (DLP). Define and deliver the Cyber Protection strategy and roadmap, ensuring alignment with the Bank's overall cyber … cyber security leadership role within a regulated financial services environment or similarly complex organisation. Demonstrable expertise in leading cyber protection, security engineering, security architecture, vulnerability management, identity and access management, or security operations functions. Strong track record of delivering significant cyber security control improvements, remediation programmes ...

OT Asset Engineer

Hiring Organisation
SGN
Location
Portsmouth, Hampshire, United Kingdom
Employment Type
Full-Time
Salary
£0 per annum
Employee Assistance Programme plus retail and leisure discounts & many more. R EQ5911 This is an exciting opportunity within our Operational Technology (OT) Asset Management Engineering team. The role is responsible for implementing the cyber security lifecycle processes, managing OT assets and ensuring the delivery of cyber security risk remediation … Standard for Operational Technology (OT) cyber security via SGN's framework of policy and procedures, enforcing the "Assess, Develop & Implement and Maintain" lifecycle approach. · Management and support of preventative work orders used to deliver OT patching campaigns, configuration management and password managementto ensure high levels of data integrity ...

IT Systems Engineer

Location
Kidlington, England, United Kingdom
infrastructure services in collaboration with Platform Engineering Support virtualised and on-premises infrastructure where it forms part of the corporate IT environment Support vulnerability remediation, endpoint security and technical cyber security controls Take an active role in security monitoring, vulnerability management and incident response Support the development … implementation of secure and resilient infrastructure services Maintain technical documentation, configuration records and operational procedures Deliver technical elements of onboarding, offboarding and user lifecycle management Support IT projects, infrastructure changes and technology deployments Identify opportunities to simplify, standardise and improve IT services in line with IT strategy and priorities ...

Lead DevSecOps Engineer

Hiring Organisation
F5 Consultants
Location
Greater Bristol Area, United Kingdom
development lifecycle Leading and mentoring DevOps and engineering teams Reviewing code, automation and IaC Improving platform reliability, observability and release processes Supporting governance, vulnerability management and compliance I’m interested in speaking with people who have experience across: DevOps, platform engineering or software engineering AWS or Azure Kubernetes … containerised environments Terraform and IaC CI/CD and GitOps Security scanning, vulnerability management and secrets management Technical leadership and engineering management Security Clearance and Sole UK Nationality is required due to the nature of the work. If you’re interested, please apply or message ...