Associate Director of Vulnerability Management
About The Role Grade Level (for internal use): 12 S&P Global Corporate The Role: Associate Director – Vulnerability Management The Team: You will be part of the Corporate Cyber Security team that develops and oversees the company's security program, ensuring the company is protected from existing and emerging threats. This team operates at the forefront of cybersecurity innovation, working collaboratively across global markets to maintain the highest security standards. Responsibilities And Impact
- Lead and execute comprehensive cybersecurity strategy specific to Vulnerability and exposure Management, ensuring alignment with business objectives and regulatory requirements across global operations
- Demonstrate strong technical understanding and knowledge of cloud, mobile and web software technologies comprised in large enterprise and commercial IT environments
- Oversee threat detection, incident response, and vulnerability management programs, driving continuous improvement in security posture and resilience
- Work on vulnerability management tools/scanners and define the policies as needed.
- Manage relationships with key stakeholders, security vendors, and regulatory bodies, ensuring effective communication of security initiatives and compliance status
- Build and mentor a high-performing cybersecurity team, fostering professional development and establishing best practices for security operations
- Drive security awareness programs and policy development, ensuring organization-wide understanding and adherence to security protocols and emerging threat landscapes
- Bachelor's degree in Cybersecurity, Information Security, Computer Science, or related technical field with 8+ years of progressive cybersecurity leadership experience
- Proven track record in developing and implementing enterprise-wide security strategies, with experience managing security operations in complex, multi-location environments
- Strong expertise in security frameworks and standards such as NIST, ISO 27001, or SOC 2, with demonstrated experience in regulatory compliance and audit management
- Exceptional leadership and communication skills, with ability to present complex security concepts to executive leadership and cross-functional teams effectively
- Advanced degree (Master's) in Cybersecurity, Information Security, or MBA with technology focus, along with relevant industry certifications such as CISSP, CISM, or CISSP
- Experience in financial services or highly regulated industries, with knowledge of regulatory requirements and audit processes specific to financial institutions
- Hands-on experience with cloud providers such as AWS, Azure, or GCP including multi-cloud vulnerability management strategies
- Hands-on experience with tools like Nessus, Qualys, Wiz would be an added advantage
- Demonstrated success in vendor management and strategic partnerships, with experience evaluating and implementing enterprise security solutions across global organizations
- Health & Wellness: Health care coverage designed for the mind and body.
- Flexible Downtime: Generous time off helps keep you energized for your time on.
- Continuous Learning: Access a wealth of resources to grow your career and learn valuable new skills.
- Invest in Your Future: Secure your financial future through competitive pay, retirement planning, a continuing education program with a company-matched student loan contribution, and financial wellness programs.
- Family Friendly Perks: It’s not just about you. S&P Global has perks for your partners and little ones, too, with some best-in class benefits for families.
- Beyond the Basics: From retail discounts to referral incentive awards—small perks can make a big difference.
- Company
- S&P Global
- Location
- London, UK
- Posted
- Company
- S&P Global
- Location
- London, UK
- Posted