asking that you attend the office a minimum of 1 day per week. About the Role We are seeking a highly motivated and experienced Vulnerability Management Engineer to join our Cyber Security team. As a Vulnerability Management Engineer, your primary responsibility will be to manage existing vulnerability … active role in improving existing processes. You will achieve this by creating automated solutions through collaboration with various technical teams. Responsibilities Develop and maintain vulnerability management tooling and solutions Implement automation to remove manual processes and increase efficiency Work with internal remediators to prioritise vulnerability management activities Process … vulnerability data to provide reports, insights and metrics, that aid in the risk-based approach to vulnerability management. Develop integrations for internal and external tools to capture data relevant to the vulnerabilityremediation process (e.g. by interacting with APIs) Ensure compliance with relevant security standards, frameworks More ❯
asking that you attend the office a minimum of 1 day per week. About the Role We are seeking a highly motivated and experienced Vulnerability Management Engineer to join our Cyber Security team. As a Vulnerability Management Engineer, your primary responsibility will be to manage existing vulnerability … active role in improving existing processes. You will achieve this by creating automated solutions through collaboration with various technical teams. Responsibilities Develop and maintain vulnerability management tooling and solutions Implement automation to remove manual processes and increase efficiency Work with internal remediators to prioritise vulnerability management activities Process … vulnerability data to provide reports, insights and metrics, that aid in the risk-based approach to vulnerability management. Develop integrations for internal and external tools to capture data relevant to the vulnerabilityremediation process (e.g. by interacting with APIs) Ensure compliance with relevant security standards, frameworks More ❯
Boston, Massachusetts, United States Hybrid / WFH Options
Digital Prospectors
defending complex digital environments from sophisticated threats. The successful candidate will be part of a dedicated team responsible for executing and advancing a comprehensive Vulnerability Management Program supporting mission-critical systems in a high-security environment. Essential Duties and Responsibilities (but not limited to): • Conduct proactive cyber monitoring and … vulnerability management activities across a diverse enterprise IT environment. • Support the execution of vulnerability scanning, analysis, reporting, and remediation efforts, using tools such as Tenable Security Center (or equivalent platforms). • Collaborate with cross-functional teams to drive vulnerabilityremediation plans and lead working groups … data to inform security posture and incident response. • Provide technical leadership and guidance for small project teams and collaborate on developing threat models and remediation strategies. • Deliver clear and actionable assessments of vulnerabilities and threats, with recommendations to mitigate operational and reputational risks. • Ensure alignment with security compliance frameworks More ❯
Vulnerability Management Lead – 107245 Base Location: Hybrid/UK based (core office in London) plus network of 20 offices nationally: www.kpmg88careers.co.uk/experienced-professional/#LeBlender.OfficeLocations The KPMG EWT function is a cornerstone of our business. We do work that matters to our local business and communities – supporting technical … regulatory upheaval. We've proudly stood beside the institutions and businesses which make the UK what it is. Why join KPMG EWT as a Vulnerability Management Lead? This role is in the Security Advisory and Assessment (SAA) team, within the KPMG UK Information Security function. The SAA team are … our clients and our regulators trust KPMG. What will you be doing? The role involves leading and being accountable for the end-to-end vulnerability management (VM) service. The vulnerability management service helps defend KPMG and its clients by ensuring scans of KPMG information assets are performed and More ❯
London, England, United Kingdom Hybrid / WFH Options
KPMG UK
Vulnerability Management Lead – 107245 Base Location: Hybrid/UK based (core office in London) plus network of 20 offices nationally: www.kpmg88careers.co.uk/experienced-professional/#LeBlender.OfficeLocations The KPMG EWT function is a cornerstone of our business. We do work that matters to our local business and communities – supporting technical … regulatory upheaval. We've proudly stood beside the institutions and businesses which make the UK what it is. Why join KPMG EWT as a Vulnerability Management Lead? This role is in the Security Advisory and Assessment (SAA) team, within the KPMG UK Information Security function. The SAA team are … our clients and our regulators trust KPMG. What will you be doing? The role involves leading and being accountable for the end-to-end vulnerability management (VM) service. The vulnerability management service helps defend KPMG and its clients by ensuring scans of KPMG information assets are performed and More ❯
contribute to the ongoing development of the cybersecurity monitoring framework. Additionally, you will monitor internal and external threats, report trends to management, and support vulnerabilityremediation efforts. Apply now! Are you excited about the IT Security Analyst position? We look forward to receiving your cover letter and CV. … contribute to the ongoing development of the cybersecurity monitoring framework. Additionally, you will monitor internal and external threats, report trends to management, and support vulnerabilityremediation efforts. Apply now! Are you excited about the IT Security Analyst position? We look forward to receiving your cover letter and CV. More ❯
London, England, United Kingdom Hybrid / WFH Options
Xcede
EU is seeking two Senior Wintel Engineers to join their Cloud Platform team. This is a high-impact role focused on automating patch management, vulnerabilityremediation, and enforcing CIS compliance within an on-premise environment. You’ll be working on a key project stream (CSVM), helping to shape … Key Responsibilities: Develop and maintain Chef Cookbooks for automating patching and compliance activities Implement infrastructure automation solutions in a Wintel server environment Support ongoing vulnerabilityremediation and CIS compliance initiatives Collaborate with cloud and security stakeholders across the platform team Contribute to process improvements and documentation Must-Have More ❯
Slough, England, United Kingdom Hybrid / WFH Options
JR United Kingdom
EU, is seeking two Senior Wintel Engineers to join their Cloud Platform team. This is a high-impact role focused on automating patch management, vulnerabilityremediation, and enforcing CIS compliance within an on-premise environment. You’ll work on a key project stream (CSVM), helping to shape and … Key Responsibilities: Develop and maintain Chef Cookbooks for automating patching and compliance activities Implement infrastructure automation solutions in a Wintel server environment Support ongoing vulnerabilityremediation and CIS compliance initiatives Collaborate with cloud and security stakeholders across the platform team Contribute to process improvements and documentation Must-Have More ❯
London, England, United Kingdom Hybrid / WFH Options
JR United Kingdom
EU, is seeking two Senior Wintel Engineers to join their Cloud Platform team. This is a high-impact role focused on automating patch management, vulnerabilityremediation, and enforcing CIS compliance within an on-premise environment. You’ll be working on a key project stream (CSVM), helping to shape … Key Responsibilities: Develop and maintain Chef Cookbooks for automating patching and compliance activities Implement infrastructure automation solutions in a Wintel server environment Support ongoing vulnerabilityremediation and CIS compliance initiatives Collaborate with cloud and security stakeholders across the platform team Contribute to process improvements and documentation Must-Have More ❯
London, England, United Kingdom Hybrid / WFH Options
KPMG UK
regulatory upheaval. We've proudly stood beside the institutions and businesses which make the UK what it is. Why join KPMG EWT as a Vulnerability Management Lead? This role is in the Security Advisory and Assessment (SAA) team, within the KPMG UK Information Security function. The SAA team are … our clients and our regulators trust KPMG. What will you be doing? The role involves leading and being accountable for the end-to-end vulnerability management (VM) service. The vulnerability management service helps defend KPMG and its clients by ensuring scans of KPMG information assets are performed and … complete set of services provided by all KPMG UK Technology services, or third-party suppliers and troubleshoot any issues and escalate as appropriate. The Vulnerability Management Lead will: Develop the service, using automation, digitisation, security by design and a customer focussed approach as appropriate, and formulate a service strategy More ❯
security vulnerabilities (e.g., XSS, SSRF, CSRF, CORS, SQL Injection, broken authentication/authorization, encryption flaws). Provide expert guidance on secure coding practices, common vulnerability classes (e.g., OWASP Top 10), and threat modeling for modern web applications. Conduct security reviews of design and architecture documents; lead threat modeling exercises … Amass, Nmap). Assess and mitigate static (SAST) and dynamic (DAST) vulnerabilities across services and components. Evaluate, implement, and maintain security tooling to support vulnerability management, secure development, and event detection workflows. Define and track metrics related to application security, vulnerabilityremediation, detection coverage, and incident response … log analysis, SIEM usage/configuration, threat hunting, and querying tools to support detection and response. Familiarity with static and dynamic analysis techniques and vulnerability mitigation. Strong understanding of modern cloud platforms-especially AWS-and cloud-native security practices. Experience conducting penetration tests, vulnerability assessments, and network scans. More ❯
London, England, United Kingdom Hybrid / WFH Options
AltFi Ltd
or market requirements Perform threat modeling, secure code reviews, and secure design reviews for high-risk applications, evaluate new technology stacks and frameworks Perform vulnerability research, serve as technical security/risk advisor for new technology/applications developed by S&P Ratings Determine testing requirements and develop strategies … to automate security testing using a variety of scripting and open source tools Assist developers in remediating vulnerability findings by providing line-by-line guidance Coach development teams on security disciplines like Threat modeling, Security code reviews, provide training and education to developers on software security best practices Maintain … and control design Experience architecting and leading security for Cloud native applications In depth knowledge of network security, authentication and authorization Advanced understanding of vulnerability exploitation chaining, and vulnerabilityremediation Demonstrated expertise in product/application security architecture – Service oriented architecture (SOA), Network security, application security, web More ❯
Glasgow, Scotland, United Kingdom Hybrid / WFH Options
iberdrola
Global Application Cybersecurity team, ensuring standards and best practices are fully integrated into the Software Development Lifecycle. Within this role, you’ll lead on vulnerability management, promoting the adoption and execution of the global vulnerability management processes and controls. This includes: Inventorying of logical components and dependencies of … business solutions Proactively discovering vulnerabilities Coordinating the execution of scanning, pen testing, or in general the activities and services of vulnerability identification Vulnerability assessment Remediation and mitigation of vulnerabilities Solution verification Reporting Contributing to the evolution of the process for vulnerability management. Lead security assessments of … of cybersecurity threats and associated attack techniques. Design knowledge: modelling of components, data, interfaces, etc. Threat analysis and modelling Knowledge of web application security Vulnerability discovery techniques and vulnerability lifecycle scanning and management. Knowledge of application security architecture: segmentation, API Gateway, Encryption, Privileged Account Management, WAF, publishing, event More ❯
London, England, United Kingdom Hybrid / WFH Options
THAMES WATER UTILITIES LIMITED
adoption. Evaluate and recommend security technologies, tools, and vendors. Investigate vulnerabilities and implement mitigation actions. Liaise with technology and business teams regarding patching and vulnerability remediation. Develop and maintain cybersecurity engineering dashboards and metrics. Provide tooling support and maintenance for Identity & Access Management, Privileged Access Management, Endpoint Security, and More ❯
implementing security infrastructure including SIEM, WAFs, Firewalls and EDR/AV Working with engineering teams to ensure best practices including secure development, security testing, vulnerabilityremediation and supply chain security Working with DevOps on our Cloud Security Posture, ensure appropriate IAM structures are in place, and review, triage … and remediate (or coordinate remediation of) cloud infrastructure threats and findings Work closely with on Governance, Risk and Compliance to maintain certifications (e.g. ISO 27001), and identify opportunities for automation - improving efficiency and coverage. You may be right for this role if you: Have hands-on experience in one More ❯
Bristol, England, United Kingdom Hybrid / WFH Options
Ripjar
diligence and assurance processes. Operational Security & Infrastructure Partner with infrastructure and engineering teams to drive secure architecture, code, and systems. Identify vulnerabilities and lead remediation in hybrid environments (AWS, private cloud). Ensure security principles are implemented and continuously improved. Culture, Education, and Awareness Embed a security-first culture More ❯
London, England, United Kingdom Hybrid / WFH Options
Ripjar
diligence and assurance processes. Operational Security & Infrastructure Partner with infrastructure and engineering teams to drive secure architecture, code, and systems. Identify vulnerabilities and lead remediation in hybrid environments (AWS, private cloud). Ensure security principles are implemented and continuously improved. Culture, Education, and Awareness Embed a security-first culture More ❯
London, England, United Kingdom Hybrid / WFH Options
Kroo Bank
include: Security Analysis and Improvement: Continuously analyse our security systems for potential improvements, ensuring that our defences remain at the forefront of cybersecurity practices Vulnerability Management: Proactively identify, assess, and remediate security vulnerabilities to maintain the integrity and confidentiality of our customer data Security Automation: Automate security processes and More ❯
London, England, United Kingdom Hybrid / WFH Options
Free-Work UK
using tools like SIEM, Sophos MTR, and Splunk. Maintain system security through configuring firewalls, VPNs, and intrusion detection systems, and ensure timely patching. Manage vulnerabilityremediation based on penetration tests and risk assessments. Conduct penetration testing and forensic analysis of security incidents. Stay updated on security technologies and More ❯
include: Security Analysis and Improvement: Continuously analyse our security systems for potential improvements, ensuring that our defences remain at the forefront of cybersecurity practices. Vulnerability Management: Proactively identify, assess, and remediate security vulnerabilities to maintain the integrity and confidentiality of our customer data. Security Automation: Automate security processes and More ❯
London, England, United Kingdom Hybrid / WFH Options
Kroo Bank Ltd
include: Security Analysis and Improvement: Continuously analyse our security systems for potential improvements, ensuring that our defences remain at the forefront of cybersecurity practices. Vulnerability Management: Proactively identify, assess, and remediate security vulnerabilities to maintain the integrity and confidentiality of our customer data. Security Automation: Automate security processes and More ❯
Liverpool, Merseyside, United Kingdom Hybrid / WFH Options
Maxwell Bond
Desirable Technical Stack: LAN/WAN/DNS networking Microsoft Windows Server & Linux administration Azure IaaS & PaaS services Office 365 & Intune Security tools and vulnerabilityremediation Virtualisation (VMware/Hyper-V) If you’re keen on getting your details over to me for the Infrastructure Engineer role, please More ❯
be doing: Act as the subject matter expert for network security, providing technical leadership across Cyber Security and BTS teams. Coordinate the triage and remediation of vulnerabilities across network infrastructure—ensuring timely patching of switches, firewalls, and related assets. Manage vendor and third-party relationships to ensure secure, compliant … solid understanding of information security frameworks and standards such as ISO 27001, NIST, and general security architecture principles. Experience managing infrastructure patching processes and vulnerabilityremediation within complex environments. Skilled in analytical and problem-solving efforts, with the ability to make informed decisions. An ability to effectively collaborate More ❯
MS 365 Apps The ideal candidate will possess a solid understanding of CIS & NCSC security best practices, along with expertise in Pen Testing and Vulnerability remediation. Requirements Strong technical skills in VMware, Veeam, HPE, SCCM, and more. Confidence in on-site client support in the financial industry. Effective communication More ❯
London, England, United Kingdom Hybrid / WFH Options
everywhen
Purpose of the Role This exciting remote based Infrastructure Security Engineer opportunity has arisen to join our Infrastructure Engineering team to focus primarily on remediation of security vulnerabilities and hardening of all aspects of the security stack. You will share tool sets, projects and methodologies with the team and … Line Manager, you will develop your own objectives but focus on all of the following and more: Take ownership of efforts related to the remediation of Everywhen security vulnerabilities across a wide number of systems, operating systems and applications. Work closely with the Cyber Security Team, focussing on response … and remediation of cyber security incidents. Be proactive and analytical of main cyber security operations such as vulnerability management, threat hunting and patching. Engineer, implement and monitor security measures for the protection of computer systems, networks and information. Scope, plan, document and implement technologies, as required, to the More ❯