376 to 400 of 848 Vulnerability Management Jobs in the UK

InfoSec Engineer

Location
Greater London, England, United Kingdom
Partner with Engineering to embed secure‐by‐design principles into development workflows Build, manage, and continuously improve security policies, standards, and controls Lead risk management, threat modeling, and vulnerability management processes Oversee incident detection, response, and recovery planning Drive security awareness and training across the company Establish … manage identity and access management (IAM), SSO, and device security across the organisation Manage audits, certifications, and relationships with external assessors Establish metrics and reporting to provide visibility into security posture and risk Hire, develop, and lead a high‐performing security team as the company grows What ...

DevSecOps Engineer

Location
Greater London, England, United Kingdom
Azure DevOps CI/CD pipelines, including static analysis, dependency scanning, and IaC scanning. Ensure Kubernetes workloads follow best practices: RBAC, network policies, secrets management, image security, and ingress protections. Support secure configuration of Azure VMs hosting legacy or specialised products. Vulnerability Management Operate and enhance container … vulnerability scanning. Monitor CVEs relevant to Centellic’s stack and coordinate remediation activities with engineering teams. Perform regular reviews of Terraform modules, container images, Helm charts, and AKS configurations to identify misconfigurations and risks. Monitoring, Detection & Incident Response Work with monitoring tooling (e.g., Datadog or Azure Monitor) to detect ...

Endpoint Engineer

Hiring Organisation
Fitch Ratings
Location
London, UK
Employment Type
Full-time
team includes the Chief Data Office, Chief Software Office, Chief Technology Office, Emerging Technology, Shared Technology Services, Technology, Risk and the Executive Program Management Office (EPMO). Driven by our investment in cutting-edge technologies like AI and cloud solutions, we're home to a diverse range of roles … About the role: The Endpoint Engineer is a key technical contributor within the global infrastructure organization, providing advanced (Tier 2/3) support, endpoint management, and platform engineering across Windows, Microsoft Intune, and related technologies. This role delivers secure, reliable, and frictionless user experiences through modern device management ...

Senior Information Security Analyst

Hiring Organisation
Lumentum
Location
Towcester, West Northamptonshire, Northamptonshire, United Kingdom
Employment Type
Permanent
bring You'll have experience in several of the following areas: Security Operations, Security Incident Response or Security Engineering. Security Information and Event Management (SIEM) and Endpoint Detection & Response (EDR) technologies. Identity and Access Management, including MFA, Conditional Access and Privileged Access. Data Loss Prevention (DLP) technologies … policy management. Vulnerability Management and security hardening. Security architecture reviews and technical assurance. Threat detection, investigation and root cause analysis. Security automation, scripting or workflow improvement. You'll also be comfortable working with recognised security frameworks such as NIST CSF, ISO 27001, CIS Controls or the NCSC Cyber ...

Information Security Officer - Post Trade, LCH Ltd

Hiring Organisation
London Stock Exchange Group
Location
London, UK
Employment Type
Full-time
back into risk appetite. The role will best suit an experienced Information Security Manager with extensive experience gained from having previously operated within Senior Management level InfoSec/Cyber roles within the FS or FMI industries. The successful candidate must be a subject matter expert in Information Security … security technologies/controls. In addition to a solid Security Governance Risk and Compliance (Security-GRC) skillset, a prior background in information security engineering, vulnerability management, security architecture, and security operations will be advantageous in this role given the various levels of stakeholders as well as the tech ...

Security GRC Analyst

Hiring Organisation
FundApps
Location
Greater London, United Kingdom
Employment Type
Full Time
Salary
60000 to 65000 GBP Annually
secure, resilient and trustworthy as we continue to grow. This role has a broad scope, as you will work across security operations, access reviews, vulnerability management, supplier assurance, security awareness, audits, incident response, risk management and the day-to-day running of our Information Security Management … Recurring access reviews across key business systems, checking that permissions are correct and following up when something looks off. Helping maintain FundApps’ Information Security Management System, including security objectives, risk registers, management review inputs and follow-up actions. Working with Engineering, IT, Legal, Finance and People to make ...

Senior Information Security Analyst, UK

Location
Greater London, England, United Kingdom
internal teams.* Analyze and validate potential security incidents, ensuring accurate classification, documentation, and escalation.* Perform daily operational information security tasks, including the management and resolution of ServiceNow incidents assigned to the Information Security team.* Support incident response efforts through investigation, coordination, and detailed documentation of findings.* Participate occasionally … appropriate logging, monitoring, and alerting capabilities are in place across systems.* Work closely with the IT Service Desk, Operations, and development teams to support vulnerability identification and ensure remediation is prioritised and delivered within agreed SLAs.* Work closely with global and regional stakeholders to support consistent security operations ...

Infrastructure Engineer

Location
Cheltenham, England, United Kingdom
organisational and customer environments. Successful candidates will be capable of both autonomous and collaborative work, demonstrate an aptitude for problem-solving, possess excellent time-management skills, and have a genuine desire to learn new tools and technology stacks. Ideal candidates will also have experience or interest in networking, containerisation … support of deployed IT infrastructure. Timely troubleshooting and resolution of reported IT Infrastructure issues. Regular system health monitoring and maintenance, including backups, patch-management/vulnerability management, and software/hardware upgrades in line with lifecycle management. Documentation: Creation, development, and maintenance of comprehensive documentation ...

Head of Information Security

Location
Greater London, England, United Kingdom
stakes customer procurement reviews, vendor risk assessments (DDQs), and defense customer evaluations. Oversee Security Operations: Build and manage internal incident response capabilities, continuous monitoring, vulnerability management, and employee security awareness programs. What we are looking for Progressive Experience: 6–10 years in cybersecurity (e.g., Lead Security Architect, SecOps … Track Record: Proven experience taking a high‐growth technology company through SOC 2 Type II or ISO 27001 certifications from start to finish. Stakeholder Management: Exceptional ability to bridge technical security requirements with business strategy for executives, developers, and defense customers alike. Certifications/Credentials: CISSP, CISM, CCSP ...

IT Infrastructure & Security Lead

Location
Bradford, England, United Kingdom
influential skills to make gradual steps toward a future Head of IT position. The successful candidate will combine strong technical capability with excellent stakeholder management skills, bringing structure, security discipline, and strategic direction to an IT environment that is already functional but continuing to mature. The role will inherit … broader operational standards such as ISO9001. Implement and maintain security controls aligned with recognised frameworks (e.g. ISO27001, Cyber Essentials Plus, NIST). Lead vulnerability management, patching, endpoint protection, SIEM, and threat monitoring activities. Manage identity and access controls, MFA, privileged access, and conditional access policies. Lead incident response ...

SOC Lead SOC Manager London Hybrid £95k

Hiring Organisation
Circle Group
Location
London, United Kingdom
Employment Type
Permanent
Salary
£90,000
automation, orchestration and use of technology. Supporting the implementation and adoption of SOAR and other automation capabilities. Working alongside other MSSP services such as Vulnerability Assessment, Vulnerability Management, MDR, SIEM and incident response . Improving processes, procedures, playbooks and operational standards. Developing and mentoring the existing ...

Cyber Security & Infrastructure Engineer

Hiring Organisation
Adria Solutions
Location
Newcastle-upon-Tyne, Tyne and Wear, North East, United Kingdom
Employment Type
Permanent
Salary
£50,000
activities Conduct forensic investigations and contribute to threat detection and intelligence activities Develop and refine security monitoring, detection rules and use cases Carry out vulnerability scanning and support remediation and patch management Contribute to penetration testing and application security testing Secure and maintain Microsoft Azure cloud environments Implement … maintain Identity and Access Management (IAM) solutions Support the security of Microsoft 365, Exchange Online and Intune environments Ensure infrastructure and applications align with appropriate security standards and best practice Work with frameworks and standards including Cyber Essentials, ISO 27001, SOC 2, GDPR and NCSC guidance Apply security principles ...

Cyber Security Engineer, M365 Security, ISO27001, COR7671

Hiring Organisation
Corriculo Ltd
Location
Basingstoke, Hampshire, South East, United Kingdom
Employment Type
Permanent, Work From Home
Salary
£50,000
will sit at the heart of the Group IT Services function, taking ownership of day-to-day security operations alongside longer-term compliance and vulnerability management activity. You will monitor and respond to alerts and incidents, gather and act on threat intelligence, and manage the security ticket queue … ensure timely resolution. Beyond reactive work, you will conduct penetration testing, drive vulnerability remediation across the infrastructure and end-user estate, and maintain endpoint protection and identity and access management configurations. The Cyber Security Engineer will also play a key advisory role, contributing to change request approvals, project ...

Information Security Manager

Hiring Organisation
Reed Technology
Location
Cambridge, Cambridgeshire, East Anglia, United Kingdom
Employment Type
Permanent
technology used by people across international markets. We are seeking an experienced Information & Cybersecurity Manager to lead information security, product cybersecurity and cyber risk management across a growing, highly regulated technology environment. This is a unique opportunity to become the organisation's security subject matter expert, taking ownership … approach, helping strengthen existing security practices while embedding cybersecurity throughout the software and product development lifecycle. Key Responsibilities Maintain and improve the Information Security Management System (ISMS), policies, procedures and controls. Lead cybersecurity risk assessments, threat modelling and security reviews. Oversee penetration testing, vulnerability management and remediation ...

Senior Security Engineer - 6 month FTC

Location
Greater London, England, United Kingdom
work effectively with IT; development and business teams and communicate technical risks and recommendations clearly. The role includes participation in incident, change and problem management, with some out-of-hours work required for planned change, maintenance or urgent security response. Education, Skills & Experience Must Have Extensive hands-on cyber … security knowledge. Proven ability to design, configure, implement and improve security technologies, controls, tooling and processes. Experience with SIEM technologies, security monitoring, incident response, vulnerability management, patch compliance, server security and endpoint security. Ability to work independently, take ownership of technical deliverables and collaborate effectively with IT, Development ...

Platform Operations Manager

Location
Greater London, England, United Kingdom
Senior IT Operations Manager A leading financial services organisation is seeking an experienced IT Operations Manager to lead the delivery, resilience and operational management of enterprise infrastructure platforms across cloud and on-premise environments. Experience Required Proven leadership of Infrastructure, Platform Operations or IT Operations teams. Experience managing large … scale hybrid cloud and on-prem infrastructure environments. Strong background in automation, operational excellence and infrastructure transformation. Expertise in incident management, disaster recovery, resilience testing and business continuity. Vendor, supplier and budget management experience. Experience supporting highly available, business-critical environments. Prior experience in Trading, Asset Management ...

Senior Infrastructure, Cloud & Cyber Security Engineer

Location
Norwich, England, United Kingdom
licensing, governance and Modern Workplace solutions. Lead adoption of new Microsoft technologies, collaboration tools, productivity solutions and M365 security best practice. Microsoft Intune & Endpoint Management Own Microsoft Intune, Windows Autopilot, endpoint security, device compliance and configuration management. Manage application deployment, MDM/MAM, device lifecycle, patching and operational compliance. … environments, including virtual machines, storage, networking, backup and recovery. Support hybrid cloud, migration, automation, resilience, disaster recovery, performance, security and cost optimisation. Identity & Access Management Administer Microsoft Entra ID, including Conditional Access, MFA, Identity Governance, PIM, RBAC and SSO. Manage user lifecycle processes, access controls and secure identity services ...

Senior Cyber Threat Detection and Response Analyst

Location
Portsmouth, England, United Kingdom
hunting to identify emerging threats and vulnerabilities. Analysing security alerts, logs and telemetry data to detect malicious activity. Collaborating with Threat Intelligence, Security Assurance, Vulnerability Management and IT Operations teams to strengthen cyber resilience. Driving continuous improvement of detection capabilities, response processes and cyber defence strategies. This role … Security Operations, Incident Response or Threat Detection environments. Demonstrable experience investigating and managing complex cyber security incidents. Strong knowledge of Security Information and Event Management platforms, Endpoint Detection and Response technologies, and Threat Detection and Response solutions. Experience analysing logs, alerts, security telemetry and security incident data. Strong understanding ...

Associate Solutions Engineer

Location
Greater London, England, United Kingdom
digital world by ensuring the security, privacy, and authenticity of every interaction. Our AI-powered DigiCert ONE platform unifies PKI, DNS, and certificate lifecycle management, to secure infrastructure, software, devices, messages, AI content and agents. Learn why more than 100,000 organizations, including 90% of the Fortune 500, choose … server OS configuration, TCP/IP networking hardware, protocols, LAN and WAN technologies & configurations, and network design) and/or IS (ideally PKI, firewall management, IDS & IPS, vulnerability management, and network scanners), in engineering, administration or support roles Familiarity with cryptographic principles, digital certificates, and PKI concepts. ...

Cloud Operations Manager

Location
City Of London, England, United Kingdom
contribute... Key Accountabilities Own the operational performance, availability, capacity and resilience of cloud platforms and hosted services. Lead cloud incident, problem, change and event management, ensuring timely restoration, clear communication and effective root-cause resolution. Maintain operational controls, standards, runbooks and support models aligned with IT service management and engineering practices. Ensure cloud environments comply with security, risk, audit, data protection and regulatory requirements. Own and maintain vulnerability management processes to protect the estate. Manage cloud consumption, budgets, forecasts and optimisation plans, embedding effective FinOps practices. Oversee service providers and technology partners, holding them accountable ...

Secuirty & Infrastructure Engineer (contract)

Location
United Kingdom
delivery lifecycle. Produce and maintain high-quality technical documentation, including designs, configuration baselines, build guides, operational procedures and test evidence. Support technical assurance activities, vulnerability assessments, risk management and security compliance reviews. Work with vendors to evaluate, deploy and validate technologies against functional, interoperability and security requirements. Develop … guidance. Knowledge of Endpoint Detection and Response (EDR/XDR) technologies. Experience integrating SIEM platforms, centralised logging, telemetry and security monitoring solutions. Understanding of vulnerability management, remediation processes and configuration compliance. Desirable Experience Experience working with FMN standards, NATO interoperability requirements or Defence networking architectures. Knowledge of Zero ...

SENIOR INFORMATION ASSURANCE ENGINEER

Location
Cambridge, England, United Kingdom
undertake occasional travel across the UK, including London and customer sites, as required. Essential Skills and Experience Proven experience delivering Information Assurance, risk management, and security assurance within Defence, Government, Intelligence, or other highly regulated environments. Strong understanding of NIST RMF/CSF, ISO 27001, and Government security frameworks … artefacts such as SyOPs, RMADs, Security Impact Assessments, risk assessments, and accreditation evidence. Experience leading assurance initiatives, audits, control assessments, incident response activity, and vulnerability management using tools such as Nessus, Trivy, Tenable, or similar platforms. Ability to brief and influence senior stakeholders, mentor assurance practitioners, prioritise competing ...

Senior Information Assurance Engineer Leidos

Location
United Kingdom
undertake occasional travel across the UK, including London and customer sites, as required. Essential Skills and Experience Proven experience delivering Information Assurance, risk management, and security assurance within Defence, Government, Intelligence, or other highly regulated environments. Strong understanding of NIST RMF/CSF, ISO 27001, and Government security frameworks … artefacts such as SyOPs, RMADs, Security Impact Assessments, risk assessments, and accreditation evidence. Experience leading assurance initiatives, audits, control assessments, incident response activity, and vulnerability management using tools such as Nessus, Trivy, Tenable, or similar platforms. Ability to brief and influence senior stakeholders, mentor assurance practitioners, prioritise competing ...

Senior Security Platform Engineer (m/f/d)

Location
Hemel Hempstead, England, United Kingdom
overall Global Data Centers Office of Information Security (GDC-OIS) team. This role is critical in improving, developing and maintaining IT/OT vulnerability management programs and processes. This role performs and leads important tasks specialized at threat hunting, SIEM/SOAR, Network Security and other operational security … leadership in IT/OT environments with required expertise inICS and SCADA systems. Leads the administration and optimization of enterprise security platforms, overseeing lifecycle management including break-fix, patching, version upgrades, and integration with broader security ecosystems. Directs complex security incident response efforts across multiple vectors-endpoint protection ...

Principal DevSecOps Engineer

Location
Filton, England, United Kingdom
continuously improve DevSecOps practices across the delivery teams, including:Secure, automated CI/CD pipelinesSecurity scanning integrated into build, test and deployment workflowsVulnerability lifecycle management, including allowlist processes and risk acceptance where required and secrets management and identity/access management;Policy enforcement for workloads, container images … leading others):CI/CD and GitOps (e.g. GitHub Actions, Argo CD, Argo Rollouts)Security and compliance tooling (e.g. Trivy scanning and vulnerability management, HashiCorp Vault, cert-manager)Containers and orchestration (e.g. Docker, AWS EKS) ; Infrastructure as Code (e.g. Terraform)Observability (e.g. Grafana, Loki) ;Scripting and automation (e.g. ...