576 to 600 of 889 Vulnerability Management Jobs in the UK

Director, Senior Security Architect

Location
Greater London, England, United Kingdom
mobile, FIX, and trading platforms.* Lead complex global security initiatives, build custom AI-powered tooling to maximize efficiency and scale the cybersecurity program.* Assess vulnerability risks, deliver actionable recommendations across all technical levels, and track health metrics and KPIs for executive reporting.* Drive high-impact projects and adapt … Azure, or GCP).* Proficient in programming languages like C/C++, Java, JS, Python, Go, or Rust* Possess a deep understanding of common vulnerability frameworks (OWASP Top 10, SANS CWE Top 25).* Solid grasp of enterprise software development, Agile, CI/CD pipelines, and security tooling (SAST ...

GRC Senior Analyst

Location
Greater London, England, United Kingdom
risk to business value with a practical, adaptable and innovative approach, then this is the role for you. Key Responsibilities Risk Management: Work closely with technology teams and clients to develop an accurate and current understanding of the risk picture, and articulate and report on it consistently and effectively … measurable improvements in control efficacy and analyst capacity. Core GRC Services: Contribute to and mature the core services we provide, including third-party risk management, the policy and standards framework, and security awareness and training content, making each scalable, measurable and automated wherever practical. Function Development: Support the development ...

Infrastructure Engineer

Hiring Organisation
Access Computer Consulting
Location
Cardiff, South Glamorgan, United Kingdom
Employment Type
Contract
Contract Rate
£550/day
secure and resilient infrastructure within a Central Government environment. Strong experience required across: Linux Terraform AWS Docker Bash/Python Infrastructure security and hardening Vulnerability management Automation and configuration management You'll be responsible for building and maintaining secure infrastructure, automating provisioning and configuration, and improving platform ...

Cyber Incident Responder - OT Technology

Location
West Midlands, England, United Kingdom
genuine ownership over strategy, tooling, governance and incident response for OT/IoT environments. You'll work cross-functionally with Threat Intelligence, Incident Response, Vulnerability Management, GRC and Security Architecture, as well as engineering and site teams, to embed proportionate, pragmatic security controls across operational environments — while also … gaps and vulnerabilities across operational environments Evaluate, recommend and support procurement of OT/IoT security technologies and services Lead implementation, integration and ongoing management of selected security solutions Develop OT/IoT security policies, standards, procedures and governance processes Establish security monitoring use cases, alerting requirements and detection ...

Senior Audit Manager, Applications & Integrated Audit

Location
Greater London, England, United Kingdom
Analytics business. Act as the application audit domain expert within audit teams, providing insight on application architecture, business logic, automated processing, data flows, access management, configuration, change governance, resilience, monitoring and security controls throughout the audit lifecycle. Support audit planning and scoping by identifying application-related risks, emerging technology … meetings, ensuring consistency to the Internal Audit “no surprises” approach. Role Responsibilities Application Risk & Control Assessment: Evaluate control environments across key domains, including Access Management, Monitoring and Logging, Application Configuration, Organisational Change, Business Logic and Automated Processing, Data Governance and Integrity, Resilience and Continuity and Application Security Assess application ...

Group Head of Information Security & Cyber Operations

Hiring Organisation
William Scott Consulting Ltd
Location
Chalfont St. Peter, Buckinghamshire, United Kingdom
Employment Type
Permanent
Salary
GBP 115,000 - 125,000 Annual
Information Security and Cyber Operations function, owning the development and delivery of the cyber security strategy and roadmap. That spans cyber operations and incident management; security risk, governance and compliance; cyber resilience and business continuity; security assurance; tooling and operational capability; and the continued development of the team. … oversee areas including MDR/XDR, security monitoring, threat detection and vulnerability management, whilst operating across regulatory and contractual security requirements, including Cyber Essentials Plus. And when significant cyber incidents occur, you'll be expected to lead. Calmly. Credibly. And with the judgement to know what matters most. ...

Group Head of Information Security & Cyber Operations

Hiring Organisation
William Scott Consulting Ltd
Location
Commutable from: Oxford, Beaconsfield, London, Uxbridge, Gerrards Cross, Buckinghamshire, United Kingdom
Employment Type
Permanent
Salary
£115000 - £125000/annum £115,000 - c.£125,000 p.a. + benef
Information Security and Cyber Operations function, owning the development and delivery of the cyber security strategy and roadmap. That spans cyber operations and incident management; security risk, governance and compliance; cyber resilience and business continuity; security assurance; tooling and operational capability; and the continued development of the team. … oversee areas including MDR/XDR, security monitoring, threat detection and vulnerability management, whilst operating across regulatory and contractual security requirements, including Cyber Essentials Plus. And when significant cyber incidents occur, you'll be expected to lead. Calmly. Credibly. And with the judgement to know what matters most. ...

IT Architect - Digital, Data and Technology (DDaT) - Staffs

Hiring Organisation
Experis
Location
Shropshire, United Kingdom
Employment Type
Permanent
Salary
£63000/annum Extensive Benefits
/Azure Active Directory Infrastructure & Virtualisation Technologies Application and Systems Integration Network Architecture & Security, Cisco, HP and enterprise networking environments Security, Firewalls, Threat & Vulnerability Management Experience across software development, databases, remote device management and enterprise infrastructure environments would be highly advantageous. Additional Information: Please note that successful … applicants will be required to obtain NPPV Level 3 (Non-Police Personnel Vetting) and Management Vetting prior to commencing employment. As part of the interview process, candidates will be expected to demonstrate their architectural experience and approach through a presentation and technical discussion. Relevant certifications such as TOGAF, ITIL ...

Lead Engineer

Location
United Kingdom
with excellent communication skills Expert-level Windows desktop and server troubleshooting experience Extensive experience with Microsoft 365 administration and troubleshooting, including Hybrid environments Server management experience – Hyper‐V, backups and hardware The right mindset to understand how a whole site fits together, from internet connection to routers, switches … primarily in the North East Overall, a well-rounded skillset with the desire to learn more and improve daily Desirable skills and experience VoIP management and troubleshooting experience Experience with vulnerability management and Cyber Essentials/Cyber Essentials Plus assessments Migration experience – On‐Prem to cloud, server ...

Sr. Security Control Assessor

Location
Romsley CP, England, United Kingdom
practices and procedures; knowledge of current security tools available; different communication protocols; encryption techniques/tools; secure system architecture, system engineering, system administration, configuration management, or agile application development experience. Must be fully cloud proficient (AWS, Azure, Google). Experienced performing FedRAMP assessments and assessments of systems hosted … artifacts (i.e., Security Plans, Contingency Plan, Contingency Plan Test, e- Authentication workbook, FIPS 199 workbook, etc.). Proficient at interpreting scan results from various vulnerability and compliance tools such as MicroFocus Fortify SCA and WebInspect, Tenable Nessus and TIO, Prisma Cloud, SonarQube. Must be capable of providing corrective actions ...

Embedded Software Engineer

Location
Greater London, England, United Kingdom
reliable device messaging using protocols such as MQTT, CoAP, HTTP, or WebSockets. Support reliable device time synchronisation using NTP or PTP. Device Security & OTA Management Contribute to secure boot flows, key and certificate provisioning, and hardware-backed device identity using TPMs or secure elements. Help build and maintain signed … firmware update pipelines, including OTA update and rollback mechanisms. Support security best practices across the device lifecycle, including vulnerability management and secure provisioning. Edge & Cloud Integration Integrate devices with cloud IoT platforms and backend services. Define and improve telemetry, health monitoring, and observability for deployed devices. Support reliable ...

Application Security Consultant

Hiring Organisation
Ricoh
Location
London, United Kingdom
Employment Type
Permanent
other relevant languages. Integrate security controls and automated testing into CI/CD pipelines , including SAST, DAST and SCA. Support threat modelling and vulnerability management across products and services. Work closely with developers, architects, DevOps teams and product owners to embed security into their everyday workflows. Deliver security … secure development or software engineering with a security focus. Hands-on experience conducting application security reviews. Strong knowledge of application security principles and common vulnerability classes. Experience with SAST, DAST and Software Composition Analysis (SCA) tools. Experience implementing security within CI/CD and DevSecOps environments . The ability ...

Division IT Manager

Location
Sidcup, England, United Kingdom
/20 mindset) Infrastructure, Cyber & MSP Orchestration Lead through the Global Infra & Cyber Manager, ensuring: Consistent cyber posture across all sites Centralized vulnerability management Standardized infrastructure Address FTB risks: Cyber gaps across multiple sites Aging infrastructure Inconsistent MSP capabilities Drive: Azure migration AD consolidation Network standardization Rationalize … applications, end-user support Transition non-value-added work to: MSPs and automation Focus internal resources on growth and transformation priorities (AA) Financial & Vendor Management Own: IT budget, investment prioritization, vendor strategy Ensure alignment with: low-cost mindset and value-driven investments Required Experience & Skills Leadership & Organizational Complexity Experience ...

Security Operations Lead

Location
Greater London, England, United Kingdom
wider team. Act as the escalation point for technical investigations triggered by the MSSP first‐line team. Maintain and evolve Lendable’s Security Crisis Management plan, running regular tabletop exercises to ensure business‐wide readiness for systemic and supply‐chain risks. Vendor Governance & Operational Architecture Serve as the ultimate … roadmap. Ensure comprehensive, high‐fidelity log ingestion pipelines across all corporate and cloud assets, focusing on minimising false positives and alert fatigue. Oversee the vulnerability management lifecycle, partnering with IT and Engineering to drive automated remediation workflows over manual tracking spreadsheets. Capability Architecture & Strategic Maturity Develop a Threat ...

Product Security Engineer

Location
Greater London, England, United Kingdom
right in. Available Locations: Austin (US), London (UK) Role Summary As a Product Security Engineer, you will support security assessments and vulnerability operations for Cloudflare’s core software products. In this role, you will analyze system architecture, threat model new features, and ensure that product-related security findings … enrichment, building tools that help the team handle security findings at scale. In short, your work will sit at the intersection of Product Security, Vulnerability Operations, and internal AI Tooling. Ideally, you have experience in conducting academic/vulnerability research with a focus on systems security. Responsibilities Implement ...

Security Operations Lead

Hiring Organisation
Lendable
Location
London, UK
Employment Type
Full-time
escalation point for technical investigations triggered by the MSSP first line team. Crisis & Resilience Simulation: Maintain and evolve Lendable's Security Crisis Management plan, running regular tabletop exercises to ensure business-wide readiness for systemic and supply-chain risks.2. Vendor Governance & Operational ArchitectureMDR/MSSP Technical Governance: Serve … high-fidelity log ingestion pipelines across all corporate and cloud assets, focusing on minimising false positives and alert fatigue. Automation-Driven Remediation: Oversee the vulnerability management lifecycle, partnering with IT and Engineering to drive automated remediation workflows rather than relying on manual tracking spreadsheets.3. Capability Architecture & Strategic MaturityThreat ...

AWS Security Consultant

Location
Easter Howgate, Scotland, United Kingdom
Strong Python scripting skills Experience implementing security within AWS environments Previous customer-facing consulting or Professional Services experience Excellent communication and stakeholder management skills Desirable DevSecOps and CI/CD experience Experience with AWS WAF, Shield and Cognito Knowledge of vulnerability management and security monitoring Eligible ...

Head of Security

Location
Greater London, England, United Kingdom
security for the Geordie platform, with secure by design, threat modelling and security architecture review embedded throughout the SDLC, enabling rapid development safely. Drive vulnerability management, penetration testing, and remediation across the product. Act as the stakeholder for product security requirements for authn/authz, tenant isolation … human identities Security Engineering & Operations Own security across Geordie's cloud infrastructure and internal environments. Own the company's security roadmap, risk management approach and overall security governance. Own security policy and technical requirements across identity, endpoints, cloud infrastructure and SaaS applications. Partner closely with our Internal Systems ...

Zero-Trust Security Engineer | ISO/27001 & Incident Response

Location
Greater London, England, United Kingdom
zero-trust operating model, support ISO27001 certification efforts, and align with CIS controls. You will maintain CrowdStrike, coordinate with the network team on posture management, and contribute to incident response and vulnerability management programs to elevate the firm’s security posture. #J-18808-Ljbffr ...

Security Engineer

Hiring Organisation
CPS Group (UK) Limited
Location
Cardiff, South Glamorgan, United Kingdom
Employment Type
Permanent
Salary
£40000 - £45000/annum
Entra settings and Exchange Online security Building and maintaining detection capabilities using KQL, Advanced Hunting and Microsoft Sentinel Managing phishing simulation campaigns and supporting vulnerability scanning Reviewing client environments and identifying opportunities to improve their Microsoft 365 security posture Supporting incident response activities and security investigations Producing clear technical … Advanced Hunting Experience with Microsoft Sentinel, including analytics rules and Content Hub solutions Good understanding of security protocols, standards and best practices Knowledge of vulnerability management and risk analysis Strong technical judgement and the ability to recognise when an issue needs to be escalated Excellent communication skills, with ...

Senior Corporate Security Engineer

Location
Greater London, England, United Kingdom
will be expected to balance risk reduction with usability, ensuring controls are robust without impeding employee productivity. This role focuses on Identity and Access Management (IAM), Endpoint security (EDR), Network Security, logging and detection engineering, and secure SaaS enablement. You will work closely with IT, Legal, Privacy, Engineering … Linux endpoints using MDM and EDR/XDR tooling. Experience operating SIEM and/or SOAR platforms and tuning detection logic. Experience with vulnerability management and patch governance. Ability to write production-quality automation scripts. Demonstrated experience leading cross-functional technical initiatives. Experience with SASE or Zero Trust ...

DevSecOps Lead

Location
Greater London, England, United Kingdom
secure-by-design principles Terraform and Infrastructure as Code CI/CD pipelines and automation AWS security, IAM and networking Security tooling and vulnerability management Kubernetes/EKS/ECS Leading and mentoring engineers Experience within government, financial services or regulated environments Desirable: Government security standards/NCSC ...

Senior IT Engineer

Location
City of Edinburgh, Scotland, United Kingdom
Windows Server technologies. Proficiency in networking (firewalls, routers, switches, VPNs, VLANs). Experience with cyber security tools and best practices, including endpoint protection, vulnerability management, and compliance frameworks. Hands-on experience with virtualisation platforms (VMware, Hyper-V). Knowledge of backup, disaster recovery, and business continuity solutions. Excellent ...

Cyber Security - Manufacturing Technology Engineer

Location
Dartford, England, United Kingdom
Essential Requirements Proven experience developing and implementing cyber security controls and governance in a manufacturing environment. Deep understanding of industrial protocols, network segmentation and vulnerability management for manufacturing equipment. Ability to translate technical and compliance topics into clear, business-relevant language for a range of stakeholders. Sound analytical ...

Senior Platform Engineer

Location
Welwyn Garden City, England, United Kingdom
repeatable delivery. Championing DevSecOps principles, embedding security and compliance into the software delivery lifecycle. Establishing and improving observability, monitoring, and incident response practices, including vulnerability management and remediation. Mentoring engineers and contributing to a strong engineering culture through knowledge sharing, documentation, and technical leadership. Evaluating and introducing ...