Job Summary
Leads the organisation's vulnerability response capability, ensuring vulnerabilities are rapidly identified, assessed, prioritised, remediated, and governed. The role is responsible for reducing cyber risk exposure by coordinating remediation efforts across infrastructure, cloud, application, and technology teams while ensuring compliance with internal policies, regulatory requirements, and remediation SLAs.
• Manage the end-to-end vulnerability response lifecycle.
• Prioritise vulnerabilities based on severity, exploitability, business criticality, and threat intelligence.
• Lead and Manage vulnerability remediation activities across technology teams.
• Ensure critical and high-risk vulnerabilities are remediated within agreed SLAs.
• Drive accelerated response activities for actively exploited and zero-day vulnerabilities.
• Produce management information and executive reporting
Key Responsibilities
NA
Skill Requirements
Seniority required: Senior (Years of exp: Min 9 years)
• Significant experience in Vulnerability Management, Cyber Security Operations, or Cyber Defence.
• Experience leading remediation programmes across large enterprise environments.
• Strong understanding of vulnerability scoring methodologies such as CVSS.
• Experience managing technology risk and remediation governance.
• Exposure to regulatory environments such as:
NIST SP 800-40
DORA
FCA/PRA requirements
ISO 27001
NIST Cybersecurity Framework
Other Requirements
NA